Sr. Manager, Data Protection and Insider Risk
Dexcom · Remote - United States
Posted 20h ago · first seen by the radar 2h ago · last checked on the employer's board 8m ago
Manager · Remote · Full time · Remote: US
The Company
Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting started. We are broadening our vision beyond diabetes to empower people to take control of health. That means personalized, actionable insights aimed at solving important health challenges. To continue what we've started: Improving human health.
We are driven by thousands of ambitious, passionate people worldwide who are willing to fight like warriors to earn the trust of our customers by listening, serving with integrity, thinking big, and being dependable. We've already changed millions of lives and we're ready to change millions more. Our future ambition is to become a leading consumer health technology company while continuing to develop solutions for serious health conditions. We'll get there by constantly reinventing unique biosensing-technology experiences. Though we've come a long way from our small company days, our dreams are bigger than ever. The opportunity to improve health on a global scale stands before us.
Meet The Team:
The Dexcom Information Security team is building a dedicated Data Protection and Insider Risk function to protect sensitive information, including trade secrets, from unauthorized access, movement, disclosure, or misuse. The function brings together Data Loss Prevention (DLP), insider risk detection and response, business data owner collaboration, investigations, and continuous control improvement.
This role will lead a global team maturing data protection controls and insider risk capabilities across endpoint, email, web, cloud, SaaS, and collaboration environments. The team will partner closely with peer Information Security functions, Privacy, Legal, HR, IT, Global Security, and business data owners to protect intellectual property, regulated data, and other high-value information.
Where You Come In:
- You will define and execute the Data Protection and Insider Risk strategy, operating model, and roadmap aligned to Dexcom’s business risk, regulatory obligations, and Information Security priorities.
- You will build and lead a high-performing global team across employees, contractors, and service providers, with clear accountability for program delivery, investigations, and control effectiveness.
- You will own the enterprise DLP control lifecycle, including rule design, testing, tuning, deployment, approved exceptions, enforcement, and retirement across endpoint, email, web, cloud, SaaS, and collaboration channels.
- You will establish and mature the Insider Risk Program, including governance, risk scenarios, indicators, detection use cases, triage and investigation workflows, escalation paths, and response playbooks.
- You partner with business data owners to identify high-value information, define protection requirements, validate control intent, implement approved exceptions, and drive remediation and control adoption.
- You lead sensitive insider risk and data protection investigations, including suspected data misuse, exfiltration, control violations, and high-risk departures.
- You oversee the integration and optimization of data protection and insider risk technologies, telemetry, and analytics, including DLP, user activity monitoring, behavioral analytics, and supporting security platforms.
- You will drive automation, analytics, and AI-assisted capabilities to improve alert quality, prioritization, investigation efficiency, control tuning, and response with appropriate human oversight.
- You define and report KPIs and KRIs for control coverage and effectiveness, violation and exception trends, investigation outcomes, alert quality, program maturity, and risk reduction.
- You maintain program governance, operating procedures, and defensible investigative practices that support proportionate monitoring, evidence handling, privacy requirements, and consistent decision-making.
What Makes You Successful:
- You have a BS/MS in Computer Science, Cybersecurity, Information Technology, Engineering, Risk Management, or a related field, or equivalent work experience.
- You have 10+ years of experience in cybersecurity, data security, risk, investigations, or related disciplines; 5+ years focused on data protection, DLP, or insider risk.
- You have proven success building, transforming, or scaling enterprise Data Protection, DLP, or Insider Risk programs in complex global environments.
- You have a strong understanding of enterprise DLP controls across endpoint, email, web, cloud, SaaS, and collaboration environments, including rule lifecycle management, tuning, approved exceptions, and control effectiveness.
- You have experience with enterprise DLP and insider risk platforms, including Netskope, Microsoft Purview, or similar technologies, and with user activity, behavioral, identity, endpoint, and other relevant telemetry.
- You have demonstrated experience leading sensitive investigations and partnering with HR, Legal, Privacy, GRC, Global Security, business leaders, and technical teams on risk-based response and remediation.
- You have strong knowledge of privacy, legal, regulatory, and ethical considerations for employee monitoring, sensitive data handling, and insider risk programs in global enterprises.
- You have experience using automation, analytics, or AI to improve data protection and insider risk operations and translate technical findings into business risk and executive-level insights.
- You may also bring preferred certifications such as CISSP, CISM, CIPP, GIAC, CERT Insider Threat credentials, or other relevant data protection, privacy, or insider risk certifications.
What You’ll Get:
- A front-row seat to groundbreaking technology that impacts lives around the world.
- A full and comprehensive benefits program, including medical, dental, and vision coverage, and wellness programs.
- Competitive compensation with performance incentives and opportunities for advancement within a growing, innovative company.
- Work-life balance support through flexible work arrangements and unlimited paid time off.
- Access to in-house training, development programs, career mentorship, and opportunities to attend security conferences to support your professional growth.
- The chance to work in an inclusive, diverse environment that values teamwork, collaboration, and continuous improvement.
- The opportunity to connect with the #dexcomwarriors community and contribute to a purpose-driven mission that makes a difference.
Travel Required:
- 5-15%
Experience and Education Requirements:
- Typically requires a Bachelor’s degree in a technical discipline with 13+ years of industry experience
- 5-8 years of previous people management experience
Remote Workplace:
- Your location will be a home office; you are not required to live within commuting distance of your assigned Dexcom site (typically 75 miles/120km). If you reside within commuting distance of a Dexcom site (typically 75 miles/120km) a hybrid working environment may be available. Ask about our Flex workplace option.
Please note: The information contained herein is not intended to be an all-inclusive list of the duties and responsibilities of the job, nor are they intended to be an all-inclusive list of the skills and abilities required to do the job. Management may, at its discretion, assign or reassign duties and responsibilities to this job at any time. The duties and responsibilities in this job description may be subject to change at any time due to reasonable accommodation or other reasons. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.
An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability. Dexcom’s AAP may be viewed upon request by contacting Talent Acquisition at [email protected].
If you are an individual with a disability and would like to request a reasonable accommodation as part of the employment selection process, please contact Dexcom Talent Acquisition at [email protected].
Meritain, an Aetna Company, creates and publishes the Machine-Readable Files on behalf of Dexcom. To link to the Machine-Readable Files, please click on the URL provided: https://health1.meritain.com/app/public/#/one/insurerCode=MERITAIN_I&brandCode=MERITAINOVER/machine-readable-transparency-in-coverage?reportingEntityType=TPA_19874&lock=true
To all Staffing and Recruiting Agencies: Our Careers Site is only for individuals seeking a job at Dexcom. Only authorized staffing and recruiting agencies may use this site or to submit profiles, applications or resumes on specific requisitions. Dexcom does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to the Talent Acquisition team, Dexcom employees or any other company location. Dexcom is not responsible for any fees related to unsolicited resumes/applications.
AI in Hiring Notice: We may use AI supported tools to help make our hiring process more efficient, consistent, and accessible for candidates around the world. All hiring decisions are made by people.
Salary:
$181,000.00 - $301,600.00#DexcomUS
Listing read directly from Dexcom's applicant tracking system. Check frequency varies by source. Listings are removed after successful checks confirm they are no longer present.