Sr. Manager, Data Protection and Insider Risk
MedTechPharmaRegulatory AffairsQuality Assuranceemacroraveinform
Job description
The Company Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting started. We are broadening our vision beyond diabetes to empower people to take control of health. That means personalized, actionable insights aimed at solving important health challenges. To continue what we've started: Improving human health. We are driven by thousands of ambitious, passionate people worldwide who are willing to fight like warriors to earn the trust of our customers by listening, serving with integrity, thinking big, and being dependable. We've already changed millions of lives and we're ready to change millions more. Our future ambition is to become a leading consumer health technology company while continuing to develop solutions for serious health conditions. We'll get there by constantly reinventing unique biosensing-technology experiences. Though we've come a long way from our small company days, our dreams are bigger than ever. The opportunity to improve health on a global scale stands before us. Meet The Team: The Dexcom Information Security team is building a dedicated Data Protection and Insider Risk function to protect sensitive information, including trade secrets, from unauthorized access, movement, disclosure, or misuse. The function brings together Data Loss Prevention (DLP), insider risk detection and response, business data owner collaboration, investigations, and continuous control improvement. This role will lead a global team maturing data protection controls and insider risk capabilities across endpoint, email, web, cloud, SaaS, and collaboration environments. The team will partner closely with peer Information Security functions, Privacy, Legal, HR, IT, Global Security, and business data owners to protect intellectual property, regulated data, and other high-value information. Where You Come In: You will define and execute the Data Protection and Insider Risk strategy, operating model, and roadmap aligned to Dexcom’s business risk, regulatory obligations, and Information Security priorities. You will build and lead a high-performing global team across employees, contractors, and service providers, with clear accountability for program delivery, investigations, and control effectiveness. You will own the enterprise DLP control lifecycle, including rule design, testing, tuning, deployment, approved exceptions, enforcement, and retirement across endpoint, email, web, cloud, SaaS, and collaboration channels. You will establish and mature the Insider Risk Program, including governance, risk scenarios, indicators, detection use cases, triage and investigation workflows, escalation paths, and response playbooks. You partner with business data owners to identify high-value information, define protection requirements, validate control intent, implement approved exceptions, and drive remediation and control adoption. You lead sensitive insider risk and data protection investigations, including suspected data misuse, exfiltration, control violations, and high-risk departures. You oversee the integration and optimization of data protection and insider risk technologies, telemetry, and analytics, including DLP, user activity monitoring, behavioral analytics, and supporting security platforms. You will drive automation, analytics, and AI-assisted capabilities to improve alert quality, prioritization, investigation efficiency, control tuning, and response with appropriate human oversight. You define and report KPIs and KRIs for control coverage and effectiveness, violation and exception trends, investigation outcomes, alert quality, program maturity, and risk reduction. You maintain program governance, operating procedures, and defensible investigative practices that support proportionate monitoring, evidence handling, privacy requirements, and consistent decision-making. What Makes You Successful: You have a BS/MS in Computer Science, Cybersecurity, Information Technology, Engineering, Risk Management, or a related field, or equivalent work experience. You have 10+ years of experience in cybersecurity, data security, risk, investigations, or related disciplines; 5+ years focused on data protection, DLP, or insider risk. You have proven success building, transforming, or scaling enterprise Data Protection, DLP, or Insider Risk programs in complex global environments. You have a strong understanding of enterprise DLP controls across endpoint, email, web, cloud, SaaS, and collaboration environments, including rule lifecycle management, tuning, approved exceptions, and control effectiveness. You have experience with enterprise DLP and insider risk platforms, including Netskope, Microsoft Purview, or similar technologies, and with user activity, behavioral, identity, endpoint, and other relevant telemetry. You have demonstrated experience leading sensitive investigations and partnering with HR, Legal, Privacy, GRC, Global Security, business leaders, and technical teams on risk-based response and remediation. You have strong knowledge of privacy, legal, regulatory, and ethical considerations for employee monitoring, sensitive data handling, and insider risk programs in global enterprises. You have experience using automation, analytics, or AI to improve data protection and insider risk operations and translate technical findings into business risk and executive-level insights. You may also bring preferred certifications such as CISSP, CISM, CIPP, GIAC, CERT Insider Threat credentials, or other relevant data protection, privacy, or insider risk certifications. What You’ll Get: A front-row seat to groundbreaking technology that impacts lives around the world. A full and comprehensive benefits program, including medical, dental, and vision coverage, and wellness programs. Competitive compensation with performance incentives and opportunities for advancement within a growing, innovative company. Work-life balance support through flexible work arrangements and unlimited paid time off. Access to in-house training, development programs, career mentorship, and opportunities to attend security conferences to support your professional growth. The chance to work in an inclusive, diverse environment that values teamwork, collaboration, and continuous improvement. The opportunity to connect with the #dexcomwarriors community and contribute to a purpose-driven mission that makes a difference. Travel Required: 5-15% Experience and Education Requirements: Typically requires a Bachelor’s degree in a technical discipline with 13+ years of industry experience 5-8 years of previous people management experience Remote Workplace : Your location will be a home office; y ou are not required to live within commuting distance of your assigned Dexcom site (typically 75 miles/120km). If you reside within commuting distance of a Dexcom
Stand out for this role
NoxPharm tailors your CV to this job description by aligning your experience with the role requirements and terminology. Built for pharma & life sciences.
Tailor my CV now — free to trySimilar MedTech jobs
Business Development Manager Real World Data
Glooko — Remote
Director, IT Infrastructure & Operations
Nurix Therapeutics — Brisbane, CA
Sr Strategic Marketing Lead Digital Health
Medtronic — 7 Locations
Finance Director
Medtronic — Minneapolis, Minnesota, United States of America
Senior Clinical Specialist, Coronary Renal Denervation - Orlando, FL
Medtronic — Orlando, Florida, United States of America
Senior UX/UI Designer
Medtronic — 2 Locations