Mission: Ensure sensitive data does not leave the client boundary through an AI platform.
Responsibilities
- Proofpoint DLP for prompts and file uploads, with enforcement points deliberately divided against Zscaler inline and gateway redaction
- Tune for prompt traffic
- Cover agent-mediated data movement, not just user-initiated; validate ZDR with test evidence rather than a screenshot of a toggle
- Define handling for the Anthropic and OpenAI Compliance API feeds themselves
Must Have
- Hands-on Proofpoint DLP implementation and policy tuning at enterprise scale
- DLP for AI or SaaS traffic specifically, with real tuning experience rather than out-of-the-box policy deployment
- PCI DSS scope experience, plus KMS, HSM, and BYOK fundamentals and understanding of their real boundaries