Negotiable
Outside
Remote
USA
Summary: The Data Security Engineer role focuses on enhancing data security within cloud-first and hybrid environments, emphasizing expertise in data-centric security principles and DSPM tools. The position requires hands-on experience with DLP solutions and a strong understanding of compliance requirements. The role is fully remote and classified as outside IR35.
Key Responsibilities:
- Implement and manage data security measures in cloud-first and hybrid environments.
- Utilize DSPM tools and data-centric security principles to protect sensitive information.
- Design and oversee encryption architecture and key management systems.
- Integrate DLP solutions across cloud and endpoint systems.
- Manage data access control mechanisms and governance for various data stores.
- Ensure compliance with regulations such as GDPR, PCI, and CCPA.
- Maintain knowledge of security frameworks like NIST and ISO 27001.
- Obtain and maintain relevant certifications in data security.
Key Skills:
- 5+ years of data security engineering experience.
- Deep understanding of DSPM tools and data-centric security principles.
- Expertise in encryption architecture and key management systems.
- Hands-on experience with DLP solutions (e.g., Varonis, Microsoft Purview).
- Proficient in data access control mechanisms and governance.
- Familiarity with compliance requirements (GDPR, PCI, CCPA).
- Knowledge of security frameworks like NIST and ISO 27001.
- Preferred certifications: CCSP, CISSP, or data security-specific credentials.
Salary (Rate): undetermined
City: undetermined
Country: USA
Working Arrangements: remote
IR35 Status: outside IR35
Seniority Level: undetermined
Industry: IT
Qualifications
- 5+ years of data security engineering experience in cloud-first and hybrid environments.
- Deep understanding of DSPM tools and data-centric security principles.
- Expertise in encryption architecture, key management systems, and securing data at all lifecycle stages.
- Hands-on experience with DLP solutions (e.g., Varonis, Microsoft Purview, Forcepoint, Symantec) and their integration across cloud and endpoint systems.
- Proficient in data access control mechanisms and governance across relational, NoSQL, and unstructured data stores.
- Familiarity with compliance requirements (GDPR, PCI, CCPA) and security frameworks like NIST and ISO 27001.
- Certifications such as CCSP, CISSP, or data security-specific credentials are preferred.