Senior Data Security Engineer
Location: Maryland, US
Requisition Number: 80895
Position Title:
External Description:
About the Team
At T. Rowe Price, Enterprise Security helps protect the firm, our associates, and our clients by strengthening cyber resilience across the organization. The team partners closely with technology, risk, legal, compliance, and business stakeholders to safeguard sensitive information, support regulatory obligations, and enable the business securely in a dynamic, highly regulated environment.
Role Summary
We are seeking a Senior Data Security Engineer with deep expertise in Data Loss Prevention (DLP) and data protection engineering to join our Enterprise Security team. In this role, you will design, implement, tune, and optimize enterprise DLP controls across email, endpoint, cloud, web, and collaboration platforms. You will help improve detection fidelity, reduce false positives, support regulatory compliance, and strengthen the firm’s data protection and insider risk posture.
This role is ideal for a security engineer who combines strong technical depth with sound judgment, operational discipline, and the ability to translate business and regulatory requirements into effective, scalable controls.
Responsibilities
- Design, implement, and maintain DLP controls across email, endpoint, cloud, web, and collaboration platforms.
- Engineer and tune custom DLP detections using regex, Exact Data Matching (EDM), Indexed Document Matching (IDM), classifiers, and contextual telemetry.
- Own the full DLP policy lifecycle, including policy creation, normalization, testing, deployment, tuning, version control, and change management.
- Analyze and triage DLP and insider risk alerts, conduct root cause analysis, and recommend mitigation strategies to improve control effectiveness.
- Partner with Security Operations, Incident Response, Risk, Legal, Compliance, and Information Protection teams to investigate potential data exfiltration and insider risk events.
- Build and enhance automation workflows, dashboards, and reporting to improve visibility into data movement, user behavior, and program performance.
- Serve as a technical subject matter expert for DLP platforms and data protection capabilities across the enterprise.
- Translate regulatory requirements, business needs, and risk scenarios into practical, enforceable technical controls.
- Continuously improve detection quality, operational processes, and reporting to advance program maturity and business alignment.
- Contribute to the evaluation and responsible use of AI-enabled security capabilities that improve detection, analysis, and operational efficiency within data protection workflows.
Qualifications
Required:
- Bachelor’s degree or the equivalent combination of education and relevant experience AND
- 5+ years of experience in information security, with at least 3+ years focused on DLP engineering, data protection, policy development, or insider risk programs.
- Hands-on experience with enterprise DLP platforms such as Symantec DLP, Proofpoint DLP, Microsoft Purview, or similar technologies in a production environment.
- Strong experience designing and tuning DLP policies to improve signal quality and reduce false positives and false negatives.
- Experience investigating DLP alerts, performing triage and root cause analysis, and supporting incident response or insider risk workflows.
- Strong understanding of data protection concepts across structured and unstructured data, endpoint, email, cloud, and collaboration environments.
- Excellent written and verbal communication skills, including experience developing documentation, playbooks, metrics, and stakeholder reporting.
- Strong analytical skills, attention to detail, and the ability to operate effectively in a fast-paced, collaborative environment.
Preferred:
- Experience supporting data protection programs within financial services or another highly regulated industry.
- Knowledge of relevant regulatory and control frameworks, including GLBA, SOX, PCI-DSS, and broader data protection and privacy requirements.
- Experience integrating DLP telemetry with SIEM, SOAR, case management, or insider risk platforms to improve detection, response, and reporting.
- Familiarity with Microsoft security and compliance technologies, including Microsoft Purview Information Protection, Insider Risk Management, and Defender ecosystem capabilities.
- Experience with scripting or automation using tools such as PowerShell, Python, or APIs to streamline DLP operations and reporting.
- Understanding of data classification, labeling, and information governance practices.
- Experience evaluating or applying AI/ML-enabled capabilities to improve alert enrichment, detection tuning, workflow automation, or analyst efficiency in security operations.
- Ability to influence across teams, communicate risk clearly, and balance strong security outcomes with business enablement.
- Demonstrated sound judgment, intellectual curiosity, and a continuous improvement mindset.
Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States (e.g., H1-B visa, F-1 visa (OPT), TN visa or any other non-immigrant work status)
FINRA Requirements
FINRA licenses are not required and will not be supported for this role.
Work Flexibility
This role is eligible for hybrid work, with up to three days per week from home.
City:
State:
Community / Marketing Title: Senior Data Security Engineer
Company Profile:
Location_formattedLocationLong: Maryland, US
CountryEEOText_Description: Commitment to Diversity, Equity, and Inclusion: We strive for equity, equality, and opportunity for all associates. When we embrace the power of diversity and create an environment where people can bring their authentic and best selves to work, our firm is stronger, and we create greater value for our clients. Our commitment and inclusive programming aim to lift the experience for each associate and builds allies for our global associate community. We know that a sense of belonging is key not only to your success at the firm, but also to your ability to bring your best each day. Benefits: We invest in our people through a wide range of programs and benefits, including: • Competitive pay and bonuses as well as a generous retirement plan and employee stock purchase plan with matching contributions • Flexible and remote work opportunities • Health care benefits (medical, dental, vision) • Tuition assistance • Wellness programs (fitness reimbursement, Employee Assistance Program) Our policies may change as our working lives evolve. Yet, our commitment to supporting our associates’ well-being and addressing the needs of our clients, business, and communities is unwavering. T. Rowe Price is an equal opportunity employer and values diversity of thought, gender, and race. We believe our continued success depends upon the equal treatment of all associates and applicants for employment without discrimination on the basis of race, religion, creed, color, national origin, sex, gender, age, mental or physical disability, marital status, sexual orientation, gender identity or expression, citizenship status, military or veteran status, pregnancy, or any other classification protected by country, federal, state, or local law.