Senior Data Security Engineer

T. Rowe PriceOwings Mills, MD
Hybrid

About The Position

At T. Rowe Price, we identify and actively invest in opportunities to help people thrive in an evolving world. As a premier global asset management organization with more than 85 years of experience, we provide investment solutions and a broad range of equity, fixed income, and multi-asset capabilities to individuals, advisors, institutions, and retirement plan sponsors. We take an active, independent approach to investing, offering our dynamic perspective and meaningful partnership so our clients can feel more confident. We believe doing the right thing for our clients and our associates is good business. With a career at the firm, you can expect opportunities to create real impact at work and in your community. You’ll enjoy resources to support your career path, as well as compensation, benefits, and flexibility to enrich your life. Here, you’ll find a collaborative culture that respects and values differences and colleagues who share a spirit of generosity. Join us for the opportunity to grow and make a difference in ways that matter to you. About the Team At T. Rowe Price, Enterprise Security helps protect the firm, our associates, and our clients by strengthening cyber resilience across the organization. The team partners closely with technology, risk, legal, compliance, and business stakeholders to safeguard sensitive information, support regulatory obligations, and enable the business securely in a dynamic, highly regulated environment. Role Summary We are seeking a Senior Data Security Engineer with deep expertise in Data Loss Prevention (DLP) and data protection engineering to join our Enterprise Security team. In this role, you will design, implement, tune, and optimize enterprise DLP controls across email, endpoint, cloud, web, and collaboration platforms. You will help improve detection fidelity, reduce false positives, support regulatory compliance, and strengthen the firm’s data protection and insider risk posture. This role is ideal for a security engineer who combines strong technical depth with sound judgment, operational discipline, and the ability to translate business and regulatory requirements into effective, scalable controls.

Requirements

  • Bachelor’s degree or the equivalent combination of education and relevant experience AND 5+ years of experience in information security, with at least 3+ years focused on DLP engineering, data protection, policy development, or insider risk programs.
  • Hands-on experience with enterprise DLP platforms such as Symantec DLP, Proofpoint DLP, Microsoft Purview, or similar technologies in a production environment.
  • Strong experience designing and tuning DLP policies to improve signal quality and reduce false positives and false negatives.
  • Experience investigating DLP alerts, performing triage and root cause analysis, and supporting incident response or insider risk workflows.
  • Strong understanding of data protection concepts across structured and unstructured data, endpoint, email, cloud, and collaboration environments.
  • Excellent written and verbal communication skills, including experience developing documentation, playbooks, metrics, and stakeholder reporting.
  • Strong analytical skills, attention to detail, and the ability to operate effectively in a fast-paced, collaborative environment.
  • Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States (e.g., H1-B visa, F-1 visa (OPT), TN visa or any other non-immigrant work status)

Nice To Haves

  • Experience supporting data protection programs within financial services or another highly regulated industry.
  • Knowledge of relevant regulatory and control frameworks, including GLBA, SOX, PCI-DSS, and broader data protection and privacy requirements.
  • Experience integrating DLP telemetry with SIEM, SOAR, case management, or insider risk platforms to improve detection, response, and reporting.
  • Familiarity with Microsoft security and compliance technologies, including Microsoft Purview Information Protection, Insider Risk Management, and Defender ecosystem capabilities.
  • Experience with scripting or automation using tools such as PowerShell, Python, or APIs to streamline DLP operations and reporting.
  • Understanding of data classification, labeling, and information governance practices.
  • Experience evaluating or applying AI/ML-enabled capabilities to improve alert enrichment, detection tuning, workflow automation, or analyst efficiency in security operations.
  • Ability to influence across teams, communicate risk clearly, and balance strong security outcomes with business enablement.
  • Demonstrated sound judgment, intellectual curiosity, and a continuous improvement mindset.

Responsibilities

  • Design, implement, and maintain DLP controls across email, endpoint, cloud, web, and collaboration platforms.
  • Engineer and tune custom DLP detections using regex, Exact Data Matching (EDM), Indexed Document Matching (IDM), classifiers, and contextual telemetry.
  • Own the full DLP policy lifecycle, including policy creation, normalization, testing, deployment, tuning, version control, and change management.
  • Analyze and triage DLP and insider risk alerts, conduct root cause analysis, and recommend mitigation strategies to improve control effectiveness.
  • Partner with Security Operations, Incident Response, Risk, Legal, Compliance, and Information Protection teams to investigate potential data exfiltration and insider risk events.
  • Build and enhance automation workflows, dashboards, and reporting to improve visibility into data movement, user behavior, and program performance.
  • Serve as a technical subject matter expert for DLP platforms and data protection capabilities across the enterprise.
  • Translate regulatory requirements, business needs, and risk scenarios into practical, enforceable technical controls.
  • Continuously improve detection quality, operational processes, and reporting to advance program maturity and business alignment.
  • Contribute to the evaluation and responsible use of AI-enabled security capabilities that improve detection, analysis, and operational efficiency within data protection workflows.

Benefits

  • Competitive compensation
  • Annual bonus eligibility
  • A generous retirement plan
  • Hybrid work schedule
  • Health and wellness benefits, including online therapy
  • Paid time off for vacation, illness, medical appointments, and volunteering days
  • Family care resources, including fertility and adoption benefits
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service