Commvault logo
Commvault
Posted 12 days agoVerified live 1d ago

Data Security Engineer

Brief overview

Remote
$72k–$136k/yrStated range
131 H-1B approvalsDept. of Labor
24 green cardsCertified filings
Data Loss Prevention (DLP)Data Security EngineeringInformation ProtectionData Classification and Sensitivity LabelingPolicy-to-Control TranslationMicrosoft Purview Information ProtectionMicrosoft 365 Security and ComplianceInsider Risk ManagementAI Security and Data ProtectionPowerShellPythonSecurity and Privacy Regulatory FrameworksTechnical Troubleshooting

About the company

Commvault logo
Commvaultcommvault.com

Commvault is a cyber resilience platform built for recovery and protection against threats.

Visa sponsorship history

4 years sponsoring, last filed FY2026

Data powered by U.S. Department of Labor. This does not guarantee sponsorship for this specific role.
131H-1B approved
100%approval rate
8new H-1B hires
24PERM certified
$161,200median wage / yr
H-1B Petition ApprovalsVisas USCIS actually granted: the strongest sign the company sponsors.
202347
202426
202553
20265
LCA Certified ApplicationsAn early filing step, not a visa approval: it signals intent, not confirmed sponsorship.
202311
202417
20253
20262
Green Card (PERM) FilingsCertified green card filings: a long-term commitment to international hires.
20238
20249
20257
Top sponsored roles
Principal EngineerSenior Engineer IISenior Engineer IIIAssociate ManagerTech Manager
Sponsored employees from
IndiaUnited Kingdom

Job description

Summary

Commvault is a cyber resilience company that provides data protection, data security, data intelligence, and recovery solutions. The Data Security Engineer designs, implements, configures, and continuously improves technical controls protecting organizational data across endpoints, email, networks, cloud, collaboration platforms, and AI-enabled technologies. The role translates governance, compliance, privacy, and security requirements into technical controls while supporting platform administration, cross-functional collaboration, and continuous improvement.

Responsibilities

  • Design, implement, configure, and maintain enterprise data protection technologies and controls
  • Develop and maintain technical solutions that protect sensitive information across endpoints, email systems, cloud environments, collaboration platforms, networks, and AI-enabled technologies
  • Implement controls that reduce the risk of unauthorized disclosure, misuse, exfiltration, or exposure of sensitive organizational data
  • Evaluate emerging data security technologies and recommend solutions that improve organizational security posture
  • Participate in security architecture reviews and provide engineering expertise related to data protection capabilities
  • Partner with Compliance, Privacy, Legal, Information Governance, and Security Policy teams to understand regulatory, contractual, and business requirements
  • Translate policy requirements into technical controls, detection logic, classifications, and enforcement mechanisms
  • Design and implement DLP and information protection policies that align with approved governance requirements
  • Ensure technical implementations accurately reflect business and compliance objectives
  • Provide technical input during policy development and review activities
  • Administer and support enterprise data protection and information security platforms
  • Develop and maintain operational procedures, technical documentation, standards, and implementation guides
  • Perform testing, validation, troubleshooting, and tuning of data protection controls to improve effectiveness and reduce false positives
  • Coordinate upgrades, integrations, maintenance activities, and platform lifecycle management
  • Support implementation of new security capabilities and enhancements across the organization
  • Work closely with Security Architecture teams to align technical controls with enterprise security strategy
  • Partner with Identity and Access Management teams on data-centric access control initiatives
  • Collaborate with Security Operations teams to improve data visibility and detection capabilities
  • Support technology teams and business stakeholders during implementation of data protection requirements
  • Participate in assessments of new applications, cloud services, and AI-enabled platforms to ensure data protection requirements are addressed
  • Analyze effectiveness of existing data protection controls and recommend improvements
  • Identify opportunities for automation and operational efficiencies
  • Assist with development of metrics, reporting, and measurement related to data security capabilities
  • Stay current on emerging threats, technologies, regulatory developments, and industry best practices
  • Contribute to the ongoing maturity of the organization's data protection program

Skills

  • Bachelor's degree in Information Security, Computer Science, Information Technology, Engineering, or equivalent practical experience
  • 3-5 years of experience in Data Security Engineering, Information Protection, DLP Engineering, Data Protection, or a related security discipline
  • Experience implementing and administering enterprise data protection technologies
  • Experience designing and maintaining security controls across endpoint, email, cloud, network, and collaboration environments
  • Understanding of data classification, information governance, privacy, and data protection principles
  • Experience translating business, compliance, privacy, or regulatory requirements into technical security controls
  • Strong troubleshooting and analytical problem-solving skills
  • Experience working with cross-functional teams and multiple stakeholder groups
  • Strong written and verbal communication skills
  • Ability to manage multiple priorities and projects simultaneously
  • Experience with Microsoft Purview Information Protection and Data Loss Prevention
  • Experience implementing DLP capabilities across endpoint, email, cloud, network, and SaaS environments
  • Experience with AI governance, AI security controls, or AI-related data protection technologies
  • Knowledge of Microsoft 365 security and compliance capabilities
  • Experience with data classification, sensitivity labeling, and information protection technologies
  • Familiarity with regulatory frameworks such as GDPR, CCPA, HIPAA, PCI-DSS, SOX, or similar standards
  • Experience with Insider Risk Management programs and technologies
  • Familiarity with automation and scripting technologies such as PowerShell or Python
  • Security certifications such as SC-400, CISSP, Security+, SC-300, AZ-500, or equivalent

Qualifications

Must Haves

  • Bachelor's degree in Information Security, Computer Science, Information Technology, Engineering, or equivalent practical experience
  • 3-5 years of experience in Data Security Engineering, Information Protection, DLP Engineering, Data Protection, or a related security discipline
  • Experience implementing and administering enterprise data protection technologies
  • Experience designing and maintaining security controls across endpoint, email, cloud, network, and collaboration environments
  • Understanding of data classification, information governance, privacy, and data protection principles
  • Experience translating business, compliance, privacy, or regulatory requirements into technical security controls
  • Strong troubleshooting and analytical problem-solving skills
  • Experience working with cross-functional teams and multiple stakeholder groups
  • Strong written and verbal communication skills
  • Ability to manage multiple priorities and projects simultaneously

Nice to Haves

  • Experience with Microsoft Purview Information Protection and Data Loss Prevention
  • Experience implementing DLP capabilities across endpoint, email, cloud, network, and SaaS environments
  • Experience with AI governance, AI security controls, or AI-related data protection technologies
  • Knowledge of Microsoft 365 security and compliance capabilities
  • Experience with data classification, sensitivity labeling, and information protection technologies
  • Familiarity with regulatory frameworks such as GDPR, CCPA, HIPAA, PCI-DSS, SOX, or similar standards
  • Experience with Insider Risk Management programs and technologies
  • Familiarity with automation and scripting technologies such as PowerShell or Python
  • Security certifications such as SC-400, CISSP, Security+, SC-300, AZ-500, or equivalent

Benefits

  • Employee stock purchase plan (ESPP)
  • Continuous professional development, product training, and career pathing

More jobs like this