Summary
Commvault is a cyber resilience company that provides data protection, data security, data intelligence, and recovery solutions. The Data Security Engineer designs, implements, configures, and continuously improves technical controls protecting organizational data across endpoints, email, networks, cloud, collaboration platforms, and AI-enabled technologies. The role translates governance, compliance, privacy, and security requirements into technical controls while supporting platform administration, cross-functional collaboration, and continuous improvement.
Responsibilities
- Design, implement, configure, and maintain enterprise data protection technologies and controls
- Develop and maintain technical solutions that protect sensitive information across endpoints, email systems, cloud environments, collaboration platforms, networks, and AI-enabled technologies
- Implement controls that reduce the risk of unauthorized disclosure, misuse, exfiltration, or exposure of sensitive organizational data
- Evaluate emerging data security technologies and recommend solutions that improve organizational security posture
- Participate in security architecture reviews and provide engineering expertise related to data protection capabilities
- Partner with Compliance, Privacy, Legal, Information Governance, and Security Policy teams to understand regulatory, contractual, and business requirements
- Translate policy requirements into technical controls, detection logic, classifications, and enforcement mechanisms
- Design and implement DLP and information protection policies that align with approved governance requirements
- Ensure technical implementations accurately reflect business and compliance objectives
- Provide technical input during policy development and review activities
- Administer and support enterprise data protection and information security platforms
- Develop and maintain operational procedures, technical documentation, standards, and implementation guides
- Perform testing, validation, troubleshooting, and tuning of data protection controls to improve effectiveness and reduce false positives
- Coordinate upgrades, integrations, maintenance activities, and platform lifecycle management
- Support implementation of new security capabilities and enhancements across the organization
- Work closely with Security Architecture teams to align technical controls with enterprise security strategy
- Partner with Identity and Access Management teams on data-centric access control initiatives
- Collaborate with Security Operations teams to improve data visibility and detection capabilities
- Support technology teams and business stakeholders during implementation of data protection requirements
- Participate in assessments of new applications, cloud services, and AI-enabled platforms to ensure data protection requirements are addressed
- Analyze effectiveness of existing data protection controls and recommend improvements
- Identify opportunities for automation and operational efficiencies
- Assist with development of metrics, reporting, and measurement related to data security capabilities
- Stay current on emerging threats, technologies, regulatory developments, and industry best practices
- Contribute to the ongoing maturity of the organization's data protection program
Skills
- Bachelor's degree in Information Security, Computer Science, Information Technology, Engineering, or equivalent practical experience
- 3-5 years of experience in Data Security Engineering, Information Protection, DLP Engineering, Data Protection, or a related security discipline
- Experience implementing and administering enterprise data protection technologies
- Experience designing and maintaining security controls across endpoint, email, cloud, network, and collaboration environments
- Understanding of data classification, information governance, privacy, and data protection principles
- Experience translating business, compliance, privacy, or regulatory requirements into technical security controls
- Strong troubleshooting and analytical problem-solving skills
- Experience working with cross-functional teams and multiple stakeholder groups
- Strong written and verbal communication skills
- Ability to manage multiple priorities and projects simultaneously
- Experience with Microsoft Purview Information Protection and Data Loss Prevention
- Experience implementing DLP capabilities across endpoint, email, cloud, network, and SaaS environments
- Experience with AI governance, AI security controls, or AI-related data protection technologies
- Knowledge of Microsoft 365 security and compliance capabilities
- Experience with data classification, sensitivity labeling, and information protection technologies
- Familiarity with regulatory frameworks such as GDPR, CCPA, HIPAA, PCI-DSS, SOX, or similar standards
- Experience with Insider Risk Management programs and technologies
- Familiarity with automation and scripting technologies such as PowerShell or Python
- Security certifications such as SC-400, CISSP, Security+, SC-300, AZ-500, or equivalent
Qualifications
Must Haves
- Bachelor's degree in Information Security, Computer Science, Information Technology, Engineering, or equivalent practical experience
- 3-5 years of experience in Data Security Engineering, Information Protection, DLP Engineering, Data Protection, or a related security discipline
- Experience implementing and administering enterprise data protection technologies
- Experience designing and maintaining security controls across endpoint, email, cloud, network, and collaboration environments
- Understanding of data classification, information governance, privacy, and data protection principles
- Experience translating business, compliance, privacy, or regulatory requirements into technical security controls
- Strong troubleshooting and analytical problem-solving skills
- Experience working with cross-functional teams and multiple stakeholder groups
- Strong written and verbal communication skills
- Ability to manage multiple priorities and projects simultaneously
Nice to Haves
- Experience with Microsoft Purview Information Protection and Data Loss Prevention
- Experience implementing DLP capabilities across endpoint, email, cloud, network, and SaaS environments
- Experience with AI governance, AI security controls, or AI-related data protection technologies
- Knowledge of Microsoft 365 security and compliance capabilities
- Experience with data classification, sensitivity labeling, and information protection technologies
- Familiarity with regulatory frameworks such as GDPR, CCPA, HIPAA, PCI-DSS, SOX, or similar standards
- Experience with Insider Risk Management programs and technologies
- Familiarity with automation and scripting technologies such as PowerShell or Python
- Security certifications such as SC-400, CISSP, Security+, SC-300, AZ-500, or equivalent
Benefits
- Employee stock purchase plan (ESPP)
- Continuous professional development, product training, and career pathing