Title: Data Security Lead with Snowflake Location: Fort Mill, SC (Onsite) Position: Contract
Opportunity:
For a major financial services client, we are leading an enterprise data security strategy and implementation program for securing the data through techniques including but not limited to encryption, tokenization, RBAC, data masking, DLP, etc.
Experience Required:
8+ years of industry experience in implementing data security and compliance requirements
4+ years of hands-on experience designing and implementing data security policies, controls and governance
2+ years of experience working with cloud service providers (AWS, Azure, Google Cloud Platform) and corresponding cloud-native security services
Data security/protection conceptual knowledge & experience in implementation of data security capabilities such as encryption, tokenization, data masking, RBAC, ABAC, auditing & monitoring in any of the industry leading tools such as, Protegrity, Thales Ciphertrust (Vormtric), OpenText Voltage, etc.
Deep understanding of cloud service architecture with emphasis on security in the cloud
Administration of the Data Security/Privacy/Governance tools, configuring policies, upgrading, and patching the platform, etc.
Proficiency in data encryption techniques (AES, FPE, TDE, PKI) and tokenization frameworks using Protegrity is a must.
Experience with key management solutions (KMS, HSMs, Vaults) for secure encryption key storage and lifecycle management.
Hands-on experience with data security integration in cloud environments (AWS KMS, Azure Key Vault, Google Cloud KMS).
Able to communicate clearly and concisely, both orally and in writing to business and technology stakeholders
Ability to multitask and work effective with little supervision; ability to co-ordinate with onsite resources deliverables/activities; Ability to work with client and manage their expectations & priorities
Bachelors degree or equivalent in Computer Science, Information Systems, Cybersecurity, or related field
Roles & Responsibilities:
Work closely with client stakeholders to determine technical requirements for specific business objectives at hand and understand applicable security, regulatory and procedural controls & requirements
Develop security requirements and specification for security policies
Identifying appropriate security techniques such as Encryption (FPE, AES, Transparent) and Tokenization (SST, Vaultless, Vault based), etc. applicable from a PII data classification standpoint using Protegrity.
Analysis of upstream/downstream application dependencies to ensure security protocols are appropriately configured and applied using the selected tool stack
Knowledgeable with the data privacy regulations and compliances (GDPR, CCPA, HIPAA, SOC, NIST)
Responsible for necessary design, configuration, and implementation of data security tools stacks like Protegrity, MicroFocus Voltage, Imperva, Immuta, Privacera, Thales.
Responsible for collaborating with the project team members to provide regular updates required in for weekly status report, and weekly project log consisting of issues, risks, action items, and progress against planned activities for a given week.
Install, configure, and implement Data Protection Platform across on-premises and cloud environments.
Design and deploy Protegrity Vaultless Tokenization, Encryption, and Masking solutions to protect PII, PHI, PCI, and other sensitive data.
Work with API security and Protegrity SDKs to enable data protection in microservices and cloud-native applications.
Implement Protegrity Security Policies and configure User Access Controls, Key Management, and Data Discovery features.
Troubleshoot security configurations and optimize Protegrity performance and scalability.
Develop and maintain technical documentation related to Protegrity implementation.
Train and mentor technical teams on data security policies and tools.