Commvault logo
Commvault

DLP Engineer

USARemotePosted 1 week ago

Apply opens Commvault's site. When you're back, we'll ask whether you applied.

Job type
Full-time
Work mode
Remote
Level
Not listed
Department
Information Technology
Experience
3+ years experience
Posted
Sep 22, 2026

About the role

The DLP Engineer is responsible for the design, implementation, and continuous improvement of technical controls that protect organizational data across endpoint, email, network, cloud, collaboration, and emerging AI platforms. This role serves as a key member of the Security Engineering team and acts as a bridge between business policy requirements and technical security implementations.

The ideal candidate possesses a strong understanding of data protection principles along with the technical expertise required to translate governance, compliance, privacy, and security policies into effective technical controls. This position focuses on the engineering, configuration, optimization, and maintenance of data protection technologies rather than day-to-day alert monitoring or incident response activities.

The DLP Engineer partners closely with Compliance, Legal, Privacy, Information Governance, Security Architecture, Identity and Access Management, Security Operations, and Information Technology teams to ensure data protection requirements are effectively implemented and enforced across the enterprise.

This role combines project-based work, including deployment of new data protection capabilities and enhancements, with operational responsibilities involving support, maintenance, tuning, and continuous improvement of existing security technologies.

Position Responsibilities:

Data Security Engineering

  • Design, implement, configure, and maintain enterprise data protection technologies and controls.
  • Develop and maintain technical solutions that protect sensitive information across endpoints, email systems, cloud environments, collaboration platforms, networks, and AI-enabled technologies.
  • Implement controls that reduce the risk of unauthorized disclosure, misuse, exfiltration, or exposure of sensitive organizational data.
  • Evaluate emerging data security technologies and recommend solutions that improve organizational security posture.
  • Participate in security architecture reviews and provide engineering expertise related to data protection capabilities.

Policy Translation and Technical Implementation

  • Partner with Compliance, Privacy, Legal, Information Governance, and Security Policy teams to understand regulatory, contractual, and business requirements.
  • Translate policy requirements into technical controls, detection logic, classifications, and enforcement mechanisms.
  • Design and implement DLP and information protection policies that align with approved governance requirements.
  • Ensure technical implementations accurately reflect business and compliance objectives.
  • Provide technical input during policy development and review activities.

Security Platform Administration

  • Administer and support enterprise data protection and information security platforms.
  • Develop and maintain operational procedures, technical documentation, standards, and implementation guides.
  • Perform testing, validation, troubleshooting, and tuning of data protection controls to improve effectiveness and reduce false positives.
  • Coordinate upgrades, integrations, maintenance activities, and platform lifecycle management.
  • Support implementation of new security capabilities and enhancements across the organization.

Cross-Functional Collaboration

  • Work closely with Security Architecture teams to align technical controls with enterprise security strategy.
  • Partner with Identity and Access Management teams on data-centric access control initiatives.
  • Collaborate with Security Operations teams to improve data visibility and detection capabilities.
  • Support technology teams and business stakeholders during implementation of data protection requirements.
  • Participate in assessments of new applications, cloud services, and AI-enabled platforms to ensure data protection requirements are addressed.

Continuous Improvement

  • Analyze effectiveness of existing data protection controls and recommend improvements.
  • Identify opportunities for automation and operational efficiencies.
  • Assist with development of metrics, reporting, and measurement related to data security capabilities.
  • Stay current on emerging threats, technologies, regulatory developments, and industry best practices.
  • Contribute to the ongoing maturity of the organization's data protection program.

Position Requirements:

Required Qualifications

  • Bachelor's degree in Information Security, Computer Science, Information Technology, Engineering, or equivalent practical experience.
  • 3-5 years of experience in Data Security Engineering, Information Protection, DLP Engineering, Data Protection, or a related security discipline.
  • Experience implementing and administering enterprise data protection technologies.
  • Experience designing and maintaining security controls across endpoint, email, cloud, network, and collaboration environments.
  • Understanding of data classification, information governance, privacy, and data protection principles.
  • Experience translating business, compliance, privacy, or regulatory requirements into technical security controls.
  • Strong troubleshooting and analytical problem-solving skills.
  • Experience working with cross-functional teams and multiple stakeholder groups.
  • Strong written and verbal communication skills.
  • Ability to manage multiple priorities and projects simultaneously.

Preferred Qualifications:

  • Experience with Microsoft Purview Information Protection and Data Loss Prevention.
  • Experience implementing DLP capabilities across endpoint, email, cloud, network, and SaaS environments.
  • Experience with AI governance, AI security controls, or AI-related data protection technologies.
  • Knowledge of Microsoft 365 security and compliance capabilities.
  • Experience with data classification, sensitivity labeling, and information protection technologies.
  • Familiarity with regulatory frameworks such as GDPR, CCPA, HIPAA, PCI-DSS, SOX, or similar standards.
  • Experience with Insider Risk Management programs and technologies.
  • Familiarity with automation and scripting technologies such as PowerShell or Python.
  • Security certifications such as SC-400, CISSP, Security+, SC-300, AZ-500, or equivalent.

Key Competencies:

  • Data Security Engineering
  • Data Loss Prevention (DLP)
  • Information Protection
  • Policy-to-Control Translation
  • Data Governance Collaboration
  • Technical Troubleshooting
  • Security Architecture Partnership
  • Risk-Based Decision Making
  • Communication and Stakeholder Management
  • Documentation and Process Development
  • Continuous Improvement

You'll love working here because:

  • High income earning opportunities based on self-performance
  • Employee stock purchase plan (ESPP)
  • Continuous professional development, product training, and career pathing
  • Generous global benefits