Senior Data Security Engineer
BEACON HILL SOLUTIONS GROUP, LLC - Madison, WI
Apply NowJob Description
JOB REQUIREMENTS: Number of Openings: 1 Job Title: Senior Data SecurityEngineer Occupational Category: Please choose the most appropriatechoice based on the Job Title and Description. Duties andResponsibilties of Job: We are seeking an experienced professional tohelp design, assess, and secure modern data platforms across on-prem andcloud environments (AWS, Azure, GCP a plus). This role involves guidingsecurity-by-design practices for data ingestion, storage, processing,orchestration, and governance while balancing client-facing work andinternal standards development. Key Responsibilities Security Design& Analysis: Evaluate IAM/RBAC/ABAC models, encryption, key/secretsmanagement, data retention, and network boundaries. Assess data flows,classify sensitive datasets, and design secure architectures andguardrails. Compliance & Testing: Perform threat modeling, reviewconfigurations and code for security issues, and integrate checks intoCI/CD pipelines. Ensure alignment with frameworks such as SOC 2, ISO27001, NIST, HIPAA, PCI, and GDPR/CCPA. Deliver risk assessments,remediation roadmaps, and executive-ready reports. Collaboration:Work closely with data, analytics, ML, DevOps, and security teams toembed controls across the data lifecycle. Contribute to reusableplaybooks, policies, and open-source reference stacks. Support pre-salesby assisting with workshops, scoping, and proposals. IncidentResponse & Improvement: Provide guidance during data-related securityincidents, track remediation progress, and evolve standards based onlessons learned. Stay current on emerging technologies like DSPM, DLP,data contracts, and zero-trust data access. Required Qualifications 6-8 years of professional data engineering experience with strong SQLand Python skills. Hands-on expertise with Spark, Databricks,Snowflake, or Redshift in production. Experience designing securepipelines, warehouses, and Lakehouse architectures on AWS and/or Azure. Proficiency with Docker, Git-based CI/CD, Terraform (or equivalentIaC), and security fundamentals (IAM, encryption, KMS/HSM, secretsmanagement, network segmentation). Knowledge of data modeling,governance, lineage, and retention practices. Strong communicationskills with experience in consulting or client-facing environments.Preferred Qualifications Orchestration and transformation tools(Airflow, Dagster, Prefect, dbt). Streaming and CDC platforms (Kafka,Kinesis, Event Hubs, Debezium). Data quality and catalog/lineagetools (Great Expectations, Soda, Monte Carlo, DataHub, OpenMetadata,Purview). Cloud-native governance and DLP/DSPM tools. Familiaritywith policy-as-code (OPA, Sentinel). Relevant certifications such asAWS/Azure/GCP Architect or Security, CISSP, or CCSP. DesiredCompetencies Strong problem-solving and threat-modeling mindset. Ability to explain complex security concepts to technical andnon-technical stakeholders. Highly collaborative across engineering,product, and security functions. Commitment to continuous learningand staying ahead of emerging threats. Strong attention to detail inreviews, audits, and design. Beacon Hill is an equal opportunityemployer and individuals with disabilities and/or protected veterans areencouraged to apply. California residents: Qualified applications witharrest or conviction records will be considered for employment inaccordance with the Los Angeles County Fair Chance Ordinance forEmployers and the California Fair Chance Act. If you would like tocomplete our voluntary self-identification form, please click here orcopy and paste the following link into an open window in your browser:Completion of this form isvoluntary and will not affect your opportunity for employment, or theterms or conditions of your employment. This form will be used forreporting purposes nly and will be kept separate from all otherrecords. Company Profile: Beacon Hill Technologies, a premier N To viewthe full job description please use the link below.3 Requirements -- APPLICATION INSTRUCTIONS: ApplyOnline:position is listed by a private employment agency. The agency isthe legal employer. No fee will be charged of the job applicant.
Created: 2025-10-04