Principal Security Engineer -DLP AI Security Automation
Cyber Security
Pittsburgh, Pennsylvania; Johnston, Rhode Island; Boston, Massachusetts; Iselin, New Jersey; Manchester, New Hampshire
Description
Principal Security Engineer, DLP AI Automation, Platform Integration
Location: Hybrid – 4 days onsite, 1 remote in one of the following hubs: Johnston, RI | Boston, MA | Iselin, NJ | Pittsburgh, PA | Manchester, NH
Summary
Lead the design, deployment, and expansion of enterprise Data Loss Prevention capabilities with a focus on AI driven automation. Own DLP platform integration and strategy across cloud, endpoint, SaaS, and emerging AI environments, driving scalable, automated data protection that reduces risk and enables secure innovation.
Key Responsibilities
AI Automation and Intelligent Operations
• Deploy and operationalize AI driven DLP automation, including agent based triage, contextual risk assessment, and automated remediation
• Leverage AI powered classification, adaptive protection, and insider risk capabilities to build proactive data protection workflows
• Design automation pipelines to reduce manual triage, lower false positives, and accelerate incident resolution
• Evaluate and integrate emerging AI and ML capabilities to improve DLP effectiveness and operational efficiency
DLP Architecture and Deployment
• Lead end to end design, deployment, and optimization of DLP controls across CASB, Information Protection, and DSPM platforms
• Architect unified DLP policies across endpoints, SaaS, IaaS, email, and network traffic within SSE environments
• Define security requirements, architecture patterns, and integration blueprints for enterprise DLP solutions across cloud and hybrid environments
Policy Development, Tuning, and Compliance
• Develop and enforce DLP policies aligned to regulatory requirements such as GLBA, PCI DSS, SOX, GDPR
• Continuously tune rules, classifiers, sensitive information types, and exception workflows to improve detection accuracy
• Apply risk frameworks to identify and mitigate data protection gaps
• Maintain documentation, runbooks, and audit evidence for compliance reviews
Leadership and Collaboration
• Serve as the technical lead for DLP AI automation initiatives
• Partner across cybersecurity, risk, IT, and business teams to align data protection strategy
• Mentor engineers and promote operational excellence and continuous learning
• Oversee design, integration, testing, and delivery of data protection solutions
• Present program insights and recommendations to senior leadership
Required Qualifications
• Bachelor’s degree or equivalent experience in Computer Science, Cybersecurity, or related field
• 8+ years experience in information security, including 4+ years in DLP, CASB, or cloud data protection engineering
• Deep hands on expertise with DLP platforms including policy design, deployment, and operations
• Experience integrating DLP and CASB with SIEM, SOAR, identity, and cloud platforms
• Proven experience building automation or AI driven workflows for security operations
• Strong knowledge of regulatory frameworks such as GLBA, PCI DSS, SOX, FFIEC, GDPR, CCPA
• Strong analytical and troubleshooting skills across hybrid environments
• Excellent communication skills translating technical concepts for varied audiences
Preferred Qualifications
• Experience with agent based DLP automation and autonomous remediation capabilities
• Familiarity with AI driven security tooling including AI risk and readiness platforms
• Experience with additional data protection technologies
• Scripting or automation experience such as Python, PowerShell, or KQL
• Certifications such as CISSP, CCSP, CISM
• Experience in financial services or other regulated industries
• Experience with SIEM analytics, dashboards, and DLP telemetry correlation
• Cloud security experience across AWS, Azure, or GCP
Core Skills
• DLP and data protection engineering, advanced, designs and operates enterprise DLP across cloud, endpoint, and network
• AI and automation in security, advanced, applies AI driven workflows to enhance detection and response
• Cloud security and CASB, advanced, secures SaaS and cloud environments
• Compliance and regulatory controls, advanced, aligns DLP strategy with regulatory requirements
• Cybersecurity strategy, advanced, connects data protection initiatives to business priorities
• Emerging technologies, advanced, evaluates and implements new AI and security capabilities
• Systems integration and management, advanced, integrates security platforms across the enterprise
• Incident and problem management, advanced, leads investigation and resolution of data security events
• Stakeholder engagement and communication, advanced, communicates risk and strategy to leadership
• Innovation and continuous improvement, advanced, drives automation and program optimization
Why Join Us
• Lead cutting edge AI driven data protection initiatives shaping how the organization secures sensitive data
• Work in a collaborative, innovation focused environment with strong executive visibility
• Directly influence secure adoption of AI and cloud technologies
• Competitive compensation, strong benefits, and support for professional growth
Pay Transparency
The salary range for this position is $145,000-180,000 per year plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to the work location, and relevant skills and experience.
We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens’ paid time off policy exceeds the mandatory, paid sick or paid time-away policy of very local and state jurisdiction in the United States. For an overview of our benefits, visit https://jobs.citizensbank.com/benefits.
#LI-Citizens1
Some job boards have started using jobseeker-reported data to estimate salary ranges for roles. If you apply and qualify for this role, a recruiter will discuss accurate pay guidance.
Equal Employment Opportunity
Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague’s or a dependent’s reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability.
Background Check
Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information.
Benefits
We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more.
View BenefitsAwards We've Received
Glassdoor Best Place to Work in Consulting, Finance & Insurance
Human Rights Campaign Corporate Equality Index 100 Award
Newsweek America's Most Charitable Company
The Banker's
US Bank of the Year
Dave Thomas Foundation’s Best Adoption-Friendly Workplace
Disability:IN Best Places to Work for Disability Inclusion
- Senior Vulnerability Specialist (Infra) Johnston, Rhode Island; Westwood, Massachusetts; Manchester, New Hampshire Johnston, Rhode Island, Westwood, Massachusetts, Manchester, New Hampshire
- Principal Red Team Operator Pittsburgh, Pennsylvania; Johnston, Rhode Island; Westwood, Massachusetts; Manchester, New Hampshire; Boston, Massachusetts; Charlotte, North Carolina Pittsburgh, Pennsylvania, Johnston, Rhode Island, Westwood, Massachusetts, Manchester, New Hampshire, Boston, Massachusetts, Charlotte, North Carolina
- Principal Red Team Operator Johnston, Rhode Island; Westwood, Massachusetts; Pittsburgh, Pennsylvania; Boston, Massachusetts; Manchester, New Hampshire; Charlotte, North Carolina Johnston, Rhode Island, Westwood, Massachusetts, Pittsburgh, Pennsylvania, Boston, Massachusetts, Manchester, New Hampshire, Charlotte, North Carolina
