AVP, Data Security

1P284 THE CARLYLE GROUP EMPLOYEE CO., LLC

Washington (District of Columbia)

On-site

USD 170,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
Retirement benefits
Paid time off

Job summary

1P284 THE CARLYLE GROUP EMPLOYEE CO., LLC is seeking an Associate Vice President of Data Security to lead strategic data protection initiatives across the organization. The role focuses on designing and delivering multi-year security programs, integrating DLP, DSPM, IAM, and encryption to reduce risk and meet regulatory requirements.

The AVP will drive governance, metrics, and reporting to senior leadership while coordinating cross-functional teams and leveraging AI/ML techniques to detect

Qualifications

  • Bachelor's degree required; Master’s preferred.
  • CISSP, CISM or equivalent certifications.
  • Microsoft Purview Data Loss Prevention experience required.
  • Experience with DSPM, DLP, and data protection controls.

Responsibilities

  • Lead strategy, implementation, and optimization of enterprise DLP capabilities.
  • Oversee content inspection technologies and AI/ML-based DLP techniques.
  • Ensure data protection across data at rest, in motion, and in use across environments.
  • Develop governance, metrics, and executive dashboards for risk reporting.

Skills

DLP
DSPM
Risk assessment
Executive communication
IAM & PAM

Education

Bachelor's degree
Master’s degree
CISSP/CISM
Microsoft Purview DLP experience

Tools

SIEM
UEBA

Job description

Position Summary

The Associate Vice President of Data Security provides strategic leadership and direction for the enterprise data security program, ensuring the confidentiality, integrity, and availability of sensitive data across the organization. This role leads the design, execution, and continuous improvement of data security initiatives that align with business objectives, regulatory requirements, and evolving threat landscapes. The AVP of Data Security oversees complex, multi-year security programs and high-impact projects, coordinating cross-functional teams across technology, engineering, legal, compliance, and business units. Through strong program and project management discipline, the role drives measurable risk reduction, ensures timely delivery of security initiatives, and maintains accountability for outcomes. As a senior leader, this position bridges technical data security capabilities with organizational priorities, translating risk and security requirements into actionable strategies for executive stakeholders. The role is responsible for guiding the adoption and optimization of data security technologies—including data classification, encryption, data loss prevention (DLP), identity and access controls, and monitoring solutions—while establishing governance, metrics, and reporting to assess program effectiveness and maturity. In-Office Requirement: 4 days per week

Primary Responsibilities
  • Lead the strategy, implementation, and optimization of enterprise DLP capabilities to prevent unauthorized disclosure of sensitive data, including PII, PCI, MNPI, and proprietary investment information.
  • Oversee content inspection technologies leveraging pattern matching (e.g., SSNs, account numbers), keyword analysis, and checksum validation.
  • Guide adoption of AI/ML-based DLP techniques that incorporate user behavior analytics and contextual risk to detect anomalous data activity.
  • Ensure coverage for data at rest, in motion, and in use across endpoints, email, cloud collaboration platforms, and SaaS applications.
  • Establish and mature DSPM capabilities to continuously discover, classify, and assess risk across enterprise data stores, including cloud platforms, data warehouses, and investment systems.
  • Drive risk‑based prioritization of data exposures caused by misconfigurations, excessive permissions, and insecure data flows.
  • Integrate DSPM insights with DLP, IAM, encryption, and cloud security controls to create a unified data protection posture.
  • Define metrics, reporting, and executive dashboards to communicate data risk and posture trends to senior leadership.
Requirements
Education & Certificates
  • Bachelor's degree, required.
  • Master’s degree in a related technical field or finance, preferred.
  • CISSP, CISM, or other vendor‑agnostic security certifications.
  • Microsoft Purview Data Loss Prevention experience required.
Professional Experience
  • Minimum of 6+ years of overall relevant technical experience.
  • Enterprise Data Loss Prevention (DLP) Architecture and Implementation.
  • Data Security Posture Management (DSPM) and Data Discovery.
  • Data Protection Technologies and Controls.
  • Advanced Data Monitoring and Analytics: Familiarity with content inspection techniques (pattern matching, checksum validation, keyword analysis) and AI/ML‑driven analytics, including user behavior analytics (UBA/UEBA), to detect anomalous data access and potential exfiltration events.
  • Security Program Integration and Metrics Development: Ability to integrate DLP, DSPM, IAM, encryption, and cloud security controls into a cohesive data protection architecture while establishing measurable security metrics, reporting frameworks, and executive dashboards to track program maturity and risk reduction.
Competencies & Attributes
  • Strong understanding of Data Loss Prevention (DLP) concepts, including content inspection, pattern matching (PII, PCI, PHI), and policy‑based data protection.
  • Experience with AI/ML‑driven data risk detection, leveraging behavioral analytics and contextual analysis to identify anomalous data activity.
  • Proficiency in data discovery and classification across data at rest, in motion, and in use within cloud, on‑premises, and hybrid environments.
  • Knowledge of Data Security Posture Management (DSPM) capabilities, including continuous data inventory, risk assessment, and exposure prioritization.
  • Ability to assess and remediate data security risks such as misconfigurations, over‑permissioning, and unintended data exposure paths.
  • Experience defining and enforcing data security policies aligned with organizational risk tolerance and regulatory requirements.
  • Familiarity with encryption, tokenization, and data masking techniques to protect sensitive information in production and non‑production environments.
  • Strong understanding of identity and access governance, including least‑privilege access models and integration with IAM and PAM solutions.
  • Knowledge of security monitoring and analytics platforms (SIEM, UEBA) for detecting, investigating, and responding to data‑related security incidents.
  • Experience with real‑time alerting and automated response workflows to accelerate incident containment and remediation.
  • Understanding of regulatory and compliance frameworks (e.g., GDPR, HIPAA, PCI DSS, SOC 2) and mapping data security controls to audit and reporting requirements.
  • Ability to integrate DLP, DSPM, IAM, and monitoring tools into a cohesive, enterprise‑wide data security architecture.
  • Experience with enterprise implementation of Microsoft Purview Data Loss Prevention.
Benefits/Compensation

The compensation range for this role is specific to Washington, DC, and takes into account a wide range of factors including but not limited to the skill sets required/preferred; prior experience and training; licenses and/or certifications. The anticipated base salary range for this role is $170,000 to $190,000. In addition to the base salary, the hired professional will enjoy a comprehensive benefits package spanning retirement benefits, health insurance, life insurance and disability, paid time off, paid holidays, family planning benefits and various wellness programs. Additionally, the hired professional may also be eligible to participate in an annual discretionary incentive program, the award of which will be dependent on various factors, including, without limitation, individual and organizational performance.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AVP, Data Security & DLP Transformation
AVP, Data Security & DLP Transformation

The Carlyle Group • Washington

On-site
AVP, Data Security
AVP, Data Security

Carlyle • Washington

On-site
USD 170,000 - 190,000
Health insurance
Retirement benefits
Paid time off
+1
Microsoft Purview and Data Protection Engineer
Microsoft Purview and Data Protection Engineer

The Carlyle Group • Washington

On-site
USD 160,000 - 180,000
Health insurance
Retirement benefits
Paid time off
Senior Information Security Engineer - Data Protection & Insider Risk
Senior Information Security Engineer - Data Protection & Insider Risk

Cravath, Swaine & Moore LLP • New York (NY)

Hybrid
USD 160,000 - 200,000
Medical, dental, vision insurance
401(k) plan with company match
Paid time off and health club benefits
+1
Data Security Specialist
Data Security Specialist

Milbank LLP • New York (NY)

On-site
USD 140,000 - 160,000
Data Loss Prevention Subject-Matter Expert/Technical Lead
Data Loss Prevention Subject-Matter Expert/Technical Lead

KellyMitchell Group • Bethesda (MD)

On-site
USD 95,000 - 135,000
Medical, Dental, & Vision Insurance Plans
Employee‑Owned Profit Sharing (ESOP)
401(k) offered
Data Security Operations Lead: Real-Time DSPM & DLP
Data Security Operations Lead: Real-Time DSPM & DLP

Black & Veatch • Cary (NC)

On-site
Data Security Operations Lead
Data Security Operations Lead

Black & Veatch • Cary (NC)

On-site
Microsoft Purview and Data Protection Engineer
Microsoft Purview and Data Protection Engineer

1P284 THE CARLYLE GROUP EMPLOYEE CO., LLC • Washington

Hybrid
USD 160,000 - 180,000
Sr Data Protection & Governance Analyst
Sr Data Protection & Governance Analyst

Starkey Hearing Technologies • Eden Prairie (MN)

On-site
USD 86,000 - 117,000
Bonus eligible
Comprehensive benefits
Paid time off