Lead AI and Data Security Engineer

East West Bank

San Marino (CA)

On-site

USD 160,000 - 220,000

Full time

6 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

East West Bank is seeking a Senior Information Security Engineer – Data Security to lead data protection initiatives across on‑prem and cloud environments. You will implement DSPM, data masking, governance, and AI data safeguards while reducing data risk in collaboration with application, cloud, and security teams.

You will integrate Purview for governance, tune detection rules, and support audits with a focus on GLBA, CCPA, ISO 27001 compliance.

Qualifications

  • 8+ years of hands-on information security engineering experience.

Responsibilities

  • Lead data security projects including data masking, data handling, and data loss prevention across environments.

Skills

Automation & scripting
Security incident response
Regulated environments
Data governance collaboration
Cloud security

Education

Bachelor's degree in Cybersecurity/CS or related
Advanced degree preferred

Tools

Purview
Delphix
Cyera
Digital Guardian
Forcepoint
Varonis
Splunk
LogRhythm
InsightIDR
Sumo Logic

Job description

Introduction

Since 1973, East West Bank has served as a pathway to success. With over 110 locations across the U.S. and Asia, we are the premier financial bridge between the East and West. Our teams of experienced, multi-cultural professionals help guide businesses and community members on both sides of the Pacific looking to explore new markets and create new opportunities, and our sustained growth and expertise in industries like real estate, entertainment and media, private equity and venture capital, and high-tech help build sustainable businesses and expand our associates’ potential for career advancement.

Overview

As the bank continues to grow, we are seeking a Senior Information Security Engineer – Data Security to lead and mature the bank’s data security capabilities. This role is hands‑on and delivery‑focused, responsible for protecting sensitive data across enterprise, cloud, and application environments through strong technical controls, automation, and continuous validation. This position will play a key role in major data security initiatives, including enterprise data masking and handling programs, the build‑out of a Data Security Posture Management (DSPM) program, and the expansion of AI security and data governance controls. The role partners closely with application, cloud, infrastructure, and security operations teams to reduce data risk and meet regulatory and audit expectations.

Responsibilities
  • Data Security Engineering
    • Lead and execute major data security projects, including enterprise data masking, data handling, data loss prevention, data classification and data sanitization initiatives across production and non‑production environments.
    • Design, build, and operate a DSPM program to continuously discover, classify, and monitor sensitive data across on‑premise and cloud environments.
    • Implement controls to reduce data exposure, unauthorized access, and data leakage risks.
    • Integrate Microsoft Purview to ensure secure usage of AI‑powered tools and sensitive data governance.
    • Tune and optimize detection rules to improve visibility and reduce false positives.
  • AI Security & Data Governance
    • Implement and operate AI security controls to ensure sensitive data is protected when used by AI‑enabled and automation tools.
    • Partner with governance and technology teams to enforce secure use of AI systems involving regulated or sensitive data.
    • Leverage Microsoft Purview for data governance, data loss prevention, and analytics across structured and unstructured data.
  • Security Monitoring & Incident Response
    • Monitor security events and alerts related to data protection from SIEM, DLP, DSPM, and Purview platforms.
    • Investigate data‑related security incidents and support response, containment, and remediation efforts.
    • Collaborate with SOC, IT, and cloud teams to ensure effective resolution and documentation.
  • Compliance, Audit & Reporting
    • Ensure data protection controls align with regulatory and industry requirements (e.g., GLBA, CCPA, ISO 27001).
    • Produce reporting and metrics on data classification, access, violations, and risk posture.
    • Support internal and external audits by providing evidence and demonstrating control effectiveness.
  • Engineering & Automation
    • Support secure cloud deployments (such as AWS, Azure, etc) and implement controls for data access and movement.
    • Automate security assessments, reporting, and policy enforcement across tools.
    • Maintain engineering documentation and contribute to security architecture reviews.
  • May perform other duties as assigned.
Qualifications
  • Bachelor's degree in Cybersecurity, Computer Science, or a related field; advanced degree preferred.
  • 8+ years of hands‑on information security engineering experience.
  • 3+ years of experience in data security, data protection, or similar roles.
  • Hands‑on experience with data masking and handling tools such as Delphix or other.
  • Experience building or operating DSPM, data discovery, or data governance programs. Hands‑on experience with Purview, Cyera or equivalent tools.
  • Proficiency with DLP and data governance tools such as Microsoft Purview, Digital Guardian, Forcepoint, Varonis, or similar.
  • Experience integrating security tooling with SIEM platforms (e.g., Splunk, LogRhythm, InsightIDR, Sumo Logic).
  • Familiarity with AI security risks, data usage controls, and governance in AI‑enabled environments.
  • Strong automation and scripting capabilities.
  • Experience working in regulated environments, preferably financial services.
Preferred Qualifications
  • Professional certifications such as CISSP, CISM, CCSP, GIAC, CEH, or CISA.
  • Experience securing data in cloud environments (AWS, Azure, GCP).
  • Strong analytical, troubleshooting, and communication skills.

Applicants must have legal authorization to work in the United States. We do not offer visa sponsorship at this time.

Compensation

The base pay range for this position is USD $160,000.00/Yr. - USD $220,000.00/Yr. Exact offers will be determined based on job‑related knowledge, skills, and experience, and location.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Data Security Specialist
Data Security Specialist

Milbank LLP • New York (NY)

On-site
USD 140,000 - 160,000
Data Science & Advanced Analytics
Data Science & Advanced Analytics

East West Bank • Pasadena (CA)

On-site
USD 125,000 - 250,000
Data Governance Manager
Data Governance Manager

East West Bank • Pasadena (CA)

On-site
USD 120,000 - 200,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Leeds Professional Resources • Chicago (IL)

On-site
USD 110,000 - 150,000
Senior Security AI Engineer
Senior Security AI Engineer

Imperial PFS • Kansas City (MO)

On-site
USD 130,000 - 160,000
Senior AI & Data Security Engineer - DSPM & AI Governance
Senior AI & Data Security Engineer - DSPM & AI Governance

East West Bank • San Marino (CA)

On-site
USD 160,000 - 220,000
Enterprise Data Architect
Enterprise Data Architect

East West Bank • New York (NY)

On-site
USD 130,000 - 200,000
Principal AI Security Engineer
Principal AI Security Engineer

Capitolis • Atlanta (GA)

Hybrid
USD 120,000 - 150,000
Senior Lead AI Security Engineer
Senior Lead AI Security Engineer

JPMorganChase • Columbus (OH)

On-site
USD 125,000 - 160,000
Senior Security Engineer, Platforms & AI
Senior Security Engineer, Platforms & AI

Triwill Group • United States

On-site
USD 140,000 - 200,000
Remote-first
Competitive salary
Unlimited PTO
+2