Government and Public Sector - AI and Data - Data Security Engineer - Senior Consultant

EY
McLean, VA, US
Full-time

The opportunity

The Data Security Engineer position is designed for individuals with a solid foundation in cybersecurity standards and controls, with a particular emphasis on designing solutions that cater to the rigorous security demands of Government clients within a distributed data infrastructure.

Utilizing a deep knowledge of National Institute of Standards and Technology (NIST) controls, you will be tasked with implementing technical solutions that not only comply with these controls but also facilitate coordination and consensus among our clients.

This role demands specialized experience in data security, particularly within a data mesh architecture, requiring the capability to delve into technical details as well as the unique ability to distill complex topics for executive communication.

Your key responsibilities

  • Design and implement robust data security frameworks tailored for a data mesh ecosystem, ensuring secure data sharing and access across decentralized nodes.
  • Develop and enforce comprehensive privacy policies and procedures in compliance with global data protection regulations (, GDPR, CCPA) to safeguard sensitive information within the data mesh infrastructure.
  • Create dynamic access control policies that adapt to the evolving needs of a distributed data environment, leveraging advanced technologies like AI for real-time decision-making.
  • Lead the integration of security practices into the data lifecycle, from ingestion through to analytics and archiving, ensuring data integrity and confidentiality across all phases.
  • Conduct regular security assessments and audits to identify vulnerabilities within the data mesh ecosystem, and develop mitigation strategies to address identified risks.
  • Collaborate with cross-functional teams to foster a culture of security awareness, ensuring that data security and privacy principles are embedded in all data operations.
  • Stay abreast of the latest cybersecurity trends, threats, and technologies to continually enhance the security posture of the data mesh ecosystem.
  • Author and manage critical security artifacts, including SOPs, RMF deliverables, security plans, and contingency plans, ensuring they are adapted to the data mesh architecture.

Skills and attributes for success

  • An in-depth knowledge of data mesh architecture and its core principles is highly desirable although not strictly required.
  • Proven expertise in designing and managing security solutions within complex, distributed data environments.
  • Thorough understanding of encryption protocols for data at rest and in transit, ensuring secure data communication and storage.
  • Demonstrated ability to enhance security through robust audit and alerting mechanisms, supported by comprehensive server-side security policies.
  • Proficiency in implementing and maintaining security architectures compliant with Zero Trust principles.
  • Comprehensive knowledge of Federal Government security controls, assessment procedures in FISMA, and NIST SP 800-53, with a focus on applying these within a distributed data infrastructure.
  • Demonstrable experience with cloud service providers like Azure, AWS, etc., and an understanding of their security features.
  • Strong knowledge in implementing security best practices specifically for distributed architectures, ensuring secure, distributed data management and access.
  • Proficiency in conducting risk assessments and developing mitigation plans, with a focus on identifying potential threats and vulnerabilities within a distributed data ecosystem.
  • Demonstrated ability to integrate robust security measures into a distributed data infrastructure, safeguarding against unauthorized access.
  • Experience with data privacy, classification, and access tools such as Immuta, Azure IAM, Azure data catalog, or Gigya.

To qualify for the role, you must have

  • Eligibility to obtain and maintain a Secret Clearance.
  • Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.
  • 4+ years of experience in a security engineering role, with a focus on data security, privacy, and access management.
  • DoD or government experience preferred
  • Professional certifications, such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CCSP (Certified Cloud Security Professional) or equivalent certifications strongly preferred.
  • Familiarity with Federal Information Processing Standards and DoD Risk Management Framework

Due to the nature of our work in the Government and Public Sector, work may be required to be completed at client, EY and / or contractor sites.

Our goal is to assign professionals to projects within a commutable distance of their work location office. In certain circumstances, travel may be required beyond your work location based on client and project needs.

Candidates should be willing to travel on average 25% to 30% or more in a hybrid environment.

What we look for

We’re interested in leaders with strong teamwork, work ethic, commitment to continuous improvement and a desire to stay on top of technology trends.

If you have a genuine passion for helping businesses achieve the full potential of their data, this role is for you.

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture, and technology to become the best version of you.

And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.

What we offer

We offer a competitive compensation package where you’ll be rewarded based on your performance and recognized for the value you bring to our business.

In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.

Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances.

You’ll also be granted time off for designated EY Paid Holidays, Winter / Summer breaks, Personal / Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.

  • Continuous learning : You’ll develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you : We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.
  • Transformative leadership : We’ll give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture : You’ll be embraced for who you are and empowered to use your voice to help others find theirs.
  • 30+ days ago
Related jobs
Promoted
Guidehouse
McLean, Virginia

Must be able to obtain and maintain a Public Trust, Secret, or higher level of federal/government security clearance. This Entry Level role will support Government agencies that are responsible for securing the nation’s transportation systems, preparing for and responding to disasters and emergencie...

Promoted
Bard, Rao and Athanas Consulting Engineers
Vienna, Virginia

Founded in 1975, BR+A Consulting Engineers maintains a total staff of 400 employees located at our main office in Boston and branch offices in New York City, NY; Philadelphia, PA; Vienna, VA (Washington, DC); Coral Gables, FL (Miami); Chicago, IL; St. Louis, MO; Tampa, FL; Charlotte, NC and Charlest...

Prudential Financial
VA, US

As a Senior Software Engineer on/in Data Management & Governance Platform you will partner with product owners, tech leads, designers, engineers and delivery professionals to improve Platform and Innovation services. You will code, test and debug new and existing applications as you implement ca...

Metronome, LLC
Alexandria, Virginia

We are expanding our dynamic team and seeking an experienced Senior AI Researcher and Algorithm Engineer to contribute to the forefront of AI-driven innovation. The Senior AI Researcher and Algorithm Engineer will be a key member of our research and development team, primarily responsible for creati...

Capital One
McLean, Virginia

As a startup, we disrupted the credit card industry by individually personalizing every credit card offer using statistical modeling and the relational database, cutting edge technology in 1988! Fast-forward a few years, and this little innovation and our passion for data has skyrocketed us to a For...

Maxar
McLean, Virginia

Serving as the team’s data manager who will be responsible for climate and energy data collection, formatting, storage, cataloguing, and initial analysis of the data while making the data sources readily available and accessible for the customer. We do this as a team by providing short and long term...

Capital One
McLean, Virginia

Able to maintain awareness of competitor and industry developments related to ontology use, linked data, semantic technology, graph databases, knowledge organization, data modeling, and metadata. Develop and communicate a 6-month vision to senior stakeholders and partner teams with accurate details ...

Deloitte
Arlington, Virginia

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. Monitor and audit Okta deploymen...

EY
McLean, Virginia

In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. As a Senior Manager in GCS, you’ll contribute to our growth by helping your clients forge financial relationships with some of the largest governmental ag...

AT&T
Chantilly, Virginia

The services obtained under this contract shall provide expertise to support information systems security, security control assessments, information assurance engineering, and security control assessments test engineering. To perform the daily routine activities, administration, and management dutie...