×
Register Here to Apply for Jobs or Post Jobs. X

Data Protection Engineer

Job in Cincinnati, Hamilton County, Ohio, 45208, USA
Listing for: First Student
Full Time position
Listed on 2026-07-21
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security, Data Security
Salary/Wage Range or Industry Benchmark: 130000 - 155000 USD Yearly USD 130000.00 155000.00 YEAR
Job Description & How to Apply Below

The Data Protection & Security Engineer will serve as the primary owner of First Student's data protection capability while also providing hands‑on security engineering support across cloud, infrastructure, and application security domains. This is a practitioner role. The position partners with IT, I&O, and Legal teams to design and operate security controls that protect student, employee, and operational data across cloud and on-premises environments.

The role defines what must be protected and how, coordinates with I&O and Data teams to ensure controls are implemented correctly, and builds validation and reporting of outcomes. This role is a direct replacement for a departing senior team member who owned both data protection and security engineering. Candidates must be comfortable holding both domains simultaneously and ramping quickly into an active program.

Responsibilities:
  • Identify and assess:
    Own enterprise data protection risk assessments, classification standards, and control effectiveness evaluations. Identify data exposure risk across cloud, SaaS, and on‑premises environments. Contribute to vulnerability assessments and architecture reviews within the Cybersecurity function.
  • Securely build & protect:
    Design and define data protection control requirements and standards for DLP, encryption, key management, and data governance across cloud and on‑premises environments. Work with I&O and Data teams to ensure controls are implemented to Cybersecurity specifications; validate implementation outcomes. Provide security engineering expertise across cloud infrastructure and endpoint security domains.
  • Monitor, hunt, detect:
    Monitor for data misuse, exfiltration, and policy violations. Integrate DLP detection capabilities with SOC workflows. Support SIEM log source expansion and alert quality improvements in coordination with the Security Operations function.
  • Respond, recover, sustain:
    Lead Cybersecurity response activities for data exposure incidents, including investigation direction, containment guidance to I&O, remediation oversight, and lessons learned.
  • Govern, manage, comply, & manage risk:
    Develop and maintain data protection policies aligned with FERPA, CCPA, Canadian provincial privacy laws, and enterprise risk objectives. Own the data classification framework and drive operationalization across key data stores and workflows. Contribute to management reporting, risk acceptance documentation, and work tracking.
  • Lead and coordinate:
    Provide technical oversight of cybersecurity analysts. Review work product and deliverables for quality, accuracy, and alignment with standards. Serve as a technical escalation point within the team for data protection and cybersecurity questions.
Desired qualifications:
  • Education and certifications:
    Bachelor's degree in Computer Science, Information Systems, or equivalent experience.
  • 7+ years of cybersecurity experience with at least 4 years in data protection, cloud security, or cybersecurity engineering.
  • Industry certifications such as SANS/GIAC (for example, GDSA, GDAT, or equivalent), CISSP, CISM preferred.
Knowledge & experience:
  • Hands‑on experience configuring and operating DLP platforms (M365 Purview strongly preferred; Crowd Strike Falcon Data Protection preferred; equivalent experience acceptable).
  • Experience implementing data classification frameworks in enterprise environments with regulated data (FERPA, COPPA, CCPA, or Canadian privacy law familiarity preferred).
  • Strong understanding of AWS security services and cloud‑native data protection controls (S3 bucket policies, KMS, Macie, Cloud Trail).
  • Security engineering experience: familiarity with SIEM log sources, endpoint security platforms (Crowd Strike Falcon preferred), and vulnerability management tooling (Rapid7 preferred).
  • Proficiency with Python or Power Shell for automation, reporting, and control validation.
  • Familiarity with NIST CSF, CIS Controls, and how to translate regulatory requirements into technical controls.
  • Experience working across organizational boundaries, such as defining requirements for teams that own implementation and validating outcomes without direct execution authority.
  • Prior…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary