Senior Data Security Engineer

Allstate - United States

Hiring: Senior Data Security Engineer Company: Allstate Location: United States Job Posted Time: 2026-09-10 13:38:18 Employment Type: Contract Target Skills & Keywords : CI/CD, Cloud Storage, IaC, Infrastructure as Code, PowerShell, Python, REST, SIEM, SaaS, Terraform About the job Experience: •90 years, our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. •4+ years delivering enterprise Data Protection, Information Protection, Cloud Security, or Security Engineering capabilities within complex organizations. Required Skills: •For this opportunity, the business is flexible to hire at Senior Consultant, Lead Consultant, and Expert level depending on qualifications & interview evaluation.** •Engineer enterprise DLP controls across endpoint, email, SaaS, cloud storage, collaboration platforms, network, and web channels. •Modernize DLP policy deployment by moving from manual console-based changes to version-controlled, automated, and repeatable policy-as-code workflows. •Build CI/CD pipelines for data protection policy lifecycle management, including peer review, automated validation, testing, approval, deployment, and rollback. •Develop reusable policy templates, detection logic, exception patterns, configuration baselines, and deployment standards across multiple DLP and CASB platforms. •Automate operational tasks such as policy promotion, configuration drift detection, control validation, reporting, alert enrichment, and recurring health checks. •Integrate DLP, CASB, data classification, cloud security, identity, SIEM, SOAR, and workflow platforms to improve visibility, response, and enforcement. •Tune detection logic using data-driven analysis to reduce false positives, improve signal quality, and increase confidence in policy enforcement. Qualifications: •Proven experience in Policy-as-Code, Security-as-Code, and DevSecOps methodologies, with a demonstrated ability to automate security control deployment and governance at enterprise scale. •Track record of replacing manual operational processes with engineering-driven solutions through automation, APIs, Infrastructure-as-Code, and platform engineering practices. •Advanced knowledge of Data Loss Prevention (DLP), data classification, information protection, and data governance principles. •Hands-on expertise with Microsoft Purview, Microsoft Information Protection, Defender for Cloud Apps, and the Microsoft 365 security ecosystem. •Comprehensive understanding of cloud, SaaS, CASB, and enterprise data protection architectures. •Proficiency in scripting and automation technologies including PowerShell, Python, REST APIs, Terraform, Bicep, YAML, JSON, or comparable tools. •Demonstrated success in modernizing Data Protection, DLP, CASB, or Information Protection programs through automation, standardization, and engineering-driven operating models. •Proven ability to implement and scale DevOps, DevSecOps, or Platform Engineering practices within security organizations. •Track record of leading large-scale security initiatives that improve control effectiveness, operational efficiency, and measurable risk reduction. •Background supporting enterprise-scale cloud, SaaS, or Microsoft 365 environments. Compensation: •$90,700 - $190,000 / year •Flexible work environment (work from home / hybrid options) Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!