Director - Information Security - Data Security Engineering
Marriott InternationalAbout the role
Marriott International’s Global Information Security is seeking a Director of Data Security Engineering to lead the data security engineering team and oversee initiatives to implement strong security strategies and controls within the organization. The role involves managing the design, development, and execution of data security solutions to protect critical information and ensure regulatory compliance. Responsibilities include enhancing data security operations, refining processes for DLP and data discovery solutions, offering guidance on Database Activity Monitoring (DAM), and improving DAM system performance through rule adjustments and reporting, as well as supporting DAM tool upgrades.
CANDIDATE PROFILE
Required Education and Experience
- Bachelor’s degree in computer sciences, computer engineering or related technology or security field or equivalent experience/certification
- 8+ years of progressive Information Security experience that includes at least 3 years in leading operational projects focused on Data Protection solutions where you’ve developed a comprehensive knowledge of the data protection ecosystem, including a thorough understanding of various information security domains and their interconnections within the ecosystem.
- 3+ years deploying and managing Data Loss Prevention (DLP), Cloud Access Security Broker (CASB), and endpoint protection technologies.
Preferred:
- Strong grasp of cryptographic concepts and their application in practice.
- Current information security certifications - Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or other.
- Good understanding and experience working with frameworks and regulations - NIST, ISO27001, PCI DSS, GDPR and CCPA
- Adept at conducting research into process and governance best practices, models, and methodologies.
- Strong domain expertise, operations, implementation and/or integration skills in at least four (4) of the following areas:
- Data discovery, inventory, and classification solutions (e.g., Microsoft Purview, BigID)
- Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) (e.g., Microsoft, Netskope)
- Database Activity Monitoring (DAM) (e.g., jSonar, IBM Guardium)
- Data Access Governance (e.g., Varonis)
- Data Security Posture Management (DSPM) tools (e.g., Prisma Cloud, Laminar)
- Security of data lakes, and data warehouses leveraging unstructured databases and big data platforms
- Systems administration experience with various operating systems such as Windows Server and Linux
- Experience working in Agile and Scrum methodologies.
CORE RESPONSIBILITIES
- Lead the data security engineering team in developing and executing data security strategies and controls aligned with the organization's goals and compliance requirements.
- Define and implement scalable and effective data security architectures, ensuring the protection of sensitive data across the enterprise.
- Identify and assess data security risks, vulnerabilities, and threats. Develop and implement risk mitigation strategies and controls.
- Oversee the evaluation, selection, and deployment of cutting-edge data security technologies, tools, and solutions.
- Assist in incident response efforts for data security incidents, working closely with cross-functional teams to ensure effective containment and resolution.
- Provide leadership, mentorship, guidance, and career development opportunities to the data security engineering team members.
- Collaborate with cross-functional teams, including IT, compliance, legal, and business units, to ensure data security measures are integrated seamlessly.
- Stay abreast of evolving data security regulations and compliance standards. Ensure the organization's data security practices adhere to industry best practices and legal requirements.
- Promote a culture of data security awareness and educate employees about best practices for protecting sensitive information.
- Other assigned duties as necessary to ensure excellent security services and risk mitigation across the business.
The salary range for this position is $156,000 to $194,200 annually. In addition to the annual salary, the position will be eligible to receive an annual bonus and restricted stock units/stock grants.
Washington Applicants Only: Employees will accrue 0.04616 PTO balance for every hour worked and eligible to receive minimum of 7 holidays annually.
All locations offer coverage for medical, dental, vision, health care flexible spending account, dependent care flexible spending acc
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s