Global Cybersecurity Senior Manager - Data Protection Engineer
Job Description
BCG Federal is looking for a Data Protection Engineer to help operate and maintain data protection architecture across multiple GCC High platforms including AWS, MS Azure, and M365. This role is aligned to NIST 800-171, DFARS 7012, CMMC Level 2, and security best practices, with a clear focus on strengthening protections as environments and technologies evolve.
Why this role at BCG
- $0 health insurance premiums for BCG employees, spouses, and children
- $10 copays for doctor visits, urgent care, and prescriptions for generic drugs
- Dental coverage with up to $5,000 in orthodontia benefits
- Vision insurance for glasses and contact lenses annually
- Gym membership and other fitness activity reimbursement
- Fully vested Profit Sharing Retirement Fund contributions made annually, whether you contribute or not, plus the option to contribute to a 401(k)
- Paid Parental Leave and additional family benefits, including elective egg freezing, surrogacy, and adoption reimbursement
- Generous paid time off including 12 holidays per year, an annual office closure between Christmas and New Years, and 15 vacation days per year (earned at 1.25 days per month)
- Paid sick time on an as needed basis
What you’ll do
You will enhance and maintain the Data Classification and labeling technical strategy in alignment with business, client, and compliance requirements. You will translate compliance and client contractual obligations into an operational data schema, refining data protection process policies to match security needs.
- Collaborate with Engineering and IT Service teams to drive effective process improvements
- Partner with Risk and Security teams to define a restrictive labeling strategy
- Present data analysis and recommendations to senior stakeholders
- Lead data-driven egress monitoring and evolve related controls
- Architect new data controls and strategy within emerging AI architecture
- Evolve security tools and reporting with embedded AI Security tools
- Work with vendor technical teams to enable progress
- Use newer technologies to automate containment and isolation and drive better user behaviors
- Perform technical research on new challenges
What you bring
- 5-8+ years of experience in Information Security and Data Protection
- 3-5+ years of Data Protection technical operational capabilities and strategies
- Experience with data handling within AI tooling and management
- Proficiency in data classification and tracking strategies
- Familiarity with relevant standards and frameworks such as Fedramp, NIST 800-171, and CMMC
- Encryption and Data Loss Prevention (DLP) experience using sensitivity labeling
- Excellent data analysis and presentation skills
- Ability to foresee and identify mitigation strategies for risks
- Knowledge of security issues, trends, and best practices
- Experience with Microsoft Azure, M365, Purview, Defender, and Zcaler within a GCC High environment
- Ability to obtain and maintain a Security Clearance (if required)
Tools and standards you’ll work with
AWS, MS Azure, M365, NIST 800-171, DFARS 7012, CMMC Level 2, Fedramp, Microsoft Azure, Purview, Defender, Zcaler, Sensitivity labeling, Data Loss Prevention (DLP).
Location and schedule
Boston, MA (onsite). Also listed: Washington. Salary range: USD 154,000 - 188,000 per year.