> Markdown version of [/jobs/ext/2281759-lead-databricks-data-security-engineer](https://www.wearedevelopers.com/jobs/ext/2281759-lead-databricks-data-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Databricks Data Security Engineer - **Company:** Northrop Grumman - **Location:** Falls Church, VA, United States (Remote available) - **Experience:** Expert - **Salary:** $142,200.0 - $213,200.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Cyber Security, Information Engineering, Data Infrastructure, Data Security, Data Structures, Python (Programming Language), Role-Based Access Control, Software Engineering, SQL Databases, Infrastructure Automation Frameworks, Terraform, Software Version Control, Security Orchestration, Automation & Response, Databricks - **Published:** August 28, 2026 - **Apply:** https://www.techcareers.com/job.asp?id=3367080194&tx=HT7468TYV&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Bachelor's degree in a relevant discipline and at least 8 yearsas a Software Engineer or Data Engineer with a heavy focus on data platform security and security automation; Master's degree and at least 6 years of relevant experience. * At least 2 yearsofhands onexperience implementing Databricks Unity Catalog security features. * Demonstrated experience designing and implementing RBAC and ABAC models at scale, including hands on experience with Databricks Unity Catalog, grants, dynamic views, row and column level filtering and masking. * Fluency with identity and federation patterns including SCIM, service principals, and integration with enterprise identity providers such as Entra ID. * Experience applying infrastructure-as-code practices, preferably Terraform to access, tagging, and policy management in Databricks. * Proficiencyin Python and SQL for automation, monitoring, and compliance., * The ability to obtain a government security clearance * Working onsite full time in Falls Church, VA * Master's degree ## Description Northrop Grumman is seeking a Lead Databricks Data Security Engineer to lead the design, implementation, and governance of access control across our Databricks Lakehouse environment. This role will serve as the senior technical owner of the data access control model, defining the architecture, establishing engineering standards, and translating security and compliance requirements into scalable technical controls. The selected candidate will play a key role in building the Databricks security function and will work closely with data engineering, platform engineering, and enterprise stakeholders. This is a hands-on software engineering and architecture role that requires both strategic leadership and direct technical implementation., * Lead the design and implementation of RBAC and ABAC within Databricks Unity Catalog, including data structure, access models, and tagging standards. * Define the security architecture for data access, including dynamic views, row-level security, and column masking. * Develop the identity governance approach for Databricks, including service principals, workload identities, and integration with enterprise identity providers. * Translate regulatory, contractual, and compliance requirements into practical technical controls within the platform. * Establish andmaintaindata classification standards and tagging structures that support scalable access control. * Implement grants, catalogs, tags, and access controls as code using Terraform and/or Databricks Asset Bundles to support version control and audit readiness. * Work closely with workspace administrators and platform engineers to align workspace, compute, secrets, and network controls with the broader data access strategy. * Create guardrails, templates, and streamlined workflows that allow data engineers to manage access appropriately whilemaintainingstrong security controls. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Cutting LLM Costs Without Cutting Quality: How to Beat Proprietary LLMs with Fine-Tuned Open Source](https://www.wearedevelopers.com/videos/100151-cutting-llm-costs-without-cutting-quality-how-to-beat-proprietary-llms-with-fine-tuned-open-source) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [How to govern Vibe Coding for the Enterprise](https://www.wearedevelopers.com/videos/100290-how-to-govern-vibe-coding-for-the-enterprise) - [OLTP in the Lakehouse: Redefining Data for AI Workloads](https://www.wearedevelopers.com/videos/2038-oltp-in-the-lakehouse-redefining-data-for-ai-workloads) ## Related Articles - [Data Engineer Salary UK](https://www.wearedevelopers.com/magazine/253-data-engineer-salary-uk) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity) - [Making Data Warehouses Fast: A Developer’s Story](https://www.wearedevelopers.com/magazine/107-making-data-warehouses-fast-a-developer-s-story) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Dev Digest 196: AI Killed DevOps, LLM Political Bias & AI Security](https://www.wearedevelopers.com/magazine/659-dev-digest-196-ai-killed-devops-llm-political-bias-ai-security)