> Markdown version of [/jobs/ext/2693023-principal-data-protection-security-architect](https://www.wearedevelopers.com/jobs/ext/2693023-principal-data-protection-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Data Protection & Security Architect - **Company:** The Maven - **Location:** United States - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Business Analytics Applications, Microsoft Azure, Cloud Computing Security, Cyber Security, Continuous Integration, Data Architecture, Data Infrastructure, Information Leak Prevention, Data Masking, Data Security, Data Sharing, Identity and Access Management, Information Systems Security Architecture Professional, Key Management, PCI Data Security Standards, Role-Based Access Control, Azure Active Directory, Azure Data Lake, Sherwood Applied Business Security Architecture, Tokenization, Enterprise Data Management, Data Classification, Snowflake, Data Management, Cloud Migration, Terraform, Azure Synapse Analytics, Devsecops, Databricks - **Published:** September 3, 2026 - **Apply:** https://www.dice.com/job-detail/001ff004-a172-49e6-b38d-aa8a5a33107c ## About the Role * 12+ years of experience in Data Security, Information Security, Cloud Security, Data Architecture, or related technical leadership roles. * Deep hands-on expertise in Databricks security architecture, including Unity Catalog, RBAC/ABAC, data masking, row-level security, secure data sharing, lineage, and governance capabilities. * Strong experience with Microsoft Azure security services, including Microsoft Entra ID (Azure AD), Azure Key Vault, Managed Identities, Private Link, Networking, Storage Security, and Monitoring solutions. * Proven experience implementing enterprise data protection controls such as: * Encryption at rest and in transit * Customer-managed keys (CMK) * Tokenization * Data masking and obfuscation * Row-level and column-level access controls * Data classification and governance * Data loss prevention (DLP) Strong understanding of data privacy, regulatory, and compliance frameworks including GDPR, CCPA, PCI-DSS, SOX, GLBA, HIPAA, or similar regulatory standards. Experience securing modern cloud-based data platforms involving Databricks, Azure Data Lake, Synapse, Snowflake, or other enterprise analytics platforms. Demonstrated ability to develop security reference architectures, governance frameworks, security standards, and implementation roadmaps. Experience conducting security assessments, architecture reviews, threat modeling, and risk management activities for enterprise data platforms. Strong understanding of DevSecOps, Infrastructure as Code (Terraform preferred), CI/CD, secrets management, and cloud-native security practices. Excellent stakeholder management, consulting, communication, and presentation skills with the ability to engage in senior technology and business leadership. Experience working in highly regulated industries such as Banking, Financial Services, Insurance, Healthcare, or similar regulated environments preferred. Preferred Certifications * Databricks Certified Professional (Data Engineer and/or Security/Governance-related credentials) * Microsoft Certified: Azure Solutions Architect Expert * Microsoft Certified: Azure Security Engineer Associate * CISSP, CCSP, CCSK, SABSA, or equivalent security certifications ## Description * Lead the design and implementation of enterprise data protection and security architectures across Azure and Databricks platforms, ensuring alignment with organizational security, privacy, and regulatory requirements. * Define and implement data security controls including encryption, tokenization, obfuscation, data masking, row-level security, attribute/column-level security, access governance, and data loss prevention (DLP) capabilities. * Architect secure data platform solutions leveraging Azure security services, Databricks Unity Catalog, identity and access management controls, key management, auditing, monitoring, and compliance frameworks. * Partner with business, security, compliance, architecture, and engineering teams to establish security patterns, standards, reference architectures, and implementation roadmaps for modern data platforms. * Conduct security architecture reviews, threat assessments, data protection impact assessments, and control effectiveness reviews to identify risks and recommend mitigation strategies. * Define enterprise-wide governance models for sensitive data classification, access management, data sharing, lineage, retention, and regulatory compliance. * Provide technical leadership and subject matter expertise for strategic initiatives involving cloud modernization, analytics platforms, AI/ML environments, and data product ecosystems. * Lead client and stakeholder discussions related to platform security strategy, security architecture decisions, compliance requirements, and remediation planning. * Establish security best practices and secure-by-design principles across the data platform lifecycle, including development, testing, deployment, and operations. * Mentor engineering, architecture, and security teams while driving adoption of enterprise security standards and operational excellence. ## Related Videos - [Blueprints for Success: Steering a Global Data & AI Architecture](https://www.wearedevelopers.com/videos/1577-blueprints-for-success-steering-a-global-data-ai-architecture) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [From Messy Queries to Scalable Systems - How Data Engineering actually works](https://www.wearedevelopers.com/videos/100203-from-messy-queries-to-scalable-systems-how-data-engineering-actually-works) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Making Data Warehouses Fast: A Developer’s Story](https://www.wearedevelopers.com/magazine/107-making-data-warehouses-fast-a-developer-s-story)