Principal Data Security Engineer

Okta Okta · Enterprise · San Francisco, CA · Sec - GRC-775

Okta is seeking a Principal Data Security Engineer to lead their internal data security strategy. This role involves owning the data protection tool suite, implementing data security strategies, enforcing data retention, managing encryption and obfuscation, establishing key management, uplifting data handling controls, and automating security workflows. The engineer will work with various internal teams and external stakeholders, focusing on data loss prevention (DLP) technologies like DSPM, EDR, and CASB. Experience in mature security control environments and compliance frameworks is essential.

What you'd actually do

  1. Serve as the business owner of Okta’s data protection tool suite
  2. Evaluation and implementation of security tools and services
  3. Design, establish, and implement the strategy for a multi-year data security maturity roadmap
  4. Identify patterns and trends in data loss incidents to enhance preventative and detective measures
  5. Collaborate with the Cyber Defense Team and Technology, Data & Intelligence (TDI) Team to realize data security controls within Okta’s data security technology stack

Skills

Required

  • Deep understanding of data security, data protection, and data privacy workstreams and related tooling (DSPM, DLP, CASB..etc)
  • Demonstrated experience managing projects and data security tool implementations at a large/comparably sized company, ideally in a regulated industry; and/or Big 4 candidates with related engagement experience
  • Strong security background
  • Bachelor’s degree or higher in cybersecurity or a related technical focus area and/or equivalent practical experience
  • Strategic thinker with strong analytical and critical thinking skills

Nice to have

  • Certifications such as CISSP, CISA, CISM, or CDPSE are preferred
  • Experience managing small teams and/or more junior team members is strongly preferred

What the JD emphasized

  • data security strategy
  • data protection tool suite
  • data handling controls and safeguards
  • automating security workflows
  • DSPM, EDR, CASB
  • mature security control environment
  • mature data security and privacy functions
  • security compliance frameworks (e.g., NIST, ISO, PCI)
  • data loss incidents
  • data security technology stack
  • comprehensive data protection strategies
  • data loss incidents and resolutions
  • complex projects