DTCC

AI Data Protection - Associate Director

DTCC$135K — $160K *
Finance & Insurance
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Minimum 8 years of relevant experience
  • Bachelor's Degree or equivalent experience
  • 5-8+ years in data protection, DLP, or security control engineering
  • Familiarity with AI security risks and controls
  • Demonstrated experience crafting and tuning DLP policies in enterprise settings
  • Experience with Cloud and AI channel controls
  • Strong written documentation capabilities for policies and testing.

Responsibilities

  • Configure AI proxy platforms for data protection controls.
  • Build and maintain enforceable DLP rule estate for AI channels.
  • Define and document sensitive data categories and detection approaches for AI controls.
  • Translate data protection strategies into actionable AI policies.
  • Continuously tune rules to reduce false positives and improve signal quality.
  • Ensure alignment of AI controls with data classification and labeling practices.
  • Maintain documentation for policy changes and support audit readiness.

Benefits

  • Collaborative work environment in cybersecurity and tech innovation
  • Opportunities for continuous learning in cutting-edge AI technologies
  • Cross-functional leadership experience with data protection strategies
  • Engagement in high-impact projects within financial services
  • Potential for influencing industry-standard security practices.
Full Job Description
Job Description

The Impact you will have in this role:

Being a member of IT Cybersecurity & Platform Engineering team, the AI Data Security Engineer - Assocaite Director is a technical leader, responsible for designing, building, and maintaining AI-focused data protection. This will include policies, rules, detection logic, classifiers, and tuning artifacts-that prevent sensitive DTCC data from being exposed through GenAI tools, AI systems and agentic workflows.

This role combines technical expertise, cross-functional leadership and program execution to ensure governance of AI data protection controls across AI proxy-type platforms and AI channels, authoring prompt inspection and output inspection rules, defining enforcement actions, and maintaining the AI DLP rule estate with change history and disciplined lifecycle management.

Your Primary Responsibilities:

AI Channel DLP & Content Engineering
  • Configure AI proxy-type platforms from a data protection control perspective, including:
    • Prompt inspection rule logic to detect sensitive data in user prompts
    • Output inspection rules to detect sensitive data in model responses
    • Masking/redaction and enforcement actions for AI outputs
    • Rule versioning with change history and control evidence
  • Build and maintain the DLP rule estate for GenAI and AI agent channels, ensuring policies are enforceable and testable.

Policy & Rule Design
  • For each AI control rule, define and document:
    • Sensitive data category and business/regulatory rationale
    • Detection approach (e.g., pattern/SIT detection, AI-native classifiers, contextual analysis)
    • Enforcement action (block, coach, redact, allow with logging)
    • False positive handling approach and tuning plan
  • Translate DTCC's data protection strategy into actionable technical rules and policies.

Signal Quality, Tuning & Operational Excellence
  • Continuously tune rules using telemetry and operational outcomes to reduce false positives and improve signal-to-noise
  • Partner with Operations teams to close detection gaps and improve response quality through better policy precision.

Alignment to Classification, Labels & Upstream Discovery
  • Ensure AI channel controls align to DTCC's classification and labeling approach (so enforcement is consistent across channels).
  • Work with Data Protection stakeholders to leverage discovery/classification outputs to improve AI policy targeting and risk prioritization.

Documentation, Testing & Control Evidence
  • Maintain clear documentation of AI policies and rule changes (intent, coverage, rationale, testing outcomes).
  • Support acceptance testing, change management, and evidence packages needed for audit and second-line review.

NOTE: The Primary Responsibilities of this role are not limited to the details above.*

Qualifications:
  • Min 8 years of relevant experience
  • Bachelor's Degree and/or equivalent experience

Talents Needed for Success:
  • 5-8+ years of experience in data protection, DLP, and/or security control engineering.
  • Familiarity with security risks and controls related to AI and LLMs
  • Financial Services or regulated industry experience
  • Demonstrated hands-on experience building and tuning DLP policies / detection content in enterprise environments.
  • Experience configuring or engineering controls for Cloud and AI channels
  • Strong understanding of data classification concepts
  • Strong written documentation skills (policy rationale, change history, test evidence).


The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations.

About DTCC

The Depository Trust & Clearing Corporation (DTCC) is a financial services company that provides clearing, settlement, and information services for the global financial industry. DTCC was founded in 1999 and is headquartered in New York City. The company operates through subsidiaries that provide services such as trade matching, risk management, and asset servicing. DTCC is owned by its users, which include broker-dealers, banks, and other financial institutions. The company is committed to reducing risk and increasing efficiency in the financial markets.
Learn more about DTCC
Size
4,000 employees
Industry
Founded
1973

Similar Jobs

More Jobs at DTCC

More Finance & Insurance Jobs

Find similar AI Data Protection - Associate Director jobs: