Job DescriptionThe Impact you will have in this role:Being a member of IT Cybersecurity & Platform Engineering team, the AI Data Security Engineer - Assocaite Director is a technical leader, responsible for designing, building, and maintaining AI-focused data protection. This will include policies, rules, detection logic, classifiers, and tuning artifacts-that prevent sensitive DTCC data from being exposed through GenAI tools, AI systems and agentic workflows.
This role combines technical expertise, cross-functional leadership and program execution to ensure governance of AI data protection controls across AI proxy-type platforms and AI channels, authoring prompt inspection and output inspection rules, defining enforcement actions, and maintaining the AI DLP rule estate with change history and disciplined lifecycle management.
Your Primary Responsibilities:AI Channel DLP & Content Engineering- Configure AI proxy-type platforms from a data protection control perspective, including:
- Prompt inspection rule logic to detect sensitive data in user prompts
- Output inspection rules to detect sensitive data in model responses
- Masking/redaction and enforcement actions for AI outputs
- Rule versioning with change history and control evidence
- Build and maintain the DLP rule estate for GenAI and AI agent channels, ensuring policies are enforceable and testable.
Policy & Rule Design- For each AI control rule, define and document:
- Sensitive data category and business/regulatory rationale
- Detection approach (e.g., pattern/SIT detection, AI-native classifiers, contextual analysis)
- Enforcement action (block, coach, redact, allow with logging)
- False positive handling approach and tuning plan
- Translate DTCC's data protection strategy into actionable technical rules and policies.
Signal Quality, Tuning & Operational Excellence- Continuously tune rules using telemetry and operational outcomes to reduce false positives and improve signal-to-noise
- Partner with Operations teams to close detection gaps and improve response quality through better policy precision.
Alignment to Classification, Labels & Upstream Discovery- Ensure AI channel controls align to DTCC's classification and labeling approach (so enforcement is consistent across channels).
- Work with Data Protection stakeholders to leverage discovery/classification outputs to improve AI policy targeting and risk prioritization.
Documentation, Testing & Control Evidence- Maintain clear documentation of AI policies and rule changes (intent, coverage, rationale, testing outcomes).
- Support acceptance testing, change management, and evidence packages needed for audit and second-line review.
NOTE: The Primary Responsibilities of this role are not limited to the details above.*Qualifications: - Min 8 years of relevant experience
- Bachelor's Degree and/or equivalent experience
Talents Needed for Success: - 5-8+ years of experience in data protection, DLP, and/or security control engineering.
- Familiarity with security risks and controls related to AI and LLMs
- Financial Services or regulated industry experience
- Demonstrated hands-on experience building and tuning DLP policies / detection content in enterprise environments.
- Experience configuring or engineering controls for Cloud and AI channels
- Strong understanding of data classification concepts
- Strong written documentation skills (policy rationale, change history, test evidence).
The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations.