Southern Company

Manager, Data Security

Southern Company$100K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years in cybersecurity, with 3+ years in a leadership role.
  • Proven experience leading enterprise-scale data security programs.
  • Expertise in data discovery, classification, labeling, and Data Loss Prevention (DLP).
  • Strong understanding of data protection across multiple environments (on-prem, cloud, SaaS).
  • Experience defining and executing encryption strategies for sensitive data.

Responsibilities

  • Build and mentor a high-performing, multi-discipline data security team.
  • Execute the enterprise Data Security Program strategy aligning with business needs and regulations.
  • Translate strategic goals into actionable plans with measurable outcomes.
  • Oversee data classification, labeling policy, and governance standards.
  • Manage enterprise Data Loss Prevention capabilities across various platforms.
  • Define and enforce DLP policies while improving user experience.
  • Lead the transition to post-quantum cryptography and plan encryption strategies.

Benefits

  • Comprehensive health and welfare benefits for employees and their families.
  • Retirement benefits designed to support long-term financial well-being.
  • Annual incentive awards for eligible employees.
  • Focus on employee well-being, including physical and emotional support.
  • Recognition and awards for corporate culture reflecting strong values.
Full Job Description
Job Description

Sr. Manager, Data Security Program

Schedule: M-F (onsite 4 days/week)

Location: Atlanta or Birmingham

Position Summary:

Southern Company is seeking an experienced cybersecurity leader to own and drive the enterprise Data Security Program across multiple disciplines and functions. This role is responsible for end-to-end leadership, execution, and evolution of data protection capabilities, ensuring sensitive data is identified, classified, governed, monitored, and protected across on-premises, cloud, SaaS, and hybrid environments.

This position directly supports Southern Company's mission to mitigate real and potential cyber risks to its critical electric and gas utility infrastructure, operational technology environments, enterprise IT systems, personnel, customers, and brand. Positioned between executive strategy and technical execution, this role drives large-scale, cross-functional data security initiatives that reduce risk while enabling secure and efficient business operations.

The Senior Manager will lead a multi-discipline team responsible for enterprise-wide data security, including encryption strategy (data at rest and in transit, databases, cloud, and on-prem), Data Loss Prevention (DLP), Data Security Posture Management (DSPM), data discovery and classification, data labeling governance, and data misuse detection and response. A significant component of this role is forward-looking cryptographic strategy, including planning, preparing, and executing the company's transition to post-quantum cryptography (PQC), defining both pre- and post-quantum approaches in partnership with enterprise stakeholders.

This leader owns day-to-day operational accountability for data security tooling and controls, including policy design, deployment, tuning, alert monitoring and response, and lifecycle management (upgrades, patching, and change management). The role also serves as a trusted advisor to business and technology leaders, shaping data protection strategy, enabling secure innovation, and preparing the enterprise for data management and protection in the age of AI, including policy and guardrails for agentic AI interactions with enterprise data.

The ideal candidate brings strong people leadership, deep data security and cryptography expertise, and the ability to influence across a complex enterprise. This role requires a proven track record of building sustainable, multi-discipline security programs and delivering measurable risk reduction in highly regulated, mission-critical environments.

Job Responsibilities:
  • Provide leadership focused on building, mentoring, and developing a high-performing, multi-discipline data security team spanning governance, engineering, operations, and consulting functions.
  • Own and execute the enterprise Data Security Program strategy and roadmap, aligning outcomes with business priorities, regulatory requirements, and evolving technologies.
  • Translate strategic objectives into actionable operating models, execution plans, and measurable KPIs across multiple functional domains.
  • Lead enterprise efforts to identify, define, and govern sensitive data, including development and adoption of data classification and labeling standards.
  • Own data labeling policy and governance, including label taxonomy, usage standards, enforcement expectations, and adoption improvement.
  • Oversee deployment and ongoing operations of Data Loss Prevention (DLP) capabilities across email, endpoints, SaaS, cloud services, and data repositories.
  • Define and manage DLP policies, detection rules, and enforcement actions (e.g., block, quarantine, encrypt, alert), balancing risk reduction with business usability and driving continuous tuning and improvement.
  • Mature the evolution and operational use of Data Security Posture Management (DSPM) to maintain visibility into sensitive data locations, access pathways, and exposure risks.
  • Monitor, triage, investigate, and respond to DLP and DSPM alerts and findings in partnership with Security Operations, Incident Response, Insider Threat, Identity, and related teams.
  • Drive remediation of data security risks, including over-permissive access, unprotected or misclassified data, and high-risk data movement.
  • Define and execute an enterprise encryption strategy for sensitive data at rest and in transit, including databases, storage platforms, and key management alignment.
  • Own the enterprise cryptographic transition strategy for post-quantum readiness, including assessment of cryptographic dependencies, prioritization of critical data and systems, phased adoption planning, and execution of pre- and post-quantum approaches.
  • Establish policy, governance, and guardrails for protecting enterprise data while enabling AI adoption, including secure patterns for agentic AI access to and interaction with sensitive data.
  • Provide operational ownership of data security tooling, including upgrades, tuning, patching, integrations, and change management.
  • Establish program metrics, dashboards, and executive reporting to track data security posture, operational performance, cryptographic readiness, and program maturity.
  • Serve as a trusted advisor and consultant to business and technology teams on data protection strategy, patterns, and execution.
  • Build and maintain strong partnerships with Technology, Legal, Privacy, Compliance, Security Operations, Insider Threat teams, and enterprise governance bodies including Cloud COE, AI COE, and related groups.
  • Foster a culture of accountability, collaboration, innovation, and continuous improvement across the data security program.


Requirements and qualifications:

Minimum
  • Proven experience leading enterprise-scale data security programs across multiple disciplines with measurable risk reduction outcomes.
  • 8+ years of experience in cybersecurity, with 3+ years in a leadership or program management role.
  • Demonstrated experience building or operating data security capabilities including data discovery, classification, labeling, and DLP.
  • Strong understanding of data protection across on-prem, cloud, SaaS, and endpoint environments, including data at rest and data in transit.
  • Experience defining and executing encryption strategies, including databases and key management.
  • Experience leading cross-functional initiatives and influencing without direct authority.
  • Strong communication skills with the ability to translate technical risk into business context.
  • Experience working in regulated or highly controlled environments.
  • Ability to mentor and develop security professionals across multiple functions.
  • Must pass NERC CIP & Insider Threat Protection background checks.


Preferred Qualifications
  • Experience deploying or operating Data Security Posture Management (DSPM) solutions.
  • Hands-on experience with data security tools such as DLP, data discovery/classification platforms, CASB, or cloud security tools.
  • Familiarity with Zero Trust data security concepts and data-centric risk models.
  • Experience integrating data security signals into SIEM/SOAR platforms.
  • Experience defining data protection policy and guardrails for AI and agentic AI use cases.
  • Exposure to post-quantum cryptography (PQC) readiness, cryptographic agility planning, or long-term encryption strategy.
  • Industry certifications such as CISSP, CISM, CCSP, GIAC, or similar.
  • Experience supporting or securing critical infrastructure environments.


This position falls under the company's Insider Threat Program and will have access to, and control over sensitive data, systems or assets. Enhanced personnel screening, which includes a background review, drug screen and psychological assessment, will be required if you are selected for this position

About the Team

Southern Company Services

About Southern Company

With 4.4 million customers and more than 42,000 megawatts of generating capacity, Atlanta-based Southern Company is the premier energy company serving the Southeast. A leading U.S. producer of electricity, Southern Company owns electric utilities in four states and a growing competitive generation company, as well as fiber optics and wireless communications. Southern Company brands are known for excellent customer service, high reliability and retail electric prices that are significantly below the national average. Southern Company has been listed the top ranking U.S. electric service provider in customer satisfaction for nine consecutive years by the American Customer Satisfaction Index.

Southern Company Careers

Join the dynamic team at Southern Company, a leader in energy innovation and a champion of sustainable practices. As one of the most respected companies in the energy sector, Southern Company offers unparalleled job opportunities that promise not only professional growth but also a commitment to diversity and leadership development.

Work You’ll Do

At Southern Company, we are not just about power generation; we are about empowering our team to innovate and lead the industry. By joining our team, you will collaborate with some of the brightest minds in the field, using your skills to solve complex problems and drive meaningful change.

Explore a World of Opportunities

Whether you are looking for a full-time position, an internship, or a leadership role, Southern Company has a place for you. Our wide range of employment options ensures that every team member can find a path that best suits their career ambitions and skills.

Innovate and Lead

Southern Company is at the forefront of technological innovation in the energy sector. Our team members are encouraged to lead projects and initiatives that push the boundaries of what is possible in energy production and management.

Grow and Develop

We believe in nurturing the potential of our employees through targeted diversity training, leadership workshops, and continuous professional development. Career growth at Southern Company is not just a possibility—it is an expectation.

Be Part of Our Culture

Southern Company’s culture is built on a foundation of respect, integrity, and inclusion. We celebrate diversity and believe that it drives innovation. Our team is our family, and we support each other in achieving personal and professional goals.

Benefits That Go Beyond

Choosing a career at Southern Company means enjoying a range of benefits designed to enrich your life and support your lifestyle. From health and wellness programs to retirement plans, we ensure our team members are taken care of.

Join Our Team

Ready to power up your career? Explore the job opportunities at Southern Company today. We are actively hiring and looking for passionate, curious, and solution-driven individuals. Enhance your skills, join a community of innovators, and work towards a sustainable future.

Stay Connected

Keep up to date with the latest at Southern Company by following our careers blog. Gain insider perspectives, industry-leading insights, and practical tips to advance your career.

Networking and Career Advancement

At Southern Company, networking and internal mobility are key components of career advancement. Connect with leaders, engage in cross-departmental projects, and take your professional journey to new heights.

Prepare for Your Interview

Make your mark from the first interview. Visit our career site for tips on crafting your resume, preparing for interviews, and making a lasting impression.

Join Southern Company—where careers glow brighter!

SEARCH SOUTHERN COMPANY JOBS Stay ahead of the curve in your career with Southern Company, where innovation meets tradition and every employee is empowered to excel.
Learn more about Southern Company
Size
27,000 employees
Market Cap
$77.6 billion
Industry
Net Income
$3.1 billion
Founded
1912
5 Year Trend
+3%
Revenue
$20.3 billion

Similar Jobs

More Jobs at Southern Company

More Information Technology Jobs

Find similar Manager, Data Security jobs: