Data Security Manager
BCforward is seeking a highly motivated and experienced Data Security Posture ManagementNote: Candidate Must be Local to AZ and willing to work on W2.Position: Data Security Posture ManagementWorksite: Phoenix, AZ (Hybrid Job)Duration: Long term ContractPay Rate: $65/Hr. On W2Must have:Core requirement: experience operating a Data Security Posture Management (DSPM) platform at scale.DSPM platforms: Currently use One Touch, but open to experience BigID, Cyera; Microsoft Purview mentioned but considered not as comparable to the first two.Current/needed platforms and related tools:Palo Alto Cortex (noted it was previously called “Digg” with two Gs).Expected technical capabilities include API integrations/connections, scripting/automation (e.g., Python), platform configuration, and potentially building microservices for data transformation between the tool and Amex’s data warehouse.Platform needs to be configured for both on-prem and cloud (AWS, Azure, GCP) usage.Job Description:The contractors will function as operations and engineering resources within the Data Security Posture Management (DSPM) team, supporting the implementation and day-to-day management of data security controls across the enterprise. Their primary responsibilities will include working with IGDC/1touch for on-premises environments and Cortex for cloud platforms to onboard data sources, maintain integrations, and ensure effective data discovery, classification, and policy enforcement. They will collaborate closely with internal team members, infrastructure teams, and vendor partners to troubleshoot issues, optimize configurations, and ensure stable and secure operations aligned with enterprise standards.In addition, the contractors will support ongoing DSPM operations by monitoring system health, resolving incidents, and driving continuous improvements in tool performance and coverage. They will assist in coordinating with cross-functional teams to implement enhancements, manage updates, and address data security risks identified through DSPM tooling. The role also includes contributing to operational documentation, reporting, and metrics, as well as providing engineering support for scaling DSPM capabilities across both on-premises and cloud environments while ensuring alignment with organizational security and compliance objectives.Skills and Expertise:5+ years of experience in cybersecurity, data security, or data engineering with strong focus on data discovery, classification, or DSPMStrong expertise in:Modern data architectures (data lakes, warehouses, distributed systems)Structured and unstructured data ecosystemsData classification methodologies and regulatory frameworks (PCI, PII)Demonstrated experience designing and implementing enterprise-scale integrations, including:Data catalog platformsITAM / CMDB systemsSIEM / SOAR or security analytics platformsStrong technical skills in:APIs and integration patterns (REST, event-driven architectures)Programming/scripting (Python preferred)Cloud platforms (AWS, Azure, or GCP)