Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Security Engineer - AI & Copilot Data Protection

$137.4k - $233.6k

Northern Trust

About Northern Trust: Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889. Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service. Role Summary Seeking a Principal-level individual contributor to lead the secure enablement of Microsoft 365 Copilot and enterprise AI capabilities within Northern Trust's Cyber Team. This role owns the end-to-end technical strategy, architecture, and operationalization of AI-driven data protection and compliance controls across Microsoft Purview, Defender, and M365 security services. The Principal serves as the organization's deep technical authority on AI data protection , shaping control strategy, influencing platform configuration decisions, and institutionalizing durable safeguards that reduce AI-driven data risk while enabling productivity at enterprise scale. This is a hands-on role with architect-level accountability : designing systems that will stand up to audit, regulatory scrutiny, and adversarial pressure as AI usage scales. Scope of Accountability (Principal Expectations) This role is expected to: Own the technical vision and control strategy for AI and Copilot data protection, not just implement features. Define durable, repeatable patterns for securing LLM-enabled workflows that other teams can adopt. Operate with wide autonomy, minimal oversight, and direct influence across Security, Compliance, Privacy, M365, and Risk . Anticipate risk before incidents occur , translating emerging AI threats into preventive controls. Serve as escalation point and design authority for complex or ambiguous AI security decisions. Key Responsibilities AI & Copilot Security Architecture Act as hands-on technical lead and design authority for Copilot and enterprise AI security controls across Microsoft Purview, Defender, and M365. Define and evolve the AI data protection reference architecture , mapping controls to AI threat models and regulatory expectations. Review and harden Copilot platform configurations, including: Web grounding and search behaviors Agents, plugins, and connectors Permission inheritance and identity context Transcripts, prompt history, and retention models Ensure controls are designed for default-secure behavior , least privilege, and fail-safe operation. Control Engineering & Operations Design, implement, and operate AI-related controls spanning: Information Protection and labeling strategy DLP and Endpoint DLP (including AI-specific scenarios) Insider Risk Management and Communication Compliance Data Lifecycle Management and retention enforcement DSPM for AI, including exposure detection and oversharing remediation Configure, deploy, troubleshoot, and operate controls across AD and EntraID environments. Support production changes through disciplined change management and approved deployment windows. AI Risk Detection, Monitoring & Response Define AI-specific risk use cases , signals, and thresholds aligned to data exposure, misuse, and policy violation scenarios. Build monitoring, alerting, and automation for abnormal or high-risk AI usage patterns . Develop operational runbooks that enable consistent response, investigation, and evidence preservation. Ensure solutions are audit-ready, regulator-defensible, and operationally sustainable . Governance & Institutionalization Translate AI threat models into policy-aligned, enforceable technical controls . Partner with governance stakeholders to support: AI risk assessments Control mapping and documentation Decision logs and exception handling Executive and stakeholder reporting Contribute expert guidance to Copilot readiness, Zero Trust alignment, and broader AI governance initiatives. Track delivery and technical debt using Azure DevOps, establishing transparency and accountability. Copilot-Focused Control Outcomes Define and enforce Copilot-protected labels for files, groups, sites, and content sources. Prevent unauthorized content ingestion and unintended grounding into AI prompts. Expand browser and endpoint DLP protections, including: Copy/paste and screen capture controls AI prompt and response handling Operationalize DSPM for AI to continuously reassess exposure and remediate oversharing. Establish durable workflows for AI-related insider risk and communication compliance scenarios. Required AI Security Expertise Deep understanding of LLM security fundamentals and threat modeling , including: Data exposure risks Indirect and chained prompt injection Model-mediated data exfiltration Practical mitigation strategies for: Prompt injection and prompt data leakage Over-permissioned grounding sources Agent and connector misuse Experience securing agentic or tool-augmented AI systems , including least-privilege access and approval models. Strong grasp of AI governance concepts , including risk classification, control frameworks, and policy alignment. Ability to translate abstract AI risk into concrete, enforceable technical controls . Qualifications Bachelor's degree or equivalent experience in cybersecurity, engineering, or a related field. Extensive hands-on experience with Microsoft Purview and Microsoft Defender (including Cloud Apps). Strong background in data protection, DLP technologies, and enterprise information security. Proven scripting and automation capability (PowerShell, Python, Power Automate). Experience operating within formal incident, problem, and change management processes (e.g., ServiceNow). Preferred Experience & Certifications Deep familiarity with M365 services such as SharePoint Online, Teams, Exchange, and Entra ID. Experience integrating or operating with Sentinel, Zscaler, Symantec DLP, or comparable platforms. Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) Salary Range:

$137,400 - 233,600 USD

Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component. Working with Us: As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose. We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater Reasonable accommodation Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at View email address on click.appcast.io. We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people. Apply today and talk to us about your flexible working requirements and together we can achieve greater. Northern Trust

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Principal Security Engineer - AI & Copilot Data Protection in Chicago, IL vacancy
  •  ...Northern Trust is seeking a Sr Principal Software Engineer to lead the AI Security Platform for code analysis across enterprise codebases. The role emphasizes platform ownership, architectural evolution, and scalable security automation in a cloud-native environment.... 
    Suggested

    Jobleads-US

    Chicago, IL
    1 day ago
  • $130k - $195k

     ...is a leading legal data intelligence...  ...with confidence. Our AI-powered, cloud platform...  ...AI software to securely surface and manage...  ...AI security into engineering deliveries Provide...  ...(e.g., Copilot, ChatGPT, Gemini)...  ...capabilities and protecting autonomous AI workflows... 
    Suggested

    Relativity

    Chicago, IL
    1 day ago
  • $163.63k - $211.75k

     ...Cybersecurity team is seeking a Principal Application Security Engineer to provide senior...  ...SecurityOwn the secure adoption of AI-enabled development and...  ..., monitor, and enforce data boundaries, permissions, and...  ...based on any legally protected characteristic, including... 
    Suggested
    Full time
    Work at office

    Cboe Exchange

    Chicago, IL
    2 days ago
  •  ...Fully Technical Hands-On Security EngineerSargent & Lundy...  ...a leading consulting engineering firm specializing in the...  ...and platforms that protect Sargent & Lundy, our clients...  ...and protect sensitive data.Key...  ...production actually shows you.AI Usage SecurityImplement... 
    Suggested
    Work at office
    Remote work
    3 days per week

    Sargent & Lundy

    Chicago, IL
    1 day ago
  •  ...Principal Application Security EngineerCboe's Cybersecurity team is seeking a Principal Application Security Engineer to provide senior technical leadership and end-...  ...the secure adoption of AI-enabled development and...  ...define, monitor, and enforce data boundaries, permissions,... 
    Suggested

    Cboe Global Markets

    Chicago, IL
    4 days ago
  • $130k - $150k

     ...make an impact: As the Senior Security Engineer, you will work as a team member on...  ...capabilities and security to our client data. Assist in the maintenance the...  ...across endpoint, cloud, SaaS, AI, identity, network, and data protection platforms using security frameworks... 
    Full time
    Work experience placement

    Strata Decision Technology

    Chicago, IL
    1 day ago
  • $122.4k - $228k

     ...enthusiastic and passionate professional for a  Senior Cloud, AI & Data Security Engineer  role who wants to design and implement security...  ...assurance to management and auditors, and ensure sustained protection by embedding controls in operational and DevOps (CI/CD) practices... 
    Contract work
    Part time
    Local area

    BMO Financial

    Chicago, IL
    -47
  • $10 per hour

     ...? Come join us. All security disciplines work under...  ...tooling that hundreds of engineers around the world rely...  ...everything else we're trying to protect. This is a security...  ...keep pace as we add AI agents and MCP...  ...applicable law. Global Data Privacy Notice for Job... 
    Work at office
    Immediate start
    Flexible hours

    Flexport

    Chicago, IL
    1 day ago
  • $110k - $140k

     ...AI Security Engineer Reporting Location: Chicago - 345 North Morgan 110,000-140,000 Workplace Type: Hybrid ABOUT US tms unites technology...  ...security risk, including prompt injection vulnerabilities, data leakage, model output integrity, and supply chain risks.... 

    Morgan Street Holdings

    Chicago, IL
    1 day ago
  • $144k - $374k

     ...intelligence, machine learning, generative AI, agentic AI, and cloud engineering. We always support and enable big...  .... Our Artificial Intelligence and Data teamhelps apply cutting edge...  ...related to AI ethics, privacy, and data protection Working experience with Agile and... 
    Full time
    Work experience placement
    Immediate start
    Remote work

    EY

    Chicago, IL
    2 days ago
  • $210k - $260k

     ...you'll do: We're looking for a Staff Security Engineer, Application Security to help scale and...  ..., and container security Leverage AI/LLMs where appropriate to improve triage...  ...Background in API security, data protection, or multi-tenant systems Experience... 
    Remote job
    Full time
    Work at office
    Worldwide
    Monday to Friday
    Flexible hours

    NinjaTrader

    Chicago, IL
    a month ago
  •  ...AI Agent Platform Lead Our client is seeking a hands-on AI Agent Platform Lead to build...  ...ready, governed solutions primarily using Copilot and Claude, partnering across Marketing,...  ...Establish reusable frameworks for user/data access, knowledge management, testing, risk... 

    Mondo

    Chicago, IL
    2 days ago
  • $10 per hour

     ...here. Detection & Response engineers own their detections end...  ...when they fire. The security team is spread across the...  ...evaluating and verifying AI-assisted work - testing,...  ...any other characteristic protected by applicable law. Global Data Privacy Notice for Job Candidates... 
    Work at office
    Local area
    Immediate start
    Relocation
    Relocation package
    Flexible hours

    Flexport

    Chicago, IL
    4 days ago
  • $80.5k - $159.3k

     ...innovative ideas, such as AI-enabled insights and...  ...cybersecurity posture, design security programs, evaluate IT...  ...results that protect and enable business success...  ...access management (IAM), data protection, and cloud...  ...Science, Cybersecurity, Engineering, or related field. ~2... 
    Local area
    Worldwide

    Crowe

    Chicago, IL
    4 days ago
  • $121.55k - $157.3k

     ...vulnerability‑related security tickets, providing...  ...and integrating data from multiple...  ...strong emphasis on engineering and operational security...  ...analysis.Advanced AI usage skills to...  ...chatbots such as Copilot or ChatGPT, but also...  ...on any legally protected characteristic, including... 
    Full time
    Work at office
    Immediate start
    Flexible hours

    Cboe Exchange

    Chicago, IL
    2 days ago
  • $184k - $276k

     ...At Early Warning, we’ve powered and protected the U.S. financial system for over thirty...  .... Overall Purpose The Principal Platform Security Engineer is a hands-on enterprise technical leader...  ...and confidentiality of systems and data. Minimum Qualifications ~... 
    Hourly pay
    Full time
    Immediate start
    Visa sponsorship
    Work visa
    Flexible hours

    Early Warning®

    Chicago, IL
    2 days ago
  •  ...RemoteThe client is seeking a Senior Security Automation Engineer to help design, build, and scale an enterprise...  ...requirements and controls, and use AI technologies daily to improve...  ...automation services, validators, APIs, data processing logic, and integration components... 

    Mindlance

    Chicago, IL
    1 day ago
  •  ...Description Summary: The Senior IT Security Engineer is responsible for planning,...  ...and technologies to protect the organization's IT infrastructure...  ...servicesProviding summary data, KPIs, metrics, and reports of...  ...knowledge of AI workflows and threats and risks... 
    Full time

    Breakthru Beverage Group

    Cicero, IL
    18 hours ago
  •  ...including 3-5+ years in cybersecurity engineering or a closely related security-focused role. ~ PKI &...  ...Information and Event Management (SIEM), Data Loss Prevention (DLP), Cloud Access...  ...infrastructure and business teams to improve protection of critical systems and data.... 

    Request Technology

    Chicago, IL
    1 day ago
  • $82.6k - $162.8k

     ...Qualifications Required: * BA/BS in Computer Engineering, Computer Science, Information Systems, Cyber Security, or equivalent demonstrated technical background...  ...compute, network, storage, database, and data protection technologies, with experience assessing enterprise... 
    Local area
    Visa sponsorship

    Deloitte

    Chicago, IL
    18 hours ago
  • $95k - $130k

     ...software solution to automate securities-based lending from...  ...and detail-oriented Security Engineer to help secure our securities...  ...Prototype automation, explore AI/LLM‑assisted workflows to improve...  ...Exposure to WAF/CDN tuning, API protection, and risk‑based remediation SLAs... 
    Full time
    Internship

    Supernova Technology™

    Chicago, IL
    4 days ago
  • $269k - $369k

     ...Secure Every Identity, from AI to Human Identity is the key to unlocking the...  ...are the person product and engineering leadership call when an agent...  ..., trusted by CISOs and principal engineers alike, and...  ...disability, or status as a protected veteran. We also consider... 
    Local area
    Remote work
    Worldwide
    Flexible hours
    Shift work

    Okta

    Chicago, IL
    more than 2 months ago
  • $145k - $195k

     ...revolutionizing global financial infrastructure with stablecoins, AI-driven fraud prevention, and instant settlement. Coinflow...  ...at coinflow.cash . About The Role We're hiring for a Security Engineer to own the day-to-day defensive and offensive security posture... 
    Worldwide
    Flexible hours

    Coin Flow

    Chicago, IL
    1 day ago
  • $171k - $223k

     ...the role We’re looking for an experienced Engineering Manager within the Infrastructure Engineering group to lead our Security Engineering team. Security engineering at...  ...leads our security engineers and analysts in protecting, planning, and building scalable, hardened... 
    Full time
    Temporary work
    Work at office
    Remote work

    Reverb

    Chicago, IL
    4 days ago
  • $170k - $200k

     ...rapidly growing organization with helping people as its number one goal, we want to hear from you. Role The Role As the Security Engineering Manager, you will lead our Security Engineering team in a hands‑on technical leadership role focused on securing the company... 
    Full time

    Engg

    Chicago, IL
    1 day ago
  • $145k - $252k

     ...program development, regulatory compliance, data protection assessments, incident response, and...  ...will lead the delivery of privacy engineering engagements, bringing deep technical expertise...  ...internet protocol layers and network security concepts;Experience with privacy... 
    Full time

    FTI Consulting

    Chicago, IL
    3 days ago
  •  ...StevenDouglas is seeking a confidential VP of Product Development/Engineering in the Chicagoland area. The role combines engineering and...  ...strengthen product management, align with Sales, and leverage AI to improve velocity, quality and innovation, while maintaining... 

    Jobleads-US

    Chicago, IL
    3 days ago
  • Managing Director, Data Engineering & AIWho You'll Work WithAs a Managing Director in Slalom's Data & AI practice, you will lead the growth of our Data Engineering & AI business...  ...Cloud.* Ensure solutions are scalable, secure, governed, and aligned to business objectives... 
    Temporary work

    Slalom

    Chicago, IL
    2 days ago
  • $134.5k - $265.1k

     ...confidence, and proactively manage to secure success.Work you will do:As...  ...and digital products, protecting users, consumers, and patients...  ...the integrity of access to data.QualificationsRequired:BA/BS...  ...Security, Information Security, Engineering, Information Technology,... 
    Local area
    Visa sponsorship

    Deloitte

    Chicago, IL
    2 days ago
  •  ...Director Of Ai Engineering The Director of AI Engineering is responsible for leading...  ...director will lead and mentor a team of data scientists and AI engineers to build...  ...transparency in AI systems. · Work with security teams to protect AI models and data from potential... 

    ABM Industries

    Chicago, IL
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Security Engineer - AI & Copilot Data Protection. Be the first to apply!