Data Protection Engineer

Remote $145k–$170k 2 months ago full-time quality 8.6/10

Role in brief

Coinbase seeks a Data Protection Engineer to enhance its data loss prevention capabilities. This role involves building and maintaining DLP controls across various operating systems and decentralized datasets, leveraging AI and automation to streamline processes. Candidates with at least three years of security engineering experience, specifically in implementing enterprise DLP programs and using ML/AI for operational efficiency, should consider applying.

DLPsecurity engineeringMLAISIEMUBAendpoint detection

About the role

This role focuses on implementing and scaling data loss prevention (DLP) measures within the Coinbase ecosystem. The engineer will be responsible for building and maintaining DLP controls across multiple operating systems and decentralized datasets, ensuring effective prevention against sophisticated data security incidents. A key aspect of the work involves tuning these prevention capabilities to protect sensitive information.

The position emphasizes driving automation in DLP engineering and operations. This includes leveraging advanced technologies like large language models (LLMs) and agentic AI to streamline workflows and reduce manual effort, thereby scaling data protection coverage. The engineer will also collaborate with various internal teams, such as endpoint security, IT, engineering, and compliance, to deploy data protection technologies and ensure timely remediation of issues.

Success in this role means contributing to Coinbase's long-term data protection strategy. This involves working with risk teams to assess control effectiveness, adapting to changes in global regulations, and strengthening the company's security posture against evolving data threats. The engineer will also be responsible for monitoring and reporting on the impact of programmatic efforts, control effectiveness, and emerging risks to leadership.

The annual base salary for this role ranges from $144,500 to $170,000 USD, with the exact amount varying by location.

Skills that matter here

  • DLP: This role is centered on implementing, maintaining, and scaling data loss prevention controls and tooling.
  • security engineering: The position requires a background in security engineering, specifically with hands-on experience in enterprise DLP programs.
  • ML: The engineer will use machine learning to create scalable, automated security processes and maximize operational efficiency.
  • AI: Artificial intelligence, including LLMs and agentic AI, will be leveraged to automate workflows and scale data protection coverage.
  • SIEM: Experience building and operating security information and event management technologies is required for this role.
  • UBA: The role requires experience with user behavior analytics technologies to help protect against insider threats.

Who this role suits

  • You have a minimum of three years of experience in security engineering, with a focus on implementing enterprise DLP programs.
  • You are proficient in building and operating insider threat and data protection technologies, including SIEM, UBA, and endpoint detection.
  • You possess practical experience leveraging ML/AI tools to automate security processes and enhance operational efficiency.
  • You have a working knowledge of the insider threat landscape and understand the legal, regulatory, and ethical considerations of handling sensitive data globally.

From the employer

What you’ll be doing:

  • Build and maintain DLP controls and tooling across multiple OS environments (iOS, Chrome) and decentralized datasets, implementing and tuning prevention capabilities that protect against sophisticated data security incidents.
  • Drive automation across DLP engineering and operations by leveraging LLMs, agentic AI, and an automation-first mindset to streamline workflows, reduce manual effort, and scale data protection coverage.
  • Partner with cross-functional teams, including endpoint security, IT, engineering, product, compliance, and privacy, to deploy data protection technologies, ensure timely remediation, and support cross-functional data protection initiatives.
  • Execute monitoring and metrics reporting by producing quantitative and qualitative measures of programmatic impact, control effectiveness, and emerging risk to keep Data Protection leadership informed of challenges and progress.
  • Support the long-term data protection strategy by working with risk teams to measure control effectiveness, address changes in global laws and regulations, and harden Coinbase's security posture against evolving data threats.

What we look for in you:

  • 3+ years of security engineering experience with direct, hands-on implementation of enterprise DLP programs, including testing, tuning, and deploying data prevention controls across multiple OS environments and decentralized datasets.
  • Demonstrated experience building and operating insider threat and data protection technologies (SIEM, UBA, DLP, endpoint detection), with an understanding of the investigation and intelligence lifecycle.
  • Proficiency in creating scalable, automated security processes, with practical experience leveraging ML/AI tooling to maximize operational efficiency across DLP engineering and operations.
  • Working knowledge of the insider threat landscape and the legal, regulatory, and ethical considerations of handling sensitive data across a global enterprise, with the ability to communicate findings clearly through briefs and assessments for leadership.
  • Utilizes generative AI responsibly, maintaining human oversight to deliver business-ready outputs and drive measurable improvements in workflow efficiency, cost, and quality.

Pay Transparency Notice:

  • Base salary varies by location (see range below). Total compensation may also include equity and bonus eligibility, and benefits (medical, dental, vision, 401(k)). Annual base salary range (excluding equity and bonus): $144,500—$170,000 USD.
  • Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law.

Questions about this role

What is the remote work policy for this role?

Coinbase operates as a remote-first company, though it is not remote-only. Employees are expected to attend quarterly in-person working sessions called “surges.”

What level of experience is required for this position?

Candidates should have at least three years of security engineering experience, specifically with direct, hands-on implementation of enterprise DLP programs.

How do I apply for this job?

The provided job description does not include specific application instructions, but typically you would apply through the company's career portal.

Similar jobs

Before you apply

  • Legitimate employers never ask you to pay anything to apply or get hired.
  • Never share seed phrases or private keys. No real job needs them.
  • Do not install software ("test tasks", "trading tools", "video call clients") sent during hiring.
  • Check that the application page's domain really belongs to Coinbase.