Principal Security Engineer, AI & Copilot Data Protection

Northern Trust

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
Chicago, IL
Salary
$137,400–$233,600 / yr
Posted
134 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $180k
This role $186k
$120k most similar roles pay here $246k

This role pays more than 59% of similar roles. Most pay $151,493–$209,500 — the shaded band above. At the midpoint, this role pays about $186k versus about $180k for comparable roles.

Based on 240 similar postings.

Employer

About Northern Trust

Northern Trust is a leading provider of wealth management, asset servicing, asset management, and banking services to corporations, institutions, and high-net-worth individuals. Industry: Financial Services & Asset Management

Northern Trust currently has 48 open roles on FindRole.

Listed pay typically runs $114,500–$194,700 across 43 roles with salary data.

Most-posted roles

View all roles at Northern Trust

At a glance

TL;DR · Principal Security Engineer, AI & Copilot Data Protection

As a Principal Security Engineer within the Cyber Team, you will lead the technical strategy, architecture, and operationalization of AI-driven data protection and compliance controls. You will serve as the primary authority on securing Microsoft 365 Copilot and enterprise AI capabilities by designing durable patterns for LLM-enabled workflows. Your daily responsibilities include hardening platform configurations, managing information protection labeling, implementing DLP and endpoint protections, and performing DSPM to remediate oversharing. You will build monitoring systems for high-risk usage patterns and translate complex threat models into enforceable technical controls. To succeed, you must possess expertise in Microsoft Purview, Defender, Entra ID, and scripting tools like PowerShell or Python. This role addresses the critical challenge of mitigating AI-specific risks, such as prompt injection and data exfiltration, while ensuring secure, scalable productivity within a regulated environment.

What does a Security Engineer earn?

Median $185250 from 84 postings across 39 companies.

See salary data

What you'll do

  • Lead the technical strategy, architecture, and operationalization of AI data protection controls across Microsoft Purview and Defender.
  • Define durable, repeatable security patterns for LLM-enabled workflows and Copilot platform configurations.
  • Design and implement information protection, DLP, and insider risk management controls specifically for AI scenarios.
  • Develop monitoring, alerting, and automated responses for high-risk or abnormal AI usage patterns.
  • Translate complex AI threat models into enforceable technical controls that meet regulatory and audit requirements.
  • Manage the security of Copilot features including web grounding, agents, plugins, and permission inheritance.
  • Perform data security posture management (DSPM) to detect and remediate oversharing in AI environments.
  • Provide expert guidance on Zero Trust alignment and broader corporate AI governance initiatives.

What we're looking for

  • Bachelor's degree or equivalent experience in cybersecurity, engineering, or a related field.
  • Extensive hands-on experience with Microsoft Purview and Microsoft Defender (including Cloud Apps).
  • Strong background in data protection, DLP technologies, and enterprise information security.
  • Proven scripting and automation capability using PowerShell, Python, or Power Automate.
  • Experience operating within formal incident, problem, and change management processes like ServiceNow.
  • Deep knowledge of LLM security fundamentals, threat modeling, and AI governance concepts.
  • Familiarity with M365 services including SharePoint Online, Teams, Exchange, and Entra ID.
  • Authorized to work.

More like this

Similar roles

Principal Security Engineer

Oracle

Switzerland 76 days ago $106,300$234,600
Hardware Security Firmware x86 ARM UEFI Root of Trust Secureboot Cryptography Intel SGX C C++ Java Python Ruby Go Rust Assembly CICD SPDM SmartNICs
8+ yrs exp

Principal Security Engineer

JPMorgan Chase

Seattle, WA 25 days ago
AI Security Engineering Kubernetes Container Security CI/CD Endpoint Protection anti‑virus Product Management Automation

Principal Security Engineer

Microsoft

16 days ago $142,800$274,800
Threat Modeling Security Architecture Automation Distributed Systems APIs Risk Management Cyber Security Anomaly Detection Security Assessment Reference Architecture
6+ yrs exp

Principal Security Engineer Manager

Microsoft

22 days ago $142,800$274,800
C C++ Windows Azure Penetration Testing Security Research Automation Code Review OS Security Agentic Systems
6+ yrs exp Hybrid

Principal Embedded Security Engineer

Motorola Solutions

Los Angeles, CA 95 days ago $180,000$260,000
C/C++ Linux AES TLS SSL IPsec MACsec VPN DMVPN HMAC DSA Python FIPS 140-3 CSfC NIST
10+ yrs exp Hybrid

Principal Product Security Engineer

Johnson & Johnson

Remote (Santa Clara, CA) 23 days ago $118,000$203,550
Threat Modeling Vulnerability Management Penetration Testing CVSS SBOM Cloud Security AWS Azure C C++ C# Java Python Cryptography Secure Boot ISO 14971 AAMI TIR57 IEC 62304 IEC 81001-5-1 HIPAA GDPR HITRUST ISO 27001 OWASP Top 10 SOC 2 FedRAMP
8+ yrs exp Remote