1

Data Center Security Jobs in Boston, MA (NOW HIRING)

Data Center Systems Management: * Manage critical facility systems including HVAC, electrical power distribution, fire/life safety, security systems, UPS, and emergency generators * Execute ...

... Data Center/Security), Cisco DevNet preferred. โ€ข IaC/Automation certifications: Terraform Associate, Terraform Authoring and Operations Professional, Red Hat Enterprise Ansible certifications ...

As a Senior Manager, Data Center Operations, you will be responsible for: * Managing a team of ... Security : Neutralizing threats before they ever reach your data. Content Delivery : Scaling the ...

next page

Showing results 1-20

Data Center Security information

See Boston, MA salary details

$17

$24

$59

How much do data center security jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for data center security in Boston, MA is $24.99, according to ZipRecruiter salary data. Most workers in this role earn between $18.56 and $19.86 per hour, depending on experience, location, and employer.

What is a data center security?

A Data Center Security job involves protecting physical and digital assets within a data center from unauthorized access, cyber threats, and other security risks. Responsibilities often include monitoring surveillance systems, enforcing access controls, responding to security incidents, and ensuring compliance with security policies. Professionals in this role work closely with IT and security teams to safeguard critical infrastructure and sensitive information. Effective data center security helps prevent breaches, downtime, and data loss, ensuring seamless operations.

What are the key skills and qualifications needed to thrive in data center security, and why are they important?

To thrive as a Data Center Security professional, you need a solid understanding of physical security protocols, access control, surveillance systems, and often relevant experience or certifications such as CPP (Certified Protection Professional) or CompTIA Security+. Familiarity with tools like CCTV systems, badge readers, intrusion detection systems, and security information management software is essential. Strong attention to detail, problem-solving ability, and effective communication skills are crucial for managing incidents and collaborating with IT and facilities teams. These skills are vital for maintaining a secure environment, ensuring regulatory compliance, and protecting critical data center assets.

What are some common challenges faced by data center security professionals on the job?

Data Center Security professionals often face the challenge of balancing strict physical and digital access protocols with the need for operational efficiency. They regularly monitor for potential security breaches, investigate suspicious activity, and respond quickly to incidents, sometimes outside of regular business hours. Additionally, they must stay updated on evolving security threats and compliance requirements. Effective teamwork and communication with IT, facilities, and external vendors are key to ensuring comprehensive protection. Staying proactive and adaptable in this role helps prevent security lapses and supports the data center's reliable operation.

How much do data center security guards make?

Data center security guards typically earn between $12 and $20 per hour, with annual salaries ranging from approximately $25,000 to $40,000. Compensation varies based on experience, location, and certifications such as CPR or security licenses, and the role often requires shift work and surveillance skills.

How much does a data center security manager make?

A data center security manager typically earns between $80,000 and $130,000 annually, depending on experience, location, and the size of the data center. The role often requires knowledge of security protocols, access control systems, and relevant certifications such as CISSP or CISM.

What does security do at a data center?

A data center security professional is responsible for protecting the facility's physical and digital assets by monitoring access, implementing security protocols, and responding to security incidents. They often use surveillance systems, access control tools, and may hold certifications like CompTIA Security+ or CISSP to ensure effective security management.

What are the most commonly searched types of Data Center Security jobs in Boston, MA?

The most popular types of Data Center Security jobs in Boston, MA are:

Infographic showing various Data Center Security job openings in Boston, MA as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 12% Part Time, and 4% Contract. Highlights an 86% Physical, 4% Hybrid, and 10% Remote job distribution, with an average salary of $51,970 per year, or $25 per hour.

Lead / Principal Security Engineer (Local to MA)

Lorvenk Technologies LLC

Boston, MA โ€ข On-site

Other

Posted 9 days ago


Job description

Role: Lead / Principal Security Engineer

Location: Boston, MA 3 days/week onsite (Need only locals)

Exp: 14+ Yrs

Interview: In-person

Duration: Long Term

Need to have very strong experience securing AWS environments

Need to have experience with Agentic/Generative AI security

Candidate must be local to MA and possess a valid MA DL

POSITION SUMMARY: This is a unique opportunity for a strong technologist to be one of the founding member of the team building a strategic data and AI platform from scratch for a well-established bank
Security Engineering Lead will lead and execute cybersecurity engineering across our existing on-premises infrastructure, new AWS cloud environment, Snowflake data platform, and emerging AI application ecosystem.
This is not a pure oversight or policy role. The primary need is a senior technical security practitioner who can hands-on design, build, harden, implement, troubleshoot, and continuously improve security controls. The role will manage and mentor a small team of talented security engineers, but the individual must remain deeply hands-on and comfortable acting as the senior technical architect executor for cybersecurity engineering.
The ideal candidate has strong financial services experience, has previously helped secure a new AWS environment from the ground up, understands traditional infrastructure and data center security, and can help the Bank safely adopt cloud, data, and AI technologies.

Key Responsibilities 1. Security Engineering & Architecture
Own the design, implementation, and continuous improvement of security controls across infrastructure, cloud, applications, data platforms, and AI solutions.
Responsibilities include:

  • Design and implement practical security architectures for on-premises systems, AWS, Snowflake, and internally developed AI applications.
  • Translate cybersecurity standards and risk requirements into deployable technical controls.
  • Build secure-by-design patterns for identity, network segmentation, encryption, logging, monitoring, endpoint protection, vulnerability management, and access governance.
  • Serve as a senior technical security advisor to infrastructure, engineering, data, AI, and vendor teams.
  • Evaluate new technologies and ensure security requirements are embedded early in design and delivery.
  • AWS security is a critical part of this role. AWS defines cloud security as a shared responsibility model, where AWS is responsible for security of the cloud and customers are responsible for security in the cloud. This role will own the Bank s side of that responsibility across identity, networking, data protection, monitoring, governance, and workload security.
  1. AWS Cloud Security
    Lead the security design and implementation for the Bank s new AWS environment.
    Responsibilities include:
  • Secure a new AWS environment from initial design through operationalization.
  • Implement multi-account security patterns, IAM controls, least privilege access, SCPs, logging, monitoring, encryption, secrets management, vulnerability scanning, and network segmentation.
  • Design secure VPC, subnet, routing, security group, and NACL patterns.
  • Implement controls across services such as IAM, Organizations, CloudTrail, CloudWatch, GuardDuty, Security Hub, Config, KMS, Secrets Manager, Macie, Inspector, S3, Lambda, RDS, EC2, ECS/EKS as applicable.
  • Partner with infrastructure and engineering teams to embed security into CI/CD, IaC, cloud provisioning, and operational support.
  • Establish AWS security baselines and exception management processes.
  • AWS specifically highlights data protection, encryption in transit, IAM, infrastructure security, security groups, subnet controls, resilience, and compliance validation as part of managing security responsibilities for Amazon VPC.
  1. On-Premises Infrastructure & Data Center Security
    Own security engineering for the Bank s existing data center and infrastructure environment.
    Responsibilities include:
  • Maintain and improve controls across servers, endpoints, firewalls, networks, Active Directory, privileged access, remote access, vulnerability management, patching, EDR, SIEM/logging, backup security, and segmentation.
  • Strengthen identity and access controls across Microsoft/Windows environments.
  • Support remediation of audit findings and security gaps across existing infrastructure.
  • Partner with IT operations to ensure cybersecurity controls are practical, sustainable, and operationally reliable.
  • Help modernize legacy security patterns while reducing operational risk.
  1. Snowflake & Data Platform Security
    Support the secure implementation and operation of Snowflake and the Bank s broader data platform.
    Responsibilities include:
  • Design and review Snowflake access controls, role hierarchy, authentication, MFA/SSO integration, network policies, data classification, masking, row-level access, and audit logging.
  • Partner with data engineering and analytics teams to ensure sensitive banking data is protected appropriately.
  • Support security patterns for data ingestion, transformation, sharing, and reporting.
  • Ensure appropriate monitoring, alerting, and governance around privileged access, service accounts, and data movement.
  • Snowflake experience is strongly preferred; direct implementation experience is a major plus.
  1. AI Security
    Lead security work for internally developed AI applications and AI-enabled business capabilities.
    Responsibilities include:
  • Define and implement security guardrails for AI applications, including RAG, chatbots, AI agents, document intelligence, and internally developed AI tools.
  • Address AI-specific risks such as prompt injection, data leakage, insecure output handling, excessive agency, model misuse, unsafe integrations, and sensitive information exposure.
  • Partner with AI/data engineering teams to secure model access, data flows, vector stores, APIs, plugins/tools, and application permissions.
  • Establish controls for AI application logging, monitoring, testing, human review, access governance, and incident response.
  • Monitor external AI-enabled cyber threats, including phishing, social engineering, malware generation, deepfakes, and adversarial automation.
  • AI security is now a distinct discipline. The OWASP Top 10 for LLM Applications identifies risks such as prompt injection, insecure output handling, training data poisoning, model denial of service, supply chain vulnerabilities, and sensitive information disclosure. NIST has also published a Generative AI Profile under its AI Risk Management Framework to help organizations identify and manage risks unique to generative AI.
  1. Team Leadership & Mentorship
    Manage a small team of approximately two security engineers while remaining hands-on.
    Responsibilities include:
  • Provide technical direction, mentoring, and daily guidance to security engineers.
  • Help upskill the team in AWS, Snowflake, AI security, automation, and modern security engineering practices.
  • Assign work, review technical outputs, and ensure timely execution of security initiatives.
  • Build a culture of ownership, urgency, documentation, and practical risk reduction.
  • Act as manager, lead and senior individual contributor.
  1. Audit, Risk & Vendor Management
    Serve as the technical cybersecurity point of contact for internal security audit, regulatory exams, and vendor security matters.
    Responsibilities include:
  • Face off with Security Audit, Risk, Compliance, and regulatory stakeholders.
  • Provide evidence, explanations, remediation plans, and technical responses for audit findings.
  • Translate audit and regulatory requirements into specific technical actions.
  • Support vendor security assessments, third-party reviews, and ongoing vendor oversight.
  • Review vendor security architecture, access models, SOC reports, control gaps, and remediation plans.
  • Partner with the Information Security Officer, IT leadership, and business stakeholders to ensure cybersecurity controls meet banking expectations.

Required Qualifications

  • 8+ years of hands-on cybersecurity experience, with significant experience in security engineering, cloud security, infrastructure security, or security architecture.
  • Prior experience in financial services, banking, fintech, payments, lending, insurance, or another regulated financial environment is required.
  • Proven experience securing and operationalizing an AWS environment, ideally from early-stage setup or greenfield implementation.
  • Strong hands-on knowledge of AWS security services, IAM, networking, encryption, logging, monitoring, and cloud governance.
  • Strong understanding of on-premises infrastructure security, including Windows/Active Directory, network security, endpoint security, vulnerability management, privileged access, and SIEM/logging.
  • Practical experience designing and implementing security controls, not just reviewing policies or writing standards.
  • AI security experience, especially securing LLM-based applications, RAG systems, AI agents, internal AI tools, or AI-enabled workflows
  • Demonstrated ability to lead, mentor, and manage a small technical security team.
  • Experience supporting audits, regulatory exams, security assessments, and evidence collection.
  • Strong communication skills with the ability to explain technical security matters to IT, audit, risk, vendors, and senior leadership.
  • Independent, self-directed working style with the ability to own outcomes without heavy supervision.

Strongly Preferred Qualifications

  • Snowflake security experience, including RBAC, masking policies, row access policies, network policies, SSO, logging, and data governance.
  • Experience with secure software development, DevSecOps, CI/CD security, SAST/DAST/SCA, secrets scanning, container security, and infrastructure-as-code security.
  • Experience with AWS Control Tower, Organizations, SCPs, GuardDuty, Security Hub, Config, IAM Identity Center, KMS, Macie, Inspector, CloudTrail, and CloudWatch.
  • Experience with Microsoft security ecosystem, including Entra ID, Defender, Purview, Intune, Sentinel, or related tools.
  • Security certifications such as CISSP, CCSP, AWS Certified Security Specialty, CISM, GIAC, or equivalent practical experience.

Desired Technical Skills

  • AWS security architecture and operations
  • IAM, least privilege, privileged access management
  • Network security, firewalls, segmentation, VPN, zero trust concepts
  • Active Directory and Microsoft security controls
  • Endpoint detection and response
  • Vulnerability management and patch governance
  • SIEM, logging, alerting, and incident response
  • CloudTrail, GuardDuty, Security Hub, Config, KMS, Macie, Inspector, Crowd Strike
  • Snowflake access control and data protection
  • AI/LLM application security
  • Secure SDLC and DevSecOps
  • Vendor security reviews
  • Audit evidence and remediation management
  • Security automation and scripting