Cyber Security Engineer
Indexed description
You will have the opportunity to take ownership of specific security pillars based on your expertise.
If you are an action-oriented builder who wants to deploy modern security platforms, ensure our employees can work securely from anywhere, and maintain our fast-paced culture without friction, this role is for you.
Responsibilities:
Based on your specific expertise, you will lead or partner on the following initiatives:
- Network & Endpoint Security: Lead and optimize network architectures, including modern SASE platform, VPN configurations, and routing to ensure a seamless and highly secure Zero Trust Network Access (ZTNA).
- Take ownership of our Endpoint Security (EDR) platform, driving continuous tuning, policy hardening, and advanced Email Security suite management (including SPF/DKIM/DMARC).
- Identity & Access Management (IAM): Act as a technical authority for our IAM architecture. Define strict security policies (MFA, Conditional Access, RBAC) and work closely with IT to continuously improve our identity-first security posture.
- Cloud & SaaS Security: Monitor and maintain our cloud security posture across major CSP environments (including K8s & Containers) using CSPM tools.
- Perform rapid, pragmatic security assessments for new SaaS applications and manage SSPM configurations.
- Vulnerability Management: Own the vulnerability lifecycle for infrastructure, endpoints, and corporate software. Drive prioritization and remediation tracking in close collaboration with DevOps and IT.
- Incident Response: Support security incident response, assist in containment, contribute to post-mortem analysis, and maintain IR runbooks relevant to your domains.
- GenAI Security: Help define and enforce secure usage policies for GenAI tools (e.g., Copilot, Claude, ChatGPT) to prevent data leakage.
- 4+ years of hands-on experience in Cyber Security, Network Security, or Cloud/IT Security engineering roles.
- Deep technical expertise in AT LEAST ONE of the following core domains:
- (Network & Endpoint): Proven hands-on experience deploying and managing modern SASE/Zero Trust platforms, packet-level network protocols (TCP/IP, DNS, HTTP/S), VPN architectures, and enterprise EDR/XDR platforms.
- (Identity & Cloud): Strong technical experience designing complex Conditional Access policies in Enterprise Identity Providers (IdP), and hands-on experience managing Cloud Security Posture Management (CSPM) and SaaS security tools.
- Excellent analytical and troubleshooting skills, with the ability to quickly analyze complex connectivity issues and enforce security policies without compromising velocity for development teams.
- A pragmatic, action-oriented approach to risk management and problem-solving.
- Experience protecting SaaS systems and working with CASB & SSPM platforms.
- Familiarity with writing API scripts (Python/Bash) to automate security workflows
- Familiarity with IR processes and the ability to support containment activities when called upon.
- Experience with infrastructure and endpoint vulnerability scanning tools.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search