Information Security Engineer at Deel ensuring cybersecurity for global operations. Act as SME in implementing security tools and frameworks across remote endpoints and cloud assets.
Responsibilities
Act as the Subject Matter Expert (SME) for Endpoint Detection and Response (EDR) tools and processes, including optimizing configurations and policies, developing custom threat detection rules, and proactively improving Deel’s overall security posture for remote endpoints (macOS and Windows) and cloud assets (e.g., VMs).
Configure, manage, and tune the full suite of security policies within Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), and Zero Trust Network Access (ZTNA). Assist remote colleagues with a seamless experience by troubleshooting end-user issues as needed.
Continuously improve SaaS security posture using SaaS Security Posture Management (SSPM) tools and related processes. Collaborate with diverse application owners to understand security controls and remediate configuration drift across our wide range of SaaS applications from baseline.
Develop rigorous review, approval, policy enforcement, and auditing processes for browser extensions and third-party OAuth applications for SaaS platforms such as Google Workspace, GitHub, Jira, etc., to meet security and privacy standards.
Design, implement, and audit security policies for enterprise browsers (e.g., Island, Chrome Enterprise), including controlling access to sensitive web applications, configuring data loss prevention (DLP), ZTNA, and ensuring a secure web browsing experience.
Manage DLP policies across endpoints, network, SaaS applications, and cloud assets, directly supporting the "Crawl-Walk-Run" program phases. Ensure DLP policies comply with diverse data sovereignty, privacy (GDPR, CCPA, etc.), and national regulatory requirements.
Run vulnerability management programs for endpoints and servers and ensure they are patched according to policy in collaboration with stakeholders.
Requirements
5+ years of experience in cybersecurity
Hands-on experience with security tools such as EDR, SWG, CASB, ZTNA, and DLP
Familiarity with cybersecurity frameworks and best practices such as MITRE, NIST, CIS, ISO 27001, and SOC
Experience collaborating with internal stakeholders to roll out enterprise security solutions
Ability to use cloud platforms such as AWS, GCP, and Azure to host security tooling. Experience using SIEM to query security telemetry is a plus.
Experience managing secure email gateways is a plus
Excellent English, both verbal and written
CISSP is a plus
Benefits
Stock grant opportunities depending on role, employment status, and location
Additional perks and benefits based on employment status and country
Flexible remote work, including optional WeWork access
Consultant cybersécurité hybride à Montréal chez I - TRACING, pure - player indépendant en sécurité informatique. Conception, déploiement et support de solutions IAM, réseau, systèmes et applications.
Desjardins property technician supporting fire prevention, building safety, management, and build - out projects. Providing technical support, process coordination, user training, and operational guidance.
Ingénieur sécurité principal protégeant l'infrastructure, les produits et les données de Shakepay, plateforme canadienne de services financiers bitcoin. Automatisation, IA, détection et réponse aux incidents.
Senior Application Security Researcher advancing AI - driven application security from prompt to production. Building detection systems and autonomous agentic penetration - testing capabilities.
Regional Health & Safety Manager leading health, safety, and regulatory compliance for GFL’s environmental services operations in Quebec. Conducting audits, incident management, training oversight, and regional site visits.
Information Security Student supporting vulnerability management and cloud security at Nasdaq Verafin. Assisting with remediation, security posture enforcement, and cloud environment protection.
Senior Principal Security Architect shaping enterprise security architecture for Invesco, a global investment - management firm. Leading cloud, identity, network, data - protection, and risk initiatives.