Information Security Engineer at Deel ensuring cybersecurity for global operations. Act as SME in implementing security tools and frameworks across remote endpoints and cloud assets.
Responsibilities
Act as the Subject Matter Expert (SME) for Endpoint Detection and Response (EDR) tools and processes, including optimizing configurations and policies, developing custom threat detection rules, and proactively improving Deel’s overall security posture for remote endpoints (macOS and Windows) and cloud assets (e.g., VMs).
Configure, manage, and tune the full suite of security policies within Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), and Zero Trust Network Access (ZTNA). Assist remote colleagues with a seamless experience by troubleshooting end-user issues as needed.
Continuously improve SaaS security posture using SaaS Security Posture Management (SSPM) tools and related processes. Collaborate with diverse application owners to understand security controls and remediate configuration drift across our wide range of SaaS applications from baseline.
Develop rigorous review, approval, policy enforcement, and auditing processes for browser extensions and third-party OAuth applications for SaaS platforms such as Google Workspace, GitHub, Jira, etc., to meet security and privacy standards.
Design, implement, and audit security policies for enterprise browsers (e.g., Island, Chrome Enterprise), including controlling access to sensitive web applications, configuring data loss prevention (DLP), ZTNA, and ensuring a secure web browsing experience.
Manage DLP policies across endpoints, network, SaaS applications, and cloud assets, directly supporting the "Crawl-Walk-Run" program phases. Ensure DLP policies comply with diverse data sovereignty, privacy (GDPR, CCPA, etc.), and national regulatory requirements.
Run vulnerability management programs for endpoints and servers and ensure they are patched according to policy in collaboration with stakeholders.
Requirements
5+ years of experience in cybersecurity
Hands-on experience with security tools such as EDR, SWG, CASB, ZTNA, and DLP
Familiarity with cybersecurity frameworks and best practices such as MITRE, NIST, CIS, ISO 27001, and SOC
Experience collaborating with internal stakeholders to roll out enterprise security solutions
Ability to use cloud platforms such as AWS, GCP, and Azure to host security tooling. Experience using SIEM to query security telemetry is a plus.
Experience managing secure email gateways is a plus
Excellent English, both verbal and written
CISSP is a plus
Benefits
Stock grant opportunities depending on role, employment status, and location
Additional perks and benefits based on employment status and country
Flexible remote work, including optional WeWork access
Security director at Intact, an insurer, protecting customer and broker digital channels and third - party risk platforms. Leading technical teams, governance, strategy, and security operations.
Information Security Advisor conducting cyber - risk assessments and contract reviews for Sun Life, a global financial - services company. Advising business and technology teams on security controls, compliance, and risk remediation.
Enterprise Security Architect securing technology for Vancity, a member - owned Canadian credit union. Designing enterprise application security frameworks, controls, and risk - based cybersecurity solutions.
Director leading IT and cybersecurity operations for the Azrieli Foundation, a Canadian philanthropic organization. Assessing technology risks, overseeing infrastructure, vendors, incident response and executive technology strategy.
Data Security Specialist protecting Sun Life’s financial - services data through DLP, CASB and insider - threat programs. Investigating cyber risks and advancing enterprise data protection.
Senior SaaS Security Manager protecting RBC’s banking platform from third - party cloud risks. Leading controls, vulnerability management, compliance, and security transformation initiatives.
Développeur.euse sécurité cloud protégeant l’infrastructure de nesto, plateforme de financement hypothécaire canadienne. Conception de contrôles cloud, automatisation DevSecOps et réponse aux incidents.