Information Security Engineer / Ingénieur En Sécurité De L'information | North America (est) /amérique Du Nord (est)

Deel Deel · Enterprise · Canada · R&D

Information Security Engineer responsible for designing, implementing, and optimizing core security platforms, including EDR, SWG, CASB, ZTNA, and DLP, to enhance defense-in-depth capabilities and ensure compliance with global regulatory frameworks.

What you'd actually do

  1. Act as the Subject Matter Expert (SME) for Endpoint Detection and Response (EDR) tools/process including optimizing configurations/policies, developing custom threat detection rules, and proactively improving Deel’s overall security posture for remote endpoints (Mac and Windows) and cloud assets (Eg, VMs).
  2. Configure, manage, and tune the full suite of security policies within SWG, CASB and ZTNA. Assist our remote colleague with seamless experience through troubleshooting end user issues as needed.
  3. Continuously improve SaaS security posture with SSPM tools and processes around it. Collaborate with diverse application owners, understand security control and resolve configuration drifts for our wide range of SaaS applications from baseline.
  4. Develop a rigorous review, approval, policy enforcement and auditing for browser extensions, third party OAuth applications for SaaS applications such as Google Workspace, GitHub, Jira etc to meet security and privacy standards.
  5. Design, implement, and audit security policies related to enterprise browsers (Eg, Island, Chrome Enterprise etc) including controlling access to sensitive web apps, and data loss prevention (DLP) configuration, ZTNA, secure web browsing experience but not limited to.

Skills

Required

  • Endpoint Detection and Response (EDR)
  • Secure Web Gateway (SWG)
  • Cloud Access Security Broker (CASB)
  • Zero Trust Network Access (ZTNA)
  • Data Loss Prevention (DLP)
  • Security Service Provider Management (SSPM)
  • Browser extension security
  • OAuth application security
  • Enterprise browser security
  • Vulnerability management
  • Patch management
  • AWS
  • GCP
  • Azure
  • SIEM

Nice to have

  • CISSP
  • SIEM querying

What the JD emphasized

  • 5+ years of experience in cybersecurity
  • Handson experience with security tools like EDR, SWG, CASB, ZTNA and DLP
  • Ensure DLP policies meet diverse data sovereignty, privacy (GDPR, CCPA, etc.), and national regulatory requirements.