We Break the Attack Chain
Senior Security Engineer
Location
Colombia
Posted
5 days ago
Salary
0
Seniority
Senior
Job Description
Senior Security Engineer
Fortra
Role Description As a hands-on technical role, the Senior Security Engineer will own the implementation and operational maturity of Fortra’s enterprise Data Loss Prevention program. Working closely with the Lead Security Architect and stakeholders across the organization, you will evaluate, learn, configure, and deploy DLP technologies across endpoints, cloud services, email, networks, and collaboration platforms. You will take new capabilities from initial evaluation and pilot through production rollout, policy tuning, and ongoing improvement. You will be expected to independently develop expertise in new DLP products and become a trusted internal subject-matter expert. The role will translate business, regulatory, and data-protection requirements into scalable technical controls that protect Fortra’s intellectual property, customer information, and regulated data while minimizing unnecessary disruption to employees. Success in this role requires strong technical ownership, self-directed learning, sound engineering judgment, and the ability to deliver complex security capabilities across a global organization. - Own the technical implementation, configuration, maintenance, and ongoing improvement of Fortra’s enterprise DLP platforms. - Partner with the Lead Security Architect to design and implement DLP controls across endpoint, cloud, email, network, and collaboration environments. - Build expertise in new DLP technologies and serve as the primary technical subject-matter expert for their configuration, integration, deployment, and support. - Collaborate with cross-functional stakeholders such as Legal, HR, Risk and Compliance to define data classification schemas, sensitive data discovery profiles and effective DLP rulesets. - Design, test, deploy, and tune DLP policies to maximize risk reduction while minimizing false positives, unnecessary user friction, and operational disruption. - Implement detection and protection methods such as sensitivity labels, sensitive-information types, regular expressions, dictionaries, exact data matching, document fingerprinting, and source-code detection. - Integrate DLP controls with endpoint-management, identity, Microsoft 365, cloud, email, network, and collaboration platforms. - Integrate DLP alerts and telemetry with SIEM, SOAR, case-management, and incident-response platforms to support centralized monitoring and investigation. - Monitor platform health, endpoint-agent coverage, connector status, policy effectiveness, product upgrades, and other indicators required to maintain reliable protection. - Establish and maintain technical standards, implementation guides, operating procedures, runbooks, test plans, rollback procedures, and knowledge articles. - Serve as the technical escalation point for complex data-exposure events, platform issues, policy failures, and suspected data-loss incidents. - Develop dashboards, key performance indicators, and risk metrics that demonstrate program coverage, operational performance, user impact, and risk reduction to technical and senior leadership audiences. - Partner with Security Awareness and business teams to develop targeted guidance and user coaching based on recurring DLP policy violations and data-handling risks. - Work with vendors to resolve product issues, understand product roadmaps, evaluate new capabilities, and ensure that Fortra receives appropriate value from its DLP investments. - Build productive relationships with internal teams and serve as a trusted advisor on DLP controls, data-protection risks, and practical risk-mitigation options. - Other duties as assigned. Qualifications - Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience). - 5+ years of experience in Security, IT Operations, or related roles with at least 2 years managing, deploying or leading enterprise-grade DLP, CASB, information-protection, or data-classification technologies (e.g., Microsoft Purview, Forcepoint, ZScaler, Digital Guardian). - CISSP or equivalent, and Microsoft certifications such as SC-401 are considered a plus. - Understanding of data-classification methods, sensitivity labels, structured and unstructured data discovery, regular expressions, exact data matching, document fingerprinting, and policy tuning. - Experience taking a DLP control from evaluation or proof of concept through enterprise production deployment. - Familiarity with regulatory frameworks and privacy standards (e.g. GDPR, PCI-DSS). - Experience balancing preventive security controls with user experience and operational requirements. - Ability to identify risks in business processes and communicate IT risks in clear, business-relevant terms. - Capable of taking ownership and executing projects and initiatives independently. - Proficiency in programming or scripting languages is a plus. - Strong interpersonal skills with a demonstrated ability to build relationships and communicate effectively with internal stakeholders and external vendors. - Experience with M&A activity, global risks, and software development practices. - Advanced analytical and problem-solving capabilities. - Collaborative team player with excellent communication and interpersonal skills. Benefits - Competitive benefits and salaries. - Personal and professional development opportunities. - Flexibility. - Much more!
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Principal Security Consultant – IT, OT
Binary DefenseReal people detecting real threats in real time.
• Provide senior technical expertise across security operations, detection, analysis, and incident response in both IT and OT environments. • Co-lead the client's Security Operations function, providing direction, escalation support, and continuity across the operations lifecycle. • Communicate and collaborate through the full lifecycle of escalated events and investigations. • Lead and contribute to IT and OT incident response efforts, including delivery of associated workshops and assessments, creation of workflows and handbooks, and maintenance of a high-level incident response plan spanning both IT and OT. • Own and lead the client's Vulnerability Management Program end to end, including prioritization, remediation coordination, and program reporting. • Develop and mature IT and OT threat detections, collaborating across organizational lines to implement proposed changes. • Contribute to, write, and quality-control standard operating procedures and playbooks for IT and OT security operations. • Support development of high-level metrics, reporting, and KPIs/KRIs reflecting inputs from security, intelligence, and threat hunting operations. • Lead the client's overall Security Delivery meeting with their project managers, architects, consultants, and leadership team. • Lead a recurring cross-functional Security/IT relationship meeting to maintain alignment between security and broader IT stakeholders. • Participate in Asset Management Governance, representing security operations requirements in governance decisions. • Ensure security operations objectives are represented across the client's various project work streams and initiatives. • Advise on the client's IT outsourcing transition, including third-party managed-service arrangements. • Participate in IT knowledge transfer sessions with the client's IT teams and incoming service providers to preserve operational continuity.
Manager, Information Security – Risk Management, Cloud Security
Highmark HealthCreating remarkable health experiences, freeing people to be their best.
• Provide Information Security and Risk Management services for the Organization • Work with security peers, HM Health Solutions customers, and application teams to align with security needs • Manage activities of various Information Security personnel • Develop talent and address resource management • Conduct oversight of security technology products • Control expenses and meet budget goals • Contribute to ISRM strategic planning by collaborating with Directors • Lead training programs related to Information Security awareness
Security Architect – Data, Fabric & AI Security
ProArchConsulting and technology- enabled by cloud, guided by data, fueled by apps, and secured by design.
• Serve as a senior client-facing Security Architect focused on Data, Fabric, Governance, and AI Security solutions. • Lead technical discovery, architecture workshops, solution design, and pre-sales engagements for Microsoft Fabric, Purview, AI, and secure data modernization initiatives. • Design secure target-state architectures that enable trusted analytics, AI adoption, Copilot readiness, and data governance outcomes. • Advise clients on data security, identity architecture, governance controls, AI risk management, and Zero Trust principles. • Create reusable architecture patterns, standards, reference architectures, assessment methodologies, and delivery guidance to support scalable service delivery. • Act as a trusted technical advisor to clients, sales teams, delivery teams, and executive stakeholders.
• Accountable for business growth, company market share and revenue increases. • Coordinates all company sales activities in the area-of-control. • Sets quota and goals for organizations. • Develops tactics to generate new sales. • Provides input to team on overall sales strategy, cost optimization, and disciplined process management. • Ensures optimum sales coverage through direct and partner sales resources and different routes to markets. • Develops sales resources and management talent to ensure a pipeline of qualified sales talent to support future growth. • Implementation of master pipeline management. • Builds lasting, consultative relationships with customer accounts. • Proactive change management. • Coach and support sales teams and leadership in developing key and/or difficult account opportunities. • Builds long-term growth opportunities using the Account Business Planning process. • Develops the consultative, solution selling capability in their organization to develop compelling business cases to differentiate and highlight the value of the company's broad portfolio. • Ensures resource deployment encompasses end-to-end selling support.




