SRE Infrastructure Engineer - Data Loss Prevention (DLP) & Security Controls
Job Description
Job Description
SRE Infrastructure Engineer, Data Loss Prevention (DLP) & Security Controls
Atlanta, GA | Hybrid with Potential Flexibility | Long-Term Contract
**May consider remote in Eastern or Central time zone with some travel**
Take security strategies off the whiteboard and put them into production.
We’re looking for an experienced SRE / Infrastructure Engineer with strong DLP, network security and security-controls engineering experience to join a major enterprise security initiative.
This is a hands-on engineering role.
You won't be writing security policy or sitting on the sidelines advising other teams what they should implement. You'll work alongside Security Architecture and Information Security to translate security requirements into real, operational controls across infrastructure, cloud, networks, endpoints and data-protection platforms.
If you enjoy the intersection of infrastructure, networking, automation and security, this is a chance to work on meaningful problems with significant visibility across the organization.
What You’ll Be Doing
- Implementing and tuning Data Loss Prevention controls
- Translating approved security requirements into technical configurations
- Engineering firewall policies, network segmentation and ingress/egress controls
- Implementing security controls across cloud and on-prem infrastructure
- Supporting data classification and protection of sensitive information
- Building and maintaining endpoint, email, cloud/SaaS and network DLP controls
- Automating security-control implementation, testing and validation
- Identifying configuration gaps and control drift
- Troubleshooting issues spanning networking, security, infrastructure, cloud, identity and applications
- Monitoring the health and effectiveness of implemented controls
- Supporting incident response, root-cause analysis and remediation
- Building repeatable technical standards, documentation and runbooks
What We’re Looking For
We’re looking for an infrastructure/SRE engineer with strong security engineering depth, rather than someone whose career has primarily focused on security policy, governance or architecture.
You should bring:
- 5–8+ years of experience across SRE, infrastructure, systems, network, security or cloud engineering
- Strong hands-on experience supporting enterprise production environments
- Experience implementing network and infrastructure security controls
- Enterprise firewall experience, ideally Palo Alto Networks
- Strong knowledge of firewall policies, segmentation, VPNs, routing, DNS, VLANs, NAT, ports, protocols and IP networking
- Working knowledge of DLP technologies and data-protection concepts
- Understanding of protecting sensitive information including PII, PHI and PCI data
- Experience translating security architecture or policy requirements into technical implementations
- Cloud security experience, preferably within GCP
- Automation/IaC experience with tools such as Terraform, Ansible, PowerShell, Python, Bash or APIs
Experience with Microsoft Purview DLP, Microsoft Information Protection, Defender, Microsoft 365 security, Palo Alto, Cloudflare, GCP network security, endpoint DLP, email DLP or cloud/SaaS DLP will help you stand out.
Why This Role Is Interesting
Security teams often define what needs to happen. This team gets to figure out how to actually make it happen.
You'll work on business-critical initiatives with direct visibility into a broader enterprise security transformation, translating architecture and policy into secure, reliable, automated and operationally sustainable technology.
That means solving hard technical problems, working across multiple technology domains, and building controls that have to work in the real world without sacrificing reliability.
This is a long term contract opportunity based in Atlanta. The team operates in a hybrid model, with some potential location flexibility for the right DLP/security-controls engineer.
