Job Description
Job Title: Security Engineer (Hybrid - Rockville, MD or Tysons, VA, 3 days onsite)
\n
\n
About the Role:
\n
Join our Data Protection team as a Security Engineer, working closely with a small, focused team of two. This role involves heavy engineering responsibilities managing and evolving security tools related to data classification, Data Loss Prevention (DLP), and email routing rules. You will play a critical role in protecting enterprise systems and data across cloud environments and email platforms.
\n
\n
Key Responsibilities:
\n
- \n
- Design, implement, and maintain controls that safeguard enterprise systems and data from unauthorized access or loss.
- Develop and tune custom rules in protection and monitoring tools to meet regulatory and business needs.
- Troubleshoot and resolve issues across various security platforms and IT systems independently.
- Lead or support security technology projects, including email security platforms and cloud security controls.
- Administer enterprise email platforms (Google Workspace Gmail, Secure Email Gateways) to prevent phishing, malware, and data exfiltration.
- Manage and optimize AWS security controls such as IAM, CloudTrail, GuardDuty, and Security Hub.
- Drive data classification and labeling initiatives and integrate with DLP technologies.
- Manage and refine DLP policies across multiple platforms and communication channels.
- Support compliance efforts, including audits and documentation.
- Ensure consistent deployment, configuration, and lifecycle management of security tools.
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
Must-Have Qualifications:
\n
- \n
- Strong engineering background in security and operational tooling.
- Expertise in Data Security, especially DLP and data classification.
- Experience securing both Google Cloud Platform (GCP) and AWS environments.
- Hands-on experience with at least one of the following:
- Integrated cloud email security solutions (e.g., Abnormal, Sublime, Avanan)
- Secure Email Gateway solutions (e.g., Proofpoint, Barracuda, Mimecast)
\n
\n
\n
\n
\n
\n
\n
\n
Nice to Have:
\n
- \n
- Experience with Proofpoint, AI technologies, and Regex scripting.
\n
\n
\n
Preferred Experience:
\n
- \n
- 6+ years in information security with a focus on engineering or cyber operations.
- Extensive hands-on work with:
- Email platforms (Google Workspace/Gmail, Secure Email Gateways, SMTP, Microsoft Exchange)
- AWS security services (IAM, CloudTrail, GuardDuty, Security Hub)
- Data protection tools (DLP, classification, labeling)
- Proven track record supporting enterprise data classification and labeling rollouts.
- Deep understanding of security engineering principles, network and system controls, identity and access management, and security protocols.
\n
\n
\n
\n
\n
\n
\n
\n
\n
Key Skills:
\n
- \n
- Email Security Management (Google Workspace)
- Data Protection (DLP, Data Classification)
- Endpoint DLP Management and troubleshooting (Mac/Windows)
- AWS Data Security Controls
\n
\n
\n
\n
\n
\n
Ideal Candidate Profile:
\n
- \n
- Not an email administrator or firewall/network engineer by trade, but someone who has transitioned into a security engineering role with strong tool engineering and DLP expertise.
- Demonstrates practical experience beyond tool usage, able to speak confidently about policy creation, feature engineering, and operational security.
\n
\n
\n
\n
Location: Rockville, MD or Tysons, VA (Hybrid, 3 days onsite)
\n
\n
If you are an experienced security engineer passionate about data protection and cloud security, ready to drive impactful changes in a collaborative environment, apply today to join our team!
