About the Role
The Staff Security Application Engineer plays a pivotal role in designing, implementing, and maintaining enterprise network security infrastructure, with a focus on proxy and data loss prevention (DLP) solutions. This role leads control testing to ensure adherence to industry standards while working with audit and compliance teams to meet regulatory requirements.
Responsibilities
- Develops, implements, and optimizes proxy and DLP solutions to protect sensitive data and ensure secure network access.
- Serves as the subject matter expert (SME) for proxy and DLP solutions, providing strategic and technical guidance to engineering teams, stakeholders, and leadership.
- Deploys and integrates security solutions from vendors such as Microsoft, Palo Alto, and Netskope into existing and new network environments.
- Proactively collaborates with audit and compliance teams to ensure all proxy and DLP solutions comply with regulatory requirements (e.g., PCI DSS, SOX, NYDFS).
- Designs, implements, and tests security controls to meet compliance standards, ensuring alignment with governance policies.
- Oversees the health, performance, and reliability of proxy and DLP systems, proactively identifying and resolving issues.
- Consults with security and governance teams to define, implement, and enforce security policies and configurations.
- Advises the security operations team in investigating and responding to network security incidents related to proxy and DLP technologies.
- Stays abreast of emerging trends in network security and recommends new tools or processes to enhance the organization’s security posture.
- Develops and maintains detailed technical documentation, including architecture diagrams, operational procedures, control test results, and troubleshooting guides.
Requirements
- Typically, a minimum of 8 years of progressive experience in network security engineering, with at least 5 years of experience in proxy and DLP solutions.
- Experience working in or with financial institutions, with a strong understanding of regulatory and compliance requirements.
- Hands-on experience with Microsoft Defender, Palo Alto Prisma Access, and Netskope solutions.
- Proven track record of collaborating with audit and compliance teams and executing control testing.
- Deep knowledge of proxy protocols (HTTP/HTTPS, SOCKS) and DLP principles.
- Expertise in firewall configuration, secure web gateways, and SASE architecture.
- Strong scripting skills (PowerShell, Python, etc.) for automation and orchestration.
- Familiarity with Zero Trust frameworks and architectures.
- Excellent problem-solving and analytical skills.
- Effective communication and stakeholder management skills.
- Background and drug screen.
- Candidates must independently possess the eligibility to work in the United States for any employer at the date of hire.
- This position is ineligible for employment Visa sponsorship.
Skills
- Proxy and DLP solutions
- Microsoft Defender
- Palo Alto Prisma Access
- Netskope
- Proxy protocols (HTTP/HTTPS, SOCKS)
- DLP principles
- Firewall configuration
- Secure web gateways
- SASE architecture
- Scripting (PowerShell, Python, etc.)
- Zero Trust frameworks
Location
- Scottsdale
- San Francisco
- Chicago
- New York
- Phoenix, AZ
Work Type
- Hybrid
Experience Level
- Minimum of 8 years of progressive experience in network security engineering
- At least 5 years of experience in proxy and DLP solutions
Education Level
- Bachelor's degree in computer science, Information Technology, or related technical field
- Certified Information Systems Security (CISSP)
- Palo Alto PCNSE
- Microsoft SC-200
- Netskope Certified Cloud Security Administrator (NCCSA) or similar
Salary/Compensations
- $149,000 - $182,000 (Phoenix, AZ/ Chicago, IL)
- $178,000 - $218,000 (San Francisco, CA)
Benefits
- Discretionary incentive plan
- Competitive medical (PPO/HDHP), dental, and vision plans
- Company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA)
- 401(k) Retirement Plan with 100% Company Safe Harbor Match on your first 6% deferral
- Flexible Time Off for Exempt employees
- Generous PTO for Non-Exempt employees
- 11 paid company holidays
- Paid volunteer day
- 12 weeks of Paid Parental Leave
- Maven Family Planning support
About the Company
- Early Warning has powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more.
- As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.
Equal Opportunity
- Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
- Early Warning Services, LLC (“Early Warning”) considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws.
- The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.
