Senior Cloud Engineer
FiveskyAbout the role
Are you a cloud security expert with a passion for designing and securing cutting-edge cloud environments? Do you want to help transform financial platforms by leading high-impact cloud security architecture across Azure and AWS? If so, then you might be Fivesky’s next Cloud Security Architect!
Who you are:
-
Experienced in Data Loss Prevention (DLP), cloud integration, and security architecture across enterprise environments.
-
Deeply familiar with networking, firewalls, and data protection technologies, and able to troubleshoot issues across application and transport layers.
-
Capable of automating security processes using scripting languages and developing workflows for incident detection, alerting, and remediation.
-
A strong collaborator who can partner with Operations and Network teams to deliver secure, stable, and scalable enterprise environments.
- Bachelor's Degree is required in Computer Science, Computer Information Systems, or Electrical Engineering.
It would be awesome if you had:
-
Expertise in architecting and engineering DLP solutions integrated across user, network, and cloud environments.
-
Knowledge of Cloud Access Security Brokers (CASB/MCAS), Active Directory, and TLS encryption for enterprise data protection.
-
Experience performing DLP installations, upgrades, health checks, and policy fine-tuning to reduce false positives.
-
Hands-on familiarity with network traffic analysis, VPN tunneling, NAT, and proxy configurations (PAC, ICAP, etc.).
-
A track record of designing and implementing automated, scalable security controls aligned to evolving business and compliance needs.
What you will do:
-
Implement security controls in an enterprise environment and develop security solutions for information protection.
-
Architect and engineer DLP solutions across the enterprise environment and integrate DLP controls across user environments.
-
Advise on Data Loss Policy development and configure DLP policies to prevent data loss in email and web traffic.
-
Perform DLP installations and upgrades in production, and conduct health checks and performance assessments.
-
Create deployment workflows and publish procedural documentation and fixes in the knowledge base.
-
Configure network scans to identify and quarantine sensitive data at rest on DLP detection servers.
-
Generate EDM fingerprints and integrate them into detection rules for exact data match capabilities.
-
Extend DLP capabilities to cloud applications using MCAS/CASB for monitoring protected data in motion and at rest.
-
Automate security procedures using scripting languages based on the operating system in use.
-
Configure detection server routing through specific TCP ports and build DLP detection rules for endpoint monitoring.
-
Set up prevent actions for HTTP/S, FTP, SMTP, SMB, SFTP, etc., including web block, encryption, and quarantine responses.
-
Troubleshoot network issues involving firewalls, proxies, gateways, and routing at multiple network layers.
-
Develop PAC files and ICAP configurations for proxy routing and Network Prevent servers.
-
Interpret network diagrams and apply knowledge of VPN, NAT, OSI model, LAN/WAN, SSL, and packet analysis for DLP architecture.
-
Configure Active Directory over TCP ports with LDAP and enable Kerberos authentication for domain access.
-
Apply group policies in Active Directory for DLP user/group exceptions and access control.
-
Generate and configure key pairs and certificates for TLS email encryption.
-
Collaborate with Operations teams to troubleshoot production issues and perform root cause analysis for data loss events.
-
Analyze network traffic logs and fine-tune detection server performance based on traffic loads.
-
Leverage SIEM tools to monitor suspicious user activity in network tr
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s