Senior Cybersecurity Engineer
ClaycoAbout the role
About Us
Clayco is a full-service, turnkey real estate development, master planning, architecture, engineering, and construction firm that safely delivers clients across North America the highest quality solutions on time, on budget, and above and beyond expectations. With $8.1 billion in revenue for 2025, Clayco specializes in the "art and science of building," providing fast track, efficient solutions for mission critical, industrial, life sciences, power & energy, aviation, commercial, institutional, residential and sports & entertainment related building projects.
The Role We Want You For
Under the direction of the SOC Manager, the Sr. Cybersecurity Engineer is a senior technical role focused primarily on the engineering, operation, and optimization of Clayco’s Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) solutions, while also supporting the broader security control stack. The role is responsible for engineering effective, supportable, and sustainable control configurations to meet the design requirements and objectives of our security control solutions, including initial implementations, life-cycle management changes, and necessary integrations. Operation, oversight, gap remediation, and change management of the security control stack as a member of the SOC team will be included in the day-to-day responsibilities.
This role will oversee the Data Loss Prevention (DLP) & Cloud Access Security Broker (CASB) solutions for Clayco’s environment to include configuration and administration of applicable policies, alerts, data sources, and remediation of any misconfigurations. This role will also identify and remediate gaps across Clayco’s cybersecurity control set to include agent deployments, configuration changes, and tuning activities.
The Specifics of the Role
- As a member of the Cybersecurity Team, contributes however and whenever necessary to Incident Response efforts as circumstances dictate.
- Assists with management of access controls, policies, and rules configurations for firewalls, DNS Layer Security, Email Security & Fraud Defense, Web App Firewalls (WAF), as well as responds to operational issues for each.
- Operates the Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) solutions to include their administration, maintenance, support, troubleshooting, and optimization of the solutions such as:
- Endpoint, Network, and Cloud/SaaS DLP Platforms
- Host-based DLP Agents and CASB Connectors
- Required Integrations (CASB, SaaS APIs, Identity Provider, SIEM/SOAR)
- Data Classification & Sensitive Data Discovery Inputs
- Conducts regularly scheduled and ad-hoc data discovery and policy scans across endpoints, network, and cloud/SaaS applications, ensuring that high-fidelity DLP and CASB detection data is successfully and reliably ingested into the Incident Management & Workflow Platform in coordination with GRC.
- Partners with GRC and business units to map data flows, classify sensitive data, and address data-protection gaps by aligning DLP and CASB policies with regulatory and contractual requirements (e.g., GDPR, CCPA, HIPAA, PCI-DSS) and deploying specialized controls (encryption, tokenization, blocking, or quarantine) as needed.
- Develops DLP and CASB incident reports, data-risk ratings, and compliance scorecards that define the current state of data exposure for Clayco’s environment.
- Designs, tests, and tunes DLP detection rules and data classification policies (e.g., PII, PCI, PHI, source code, financials, and confidential business data) to balance data protection with business productivity while minimizing false positives.
- Administers CASB controls for sanctioned and unsanctioned cloud applications, including Shadow IT discovery, application risk scoring, and enforcement of access, sharing, and data-residency policies.
- Triages, investigates, and resolves DLP and CASB alerts, coordinating with Incident Response, HR, and Legal on potential data exfiltration and insider-risk events.
- Maintains DLP and CASB policy, exception, and runbook documentation, and produces KRI/KPI metrics on data-loss events, policy violations, and remediation timelines.
- Understands and complies with Clayco’s Change Management process to ensure that change is justified, tested, approved, and communicated effectively.
- Serves as a senior technical resource and mentor on DLP and CASB matters, providing guidance to SOC analysts and junior enginee
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s