高级云工程师
Senior Cloud Engineer
职位名称:网络安全工程师
工作时间:轮班制
工作模式:远程,印度
岗位概述:
我们正在寻找一名拥有10年以上经验的网络安全工程师,具备端点安全架构、EDR、NDR、DLP、文件完整性监控(FIM)和企业端点安全控制方面的专业知识。
该职位专注于安全平台的设计、部署、配置、调优和长期维护,不涉及SOC运营、威胁检测或事件响应职责。
主要职责:
1. 端点安全与EDR工程
· 设计、部署、配置和维护企业级端点安全平台,包括:
o EDR/EPP解决方案:Microsoft Defender for Endpoint、CrowdStrike、SentinelOne、Trellix/McAfee、Symantec
o 端点安全控制:防病毒、主机防火墙、设备控制、磁盘加密和漏洞代理
· 开发端点安全配置基线,并确保在Windows/macOS/Linux设备上一致执行策略。
· 使用Intune、SCCM、GPO或自动化脚本管理代理部署、健康监控、策略调优、更新和生命周期维护。
· 将端点遥测集成到其他安全平台以实现可见性
2. 数据丢失防护(DLP)——工程与生命周期管理
· 设计、部署和维护企业级DLP解决方案,如(Microsoft Purview DLP(端点、云、邮件)、Forcepoint DLP、Proofpoint信息与邮件保护、Zscaler / Cisco Umbrella DLP)
· 配置DLP策略、检测分类器、端点规则、云控制和数据处理工作流。
· 管理DLP代理、基础设施组件、调优、升级以及与合规/监管要求的操作对齐。
3. 网络检测与响应(NDR)工程
· 架构、部署、配置和维护NDR解决方案,如:(Corelight、Darktrace、ExtraHop Reveal)
· 配置SPAN/TAP馈送、云传感器、路由集成和流量摄入管道。
· 维护传感器覆盖范围、策略配置、版本升级和性能优化。
4. 文件完整性监控(FIM)——设计、部署与维护
· 实施和管理FIM平台,包括:(Tripwire、Qualys FIM、Wazuh、Defender、CrowdStrike)
· 配置监控目录、变更检测规则、基线和排除项。
· 监督FIM代理在服务器和端点群集中的部署、架构、健康状况和维护。
5. 自动化、开发与运维支持
查看英文原文
Job Title: Cyber Security Engineer
Shift Timing- Rotational
Work mode- Remote, India
Role Overview:
We are seeking a Cyber Security Engineer with 10+ years of experience and strong expertise in endpoint security architecture, EDR, NDR, DLP, File Integrity Monitoring (FIM), and enterprise endpoint security controls.
This role focuses exclusively on design, deployment, configuration, tuning, and long-term maintenance of security platforms.
No SOC operations, threat detection, or incident response responsibilities.
Key Responsibilities:
1. Endpoint Security & EDR Engineering
· Design, deploy, configure, and maintain enterprise endpoint security platforms, including:
o EDR/EPP solutions: Microsoft Defender for Endpoint, CrowdStrike, SentinelOne, Trellix/McAfee, Symantec
o Endpoint security controls: AV, host firewall, device control, disk encryption, and vulnerability agents
· Develop endpoint security configuration baselines and ensure consistent policy enforcement across Windows/macOS/Linux devices.
· Manage agent deployment, health monitoring, policy tuning, updates, and lifecycle maintenance using tools such as Intune, SCCM, GPO, or automation scripts.
· Integrate endpoint telemetry with other security platforms for visibility
2. Data Loss Prevention (DLP) – Engineering & Lifecycle Management
· Design, deploy, and maintain enterprise-wide DLP solutions such as (Microsoft Purview DLP (endpoint, cloud, email), Forcepoint DLP, Proofpoint Information & Email Protection, Zscaler / Cisco Umbrella DLP
· Configure DLP policies, detection classifiers, endpoint rules, cloud controls, and data-handling workflows.
· Manage DLP agents, infrastructure components, tuning, upgrades, and operational alignment with compliance/regulatory requirements.
3. Network Detection & Response (NDR) Engineering
· Architect, deploy, configure, and maintain NDR solutions such as: (Corelight, Darktrace, ExtraHop Reveal)
· Configure SPAN/TAP feeds, cloud sensors, routing integrations, and traffic ingestion pipelines.
· Maintain sensor coverage, policy configurations, version upgrades, and performance optimization.
4. File Integrity Monitoring (FIM) – Design, Deployment & Maintenance
· Implement and manage FIM platforms, including: (Tripwire, Qualys FIM, Wazuh, Defender, CrowdStrike)
· Configure monitored directories, change detection rules, baselines, and exclusions.
· Oversee FIM agent deployment, architecture, health, and maintenance across server and endpoint fleets.
5. Automation, Deployment & Platform Operations
· Automate deployment, configuration updates, and system health checks using:
o PowerShell, Python, Bash, API/Graph API
· Perform ongoing platform operations such as patching, upgrading, tuning, and configuration auditing.
· Maintain complete and up-to-date documentation including:
o Architecture diagrams
o Deployment methodology
o Standard operating procedures
o Version control and lifecycle plans
Requirements
Required Technical Skills:
· Hands-on experience with multiple EDR platforms (MDE, CrowdStrike, SentinelOne, etc.).
· Strong understanding of enterprise DLP platforms (Microsoft Purview + Forcepoint/Symantec/Trellix/Netskope/etc.).
· Knowledge of NDR tools (Corelight, Vectra, ExtraHop, Darktrace).
· Experience with FIM solutions (Tripwire, Qualys, OSSEC/Wazuh, EDR-based FIM).
· Strong knowledge of endpoint internals (Windows, macOS, Linux), registry, services, event logs, and system processes.
· Experience with large-scale agent deployment and endpoint configuration management.
· Solid understanding of network fundamentals (SPAN/TAP, packet metadata, routing visibility).
· Scripting skills for automation (PowerShell required; Python/Bash a plus).
Nice-to-Have Skills:
· Experience integrating endpoint, DLP, or NDR telemetry with SIEM tools
· Cloud security fundamentals (Azure, AWS, GCP).
· Certifications: Security+, CySA+, GCED, SC-200, SC-300, SC-400, MS-500, CISSP
Why Join Protera?
- Work with global enterprise clients
- Learn fast with mentorship, certifications, and career growth
- Make a real impact in a company where ideas are welcome
- Flexible work setup (remote/hybrid)
- People-first culture with a global mindset
Ready to Make the Move?
We’d love to meet you.
Click “Apply Now” and tell us why you’re the one.
Not sure yet? Check us out at or connect with our team on LinkedIn.
Protera is proud to be an equal opportunity employer.
We celebrate diversity and are committed to creating an inclusive environment for all employees.
About Protera
Protera Technologies ( is an SAP Certified, Global Total IT Outsourcing Provider for SAP-centric organizations founded in the mid-1990s. We have been the SAP-on-cloud pioneer since running the world’s first SAP production instance on a public cloud. Today, we manage thousands of SAP and related IT workloads on Microsoft Azure, Google Cloud, and Amazon Web Services (AWS).
Headquartered in Chicago, IL, with offices in Athens, Greece, and Mumbai, India, Protera delivers world-class cloud hosting, application management, and professional services focused on total customer satisfaction.
For more information, visit
Benefits
· Work from Home set-up
· Comprehensive medical benefits
· Gratuity, PF, EPS and Bonus, NPS
· Shift Allowances
· On-call Allowance
· Health and wellness Allowances
· Learning and Development Allowances
· No question asked certification policy.
· Certification Bounty Bonus
Originally posted on Himalayas