We are looking for highly skilled Cyber Security Engineers to join our unified Cyber Defense team. As our organization scales, we are expanding our security engineering team to take definitive ownership across our corporate architecture, global workforce, and cloud infrastructure.
You will have the opportunity to take ownership of specific security pillars based on your expertise.
If you are an action-oriented builder who wants to deploy modern security platforms, ensure our employees can work securely from anywhere, and maintain our fast-paced culture without friction, this role is for you.
ResponsibilitiesBased on your specific expertise, you will lead or partner on the following initiatives:
- Network & Endpoint Security: Lead and optimize network architectures, including modern SASE platform, VPN configurations, and routing to ensure a seamless and highly secure Zero Trust Network Access (ZTNA).
- Take ownership of our Endpoint Security (EDR) platform, driving continuous tuning, policy hardening, and advanced Email Security suite management (including SPF/DKIM/DMARC).
- Identity & Access Management (IAM): Act as a technical authority for our IAM architecture. Define strict security policies (MFA, Conditional Access, RBAC) and work closely with IT to continuously improve our identity-first security posture.
- Cloud & SaaS Security: Monitor and maintain our cloud security posture across major CSP environments (including K8s & Containers) using CSPM tools.
- Perform rapid, pragmatic security assessments for new SaaS applications and manage SSPM configurations.
- Vulnerability Management: Own the vulnerability lifecycle for infrastructure, endpoints, and corporate software. Drive prioritization and remediation tracking in close collaboration with DevOps and IT.
- Incident Response: Support security incident response, assist in containment, contribute to post-mortem analysis, and maintain IR runbooks relevant to your domains.
- GenAI Security: Help define and enforce secure usage policies for GenAI tools (e.g., Copilot, Claude, ChatGPT) to prevent data leakage.
- 4+ years of hands-on experience in Cyber Security, Network Security, or Cloud/IT Security engineering roles.
- Deep technical expertise in AT LEAST ONE of the following core domains:
- (Network & Endpoint): Proven hands-on experience deploying and managing modern SASE/Zero Trust platforms, packet-level network protocols (TCP/IP, DNS, HTTP/S), VPN architectures, and enterprise EDR/XDR platforms.
- (Identity & Cloud): Strong technical experience designing complex Conditional Access policies in Enterprise Identity Providers (IdP), and hands-on experience managing Cloud Security Posture Management (CSPM) and SaaS security tools.
- Excellent analytical and troubleshooting skills, with the ability to quickly analyze complex connectivity issues and enforce security policies without compromising velocity for development teams.
- A pragmatic, action-oriented approach to risk management and problem-solving.
Advantage
- Experience protecting SaaS systems and working with CASB & SSPM platforms.
- Familiarity with writing API scripts (Python/Bash) to automate security workflows
- Familiarity with IR processes and the ability to support containment activities when called upon.
- Experience with infrastructure and endpoint vulnerability scanning tools.
Skills Required
- 4+ years hands-on experience in Cyber Security, Network Security, or Cloud/IT Security engineering roles.
- Deep technical expertise in at least one core domain (Network & Endpoint OR Identity & Cloud).
- Experience deploying and managing modern SASE/Zero Trust platforms, VPN architectures, and enterprise EDR/XDR platforms.
- Experience designing complex Conditional Access policies in Enterprise Identity Providers and managing CSPM and SaaS security tools.
- Strong analytical and troubleshooting skills for complex connectivity and security issues.
- Pragmatic, action-oriented approach to risk management and problem-solving.
- Experience protecting SaaS systems and working with CASB and SSPM platforms.
- Familiarity with writing API scripts (Python/Bash) to automate security workflows.
- Familiarity with incident response processes and ability to support containment activities.
- Experience with infrastructure and endpoint vulnerability scanning tools.
What We Do
Bright Data is the world’s #1 web data platform, supporting the public data needs of over 20,000 organizations in nearly every industry. Our solutions are leveraged to fuel AI as well as research, monitor, and analyze web data for smarter decisions. Bright Data offers a complete web data platform, from award-winning proxy networks and AI-powered web scraping tools, to dynamically refreshed datasets, an unparalleled retail and e-commerce data intelligence suite, and fully managed data services. Making public web data accessible is essential to keeping markets openly competitive and providing different data types to power LLMs. As an industry leader, we are committed to defending public web data. Bright Data has proven that ethical and transparent scraping practices for legitimate business use and social good initiatives are legally sound. We are very proud to lead innovation in web data, with +5,500 granted patent claims.









