Fortra
Posted 3w ago

Sr. Security Engineer

Fortra
Colombia
RemoteFull Time
Responsibilities
  • implementing dlp
  • tuning policies
  • integrating platforms
Requirements
  • Bachelor's or equivalent,5+ years in security/IT with ≥2 years deploying or leading enterprise DLP/CASB/data-protection technologies
  • Familiarity with regulatory frameworks and strong stakeholder communication
Technical tools mentioned
Microsoft PurviewForcepointZScalerDigital GuardianSIEMSOARMicrosoft 365

Job description

Whether you’re an experienced professional or just getting started, your contributions matter at Fortra. If you’re passionate about tackling meaningful challenges alongside talented team members committed to helping each other succeed, all while having lots of fun, we want to hear from you. We offer competitive benefits and salaries, personal and professional development opportunities, flexibility, and much more!

As a hands-on technical role, the Senior Security Engineer will own the implementation and operational maturity of Fortra’s enterprise Data Loss Prevention program. Working closely with the Lead Security Architect and stakeholders across the organization, you will evaluate, learn, configure, and deploy DLP technologies across endpoints, cloud services, email, networks, and collaboration platforms. You will take new capabilities from initial evaluation and pilot through production rollout, policy tuning, and ongoing improvement. You will be expected to independently develop expertise in new DLP products and become a trusted internal subject-matter expert. The role will translate business, regulatory, and data-protection requirements into scalable technical controls that protect Fortra’s intellectual property, customer information, and regulated data while minimizing unnecessary disruption to employees. Success in this role requires strong technical ownership, self-directed learning, sound engineering judgment, and the ability to deliver complex security capabilities across a global organization.

WHAT YOU'LL DO

  • Own the technical implementation, configuration, maintenance, and ongoing improvement of Fortra’s enterprise DLP platforms.
  • Partner with the Lead Security Architect to design and implement DLP controls across endpoint, cloud, email, network, and collaboration environments.
  • Build expertise in new DLP technologies and serve as the primary technical subject-matter expert for their configuration, integration, deployment, and support.
  • Collaborate with cross-functional stakeholders such as Legal, HR, Risk and Compliance to define data classification schemas, sensitive data discovery profiles and effective DLP rulesets
  • Design, test, deploy, and tune DLP policies to maximize risk reduction while minimizing false positives, unnecessary user friction, and operational disruption.
  • Implement detection and protection methods such as sensitivity labels, sensitive-information types, regular expressions, dictionaries, exact data matching, document fingerprinting, and source-code detection.
  • Integrate DLP controls with endpoint-management, identity, Microsoft 365, cloud, email, network, and collaboration platforms.
  • Integrate DLP alerts and telemetry with SIEM, SOAR, case-management, and incident-response platforms to support centralized monitoring and investigation.
  • Monitor platform health, endpoint-agent coverage, connector status, policy effectiveness, product upgrades, and other indicators required to maintain reliable protection.
  • Establish and maintain technical standards, implementation guides, operating procedures, runbooks, test plans, rollback procedures, and knowledge articles.
  • Serve as the technical escalation point for complex data-exposure events, platform issues, policy failures, and suspected data-loss incidents.
  • Develop dashboards, key performance indicators, and risk metrics that demonstrate program coverage, operational performance, user impact, and risk reduction to technical and senior leadership audiences.
  • Partner with Security Awareness and business teams to develop targeted guidance and user coaching based on recurring DLP policy violations and data-handling risks.
  • Work with vendors to resolve product issues, understand product roadmaps, evaluate new capabilities, and ensure that Fortra receives appropriate value from its DLP investments.
  • Build productive relationships with internal teams and serve as a trusted advisor on DLP controls, data-protection risks, and practical risk-mitigation options.
  • Other duties as assigned

QUALIFICATIONS

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience).
  • 5+ years of experience in Security, IT Operations, or related roles with at least 2 years managing, deploying or leading enterprise-grade DLP, CASB, information-protection, or data-classification technologies (e.g., Microsoft Purview, Forcepoint, ZScaler, Digital Guardian).
  • CISSP or equivalent, and Microsoft certifications such as SC-401 are considered a plus.
  • Understanding of data-classification methods, sensitivity labels, structured and unstructured data discovery, regular expressions, exact data matching, document fingerprinting, and policy tuning.
  • Experience taking a DLP control from evaluation or proof of concept through enterprise production deployment.
  • Familiarity with regulatory frameworks and privacy standards (e.g. GDPR, PCI-DSS)
  • Experience balancing preventive security controls with user experience and operational requirements.
  • Ability to identify risks in business processes and communicate IT risks in clear, business-relevant terms.
  • Capable of taking ownership and executing projects and initiatives independently
  • Proficiency in programming or scripting languages is a plus.
  • Strong interpersonal skills with a demonstrated ability to build relationships and communicate effectively with internal stakeholders and external vendors.
  • Experience with M&A activity, global risks, and software development practices
  • Advanced analytical and problem-solving capabilities.
  • Collaborative team player with excellent communication and interpersonal skills.

At Fortra, we’re breaking the attack chain. Ready to join us? Visit our website to learn more about why employees choose to work for Fortra. Remember to connect with us on LinkedIn.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, veteran or disability status.

About Fortra

Provider of cybersecurity, automation, and data protection software solutions.

Year founded
1982
Employees
2000
Organization type
Private
Latest investment
Private Equity (2019)
Headquarters
US

Similar jobs

Security Engineer roles
6d
Save
Mark Applied
Hide
Security Engineer - Compliance & Mercado Pago Security
Bogotá, Bogotá Capital District, Colombia
HybridFull Time
Mercado Libre
Mercado LibreNASDAQ: MELI: Leading e-commerce and fintech ecosystem in Latin America.
Experience with Hardware Security Modules, KLD devices, key ceremonies, cryptographic algorithms, PKI, X.509, TR-31, payment security controls, ISO 27001, and PCI compliance audits.
Hardware Security Modules, KLD, AES, DES, Triple DES, RSA, ECC, DUKPT, PKI, X.509, TR-31, ZMK, KEK, PIN blocks, PCI DSS, PCI PIN, PCI PTS, ISO 27001
6d
Save
Mark Applied
Hide
Security Engineer - Compliance & Mercado Pago Security
Bogotá, Bogotá Capital District, Colombia
HybridFull Time
Mercado Libre
Mercado LibreNASDAQ: MELI: E-commerce and financial services marketplace for Latin America.
Experience with HSMs, KLD devices, key ceremonies, payment cryptography, PKI/X.509, TR-31, PCI controls, and ISO 27001 information security management systems.
Hardware Security Modules, KLD, AES, DES, Triple DES, RSA, ECC, DUKPT, PKI, X.509, TR-31, ZMK, KEK, PIN blocks, PCI DSS, PCI PIN, PCI PTS, ISO 27001
1w
Save
Mark Applied
Hide
Lead Security Engineer
Argentina or Colombia or Mexico
RemoteFull Time
EPAM Systems
EPAM SystemsNYSE: EPAM: Provides global digital platform engineering and software development services.
5+ YOE5+ years of security experience, 1+ year leading development teams, application and cloud security expertise, SDLC and CI/CD knowledge, security certifications, scripting skills, and B2+ English.
CI/CD, Security Scorecard, NIST, HITRUST, CIS, AI, LLM, Kubernetes, GitHub Actions, AWS, GCP, PowerShell, Bash, Python, Go, Okta, SAML, MITRE ATT&CK, SOC 2, SDLC, SBOMs
1w
Save
Mark Applied
Hide
Senior Staff - IT Information Security
Bogotá, Bogotá D.C., Colombia
HybridFull Time
StoneX Group
StoneX GroupNASDAQ: SNEX: Provides global financial services and market access.
Significant security engineering experience with enterprise security platforms, EDR/XDR, SSE, ZTNA, CASB, DLP, cloud environments, automation, APIs, and troubleshooting; degree and certifications preferred.
Endpoint Detection and Response (EDR/XDR), Secure Service Edge (SSE), Zero Trust Network Access (ZTNA), Cloud Access Security Broker (CASB), Data Loss Prevention (DLP), Windows, Linux, macOS, AWS, Microsoft Azure, Google Cloud Platform (GCP), APIs, CISSP, Microsoft SC-100, Microsoft SC-200, Microsoft AZ-500
1mo
Save
Mark Applied
Hide
Staff Security Engineer (CISO) - CO - 2026
Bogotá, Bogotá D.C., Colombia
HybridFull Time
Nubank
NubankNYSE: NU: Digital financial platform offering banking, credit, and investment services.
8+ YOE8+ years in information/business security, risk management, privacy or IT governance; hands-on security controls, cloud/microservices knowledge, regulated environment experience; English and Spanish proficiency.
Mitre ATT&CK, ISO, PCI, NIST, Google Docs
1mo
Save
Mark Applied
Hide
Principal Engineer - Security & Controls - Data Centers
Bogota, Bogota, Colombia
OnsiteFull Time
AECOM
AECOMNYSE: ACM: Provides infrastructure consulting and engineering services for global projects.
6+ YOEBachelor's in a relevant technological field +6 years experience (or equivalent); strong knowledge of integrated security systems; AutoCAD/Revit proficiency; English communication; industry and manufacturer security certifications preferred.
AutoCAD, Revit, Visio Professional, Bluebeam Revu, Microsoft Project, Microsoft Word, Microsoft Excel, Microsoft PowerPoint
2mo
Save
Mark Applied
Hide
Security Engineer
Colombia
OnsiteFull Time
Proximus
ProximusEuronext Brussels: PROX: Provides telecommunications and digital services for consumers and businesses.
5+ YOE5+ years enterprise InfoSec experience; maintain ISMS/PIMS aligned to ISO/IEC 27001:2022 and ISO 27701:2025; SOC 2 and HIPAA compliance; SIEM rule development; strong problem solving and communication; fluent English.
SIEM
2mo
Save
Mark Applied
Hide
Security Engineer II – IAM & SaaS Governance
Argentina or Brazil or Colombia or Poland or Ukraine or Georgia
RemoteFull Time
Solvd
Solvd: Provides AI-native consulting and global software engineering services.
3+ YOE3–5 years in security engineering IAM or systems engineering; strong Okta expertise; RBAC/ABAC, data governance; identity protocols (SAML, OAuth, OIDC, SCIM); scripting (Python/PowerShell/Bash); log analysis.
Okta, SCIM, REST APIs, SAML, OAuth, OIDC, Python, PowerShell, Bash, Splunk, ELK