Principal Cybersecurity Engineer
Syniverse · San Jose
Job description
About the role
The Principal Cybersecurity Engineer will lead the design, implementation, and maintenance of security controls for Syniverse’s Windows Server and endpoint estate. This individual contributor role focuses on hardening, risk remediation, and automation while mentoring peers and collaborating with the SOC and detection teams.
Key responsibilities
- Own the security architecture, hardening, and risk remediation strategy for Windows Server, Active Directory, Group Policy, DNS, and certificate services.
- Design and maintain secure baseline configurations (CIS Benchmarks) for Windows systems and enforce compliance through configuration‑management tooling.
- Partner with the Counter Adversary Team to validate controls and remediate findings related to Windows and data security.
- Investigate and support response to Windows and endpoint security incidents, including forensic triage and root‑cause analysis.
- Develop automation using PowerShell, Python, or similar to streamline hardening checks, log onboarding, and remediation workflows.
- Design, deploy, and operate DLP controls across endpoints, email, and cloud channels to prevent unauthorized data exfiltration.
- Implement DSPM capabilities to discover, classify, and monitor sensitive data across on‑premises and cloud repositories.
- Build, tune, and maintain Splunk detections, correlation searches, dashboards, and SPL content for Windows security telemetry.
Required profile
- Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent professional experience.
- 8+ years of progressive experience in information security or systems engineering, with at least 5 years focused on Windows security engineering or infrastructure hardening.
Required skills
- Deep expertise in Windows Server and Active Directory security (Group Policy, Kerberos/NTLM, PKI, credential‑theft mitigation).
- Proficiency with Microsoft security and cloud suite: Entra ID (Azure AD), Microsoft Defender, Microsoft Purview DLP.
- Hands‑on experience with Splunk, including SPL query authoring, correlation searches, alerts, and dashboards.
- Experience implementing DLP solutions (Microsoft Purview DLP, Zscaler DLP/DSLPM) across endpoint, network, and cloud.
- Scripting/automation skills in PowerShell and Python.
- Familiarity with endpoint detection and response platforms (e.g., CrowdStrike Falcon) and applying CIS Benchmarks.
- Understanding of Zero Trust principles, identity‑centric security architecture, and MITRE ATT&CK framework.
What we offer
- Competitive total compensation.
- Flexible/remote work options.
- Inclusive, collaborative culture focused on innovation and growth.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in Costa Rica.
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Published 13 hours ago
Expires 1 month from now
10 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
Syniverse
San Jose