Salary
💰 $140,800 - $211,200 per year
Tech Stack
AWSAzureCloudCyber SecurityGoogle Cloud PlatformSMTP
About the role
- Design, implement, and maintain security solutions for email and cloud security
- Implement and manage email and cloud security tools and practices
- Configure and monitor email and cloud access and ensure compliance with industry standards and regulations
- Design, assess, and improve email security policies and procedures, including SPF, DKIM and DMARC
- Collaborate with other IT/Security teams to ensure comprehensive threat protection and proper rule/policy configuration within O365 and Proofpoint
- Review and assess inbound domains and policies within internal and external email environments
- Evaluate internal SMTP relay within the internal network and between O365 and external systems
- Conduct regular security assessments of email systems to identify gaps and recommend remediation
- Set up automated monitoring for potential email threats and work with incident response to assess regularly
- Assist in response to incidents associated with email and cloud security
- Work with DevOps/IT and other security teams to integrate security features into cloud and email infrastructures
- Assist with creation of training and awareness to promote good email and cloud security practices
- Collaborate with the data security team to ensure preventive measures on DLP
- Monitor outbound email traffic to ensure sensitive or confidential data is not sent outside the organization
- Create and update rules to identify and prevent transmission of PII or financial records
- Collaborate with forensics team to analyze the scope of breaches or attacks
Requirements
- High school diploma (or equivalent) and 12+ years of experience OR Bachelor’s degree and 7+ years of experience OR advanced degree and 5+ years of experience
- Strong understanding of email protocols including SMTP, IMAP, POP3, and MX records
- In-depth knowledge of email security standards including SPF, DKIM and DMARC
- Experience with email gateways: Proofpoint and O365
- Excellent troubleshooting of complex email security issues, email reputations, blacklisting
- Knowledge of Azure AD, Exchange Online, Security & Compliance, Oauth, Enterprise apps
- Experience with phishing threat and campaigns
- Experience with Cyber Security Tools and Technologies
- Knowledge of AWS, Azure, GCP cloud security
- Experience collaborating with DevOps/IT, incident response, data security, forensics teams
- Ability to conduct security assessments and implement remediation strategies
- Ability to set up automated monitoring for email threats and create/update DLP and outbound email rules
- Willingness to work onsite (working onsite 4 days a week) at listed Medtronic sites