Staff Security Application Engineer

Early Warning Services LLC

San Francisco (CA)

Hybrid

USD 178,000 - 218,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Healthcare coverage
401(k) retirement plan matching
Paid time off and holidays
Parental leave
Wellness programs

Job summary

Early Warning Services LLC is seeking a Staff Security Application Engineer in a hybrid role across multiple cities, including San Francisco. The role focuses on designing, implementing, and maintaining enterprise proxy and DLP infrastructure, testing controls to meet regulatory standards, and guiding security engineering teams.

You will deploy solutions from major vendors, collaborate with audit/compliance, and ensure ongoing health and governance of security systems while staying current with

Qualifications

  • Bachelor's degree in computer science, information technology, or related field.
  • Typically 8+ years of progressive experience in network security engineering, with at least 5 years in proxy and DLP solutions.
  • Experience with financial institutions and regulatory/compliance requirements.
  • Hands-on with Microsoft Defender, Palo Alto Prisma Access, and Netskope.
  • Proven track record collaborating with audit and compliance teams and performing control testing.
  • Deep knowledge of proxy protocols (HTTP/HTTPS, SOCKS) and DLP principles.
  • Expertise in firewall configuration, secure web gateways, and SASE.
  • Strong scripting skills (PowerShell, Python, etc.) for automation.
  • Familiarity with Zero Trust frameworks.
  • Excellent problem-solving and communication skills.
  • Background and drug screen.

Responsibilities

  • Develops, implements, and optimizes proxy and DLP solutions to protect data and secure access.
  • Acts as SME for proxy and DLP solutions guiding engineering teams and leadership.
  • Deploys and integrates security solutions from vendors like Microsoft, Palo Alto, and Netskope.
  • Collaborates with audit/compliance to ensure regulatory requirements are met.
  • Designs and tests security controls to align with governance policies.
  • Oversees health and reliability of proxy/DLP systems and resolves issues.
  • Advises security teams on investigations and incident response.
  • Keeps up with trends and recommends new tools/processes.
  • Creates detailed technical documentation and runbooks.

Skills

proxy & DLP design
SME for security solutions
scripting (PowerShell, Python)
Zero Trust
communication & stakeholder mgmt
regulatory/compliance knowledge
problem solving

Education

Bachelor's degree in CS/IT or related field

Tools

Microsoft Defender
Palo Alto Prisma Access
Netskope

Job description

At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting‑edge solutions like Zelle, Paze, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.

Overall Purpose:

The Staff Security Application Engineer plays a pivotal role in designing, implementing, and maintaining enterprise network security infrastructure, with a focus on proxy and data loss prevention (DLP) solutions. This role leads control testing to ensure adherence to industry standards while working with audit and compliance teams to meet regulatory requirements.

Essential Functions:
  • Develops, implements, and optimizes proxy and DLP solutions to protect sensitive data and ensure secure network access.
  • Serves as the subject matter expert (SME) for proxy and DLP solutions, providing strategic and technical guidance to engineering teams, stakeholders, and leadership.
  • Deploys and integrates security solutions from vendors such as Microsoft, Palo Alto, and Netskope into existing and new network environments.
  • Proactively collaborates with audit and compliance teams to ensure all proxy and DLP solutions comply with regulatory requirements (e.g., PCI DSS, SOX, NYDFS).
  • Designs, implements, and tests security controls to meet compliance standards, ensuring alignment with governance policies.
  • Oversees the health, performance, and reliability of proxy and DLP systems, proactively identifying and resolving issues.
  • Consults with security and governance teams to define, implement, and enforce security policies and configurations.
  • Advises the security operations team in investigating and responding to network security incidents related to proxy and DLP technologies.
  • Stays abreast of emerging trends in network security and recommends new tools or processes to enhance the organization’s security posture.
  • Develops and maintains detailed technical documentation, including architecture diagrams, operational procedures, control test results, and troubleshooting guides.
Minimum Qualifications:
  • Education and/or experience typically obtained through a bachelor's degree in computer science, Information Technology, or related technical field.
  • Typically, a minimum of 8 years of progressive experience in network security engineering, with at least 5 years of experience in proxy and DLP solutions.
  • Experience working in or with financial institutions, with a strong understanding of regulatory and compliance requirements.
  • Hands-on experience with Microsoft Defender, Palo Alto Prisma Access, and Netskope solutions.
  • Proven track record of collaborating with audit and compliance teams and executing control testing.
  • Deep knowledge of proxy protocols (HTTP/HTTPS, SOCKS) and DLP principles.
  • Expertise in firewall configuration, secure web gateways, and SASE architecture.
  • Strong scripting skills (PowerShell, Python, etc.) for automation and orchestration.
  • Familiarity with Zero Trust frameworks and architectures.
  • Excellent problem-solving and analytical skills.
  • Effective communication and stakeholder management skills.
  • Background and drug screen.
Preferred Qualifications
  • Certifications such asCertified Information Systems Security (CISSP), Palo Alto PCNSE,Microsoft SC-200, orNetskope Certified Cloud Security Administrator (NCCSA) or similar.
  • Experience in environments transitioning from traditional proxy services to cloud-based solutions.
  • Knowledge of compliance standards such as PCI DSS, NIST, ISO 27001, and NYDFS.
Physical Requirements:

Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.

Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.

The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.

The base pay scale for this position in:
Phoenix, AZ/ Chicago, IL in USD per year is: $149,000 - $182,000.
San Francisco, CA in USD per year is: $178,000 - $218,000.

Additionally, candidates are eligible for a discretionary incentive plan and benefits.

This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.

Some of the Ways We Prioritize Your Health and Happiness
  • Healthcare Coverage-Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
  • 401(k) Retirement Plan-Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
  • Paid Time Off -Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
  • 12 weeks of Paid Parental Leave
  • Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.

AndSOmuch more! We continue to enhance our program, so be sure tocheck our Benefits page herefor the latest. Ourteamcan share more during the interview process!

Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Security Application Engineer
Staff Security Application Engineer

Early Warning Services LLC • Scottsdale (AZ)

Hybrid
USD 149,000 - 182,000
Healthcare coverage
401(k) matching
Paid time off
+2
Staff Security Application Engineer
Staff Security Application Engineer

Early Warning Services LLC • Chicago (IL)

Hybrid
USD 149,000 - 182,000
Healthcare Coverage
401(k) Match
Paid Time Off
+2
Staff Security Application Engineer
Staff Security Application Engineer

Early Warning • Chicago (IL)

Hybrid
USD 149,000 - 218,000
Health insurance
401(k) match
PTO
+2
Staff Security Application Engineer
Staff Security Application Engineer

Early Warning • Scottsdale (AZ)

Hybrid
USD 149,000 - 182,000
Healthcare Coverage
401(k) Retirement Plan – Company match
Paid Time Off and holidays
+2
Staff Security Application Engineer
Staff Security Application Engineer

Early Warning • San Francisco (CA)

Hybrid
USD 178,000 - 218,000
Healthcare coverage
401(k) match
Paid time off
+2
Staff Security Application Engineer
Staff Security Application Engineer

Early Warning® • Scottsdale (AZ)

Hybrid
USD 149,000 - 218,000
Healthcare coverage
401(k) plan
Paid time off
+1
Sr. Infrastructure Security Architect (CIO)
Sr. Infrastructure Security Architect (CIO)

Early Warning Services LLC • Chicago (IL)

Hybrid
USD 160,000 - 200,000
Healthcare Coverage
401(k) Retirement Plan
Paid Time Off
+2
Sr. Infrastructure Security Architect (CIO)
Sr. Infrastructure Security Architect (CIO)

Early Warning Services LLC • San Francisco (CA)

Hybrid
USD 192,000 - 240,000
Healthcare Coverage
401(k) Retirement Plan
Flexible Time Off
+2
Senior Product Security Architect
Senior Product Security Architect

Early Warning Services LLC • Chicago (IL)

Hybrid
USD 160,000 - 200,000
Healthcare Coverage
401(k) Retirement Plan with match
Paid Time Off + Holidays
+2
Senior Product Security Architect
Senior Product Security Architect

Early Warning Services LLC • San Francisco (CA)

Hybrid
USD 192,000 - 240,000
Healthcare Coverage
401(k) Retirement Plan
Paid Time Off
+2