> Markdown version of [/jobs/ext/1487908-lead-cyber-sec-eng](https://www.wearedevelopers.com/jobs/ext/1487908-lead-cyber-sec-eng). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead, Cyber Sec Eng - **Company:** Northern Trust - **Location:** Chicago, IL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Proxy Servers, Microsoft Azure, Cyber Security, Information Leak Prevention, Network Security, Massachusetts Comprehensive Assessment Systems, PCI Data Security Standards, Traffic Analysis, Software Troubleshooting, Firewalls (Computer Science), Security Orchestration, Automation & Response - **Published:** July 29, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=063111f73178391c ## About the Role * Strong hands-on experience with Zscaler DLP * Deep knowledge of data loss prevention, classification, and data protection principles * Understanding of network security (proxies, firewalls, traffic analysis) * Experience with Azure security (AIP, MIP, MCAS) and enterprise DLP tools * Strong troubleshooting, analytical, and communication skills * Experience working in regulated environments (FFIEC, PCI-DSS, SOX preferred), * 5+ years of experience in Cyber Security or Data Protection Engineering * Bachelor's degree or equivalent experience * Certifications such as CISSP, CISM, CISA, or SANS preferred, * Lead medium to large engineering initiatives * Work independently with minimal supervision * Provide mentorship and technical leadership * Act as escalation point for high priority incidents * Influence engineering standards and control improvements, * Experience with secure email, endpoint DLP, CASB solutions * Exposure to security automation and scripting * Understanding of enterprise data protection strategy and governance ## Description Lead Cyber Security Engineer responsible for designing, implementing, and managing enterprise Zscaler-based data protection controls, with a focus on Data Loss Prevention (DLP). This role leads engineering initiatives, provides advanced (L3) support, and ensures scalable, secure implementation across enterprise environments., * Lead design and implementation of Zscaler DLP policies including cloud app control, file restrictions, and tenant controls * Drive end-to-end DLP lifecycle (requirements, design, build, testing, deployment) * Partner with business and security stakeholders to define and enforce data protection requirements * Monitor, investigate, and respond to DLP alerts and potential data exfiltration events * Generate reports on policy effectiveness, trends, and false positives * Provide L3 troubleshooting and support for DLP and Zscaler issues * Drive automation and optimization opportunities across controls * Act as SME and technical lead supporting engineering and architecture efforts, * Implement Zscaler DLP and security policies * Analyze requirements and determine feasible solutions * Support testing, documentation, and rollout of DLP capabilities * Collaborate with Enterprise Architecture and Security teams * Improve processes and drive automation * Independently execute engineering deliverables * Provide consulting and leadership guidance to team members ## Related Videos - [Exploring the Power of gRPC-Gateway for Writing RESTful Services](https://www.wearedevelopers.com/videos/2072-exploring-the-power-of-grpc-gateway-for-writing-restful-services) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Stop Using Node.js Like It’s 2020! - Alfonso Graziano](https://www.wearedevelopers.com/videos/1863-stop-using-node-js-like-it-s-2020-alfonso-graziano) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j)