DLP Engineer at OnActive · Delhi, Gurugram, Noida, Ghaziabad, Faridabad · 2 - 10 years · ₹2L - ₹10L / yr · Bootstrapped · Posted 12 Feb 2025

Job title: DLP Engineer
Work Location- Delhi
Experience- 2+ Years
Mandatory Requirements:
1- 2 years experience installing Forcepoint Cososys or Netskope.
2- Should have own conveyance.
Job Description:
· Deploy and configure DLP solutions such as Forcepoint, CoSoSys, or Netskope across endpoints, networks, and cloud environments.
· Customize DLP policies and rules to address organizational data security needs.
· Continuously monitor data flow and detect unauthorized access or data exfiltration attempts.
· Analyze DLP alerts and logs to identify potential threats and escalate as necessary.
· Develop, implement, and manage DLP policies to prevent data breaches and leaks.
· Integrate DLP solutions with other security tools, including SIEM.
· Provide technical support for DLP tools and resolve related issues promptly.
· Stay updated with the latest trends and advancements in DLP technologies, particularly Forcepoint, CoSoSys, and Netskope.
Working Days: 6 days working, Monday to Saturday (3rd Saturday off)

About OnActive
About
Similar jobs (4)
Position: Technical Lead – Forcepoint (Data & Cloud Security)
Company: Inflow Technologies
Location: Bangalore
Work Mode: Work From Office | 5 days/week
Experience Required: Minimum 6 years
Interview Process: 2 rounds (Virtual + Final Face-to-Face)
About Inflow Technologies
Founded in 2005, Inflow is a value-added IT infrastructure distributor covering Networking, Cybersecurity, UC&C, AIDC, Surveillance, Server, Storage & Software across India/South Asia. HQ'd in Bangalore with 20+ locations, backed by a 120+ certified technical team, and ~USD 700M+ annual run-rate revenue.
Position Overview
Acting as the Forcepoint subject matter expert, this role owns end-to-end design, deployment, and troubleshooting of enterprise data and cloud security architectures — spanning DLP, SWG, CASB, and SSE/ZTNA. The role sits at the intersection of solution architecture and hands-on L3 execution: defining security policies, configuring network proxies, and resolving complex support escalations in a client-facing, consultative capacity.
Core Products
- Forcepoint DLP (Endpoint, Network, Web, Email)
- Forcepoint Web Security
- Forcepoint Email Security
- Forcepoint CASB
- Forcepoint Suite / Forcepoint One
- Forcepoint Cloud Security / SSE (incl. ZTNA)
- Forcepoint DSPM
Key Responsibilities
1. Solution Design & Architecture
- Design enterprise architectures: DLP (Endpoint + Network + Discovery), Web Security (Proxy/Hybrid/Cloud), CASB & SaaS protection, Forcepoint Suite/One
- Install & configure Management Server, Policy Engine, Detection Servers, Protectors (Email/Web/Network), Endpoint agents (Windows/Mac)
- Implement EDM/IDM/OCR and data classification policies
2. Web Security (SWG)
- Deploy on-prem (V-series appliances) and cloud SWG/hybrid mode
- Configure transparent/explicit proxy, SSL inspection, URL filtering
3. Email Security
- Configure SMTP routing, DLP email policies, encryption & compliance rules
4. Advanced Policy Configuration
- Design/tune DLP policies (structured + unstructured data), web filtering (user/group/app-based), cloud app governance rules
5. L3 Troubleshooting & RCA (Critical)
- Handle: DLP not detecting over HTTPS, endpoint agent communication failures, web proxy latency/SSL failures, policy not applying to users, email DLP bypass
- Approach: log analysis (Policy Engine, endpoint, web), packet capture/traffic analysis, root cause identification & permanent fix
Qualifications & Certifications (Preferred)
- Bachelor's degree (IT/CS or related)
- Forcepoint Certified Administrator (FCA)
- Forcepoint DLP Specialist
- CCNA / Security+ (nice-to-have)
Job Title: Technical Consultant – Netskope & SSE (L3 Engineer)
Company: Inflow Technologies
Location: Bangalore (Work From Office, 5 days/week)
About Inflow Technologies:
Inflow Technologies, founded in 2005 and headquartered in Bangalore, is a leading value-added IT infrastructure distributor across Networking, Cybersecurity, Unified Communications, AIDC, Surveillance, Server, Storage, and Software. With 20+ locations across India/South Asia and a 120+ member certified technical team, Inflow supports channel partners through the full solution sales cycle. Annual run-rate revenue: USD 700+ Million.
Position Overview:
We're looking for an experienced Technical Consultant (L3 Engineer) specializing in Netskope and Security Service Edge (SSE) technologies. You'll own end-to-end architecture, design, deployment, and optimization of cloud security solutions — acting as a trusted advisor who translates business requirements into secure, scalable technical architectures, and resolves advanced issues through root cause analysis.
Key Responsibilities:
Implementation & Deployment
- Deploy Netskope CASB (API + Proxy), SWG, DLP (Email/Web/Network), ZTNA (Private Access), NPA, and Prime Advantage package
- Configure traffic steering (Client, GRE, IPsec), policy rules (DLP, URL filtering, access control), and dashboard fine-tuning
- Perform agent rollout across Windows, Mac, and Mobile
Architecture & Design
- Design a secure access architecture for remote users, branch offices, and cloud workloads
- Integrate with identity providers (Azure AD, Okta) and existing security stack (Firewall, Proxy, SIEM)
- Integrate Netskope with SIEM (Splunk, QRadar), EDR tools, and email security
- Configure SSO/SAML authentication
Required Qualifications:
- Bachelor's degree in IT/CS or related field
- 6–8 years of experience (L3 level)
- Preferred certifications: Netskope Certified Cloud Security Architect (NCSA), NSK 100/200/300, CCNA/Security+ (good to have)
Interview Process: 2 rounds (Virtual) + Final round (Face-to-Face)
About the role
You will create and validate the detection content that protects our customers: IDPS signatures, application control rules, and DLP rules. This is a hands-on role in our security lab, where you will generate real attack traffic, research vulnerabilities and applications, and make sure every rule is accurate, effective, and ready for production.
What you'll do
Write security rules
- Write IDPS signatures for exploits, malware, command-and-control traffic, and network attacks, with the right severity, action (alert / block / reject), and protocol scope
- Build application control rules to identify and control social media, streaming, file sharing, remote access, unsanctioned SaaS, and AI tools
- Create DLP rules to detect sensitive data (personal and financial data, confidential documents, source code) across web, email, and file transfer channels
Test and validate
- Set up test scenarios in our lab and generate traffic using browsers, command-line tools, packet captures, and safe proof-of-concept exploits
- Confirm that each rule triggers and that logs show the correct rule, severity, action, and source
- Test against normal everyday traffic to find and fix false positives before rules ship
- Build and maintain a repeatable test set so rules keep working after product updates
Research and document
- Track new CVEs, exploit techniques, and emerging applications, and turn them into working detections
- Study public r
- Study public rulesets to learn coverage patterns and find gaps in our own
- Write a short validation note for each batch: what it detects, how it was tested, and what it doesn't cover
What we're looking for
- 2-5 years of hands-on experience writing detection rules or signatures with Snort, Suricata, Zeek, YARA, Sigma, or similar
- Strong networking fundamentals: TCP/IP, HTTP/HTTPS, DNS, TLS, and packet analysis with Wireshark or pcap tools
- Experience testing rules with PoC exploits and tuning them to reduce false positives
- Exposure to CVE and vulnerability research, with the ability to read advisories and turn them into detections
- Working knowledge of Python or Bash for test automation, and comfort with Linux
- Clear written communication, since you'll document what each rule covers and what it doesn't
Good to have
- Experience with deep packet inspection, application identification (nDPI or similar), or DLP regex and pattern work
- Background at a network security vendor (firewall, IPS, NGFW, secure web gateway)
- Public work such as GitHub rules, blog posts, CVE credits, or CTF participation
This role is not
A SOC monitoring, alert triage, or pure penetration testing role. We are looking for people who write and test detection rules.
Role Overview
We are looking for an experienced Network Security Engineer to design, implement, maintain, and secure enterprise network infrastructure. The role requires a strong understanding of network security principles, hands-on experience with security technologies, and the ability to troubleshoot complex network and security issues.
The ideal candidate will work closely with network, infrastructure, cloud, application, and security teams to ensure secure, resilient, and highly available network environments. The candidate should be comfortable handling security incidents, performing root-cause analysis, implementing security controls, and contributing to continuous improvement of the organization's network security posture.
Key Responsibilities
- Design, implement, configure, and maintain enterprise network security infrastructure.
- Manage and support network security technologies including firewalls, VPNs, IDS/IPS, secure gateways, and network access controls.
- Configure and maintain security policies, access rules, NAT, VPN tunnels, and related network security controls.
- Monitor network traffic and security events to identify potential threats, anomalies, and unauthorized access.
- Troubleshoot complex network connectivity and security-related issues and perform root-cause analysis.
- Investigate and respond to network security incidents in coordination with security and infrastructure teams.
- Review firewall and network security rules regularly and ensure they follow established security standards and business requirements.
- Support secure connectivity across data centers, corporate networks, remote locations, cloud environments, and third-party networks.
- Participate in network security assessments, vulnerability remediation, and security hardening activities.
- Implement and maintain network segmentation and access-control mechanisms.
- Work with internal teams to assess security requirements for new applications, infrastructure, and network changes.
- Participate in change management, implementation, and post-change validation activities.
- Maintain network security documentation, architecture diagrams, configurations, and operational procedures.
- Contribute to security improvement initiatives, automation, standardization, and operational efficiency.
- Work with vendors and technology partners for issue resolution, upgrades, and technical escalations.
- Ensure network security operations align with organizational policies, industry standards, and compliance requirements.
Required Skills
- Strong experience in network security engineering and enterprise networking.
- Good understanding of TCP/IP, DNS, DHCP, HTTP/HTTPS, routing, switching, VLANs, and network protocols.
- Hands-on experience with enterprise firewalls and security gateways.
- Strong understanding of VPN technologies, IPsec, SSL/TLS, NAT, and access-control policies.
- Experience with IDS/IPS, network monitoring, traffic analysis, and security event investigation.
- Experience troubleshooting network and security issues across complex environments.
- Good understanding of network security architecture, segmentation, and secure connectivity.
- Experience with incident management, change management, and root-cause analysis.
- Familiarity with security best practices, vulnerability management, and network hardening.
- Strong analytical, troubleshooting, and problem-solving skills.
- Good written and verbal communication skills with the ability to work effectively with technical and non-technical stakeholders.
Preferred Skills
- Experience with security technologies from vendors such as Palo Alto, Fortinet, Cisco, Check Point, or similar.
- Exposure to cloud networking and cloud security across AWS, Azure, or GCP.
- Knowledge of Zero Trust, SASE, SD-WAN, or network access control concepts.
- Experience with security monitoring/SIEM platforms.
- Exposure to scripting or automation using Python, PowerShell, or similar technologies.
- Relevant certifications such as CCNA/CCNP Security, PCNSE, Fortinet certifications, or equivalent are an advantage.
Key Competencies
- Network Security Engineering
- Enterprise Network Troubleshooting
- Firewall & VPN Management
- Security Incident Handling
- Network Monitoring & Analysis
- Security Hardening
- Root-Cause Analysis
- Risk & Vulnerability Awareness
- Change & Configuration Management
- Stakeholder Communication
- Problem Solving
- Documentation & Process Discipline






