Point your AI agent at freehire and let it find you a job.

Get the CLI →

Staffy

NewBe an early applicant

Cybersecurity Engineer – Email Security

Posted Updated
Discussion

Summary

A hands-on cybersecurity engineer leads the end-to-end deployment and operation of the Abnormal Security email platform across Microsoft 365 or Google Workspace, tuning detection for BEC, phishing, and impersonation, integrating SOC/helpdesk workflows, and training teams. Remote role across LATAM via recruiting/staffing firm Staffy.

About the company

We are a young and fast-growing recruiting company with five years of experience working across Latin America and the United States. We partner closely with teams and founders to help them build strong, high-impact teams through recruitment, outsourcing, and team-building services.

Our culture is built on effective communication, trust, and transparency. We believe great work happens when people feel heard, supported, and empowered to grow. Today, our team is made up of more than 80 professionals working across different projects throughout the region, collaborating remotely and learning from each other every day.

About the role

At Staffy, we’re seeking a Cybersecurity Engineer – Email Security to lead the deployment and operationalization of a modern cloud-based email security platform in a production environment.

The role will focus on implementing Abnormal Security across the organization’s email environment, integrating it with existing security workflows, optimizing detection and remediation capabilities, and enabling the SOC and helpdesk teams to operate the platform effectively.

The ideal candidate is a hands-on cybersecurity engineer with proven experience deploying and administering enterprise email security solutions and a strong understanding of modern email threats such as Business Email Compromise (BEC), Vendor Email Compromise (VEC), phishing, and executive impersonation.

Responsibilities

  • Lead the end-to-end deployment of Abnormal Security across Microsoft 365/Exchange Online or Google Workspace environments.
  • Configure API-based integrations, detection policies, automated quarantine, and remediation actions for delivered threats.
  • Coordinate migration, cutover, or coexistence with existing secure email gateways such as Proofpoint, Mimecast, or Microsoft Defender for Office 365.
  • Decommission redundant email security tooling where appropriate and ensure clearly defined responsibilities across the security stack.
  • Tune detection and response capabilities for BEC, VEC, phishing, and executive impersonation, with particular attention to fraud and financial loss risks.
  • Integrate user-reported phishing workflows and SOC triage processes with the email security platform and case management workflows.
  • Develop and maintain reporting on email threat trends, detection effectiveness, and remediation performance.
  • Investigate email security events and continuously optimize policies and detection capabilities based on emerging threats and operational findings.
  • Develop operational procedures and documentation for email security monitoring, triage, escalation, and remediation.
  • Train helpdesk and SOC teams on the new platform and establish effective email threat triage procedures.
  • Leverage AI/LLM tools to accelerate engineering, scripting, automation, documentation, investigation, and triage workflows while validating AI-generated output before implementation.

Requirements

  • 4+ years of experience in cybersecurity engineering or a closely related security engineering role.
  • Direct hands-on experience deploying or administering a cloud email security platform in a production environment, such as Abnormal Security, Proofpoint, Mimecast, or Microsoft Defender for Office 365.
  • Experience with Microsoft 365/Exchange Online or Google Workspace email environments.
  • Understanding of modern email threats, including BEC, VEC, phishing, and executive impersonation.
  • Experience integrating security platforms with existing SOC, helpdesk, ticketing, or incident response workflows.
  • Ability to configure security policies, automate remediation actions, and troubleshoot production email security environments.
  • Demonstrated practical use of AI/LLM tools such as Claude, ChatGPT, GitHub Copilot, or equivalent for engineering work, including scripting, automation, technical documentation, and security triage.
  • Ability to critically evaluate AI-generated output and validate its accuracy before applying it to production environments.
  • Strong troubleshooting, communication, documentation, and problem-solving skills.

Nice to have

  • Previous experience in the Bitcoin mining, energy, utilities, or critical infrastructure sectors.
  • Experience managing email security deployments in large or complex enterprise environments.
  • Familiarity with email security metrics, phishing response workflows, and security operations processes.

Benefits

  • People First culture
  • Referral Program
  • Free access to streaming platforms
  • Free access to Spotify Premium
  • GYM discount
  • Travel discount
  • E-Learning discount
  • Birthday-day gift
  • Points Program

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available