DLP Security Engineer

<gh-intro>
<text>

We're looking for a Data Loss Prevention (DLP) Security Engineer to join our internal security team in Tallinn, Estonia. You'll strengthen how Bolt protects its most sensitive internal data — understanding how it's stored, moved, and processed, and building the detections and controls that keep it from ending up where it shouldn't.

</text>
</gh-intro>

<gh-about-us>
<title>About us</title>

<text>

With over 200 million customers in 50+ countries, Bolt is one of the fastest-growing tech companies in Europe and Africa. And it's all thanks to our people.

We believe in creating an inclusive environment where everyone is welcome, regardless of race, colour, religion, gender identity, sexual orientation, age, or disability.

Our ultimate goal is to make cities for people, not cars, and we need your help to achieve this mission!

</text>

</gh-about-us>

<gh-role-detail>

<title>About the role</title>

<text>

As a DLP Security Engineer, you will enhance Bolt's internal data security posture by analysing user events and processes to identify gaps and recommend mitigating controls. You'll investigate internal and external misuse cases, mature our threat intelligence and detection engineering efforts, and support the wider security team through on-duty rotation, incident response, and post-incident analysis.

</text>
</gh-role-detail>

<gh-responsibilities>

<title>Main tasks and responsibilities:</title>

<bulletpoints>

  • <point>Investigating data-loss incidents and near misses, and contributing lessons learned in postmortems to prevent recurrence.</point>
  • <point>Improving our data loss prevention program by understanding how internal data is stored, moved, and processed across Bolt's environment.</point>
  • <point>Building and tuning detections with the detection engineering team to produce more actionable, less noisy alerts.</point>
  • <point>Consuming threat intelligence to mature our program and identify Bolt data leaked to the deep, dark, or public web.</point>
  • <point>Participating in on-duty rotation (from 0900AM to 1700AM on Mondays to Fridays) to triage and resolve security cases affecting our internal assets.</point>
  • <point>Analysing the business impact of security issues and sharing results with affected teams and stakeholders.</point>

</bulletpoints>
</gh-responsibilities>

<gh-requirements>

<title>About you:</title>

<bulletpoints>

  • <point>You have hands-on experience in information security, with a focus on data loss prevention, detection engineering, or incident response.</point>
  • <point>You understand how data flows through modern cloud and SaaS environments, and how internal or external actors can exfiltrate it.</point>
  • <point>You have experience with DLP tooling and security logging/monitoring (e.g., SIEM, endpoint, email/CASB, or cloud-native DLP).</point>
  • <point>You bring scripting or programming skills (e.g., Python) to automate analysis and improve security workflows.</point>
  • <point>You have a solid grasp of threat actor tactics and forensic indicators of data theft or exfiltration.</point>
  • <point>You communicate clearly and collaborate with technical and non-technical stakeholders to drive risk mitigation.</point>

</bulletpoints>
<text>

Nice to have: experience with insider-risk programs, threat intelligence, or working in a fast-scaling tech or fintech environment.

Experience is great, but what we really look for is drive, intelligence, and integrity. So even if you don’t tick every box, please consider applying if you feel you’re the kind of person described above!
</text>
</gh-requirements>

<gh-perks>

<title>Why you’ll love it here:</title>

<bulletpoints>

  • <point>Accelerate your professional growth with unique career opportunities.</point>
  • <point>Enjoy a rewarding salary and stock options, knowing that as Bolt succeeds, so do you.</point>
  • <point>Take care of your physical and mental health with our wellness perks.</point>
  • <point>Celebrate 5 years at Bolt with a 1-month paid sabbatical to recharge.</point>
  • <point>Connect with colleagues at annual company events and smaller team gatherings.</point>
  • <point>Balance flexibility and in-person collaboration with our hybrid model, including at least 12 monthly in-office days.</point>


</bulletpoints>
<text>*Some perks may differ depending on your location and role.</text>
</gh-perks>

#LI-Hybrid