Role Overview:
We are looking for a Network Security Engineer to be responsible for the design, implementation, maintenance, and continuous improvement of network security solutions. You will lead network security posture management, system operations, perimeter defense controls, compliance activities, and automation initiatives to protect critical infrastructure.
To be successful in this role, you should have solid experience in information security and network infrastructure, with a strong understanding of security protocols, firewalls, VPNs, and risk management. You should also possess strong interpersonal and communication skills and be able to collaborate effectively with a wide variety of stakeholders.
Primary Responsibilities:
Network Security Posture & Firmware Patching
- Lead monthly patching cycles for network security devices and firmware
- Automate patch deployment where possible (e.g., via Ansible or vendor tools)
- Perform configuration hardening audits and remediate posture drifts
- Report posture metrics and status to leadership
Management and Maintenance of Network Security Systems
- Monitor system health and performance of network security platforms
- Perform regular backups and disaster recovery testing
- Manage device groups, templates, and stacks
- Push policy changes safely and tune logging and reporting
- Automate repetitive operational tasks
Perimeter Defense & Network Security Controls Implementation
- Design and configure firewalls, VPNs, Network Access Control (NAC), and segmentation policies
- Conduct pre- and post-implementation testing
- Integrate security controls with monitoring and SIEM tools
Compliance, Auditing & Security Hardening
- Achieve and maintain compliance with relevant standards (e.g., ISO 27001, NIST, PCI-DSS network controls) during annual and internal audits
- Remediate all audit findings within defined SLAs
- Ensure ≥95% of network devices meet baseline hardening standards
Knowledge Sharing, Automation & Professional Development
- Automate repetitive tasks using Python, Ansible, Panorama API, or other tools
- Pursue relevant professional certifications and stay current with emerging threats and technologies
- Share threat intelligence, findings, and best practices with the broader security team
Requirements:
- A bachelor’s or associate’s degree in IT, Computer Science, or a related field
- 5–10 years’ experience in information security and IT risk management, with a strong focus on network security
- IT security or risk assessment certifications are advantageous (e.g., CISSP, CCNP Security, PCNSA/PCNSE, or equivalent)
- Hands-on experience managing firewalls, VPNs, and network security appliances
- Advanced understanding of security protocols, cryptography, network segmentation, and security architectures
- Strong working knowledge of IT risks, security implementations, and common operating systems
- Experience with automation tools such as Ansible, Python scripting, and vendor APIs is highly desirable
- Excellent problem-solving, communication, teaching, and interpersonal skills