- responsible for owning the Network security posture, Security Lifecycle and protection against threats across the Broadband access network that includes, but is not limited to Edge Routers, Broadband Access routers and switches, CPE equipment and RAN transport infrastructure.
- required to understand complex network architectures utilizing various protocols, topologies, and vendor hardware.
- involves hands‑on work and demonstrating subject matter expertise with Routers, switches, and other networking gear, as well as Security Information and Event Management (SIEM) tools, particularly Splunk and ISE.
- required to leverage automation platforms to develop scripts and tools to enhance security operations and play a key role in monitoring, analyzing, and leading response to network security incidents while implementing proactive measures to safeguard critical assets.
- responsible for continuously monitoring and proactively detecting threats to safeguard network functions and assets, with a focus on leveraging automation and AI.
- accountability for the network security scorecard for each network element type.
- collaborate with internal organizations and vendors to improve security posture by implementing Network Security Policies across diverse network elements.
- Planning, designing, and leading execution of Network Security policies across all owned assets.
- Utilize existing expertise of routing, switching and network architecture to build a deep understanding of the network assets under your span of control and the product and feature roadmap.
- Quickly assess the impact of vulnerabilities and identify End‑of‑Life/End‑of‑Support hardware/software to create and lead a remediation plan.
- Discovering, identifying, and inventorying all network assets and asset information (model, version, etc) in your respective area of responsibility.
- Drive continuous improvement of network visibility and telemetry collection to strengthen detection and response capabilities.
- Lead the development of baseline operations for the team and implement threat detections, automated alerts to proactively identify potential cyber threats, leveraging SIEM tools such as Splunk.
- Lead the development of incident response protocols to quickly identify, contain, and resolve network security incidents and threats.
- Execute root cause analysis for incidents, perform regular security control assessments, and lead strategic security solution implementation in a highly scalable environment.
- Ensuring that the security controls planned for the Networks are operating effectively by performing audits.
- Leverage network automation and scripting to make the process efficient.
- Lead the development and upkeep of network automation systems for ongoing security monitoring and early identification of security incidents.
- Offer technical guidance and expert feedback on the Vendor Plan of Record (POR), selection of security/monitoring tools, and vendor engagements.
- Develop essential technical documentation, including playbooks, Confluence pages, Network diagrams, and Method of Procedures (MOPs).
- Prepare and deliver quarterly presentations to leadership detailing project status and updates.
- Mentor Team members as well as Organizational partners and act as the overall SME.
- Building healthy relationships across the Operations, Engineering, and Planning organizations to better understand the current and future landscape of the network.
Requirements
- Bachelor’s degree or four or more years of work experience.
- Six or more years of relevant experience required, demonstrated through one or a combination of work and/or military experience, or specialized training.
- Demonstrated leadership skills as a project and/or team lead for cross‑functional project teams and vendor management.
- Expert understanding of Spine, Leaf, SDN, OTNGN, and Hub & Spoke network architectures.
- Expert‑level understanding of routing and switching security, including BGP and IGP security, is mandatory, e.g., BGP hijacking, Route injection, and managing complex ACLs.
- Hands‑on experience with internet‑scale data sets such as Netflow, BGP, DNS, and IDS logs.
- Fluency in security frameworks, particularly the application of CIS Benchmarks (Level 1 & 2 hardening) and mitigating MITRE ATT&CK Tactics, Techniques, and Procedures (TTPs) on network devices, along with a solid understanding of network security fundamentals.
- Expertise in using Python, API, Ansible, or Terraform‑type tools to automate and develop custom security “health checks” on network devices.
- Ability to assess and understand complex transport and 5G-SA network architectures.
- Understanding of network security fundamental policies and principles.
- Experience with utilizing SIEM tools like Splunk for performing analysis.
Core Competencies
Demonstrates expertise in Network Security Management, including the development and implementation of security policies, incident response protocols, and automation solutions. Proficient in leveraging SIEM tools, particularly Splunk, and scripting languages like Python for enhancing security operations and monitoring.
Highest‑signal resume keywords
- Network Security Management
- Routing and Switching Security
- SIEM Tools (Splunk)
- Network Automation (Python, Ansible)
- Incident Response Protocols
ATS Optimization Keywords
Hard Skills
- Network Security Posture
- Routing and Switching
- BGP and IGP Security
- Network Architecture (Spine, Leaf, SDN)
- Security Frameworks (CIS Benchmarks)
- Automation Scripting (Python, API, Ansible)
- Data Analysis (Netflow, BGP, DNS, IDS Logs)
- Threat Detection and Response
- Security Control Assessments
- Vulnerability Assessment
Soft Skills
- Leadership
- Collaboration
- Mentoring
- Communication
- Project Management
Industry Keywords
- Network Security Policies
- Cyber Threats
- 5G-SA Network Architectures
- End‑of‑Life/End‑of‑Support Management
- Security Incident Management
Tools & Technologies
- SIEM Tools (Splunk)
- Network Monitoring Tools
- Automation Platforms
- Confluence
- Network Diagrams