Responsibilities
- Architect and operate defense-in-depth network security controls across cloud and on-prem environments
- Continuously tune IPS, WAF, and DDoS protections against real-world attack patterns
- Implement and enforce ZTNA and DLP strategies that hold up under pressure—not just in audits
- Actively hunt for weaknesses in network design, segmentation, and traffic flows
- Lead response to high-severity incidents and drive root cause remediation—not just containment
- Partner with engineering to embed network security into systems before they ship—not after they fail
- Challenge assumptions, test controls, and eliminate blind spots
- Perform implementations and configuration of network security technologies
- Apply Zero Trust principles to control network access to resources
- Recommend, create, and maintain security configuration baselines to be used to harden systems
- Ensure all systems security operations and maintenance activities are properly documented and updated
- Automate manual tasks for improved efficiencies (eg. infrastructure as code)
- Support Enterprise Risk with audits and compliance initiatives
- Participate in an on-call rotation as required
Qualifications
- 5+ years of experience in a Network Security Engineering role working with enterprise class Firewalls, DDOS/WAF, IPS and ZTNA
- Ability to assess network security architectures, document findings and recommendations based on industry best practices
- Solid understanding of network protocols, including TCP/IP, DNS, DHCP, and routing protocols
- Knowledge of security frameworks including NIST, ISO, CIS, OWASP 10, etc
- Experience with firewall administration, VPN configuration, and network intrusion detection/prevention systems
- Ability to define and review security policies to control access to systems
- Experience with Public Cloud provider infrastructure, system deployments and product release operations (AWS Preferred)
- Hands on experience leveraging AI-driven tools and techniques to enhance network threat detection and automate network security operations
- Bachelor's or Master's degree in Information Systems, Information Security, or related fields
- Relevant certifications such as CISSP, CISA, CISM, or CCNP Security
- Working knowledge with PowerShell, Ansible, Terraform, RegEx, Chef or Puppet
- Results oriented, high energy, self-motivated
#J-18808-Ljbffr