Responsibilities
- Define and enforce network security architecture standards and principles
- Provide technical leadership and mentorship to security and network engineering teams
- Lead network security assessments, including threat modeling and intrusion detection
- Develop and deploy advanced security automation, tooling, and infrastructure-as-code
- Collaborate with network engineers to integrate security controls within SDN, BGP/MPLS
- Participate in incident response efforts related to network security incidents
- Drive the security review process for all network infrastructure or product changes
- Promote security best practices through documentation, tooling, and collaboration
Requirements
- 8-10 years of experience in network security engineering, network penetration testing, or security-focused infrastructure roles
- Excellent communication skills to effectively collaborate with both technical and non-technical stakeholders
- Deep understanding of Layer 2/3/4 networking protocols (BGP, OSPF, IS-IS, VRRP, LACP) and their security implications
- Deep understanding of distributed denial-of-service (DDoS) attack vectors and mitigation strategies
- Extensive experience in designing and building secure networks from the ground up
- Experience leading projects and providing technical guidance to cross-functional teams
- Proficiency in scripting/programming languages such as Python or Go
- Familiarity with Corero, Cloudflare, Juniper, Arista, or Ciena network platforms
- Strong Linux experience and familiarity with firewall, routing, and DNS security
- Understanding and experience with Network Intrusion Detection principles and tooling
- Knowledge of MPLS, BGP-LU, and SDN architectures from a security perspective
- Hands‑on experience with observability tools like Prometheus, Grafana, and ELK stack
- Comfortable with Git-based workflows and collaborative development
#J-18808-Ljbffr