Senior Lead Network Information Security Architect
Listed on 2026-01-02
-
IT/Tech
Cybersecurity, Systems Engineer
About Lumen
Lumen connects the world. We are igniting business growth by connecting people, data and applications – quickly, securely, and effortlessly. Together, we are building a culture and company from the people up – committed to teamwork, trust and transparency. People power progress.
We’re looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future.
The RoleThe Senior Lead Network Information Security Architect within the Global Security Services organization is responsible for conducting security risk assessments specifically targeting network infrastructures in coordination with the Lumen business owners, the Governance, Risk, and Compliance team, and the Product and Platform Security team. The purpose is to ensure compliance with corporate policy, standards, procedures, and industry best practices. The deliverables include metrics, reports, and mitigations associated with potential findings, issues, and risks that could impact Lumen or its customers.
The successful candidate will have extensive technical knowledge of current and emerging network-related cyber threats, as well as security technologies and methods used to protect corporate and customer-facing network infrastructures. This candidate must be able to work independently and as a team leader to consult with internal clients on security topics, providing designs, reviews, and recommendations.
LocationThis is a remote opportunity open to candidates located anywhere in the U.S.
The Main Responsibilities- Lead assessments of potential risks specifically targeting network infrastructures, including applications, databases, cloud environments, and provide security requirements and recommendations for risk mitigation related to network security.
- Consult as a network security subject matter expert with architects, engineers, third parties and others on potential solutions.
- Recommend new network-oriented information security systems and controls to mitigate emerging threats and risks across the company's network infrastructure.
- Ensure reports and findings on network security are delivered in a timely and appropriate manner to management, operations, and executive leadership.
- Recommend new network security policy, standards, best practices, and system configuration standards. Consult with internal clients on network security topics and policy interpretation.
- Coordinate activities across multiple departments and business units, emphasizing network security principals and practices.
- Stay up-to-date with emerging security trends, vulnerabilities, and best practices, and recommend adjustments to security strategies as needed.
- 7+ years of relevant experience, including threat modeling, security design reviews, and security architecture
- Proficiency with next-generation firewalls from major vendors such as Palo Alto, Fortinet, and Checkpoint.
- Strong understanding of IDS/IPS technology, including signatures.
- Knowledgeable in Network Detection and Response (NDR).
- Thorough understanding of routing and switching (Access Control Lists (ACLs)).
- Experience with routing protocols (BGP, OSPF, etc.).
- Understanding of proper device hardening (routers, switches, etc.)
- Insight into proper segmentation concepts and enforcement methods.
- Comprehension of Zero Trust principles and their application to functional designs.
- Foundational knowledge of identity and access management concepts/principles, including Authentication and Authorization processes.
- Experience with web application firewalls (WAF)
- Knowledge of design and hardening for bastion/jump hosts
- Proficiency with remote access methods such as user VPN and ZTNA.
- Experience with VPN configuration (IPSEC)
- Understanding of software-defined networking (SDWAN).
- Knowledge of proper methods to secure enterprise and guest WIFI.
- Experience with security architecture and deployment models.
- Experience with securing highly sensitive data.
- Demonstrate knowledge of security technologies, trends, leading practices, and regulatory requirements and government security standards such as FedRAMP and Controlled…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).