Network Security Engineer
Listed on 2026-06-26
-
IT/Tech
Cybersecurity, Network Security, Information Security
We are seeking an experienced Network Security Engineer to design, implement, and support secure network infrastructure while contributing to the organization's overall cybersecurity and risk management initiatives. This role combines deep technical expertise in network security engineering with an understanding of governance, risk, and compliance (GRC) principles to ensure security controls align with organizational policies, regulatory requirements, and industry best practices.
The ideal candidate has experience securing enterprise networks, administering security technologies, responding to security incidents, and partnering with compliance and audit teams to strengthen the organization's overall security posture.
Key Responsibilities Network Security Engineering- Design, implement, maintain, and optimize secure enterprise network infrastructure across on‑premises and cloud environments.
- Configure, administer, and troubleshoot firewalls, VPNs, routers, switches, wireless networks, proxies, and network access control solutions.
- Manage and support security technologies including intrusion detection/prevention systems (IDS/IPS), web application firewalls (WAF), secure web gateways, DNS security, and network segmentation.
- Monitor network traffic and security events to identify vulnerabilities, suspicious activity, and emerging threats.
- Perform firewall rule reviews, network access evaluations, and security hardening in accordance with established security standards.
- Support secure remote access solutions and Zero Trust network initiatives.
- Collaborate with infrastructure, cloud, and application teams to integrate security into new technologies and system implementations.
- Participate in incident response activities including investigation, containment, remediation, and post‑incident analysis.
- Conduct vulnerability assessments and coordinate remediation efforts with internal technology teams.
- Assist with penetration testing activities and validate remediation of identified findings.
- Maintain security documentation, diagrams, configuration standards, and operational procedures.
- Evaluate new security technologies and recommend improvements to enhance the organization's security posture.
- Support cybersecurity governance initiatives by helping maintain security policies, standards, and technical procedures.
- Assist with security risk assessments and remediation planning for infrastructure and technology projects.
- Partner with internal audit, compliance, and risk management teams during assessments and security reviews.
- Help ensure security controls align with applicable regulatory and industry frameworks such as NIST CSF, NIST 800‑53, CIS Controls, ISO 27001, SOC 2, PCI DSS, HIPAA, or SOX, as applicable.
- Participate in control testing, evidence collection, remediation tracking, and audit preparation.
- Contribute to third‑party/vendor security assessments and risk evaluations.
- Bachelor's degree in Computer Science, Information Security, Information Technology, or a related discipline, or equivalent professional experience.
- 5+ years of experience in network security engineering, cybersecurity, or information security.
- Experience administering enterprise firewall platforms such as Palo Alto, Fortinet, Cisco Firepower, Check Point, or similar technologies.
- Strong understanding of networking protocols including TCP/IP, DNS, DHCP, BGP, OSPF, VLANs, VPN, and routing/switching concepts.
- Experience with IDS/IPS, SIEM, endpoint security, vulnerability management, and network monitoring tools.
- Familiarity with cloud security concepts across Azure, AWS, or Google Cloud Platform.
- Working knowledge of cybersecurity governance, risk management, and compliance practices.
- Experience supporting security audits and regulatory compliance initiatives.
- Strong analytical, troubleshooting, and problem‑solving skills.
- Excellent written and verbal communication skills with the ability to communicate technical concepts to both technical and non‑technical audiences.
- Industry certifications such as CISSP, CCNP Security, CCNA Security, PCNSE, NSE, Security+, CySA+, CISM, CRISC, GSEC, or GIAC certifications.
- Experience with scripting or automation using Power Shell, Python, or Bash.
- Familiarity with Infrastructure as Code (Terraform, Ansible) and Dev Sec Ops practices.
- Experience implementing Zero Trust architectures and identity‑based security controls.
- Exposure to cloud‑native security tools and security automation platforms.
- Experience working within regulated industries such as financial services, healthcare, government, or critical infrastructure.
Candidates may have experience with technologies such as:
- Splunk, Microsoft Sentinel, QRadar, Log Rhythm
- Tenable, Qualys, Rapid7
- VPN, MFA, NAC, IDS/IPS, WAF, DNS Security, SIEM, DLP
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).