Sr. Network Security Engineer
Listed on 2026-04-20
-
Security
Cybersecurity, Network Security
NYU Langone Health is a fully integrated health system that consistently achieves the best patient outcomes through a rigorous focus on quality that has resulted in some of the lowest mortality rates in the nation. Vizient Inc. has ranked NYU Langone the No. 1 comprehensive academic medical center in the country for three years in a row, and U.S. News & World Report recently placed nine of its clinical specialties among the top five in the nation.
NYU Langone offers a comprehensive range of medical services with one high standard of care across 6 inpatient locations, its Perlmutter Cancer Center, and over 320 outpatient locations in the New York area and Florida. With $14.2 billion in revenue this year, the system also includes two tuition‑free medical schools, in Manhattan and on Long Island, and a vast research enterprise with over $1 billion in active awards from the National Institutes of Health.
For more information, go to NYU Langone Health, and interact with us on Linked In, Glassdoor, Indeed, Facebook, Twitter, You Tube and Instagram.
Position SummaryWe have an exciting opportunity to join our team as a Sr. Network Security Engineer. In this role, the Senior Network Security Engineer will design, implement, and manage enterprise‑level VPN solutions and network security infrastructure. The ideal candidate will have deep expertise in Palo Alto Global Protect, F5 VPN technologies, and enterprise firewall management across multi‑vendor environments. The ideal candidate will be an expert in VPN technologies and possess broad experience across a range of leading security platforms.
You will be responsible for ensuring secure, reliable, and high‑performance connectivity for our global workforce and protecting our network perimeter. This position will play a critical role in the operational stability and strategic evolution of our security posture, working with technologies from Palo Alto Networks, F5, Fortinet, Forescout, and Gigamon.
- Design, deploy, and maintain Palo Alto Global Protect VPN infrastructure for secure remote access
- Implement and manage F5 APM (Access Policy Manager) and VPN solutions
- Configure and optimize VPN policies, authentication mechanisms, and access controls
- Troubleshoot complex VPN connectivity issues and performance bottlenecks
- Develop and maintain VPN architecture documentation and standard operating procedures
- Configure, manage, and monitor network security devices, including firewalls, VPNs, IDS/IPS, and load balancers. Ensure proper access controls, segmentation, and hardening of network devices.
- Support responses to security incidents, including conducting thorough investigations and implementing necessary remediation measures. Create incident response plans and playbooks to enhance incident handling efficiency.
- Implement, and enforce network security policies, procedures, and guidelines. Ensure compliance with industry regulations and standards related to network security.
- Conduct regular network vulnerability assessments and penetration testing. Collaborate with IT teams to prioritize and remediate identified vulnerabilities.
- Implement and manage network security monitoring tools to detect and respond to security threats in real-time. Configure alerts and notifications to proactively address potential security incidents.
- Collaborate with cross‑functional teams to promote a security‑first mindset across the organization.
- Stay up to date with the latest security threats, trends, and best practices. Participate in industry conferences and forums to share knowledge and gain insights.
To qualify you must have typically requires 7 or more years of experience and a BA/BS degree.
Preferred Qualifications- 5+ years of experience with Palo Alto Networks firewalls and Global Protect VPN
- 3+ years of hands‑on experience with F5 BIG‑IP (LTM, APM, ASM)
- Strong knowledge of Fortinet Forti Gate firewall configuration and management
- Experience with Forescout NAC deployment and policy management
- Proficiency with Gigamon visibility platforms and packet brokering
- Experience with authentication protocols (RADIUS, LDAP, SAML, MFA)
- Palo Alto Networks…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).