Principal Network Security Engineer
Alpharetta, Fulton County, Georgia, 30239, USA
Listed on 2026-06-06
-
IT/Tech
Cybersecurity, Systems Engineer
Key Responsibilities
- Providing recommendations to improve defensive cyberspace operations – internal defensive measures (DCO-IDM) and cyber resiliency of the portfolio’s systems and services.
- Collaborating with stakeholders to improve the core networking security posture through the assessment and implementation of the Network Security Fundamentals (Access Management, Situational Awareness, Configuration Hardening, Vulnerability Mitigation).
- Providing recommendations to improve defensive cybersecurity practices.
- Discovering, identifying, and confirming inventory of all network assets and asset information (model, version, etc) in your area of responsibility.
- Building a deep understanding of the network assets and the roadmap to quickly assess the impact of vulnerabilities and identify End‑of‑Life/End‑of‑Support hardware/software.
- Developing a baseline of normal operations and implementing intelligent threat detections to alert on deviations to proactively identify potential cyber threats.
- Performing log analysis and developing incident response protocols to quickly identify, contain, and resolve network security incidents and threats.
- Architecting security hardening and implementation of CIS Benchmarks for Cisco IOS XE/XR/NX‑OS, Nokia SR OS, Juniper OS, and F5 F5OS/TMOS to enforce "Gold Standard" configurations.
- Designing and auditing ACLs to drive segmentation strategy across network infrastructure.
- Creating and using automation tools (Ansible, Spunk) and programmatic methods to build life cycle management workflows, perform configuration compliance, and implement threat modeling / detection.
- Driving adversary emulation by mapping core network defenses directly to the MITRE ATT&CK for Network Devices matrix.
- Bachelor’s degree or four or more years of relevant work experience demonstrated in data networking and telecommunications, including expert knowledge of TCP/IP (IPv4 & IPv6), VXLAN, SR, EVPN, OSPF, and BGP.
- Six or more years of relevant work experience.
- Demonstrated experience in Carrier/Service Provider Network Engineering or Security with hands‑on proficiency with Cisco IOS XE/XR/NX‑OS, Nokia SR OS, Juniper OS, and F5 F5OS/TMOS.
- Proven experience securing Spine‑Leaf architecture and data center fabrics with strong knowledge of BGP security (RPKI, prefix‑lists, TTL security) and IGP security (OSPF/IS‑IS authentication).
- Framework fluency in CIS Benchmarks applying Level 1 & Level 2 hardening profiles.
- Proven track record of managing and delivering results and ability to explain how specific network controls mitigate specific TTPs (Tactics, Techniques, and Procedures) in the Network Devices matrix.
- Strong leadership and mentoring abilities.
- Ability to work with diverse stakeholders including highly technical teams, business owners, and executives.
- Effective written, interpersonal, and verbal communication skills.
- Cisco: CCIE (Service Provider or Security)
- Nokia: NRS II (Nokia Routing Specialist) or SRA (Service Routing Architect)
- Juniper: JNCIE (Service Provider or Security)
- F5:
Certified Technology Specialist (BIG‑IP) or Solution Expert - CISSP
In this hybrid role, you will have a defined work location that includes working from home and a minimum of three days per week in the office, which will be set by your manager. Employees are responsible for maintaining compliance with hybrid work policies.
Work Hours40 hours per week (scheduled weekly hours)
Equal Employment OpportunityVerizon is an equal‑opportunity employer. We evaluate qualified applicants without regard to veteran status, disability or other legally protected characteristics.
Benefits & CompensationOur benefits are designed to help you move forward in your career and in areas of your life outside of Verizon. They include medical, dental, vision, short and long‑term disability, basic life insurance, supplemental life insurance, AD&D insurance, identity theft protection, pet insurance, and group home & auto insurance. We also offer a matched 401(k) savings plan, up to 8 company‑paid holidays per year, up to 6 personal days per year, paid parental leave, adoption assistance, tuition assistance, and other incentives.
Depending on the role, employees have the opportunity to receive compensation in the form of premium pay such as overtime, shift differential, holiday pay, allowances, etc. Newly hired employees receive up to 15 days of vacation per year, which grows with additional service. Part‑time employees’ coverage may vary based on eligibility.
$ – $ per year (based on full‑time schedule, location, and confirmed job‑related skills and experience)
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).