More jobs:
Network Security Engineer
Job in
Pittsburgh, Allegheny County, Pennsylvania, 15289, USA
Listed on 2026-06-26
Listing for:
Koitecc Solutions
Full Time
position Listed on 2026-06-26
Job specializations:
-
Security
Cybersecurity, Network Security
Job Description & How to Apply Below
Network Security Engineer – Customers Bank
Location:
Malvern, PA & West Reading, PA (2 Locations) – Full Time. Job -. Must be legally eligible to work in the United States without sponsorship.
- Design, deploy, and manage Palo Alto Networks next‑generation firewalls (NGFWs), including security policies, NAT, App‑, User‑, Threat Prevention, URL Filtering, and Wild Fire across the enterprise and branch locations.
- Administer and maintain Cisco ASA and Firepower (FTD) firewalls, managing access control policies, intrusion prevention, and platform lifecycle including upgrades and patching.
- Manage and maintain VPN infrastructure, including Cisco Any Connect/Secure Access remote access, as well as site‑to‑site IPSec tunnels, ensuring secure and reliable connectivity for remote users and branch offices.
- Support and secure the Cisco Catalyst SD‑WAN environment, including applying security policies, traffic segmentation, and ensuring encrypted transport across WAN fabrics.
- Administer Cisco Umbrella/Secure Access DNS‑layer security and web filtering policies, managing category‑based controls, threat intelligence integrations, and reporting across the enterprise.
- Lead investigation and response to network‑layer security incidents, anomalies, and policy violations.
- Participate in and lead change management activities in accordance with ITIL best practices, ensuring proper documentation, approvals, post‑implementation reviews, and compliance with regulatory requirements.
- Collaborate with the Information Security, Cloud, and Infrastructure teams to design and implement network segmentation, zero‑trust controls, and security architecture improvements aligned to PCI‑DSS, SOX, and NIST frameworks.
- Work both independently and collaboratively across IT teams, vendors, and business stakeholders to deliver security projects, resolve incidents, and drive continuous improvement of the network security posture.
- Maintain thorough documentation of firewall policies, network security architecture, runbooks, and standard operating procedures.
- 5+ years of hands‑on experience in network security engineering, with demonstrated expertise in enterprise firewall administration and network perimeter security (CCNP Security‑level or equivalent).
- 3+ years of hands‑on experience with Palo Alto Networks NGFWs, including Panorama management, security policy design, and advanced threat prevention features (App‑, User‑, Wild Fire).
- Solid hands‑on experience with Cisco ASA and/or Firepower (FTD/FMC) access control policies, IPS tuning, platform upgrades, and migration planning.
- Strong working knowledge of Cisco ISE for NAC, 802.1X, RADIUS/TACACS+, device profiling, and guest access management.
- Experience with VPN technologies including Cisco Any Connect/Secure Access and IPSec site‑to‑site tunnels; understanding of certificate‑based authentication and split tunneling design.
- Solid understanding of core network security protocols and concepts including TCP/IP, BGP, EIGRP, ACLs, NAT, SSL/TLS inspection, and network segmentation/micro‑segmentation.
- Familiarity with Cisco Catalyst SD‑WAN security capabilities, including application‑aware policy enforcement, encrypted transport, and security service chain integration.
- Experience with Cisco Umbrella/Secure Access or similar DNS‑layer security and cloud‑delivered security platforms; working knowledge of URL filtering, threat intelligence, and SaaS policy management.
- Experience working within an ITIL‑based change management process; comfortable authoring change requests, presenting to CAB, and performing post‑implementation and after‑action reviews.
- Ability to work with the Microsoft Suite and Customers Bank's internal collaboration and ticketing applications; familiarity with scripting (e.g., Python, Ansible) for firewall automation and policy management is a plus.
- Familiarity with security and compliance frameworks relevant to a regulated financial institution (e.g., PCI‑DSS, SOX, NIST CSF, FFIEC); ability to translate regulatory requirements into technical security controls.
- Palo Alto Networks certifications (PCNSE or equivalent) are preferred;
…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×