Network Security Engineer; Network & Cybersecurity
Listed on 2026-08-31
-
IT/Tech
Cybersecurity, Network Security, Systems Engineer, Cloud Computing: Infrastructure & Operations
Career Opportunities with Baker Engineering and Risk Consultants, Inc.
A great place to work.
Careers At Baker Engineering and Risk Consultants, Inc.
Current job opportunities are posted here as they become available.
Network Security Engineer (Network & Cybersecurity)Baker Engineering and Risk Consultants, Inc. (Baker Risk®) is a global provider of process safety and risk management services to companies in the petroleum and chemical industries, as well as engineering and testing services for government agencies and private companies involved with hazardous materials. Utilizing advanced methodologies and proprietary in-house tools, Baker Risk engineers assess the consequences and risks associated with potentially catastrophic events including explosions, fires, and toxic material releases.
Position Summary
Baker Risk is seeking a highly skilled and motivated Network Security Engineer, with strong networking fundamentals who has evolved into a cybersecurity-focused practitioner and is comfortable owning security operations, Microsoft identity security, and VMWare/Cloud networking in a small enterprise environment to join our Global Management Network team. This role is responsible for the design, implementation, administration, and security of Baker Risk's enterprise network infrastructure, cloud connectivity, cybersecurity policy implementation, tools & infrastructure.
The ideal candidate will possess strong experience with enterprise networking technologies, security architecture, firewalls, cloud networking, and security monitoring with a successful track record working in a team-oriented environment. This individual will play a key role in protecting critical business systems while supporting a reliable, scalable, and secure technology environment across multiple office locations, datacenters, and cloud platforms.
This position offers the opportunity to work with modern technologies including Cisco, Meraki, Arista, VMware, Microsoft Azure, SD-WAN, network segmentation, Zero Trust principles, EntraID, MS365 and enterprise cybersecurity solutions.
- Design, implement, maintain, and troubleshoot enterprise LAN, WAN, wireless, and data center network infrastructure.
- Configure and manage Cisco, Meraki, and Arista network devices.
- Administer VPN technologies and secure remote access solutions.
- Manage SD-WAN connectivity between offices, cloud environments, and datacenters.
- Maintain IP address management (IPAM), network documentation, and infrastructure diagrams.
- Monitor network performance and availability while proactively identifying capacity and reliability improvements.
- Implement VMWare NSX, NSX-T
Cybersecurity & Network Protection
- Serve as the primary technical owner for cybersecurity operations, security controls, and vulnerability management by designing, implementing, and continuously enhancing firewalls, IDS/IPS, network segmentation, Zero Trust architecture, and other security initiatives in partnership with IT management and architecture leadership.
- Administer and maintain perimeter security devices and cloud security controls.
- Support vulnerability management, remediation, and risk reduction initiatives.
- Participate in incident detection, investigation, response, and recovery activities.
- Monitor security alerts and work with internal stakeholders to address threats and vulnerabilities.
- Implement security hardening standards across network and cloud platforms.
- Assist with regulatory and compliance initiatives, including NIST 800-171, DFARS, cybersecurity assessments, and security audits.
Identity & Microsoft Security
- Administer and secure Active Directory and Microsoft Entra .
- Implement and support identity security controls including MFA, Conditional Access, privileged access management, and identity governance.
- Support security, compliance, and operational controls across Microsoft 365 services including Exchange Online, Teams, SharePoint, and One Drive.
- Leverage Crowdstrike Falcon and related security platforms to improve detection, response, visibility, and risk reduction.
- Partner with infrastructure teams to improve identity security posture and reduce organizational risk.
- Design, configure, and manage MS365, Azure, & VCF networking and hybrid connectivity solutions, including virtual networks, VPNs, private connectivity, network segmentation, and secure integration between cloud and on-premises environments.
- Implement and maintain cloud security architectures and controls that protect VCF, Azure, hybrid infrastructure, and business-critical services.
- Collaborate with infrastructure and architecture teams to ensure secure, scalable, and resilient cloud and hybrid deployments.
Documentation & Operational Excellence
- Develop and maintain detailed network diagrams, standards, procedures, and operational documentation within Manage Engine Ops Manager.
- Participate in change management and project planning activities.
- Manage vendor relationships, support contracts, and technology evaluations.
- Provide Tier III escalation support for…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).