Senior Network Security Engineer
Listed on 2026-08-29
-
IT/Tech
Network Security, Cybersecurity, Network Engineer
At Valar Atomics, we're redefining what's possible in energy. Our mission is to make clean, high-temperature nuclear power scalable—unlocking abundant energy for industry, hydrogen, and next-generation manufacturing. We are a team of builders, engineers, and operators who believe nuclear energy should be fast to deploy, factory-made, and built for the real world. Our first pilot plant in Orangeville, Utah will demonstrate how advanced nuclear systems and fuel fabrication can power the future.
Joining Valar Atomics means becoming part of a company where autonomy, ownership, and impact exist at every level.
As part of the Business organization, IT & Enterprise Software delivers the technology infrastructure, enterprise applications, and digital tools that power Valar's operations. The team ensures secure, reliable, and scalable technology solutions that support every function across the company.
The RoleValar Atomics is seeking a hands-on Senior Network Security Engineer to design, implement, and maintain our enterprise network security infrastructure. This role focuses heavily on Palo Alto Networks firewall administration, secure remote access via Global Protect VPN, cloud connectivity across Azure and AWS, and network access control for wired, wireless, and IoT devices. The ideal candidate combines deep firewall /routing expertise with practical experience securing endpoints, cameras, and IoT devices through certificate-based (TLS/802.1X) authentication.
This position is fully on-site at our Torrance, CA location. Relocation assistance is not available.
- Configure and manage Palo Alto Networks firewall security policies, NAT rules, and threat prevention profiles
- Design and implement Palo Alto Firewall routing (static, dynamic, and policy-based routing)
- Monitor, troubleshoot, and optimize firewall performance and rule sets
- Build, configure, and maintain Global Protect VPN for secure remote access
- Create and manage site-to-site VPN tunnels between on-premises infrastructure and Azure and AWS environments
- Troubleshoot VPN connectivity, tunnel stability, and routing issues across hybrid cloud environments
- Integrate and manage EZPKI andEZRadius(Azure-based SaaS RADIUS and SaaS TLS/PKI services) for certificate-based network authentication
- Deploy and support TLS-based 802.1X authentication for IP cameras and other IoT devices
- Configure 802.1X network access control policies across wired and wireless infrastructure
- Integrate and manage AWS CA and AWS PKI infrastructure
- Configure and maintain routing on Ruckus switches
- Support VLAN segmentation, inter-VLAN routing, and network access policies for IoT and camera device segments
- Support Prisma (Prisma Access / Prisma Cloud) initiatives as needed
- Support Palo Alto CASB deployment and policy configuration as needed
- Proven hands-on experience with Palo Alto Networks firewalls (policy creation, NAT, routing, troubleshooting)
- Experience configuring and supporting GlobalProtectVPN
- Experience building site-to-site VPN tunnels with Azure and AWS
- Working knowledge of 802.1X authentication (wired/wireless) and certificate-based network access
- Experience with Ruckus switch configuration and routing
- Strong understanding of enterprise routing concepts (static routing, VLANs, inter-VLAN routing)
- Solid troubleshooting skills across firewall, VPN, and switching layers
- Performed root-cause analysis on wireless access point failures, adjusted AP placement andpower/range settings tooptimizecoverage, and resolved intermittent Wi‑Fi connectivity issues.
- Skilled in wireless access point diagnostics, RF coverage tuning, and troubleshooting client connectivity and signal degradation issues.
- Experience with Prisma Access and/or Prisma Cloud
- Experience with CMMC2
- Prior military service in US Airforce or Navy
, particularly in communications, networking, cybersecurity, IT, or other technical fields, is highly valued. Relevant military training and operational experience will be considered alongside…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).