Establish cloud security patterns covering identity, workload protection, network segmentation, encryption, secrets, logging, configuration, exposure management, and security automation. * Guide ...
Establish cloud security patterns covering identity, workload protection, network segmentation, encryption, secrets, logging, configuration, exposure management, and security automation. * Guide ...
Sr Advisory Solution Consultant- Security, Identity & Exposure Management (Armis)
Philadelphia, PA ยท On-site +1
Required strong working knowledge of enterprise networking concepts, including routing, switching, VLANs, subnetting, firewalls, DNS, NAT, and network segmentation. * Familiarity with capturing ...
Sr Advisory Solution Consultant- Security, Identity & Exposure Management (Armis)
Philadelphia, PA ยท On-site +1
Required strong working knowledge of enterprise networking concepts, including routing, switching, VLANs, subnetting, firewalls, DNS, NAT, and network segmentation. * Familiarity with capturing ...
Sr Transport Engineer, Long Haul Wave
Mount Laurel, NJ ยท On-site
$103K - $142K/yr
Demonstrated ability to troubleshoot end-to-end circuits across multiple network segments while isolating faults within complex multi-vendor environments. * Strong documentation skills and the ...
Sr Transport Engineer, Long Haul Wave
Mount Laurel, NJ ยท On-site
$103K - $142K/yr
Demonstrated ability to troubleshoot end-to-end circuits across multiple network segments while isolating faults within complex multi-vendor environments. * Strong documentation skills and the ...
Sr Advisory Solution Consultant- Security, Identity & Exposure Management (Armis)
Philadelphia, PA ยท On-site
Required strong working knowledge of enterprise networking concepts, including routing, switching, VLANs, subnetting, firewalls, DNS, NAT, and network segmentation. * Familiarity with capturing ...
Sr Advisory Solution Consultant- Security, Identity & Exposure Management (Armis)
Philadelphia, PA ยท On-site
Required strong working knowledge of enterprise networking concepts, including routing, switching, VLANs, subnetting, firewalls, DNS, NAT, and network segmentation. * Familiarity with capturing ...
Sr Transport Engineer, Long Haul Wave
Mount Laurel Township, NJ ยท On-site
$103K - $142K/yr
Demonstrated ability to troubleshoot end-to-end circuits across multiple network segments while isolating faults within complex multi-vendor environments. * Strong documentation skills and the ...
Sr Transport Engineer, Long Haul Wave
Mount Laurel Township, NJ ยท On-site
$103K - $142K/yr
Demonstrated ability to troubleshoot end-to-end circuits across multiple network segments while isolating faults within complex multi-vendor environments. * Strong documentation skills and the ...
Sr. Network Engineer (VoIP)
$101K - $139K/yr
It operates in seven business segments including Commercial, Professional & Technical, EMEA ... Maintaining the operational state of a 24/7 365 Global voice network Work assigned tickets from ...
Sr. Network Engineer (VoIP)
$101K - $139K/yr
It operates in seven business segments including Commercial, Professional & Technical, EMEA ... Maintaining the operational state of a 24/7 365 Global voice network Work assigned tickets from ...
Strong working knowledge of enterprise networking - routing, switching, VLANs, subnetting, firewalls, DNS, NAT, and network segmentation. * Familiarity with capturing network traffic through SPAN ...
Strong working knowledge of enterprise networking - routing, switching, VLANs, subnetting, firewalls, DNS, NAT, and network segmentation. * Familiarity with capturing network traffic through SPAN ...
Strong working knowledge of enterprise networking -- routing, switching, VLANs, subnetting, firewalls, DNS, NAT, and network segmentation. * Familiarity with capturing network traffic through SPAN ...
Strong working knowledge of enterprise networking -- routing, switching, VLANs, subnetting, firewalls, DNS, NAT, and network segmentation. * Familiarity with capturing network traffic through SPAN ...
Lead Security Architect - Cloud Data & AI Platforms
Philadelphia, PA ยท Hybrid
$66 - $87.75/hr
Implement secure network segmentation and firewall policies that limit exposure and lateral movement (e.g., using private endpoints, VPC/VNet isolation). Ensure any hybrid connectivity or data ...
Lead Security Architect - Cloud Data & AI Platforms
Philadelphia, PA ยท Hybrid
$66 - $87.75/hr
Implement secure network segmentation and firewall policies that limit exposure and lateral movement (e.g., using private endpoints, VPC/VNet isolation). Ensure any hybrid connectivity or data ...
Lead Security Architect - Cloud Data & AI Platforms
Philadelphia, PA ยท On-site
$66 - $87.75/hr
Implement secure network segmentation and firewall policies that limit exposure and lateral movement (e.g., using private endpoints, VPC/VNet isolation). Ensure any hybrid connectivity or data ...
Lead Security Architect - Cloud Data & AI Platforms
Philadelphia, PA ยท On-site
$66 - $87.75/hr
Implement secure network segmentation and firewall policies that limit exposure and lateral movement (e.g., using private endpoints, VPC/VNet isolation). Ensure any hybrid connectivity or data ...
Principal Engineer, DevOps & Infrastructure
Conshohocken, PA ยท On-site
$125 - $150/hr
Identity & access (IAM/Okta, SSO/SAML/OIDC), secrets (AWS SM/KMS), supply-chain security (SBOM, Sigstore/Cosign, SLSA/SSDF), network segmentation/zero-trust.* **Observability:** Standardize metrics ...
Principal Engineer, DevOps & Infrastructure
Conshohocken, PA ยท On-site
$125 - $150/hr
Identity & access (IAM/Okta, SSO/SAML/OIDC), secrets (AWS SM/KMS), supply-chain security (SBOM, Sigstore/Cosign, SLSA/SSDF), network segmentation/zero-trust.* **Observability:** Standardize metrics ...
Partner with cybersecurity teams to design controls for network segmentation, identity and access management, monitoring, logging, vulnerability management, and incident response. * Participate in ...
Partner with cybersecurity teams to design controls for network segmentation, identity and access management, monitoring, logging, vulnerability management, and incident response. * Participate in ...
Principal Architect, Security Architecture
Conshohocken, PA ยท On-site
$150 - $200/hr
Establish cloud security patterns covering identity, workload protection, network segmentation, encryption, secrets, logging, configuration, exposure management, and security automation. Guide ...
Posted today
Principal Architect, Security Architecture
Conshohocken, PA ยท On-site
$150 - $200/hr
Establish cloud security patterns covering identity, workload protection, network segmentation, encryption, secrets, logging, configuration, exposure management, and security automation. Guide ...
Posted today
Experience with Border Gateway Protocol (BGP), equal-cost multi-path routing (ECMP), and network segmentation in on-premise and cloud environments * Experience advising on solution design based on ...
Experience with Border Gateway Protocol (BGP), equal-cost multi-path routing (ECMP), and network segmentation in on-premise and cloud environments * Experience advising on solution design based on ...
At least 2 end-to-end deployments of reference architectures in the cloud or on-prem, including variants with security controls, network segmentation, operational runbooks, and validation testing
At least 2 end-to-end deployments of reference architectures in the cloud or on-prem, including variants with security controls, network segmentation, operational runbooks, and validation testing
OT network segmentation (zones/conduits), jump hosts, secure remote access * Passive OT discovery/asset inventory, OT IDS, SIEM integration/use cases * Incident response in OT (containment with ...
OT network segmentation (zones/conduits), jump hosts, secure remote access * Passive OT discovery/asset inventory, OT IDS, SIEM integration/use cases * Incident response in OT (containment with ...
Elasticsearch Lead Engineer - SIEM Platform
Malvern, PA ยท On-site
$100K - $132K/yr
Strong understanding of security principles: least privilege, network segmentation, secrets management, audit logging * Experience building resilient systems: replication topologies, capacity ...
Elasticsearch Lead Engineer - SIEM Platform
Malvern, PA ยท On-site
$100K - $132K/yr
Strong understanding of security principles: least privilege, network segmentation, secrets management, audit logging * Experience building resilient systems: replication topologies, capacity ...
Partner with Security leaders to establish enterprise cloud security architecture standards, including identity and access management design, network segmentation, data residency and sovereignty ...
Partner with Security leaders to establish enterprise cloud security architecture standards, including identity and access management design, network segmentation, data residency and sovereignty ...
Partner with Security leaders to establish enterprise cloud security architecture standards, including identity and access management design, network segmentation, data residency and sovereignty ...
Partner with Security leaders to establish enterprise cloud security architecture standards, including identity and access management design, network segmentation, data residency and sovereignty ...
Technology & Cloud Compliance -- Evaluate IT, cloud, and data environment controls (IAM, encryption, logging, monitoring, network segmentation). * Model Governance Support -- Contribute to model ...
Technology & Cloud Compliance -- Evaluate IT, cloud, and data environment controls (IAM, encryption, logging, monitoring, network segmentation). * Model Governance Support -- Contribute to model ...
Network Segmentation information
See Haddonfield, NJ salary details
$21.2K - $33.5K
0% of jobs
$33.5K - $45.8K
0% of jobs
$45.8K - $58.1K
5% of jobs
$58.1K - $70.4K
11% of jobs
$80.2K is the 25th percentile. Wages below this are outliers.
$70.4K - $82.7K
12% of jobs
$82.7K - $95K
15% of jobs
The median wage is $102.1K / yr.
$95K - $107.3K
14% of jobs
$107.3K - $119.6K
17% of jobs
$121.8K is the 75th percentile. Wages above this are outliers.
$119.6K - $131.9K
14% of jobs
$131.9K - $144.2K
6% of jobs
$144.2K - $156.5K
7% of jobs
$21.2K
$102.7K
$156.5K
How much do network segmentation jobs pay per year?
What is network segmentation?
What are the key skills and qualifications needed to thrive in a network segmentation role, and why are they important?
What are some common challenges faced by professionals working in network segmentation roles, and how can they be addressed?
What is the difference between Network Segmentation vs Network Security Engineer?
| Aspect | Network Segmentation | Network Security Engineer |
|---|---|---|
| Primary Focus | Dividing a network into segments to control traffic | Designing, implementing, and managing security measures |
| Required Skills | Networking protocols, VLANs, firewalls | Firewall configuration, intrusion detection, security policies |
| Work Environment | Network infrastructure, data centers, enterprise networks | Security teams, IT departments, cybersecurity environments |
| Certifications | CCNA, CompTIA Network+ | CISSP, CEH, CompTIA Security+ |
Network segmentation involves dividing a network into smaller parts to improve performance and security, while a Network Security Engineer focuses on protecting the network through security measures. Both roles require networking knowledge, but their primary objectives differ: segmentation manages network structure, whereas security engineers safeguard it from threats.
What do you need for network segmentation?
What cities near Haddonfield, NJ are hiring for Network Segmentation jobs?
Cities near Haddonfield, NJ with the most Network Segmentation job openings:
Full-time
Posted 18 days ago
Job description
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Summary:
The Principal Architect, Security Architecture is a senior individual-contributor and enterprise technical leadership role responsible for defining, governing, and advancing cybersecurity architecture across the enterprise in collaboration with other Principal Architects, Cybersecurity Architects, & Cybersecurity and domain engineering teams.
The Principal Architect translates business strategy, technology direction, cyber risk, regulatory obligations, and emerging threats into practical security architectures, principles, patterns, standards, and technology decisions that enable the business while measurably reducing risk.
This role operates beyond individual cybersecurity products or domains. The Principal Architect - Cybersecurity works horizontally across the functional technology domains and the related security practices for Cloud, Infrastructure, Endpoint, Network, Storage; while also collaborating and representing core cybersecurity practices such as Identity & Access Management, Application Security, Data Security, AI Security, Cyber Defense, SaaS Security, OT/IoT, and emerging technologies, ensuring that security capabilities function as an integrated enterprise architecture rather than independent controls.
The successful candidate must combine the depth of a senior security technologist with the influence, judgment, and communication capabilities of an enterprise architect. This position is expected to challenge legacy assumptions, resolve difficult cross-domain architecture decisions, simplify security complexity, and establish clear technical direction where ownership or requirements are ambiguous.
This is not primarily a documentation, compliance, or architecture-review role. The Principal Architect - Cybersecurity is expected to shape technology and cybersecurity platform strategy and materially influence what the enterprise builds, buys, integrates, modernizes, and retires.
Key Responsibilities:
Enterprise Cybersecurity Architecture
Define and evolve the enterprise cybersecurity architecture aligned with business strategy, enterprise architecture, technology modernization, regulatory obligations, and the organization's risk appetite.
Establish cybersecurity architecture principles, reference architectures, reusable patterns, technical standards, and design requirements.
Maintain or support a multi-year cybersecurity architecture roadmap connecting strategic security objectives with technology investments and engineering execution.
Translate Zero Trust principles into practical architecture across identity, applications, workloads, networks, endpoints, data, cloud, SaaS, OT/IoT, and third-party connectivity.
Identify architectural fragmentation, redundant controls, security gaps, and opportunities to simplify the security technology ecosystem.
Establish clear target-state architectures and pragmatic transition architectures for complex legacy environments.
Architecture Governance & Decision Authority
Serve as a senior cybersecurity architecture authority for significant technology initiatives and high-risk architecture decisions.
Lead or materially influence security architecture reviews for strategic platforms, cloud environments, applications, infrastructure, acquisitions, SaaS platforms, data environments, and emerging technologies.
Determine when enterprise security requirements require standardization versus when risk-based exceptions or domain-specific patterns are appropriate.
Document significant architectural decisions, alternatives, assumptions, dependencies, and residual risks.
Establish escalation mechanisms for architecture decisions that cannot be resolved within individual engineering or security domains.
Partner with Enterprise Architecture to ensure cybersecurity architecture is embedded within enterprise technology strategy rather than operating as a downstream approval function.
Will Lead or Collaborate to Deliver Cloud & Platform Security Architecture
Define security architecture across public cloud, private cloud, hybrid infrastructure, SaaS, containers, Kubernetes, serverless, APIs, and platform engineering environments.
Establish cloud security patterns covering identity, workload protection, network segmentation, encryption, secrets, logging, configuration, exposure management, and security automation.
Guide adoption of cloud-native security capabilities and determine where enterprise security platforms provide greater consistency or risk reduction.
Drive security architecture aligned with hyperscaler well-architected principles while maintaining consistent enterprise control objectives.
Partner with cloud, platform engineering, and all other applicable cybersecurity engineering team to embed security into landing zones, infrastructure-as-code, CI/CD pipelines, developer platforms, and automated provisioning.
Will Lead or Collaborate to Deliver Data & AI Security
Establish architecture principles and patterns protecting enterprise data throughout its lifecycle.
Define security architectures addressing classification, encryption, tokenization, key management, secrets, DLP, data access, privacy, lineage, and data movement.
Provide architecture leadership for generative AI, machine learning, AI agents, RAG architectures, model integration, AI platforms, and third-party AI services.
Establish patterns addressing AI-specific threats including sensitive-data disclosure, prompt injection, insecure tool use, excessive agency, model supply-chain risk, identity, authorization, and AI application monitoring.
Partner with AI, Data, Privacy, Legal, Risk, and business teams to enable responsible enterprise adoption of emerging AI capabilities.
Will Lead or Collaborate to Deliver Application & API Security Architecture
Integrate cybersecurity architecture into application modernization and secure software development practices.
Establish reusable security patterns for APIs, microservices, authentication, authorization, secrets, service-to-service communications, software supply chains, and cloud-native applications.
Partner with AppSec and development organizations to move security requirements earlier into architecture and engineering.
Promote security capabilities that can be consumed through standardized platforms, APIs, pipelines, and reusable engineering components rather than manual security reviews.
Will Lead or Collaborate to Deliver Identity & Zero Trust
Partner with IAM architecture and engineering to establish enterprise identity security patterns.
Ensure workforce, privileged, machine, service, workload, API, and customer identities are incorporated into enterprise security architecture.
Advance policy-based and identity-aware access models that reduce dependence on network location as the primary trust mechanism.
Integrate identity, device posture, workload identity, data sensitivity, threat signals, and contextual risk into access-control architecture.
Will Lead or Collaborate to Deliver Cyber Defense & Resilience
Ensure architecture decisions incorporate detection, telemetry, investigation, containment, recovery, and operational resilience requirements.
Partner with Cyber Defense, SOC, Incident Response, Threat Intelligence, Threat Hunting, Vulnerability Management, and Red Team functions.
Translate threat intelligence, attack patterns, incidents, vulnerabilities, and control failures into architecture improvements.
Ensure major platforms produce appropriate security telemetry and support enterprise detection and response capabilities.
Apply threat modeling and attack-path analysis to major architecture decisions.
Will Collaborate with Key Stakeholders to Deliver M&A, Divestitures & Third-Party Integration
Define cybersecurity architecture patterns supporting acquisitions, divestitures, joint ventures, strategic partners, and third-party connectivity.
Establish secure approaches for tenant-to-tenant, network, identity, application, data, cloud, and SaaS integration.
Define transitional security architectures that reduce risk while enabling rapid business integration.
Identify technical-security debt introduced through acquisitions and establish target-state remediation strategies.
Architecture-to-Engineering Execution
The Principal Architect - Cybersecurity is accountable not merely for producing architecture but for ensuring that architecture can be implemented.
Partner directly with cybersecurity and technology engineering teams to convert architecture into executable capabilities.
Define minimum viable security patterns that teams can consume without extensive security consultation.
Validate that reference architectures are technically achievable, scalable, supportable, and economically reasonable.
Participate in proofs of concept, technology evaluations, design workshops, and major implementation decisions.
Ensure lessons learned during engineering and operations continuously improve architecture standards and patterns.
Technology Strategy & Innovation
Continuously assess emerging security technologies, architectural approaches, attack techniques, and industry practices.
Provide independent technical recommendations regarding cybersecurity technology investments.
Influence build-versus-buy decisions and strategic vendor selections.
Identify capabilities that should be consolidated, modernized, automated, replaced, or retired.
Reduce unnecessary security-tool proliferation and architectural complexity.
Evaluate emerging technologies based on measurable security value rather than vendor positioning.
Maintain awareness of developments in cloud, AI, identity, data, cryptography, software engineering, security automation, and cyber defense.
Required Qualifications:
12+ years of progressive experience including 8+ within cybersecurity architecture, security engineering, infrastructure architecture, cloud security, application security, or related technology disciplines.
Significant experience designing security solutions within large, complex enterprise environments.
Demonstrated ability to architect across multiple security domains rather than specializing exclusively within one technology.
Deep understanding of cloud and modern enterprise architecture.
Strong knowledge of Azure and practical experience with AWS and/or GCP.
Strong understanding of identity, network security, endpoint security, data protection, application security, APIs, cloud-native architecture, and cyber defense.
Experience with Zero Trust architecture and identity-centric security.
Experience integrating security into cloud engineering, DevSecOps, CI/CD, infrastructure-as-code, and platform engineering.
Experience evaluating enterprise security technologies and translating requirements into architecture and engineering decisions.
Strong understanding of threat modeling, attack paths, vulnerabilities, security controls, and defense-in-depth.
Ability to communicate complex technical subjects to engineers, architects, executives, risk professionals, and business leaders.
Preferred Qualifications:
Experience within a large global or highly regulated enterprise, particularly healthcare, pharmaceutical, financial services, critical infrastructure, or similarly complex industries.
Bachelor's Degree in Cybersecurity, Computer Science, Information Technology or any other related discipline or equivalent related experience
Experience with regulatory and security frameworks such as:
NIST Cybersecurity Framework
NIST SP 800-53
NIST Zero Trust Architecture
ISO/IEC 27001
HITRUST
CIS Controls
OWASP
Cloud Security Alliance
AWS Well-Architected Framework
Microsoft Azure Well-Architected Framework
Google Cloud Architecture Framework
Experience with M&A integration, divestitures, multi-tenant environments, hybrid infrastructure, and large-scale technology modernization is strongly preferred.
Relevant certifications may include Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), Systems Security Certified Practitioner (SSCP), SABSA, cloud architecture/security certifications, or equivalent demonstrated expertise.
We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In...