The Position As a Senior Network Security Engineer, you will play a critical role in managing, implementing and optimising a hyperscale network security infrastructure. As a technical leader, you will oversee complex security architecture initiatives, mentor peer engineers, handle escalated incident response efforts and ensure compliance with the latest security standards. Our company roadmap is centred on automation, therefore a background in automation and interest in leveraging automation is key to this role.
Responsibilities
- Mentoring junior and mid-level engineers, overseeing team activities and providing guidance in complex troubleshooting and architecture decisions.
- Implementing and managing advanced security solutions using firewalls, proxy, system hardening, threat profile and segmentation strategies to secure intellectual data.
- Acting as a lead escalation for critical security incidents.
- Developing automation playbooks, network security policies framework and consolidation, threat model and driving root cause analysis with corrective actions.
- Overseeing network vulnerability assessments, penetration testing coordination and remediation planning.
- Championing the integration of automated tools for infrastructure build, dayโtwo support and lifecycle management of all security infrastructure using platforms like Python, Terraform, and vendor APIs, leveraging tools such as Algosec, Tufin, Jenkins and Git.
- Working closely with infrastructure, DevOps and application teams to embed security best practices throughout the technology stack.
Requirements
- Extensive experience in network engineering and security engineering, along with proven architectural experience in trusted, untrusted and DMZ environments.
- Proven leadership experience in a senior or lead engineering role, with the ability to drive the team and work independently.
- Strong understanding of network protocols and the OSI model, with handsโon experience in TCP/UDPโbased applications, routing, switching and load balancing.
- Extensive knowledge of network security technologies, including firewalls, VPNs, proxies, MACsec, IPsec, HTTPS, certificate chains, DNS, NTP, AAA, and domainโbased authentication and authorisation.
- Expertise with multiple security vendors, such as Palo Alto, Fortinet, Check Point and F5.
- Strong understanding of Zero Trust principles, segmentation, and secure cloud networking in AWS or Azure.
- Familiarity with scripting and automation using Python, Ansible, or Terraform.
- Certifications such as CISSP, CCIE Security, GIAC (GSEC/GCIH/GXPN), Palo Alto, Fortinet or equivalent highly preferred.
- Additional beneficial skills: core network with VxLAN EVPN DC architecture, hybrid or multiโcloud environments, M&A technical integrations, SOC capabilities or MSSP experience, excellent written and verbal communication, firewall automation experience.
Benefits & Perks
- CompanyโPaid Lunch Stipend via GrubHub.
- 100% EmployerโPaid Medical in a High Deductible Health Plan, Dental and Vision benefits for employees and their families.
- 16 weeks of Paid Parental Leave.
- Employee Assistance Program, Life insurance, ShortโTerm Disability and LongโTerm Disability.
- 401(k) with company match 100% of contributions up to 6%.
- Optional EmployeeโPaid Benefits such as PPO medical insurance, Health Savings Accounts (company contribution), Flexible Spending Accounts, Supplemental Life Insurance, Wellhub and more.
- 25 days of Paid Time Off plus 12 company holidays.
Equal Opportunity Employer
NorthMark Strategies LLC is an Equal Employment Opportunity Employer. The Companyโs policy is not to discriminate against any applicant or employee based on race, color, religion, national origin, gender, age, sexual orientation, gender identity, marital status, mental or physical disability, genetic information, or any other basis protected by applicable law. The firm also prohibits harassment of applicants or employees based on any of these protected categories.
#J-18808-Ljbffr