1

Senior Network Security Engineer Jobs in California

Network Security Engineer

San Francisco, CA · On-site

$123K - $168K/yr

Strong TIER 2-3 Network Security Engineer who can assist with Fine tuning QRadar, WAF's, and /or has experience with Sourcefire. Tuning and troubleshooting QRadar to deliver optimal performance in ...

Network Security Engineer

San Francisco, CA · On-site

$123K - $168K/yr

Company Description Strong TIER 2-3 Network Security Engineer who can assist with Fine tuning QRadar, WAF's, and /or has experience with Sourcefire. Tuning and troubleshooting QRadar to deliver ...

Network Security Engineer

San Francisco, CA · Hybrid

$123K - $168K/yr

What We're Looking For We're looking for a Network Security Engineer to design, implement, and maintain secure network infrastructure across Lightning AI's platform. In this role, you'll take ...

Network Security Engineer

San Francisco, CA · On-site

$123K - $168K/yr

They are seeking a Network Security Engineer to design and implement secure network architectures, monitor security alerts, and manage vulnerabilities to ensure a secure and efficient logistics ...

Network Security Engineer

San Francisco, CA · On-site

$123K - $168K/yr

Network Security Engineer Remote role Required Skills and Experience (3-5 years): * Strong networking fundamentals: TCP/IP, routing/switching, VLANs, DNS, load balancing concepts, security zones ...

Network Security Engineer

San Jose, CA · On-site

$120 - $150/hr

As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden ...

Senior Network Engineer

Carlsbad, CA · On-site

$106K - $146K/yr

Reporting to the Director of Infrastructure & Operations, the Senior Network Engineer is ... Network Security - Prior experience with patch management, vulnerability assessments and ...

Network Security Engineer

San Jose, CA · On-site

$122K - $167K/yr

Position Overview We are seeking a highly skilled Network Security Engineer (L3).. Key Responsibilities * Serve as the primary L3 escalation point for complex network security incidents, providing ...

Network Security Engineer

San Jose, CA · On-site

$180 - $240/hr

As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden ...

Senior Network Engineer

Carlsbad, CA · On-site

$106K - $146K/yr

Operations, the Senior Network Engineer is responsible for designing, managing, and supporting all ... Network Security - Prior experience with patch management, vulnerability assessments and ...

Network Security Engineer

San Jose, CA · On-site

$120 - $160/hr

As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden ...

Network Security Engineer

San Jose, CA · On-site

$175K - $275K/yr

As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden ...

Network Security Engineer

San Jose, CA · On-site

$175K - $275K/yr

As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden ...

Showing results 41-60

Senior Network Security Engineer information

See California salary details

$15

$64

$98

How much do senior network security engineer jobs pay per hour?

As of Aug 23, 2026, the average hourly pay for senior network security engineer in California is $64.94, according to ZipRecruiter salary data. Most workers in this role earn between $55.53 and $72.60 per hour, depending on experience, location, and employer.

What is a senior network security engineer?

Senior Network Security Engineers are experienced professionals responsible for designing, implementing, and maintaining an organization's network security infrastructure. They protect networks from cyber threats, manage firewalls, monitor network traffic for suspicious activity, and develop security policies. They also lead incident response efforts, mentor junior staff, and ensure compliance with security standards and regulations. Their expertise is crucial in safeguarding sensitive data and maintaining business continuity.

What are the key skills and qualifications needed to thrive as a senior network security engineer?

To thrive as a Senior Network Security Engineer, you need deep knowledge of network protocols, security architectures, risk assessment, and a bachelor’s degree in computer science or a related field, often complemented by several years of experience. Familiarity with firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM solutions, and certifications like CISSP or CCNP Security is highly valued. Strong analytical thinking, attention to detail, and the ability to communicate complex technical issues clearly are essential soft skills. These competencies help ensure robust network defenses, rapid threat response, and effective collaboration across IT and business teams.

How does a senior network security engineer typically collaborate with other IT teams to maintain organizational security?

A Senior Network Security Engineer often works closely with system administrators, application developers, and IT support teams to design, implement, and monitor security protocols. They lead incident response efforts, provide guidance on secure network architecture, and conduct regular vulnerability assessments. Effective communication and collaboration are essential, as these engineers must ensure that security measures align with business objectives and integrate seamlessly with existing IT infrastructure. Cross-functional teamwork is a key aspect of the role, particularly when implementing new technologies or responding to emerging threats.

What is the difference between Senior Network Security Engineer vs Network Security Analyst?

AspectSenior Network Security EngineerNetwork Security Analyst
CertificationsCCNP Security, CISSP, CEHCompTIA Security+, CISSP (preferred)
Work EnvironmentDesigning, implementing, and managing security infrastructureMonitoring, analyzing, and responding to security incidents
ResponsibilitiesDeveloping security protocols, leading security projectsConducting security assessments, analyzing threats
Industry UsageIT, finance, healthcare, large enterprisesIT departments, security firms, corporate environments

While both roles focus on network security, the Senior Network Security Engineer typically leads security infrastructure design and implementation, whereas the Network Security Analyst concentrates on monitoring and analyzing security threats. The senior engineer has more strategic responsibilities, often requiring advanced certifications and experience.

What are the most commonly searched types of Network Security Engineer jobs in California?

The most popular types of Network Security Engineer jobs in California are:

What are popular job titles related to Senior Network Security Engineer jobs in California?

For Senior Network Security Engineer jobs in California, the most frequently searched job titles are:

What job categories do people searching Senior Network Security Engineer jobs in California look for?

The top searched job categories for Senior Network Security Engineer jobs in California are:

What cities in California are hiring for Senior Network Security Engineer jobs?

Cities in California with the most Senior Network Security Engineer job openings:

Infographic showing various Senior Network Security Engineer job openings in California as of August 2026, with employment types broken down into 89% Full Time, 9% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $135,080 per year, or $64.9 per hour.

Senior Staff Security Engineer (Network Security)

Monograph

San Francisco, CA • On-site

$230 - $270/hr

Other

Posted 18 days ago


Job description

Senior Staff Security Engineer - Network Security

About Gusto

At Gusto, we're on a mission to grow the small business economy. We handle the hard stuff — payroll, health insurance, 401(k)s, and HR — so owners can focus on their craft and their customers. With teams in Denver, San Francisco, and New York, we support more than 500,000 small businesses nationwide and are building a workplace that reflects the people we serve.

All full‑time employees receive competitive base pay, benefits, and equity (RSUs) — because everyone who helps build Gusto should share in its success. Offer amounts are determined by role, level, and location. Learn more about our Total Rewards philosophy.

AI is a fundamental part of how work gets done at Gusto. We expect all team members to actively engage with AI tools relevant to their role and grow their fluency as the technology evolves. AI experience requirements vary by role and will be assessed during the interview process.

About the Role:

We're looking for a Senior Staff Security Engineer to lead Gusto's edge and network security strategy, owning the design and operation of our Cloudflare WAF, DDoS protection, Zero Trust, and broader perimeter controls. The ideal candidate brings deep, hands‑on Cloudflare expertise and a proven track record of hardening edge and network architectures at scale, including tuning WAF rulesets, defending through live DDoS events, and shipping Zero Trust rollouts engineers actually adopt. You think in terms of layered defense, measurable risk reduction, and automation over manual toil. In this role, you'll serve as a force multiplier across the security org, partnering with infrastructure and product teams to make high‑impact architectural decisions that compound over time.

About the Team:

The Gusto Enterprise Security Engineering team is a small but high‑leverage group responsible for cloud security posture, edge and network defense, container security, secrets management, and endpoint protection across the company. The team runs a modern stack including Cloudflare, Wiz, CrowdStrike, Panther, and Tines, scaling impact through automation, IaC, and AI‑augmented tooling. The work carries real stakes, protecting the payroll, benefits, and HR systems that hundreds of thousands of small businesses and their employees rely on every day. The team is engineering‑first, with most of the roadmap living in code and a strong emphasis on partnering with infrastructure and product teams rather than gate‑keeping them.

Responsibilities:

  • Design and operate Gusto's edge security stack including Cloudflare WAF, DDoS protection, Bot Management, WARP, Gateway, and Access, tuning rules against real traffic and shaping how engineers and operations teams reach internal systems securely.
  • Own the network security perimeter across AWS and the edge: VPC design, Network Firewall, Shield, CloudFront, NACLs, and egress filtering, all codified in Terraform and Crossplane, observable, and consistently enforced.
  • Develop policy‑as‑code patterns for WAF rules, network policies, and edge configuration so changes ship through pull requests with review, testing, and clean rollback paths.
  • Build detections and alerting on edge and network telemetry including Cloudflare logs, VPC Flow Logs, and CloudTrail flowing into Panther, and lead incident response for perimeter and network events.
  • Contribute broadly across the security engineering surface including cloud posture, container security, IAM, vulnerability management, and on‑call, bringing a strong generalist instinct to wherever the work is most critical.
  • Operate as an AI‑native engineer, using Claude Code, MCP‑driven tooling, and agentic workflows as a daily force multiplier across investigation, automation, and detection engineering.
  • Prototype and ship agents, custom MCP servers, and LLM‑assisted automations that compress security work from days to minutes and raise the bar for what one engineer can own.

Qualifications:

  • 10+ years of hands‑on security engineering experience, with significant time owning edge, network, or perimeter security at scale.
  • Deep, production‑grade expertise with Cloudflare's security stack including WAF, DDoS, Bot Management, WARP, Gateway, and Access, covering rule tuning, incident response, and Zero Trust rollouts.
  • Strong network architecture skills across edge and cloud: TLS/mTLS, segmentation, egress controls, DDoS resilience, and AWS networking including VPC, Network Firewall, Shield, CloudFront, and NACLs.
  • Fluency with policy‑as‑code, Terraform, and CI/CD‑first delivery of security controls; Crossplane or similar a plus.
  • Solid generalist foundation across cloud security, IAM, container security, and detection engineering, with hands‑on incident response experience on edge and network telemetry in a modern SIEM.
  • AI‑native working style with daily use of Claude Code or equivalent agentic tooling, and a track record of building AI‑assisted workflows including custom MCP servers, agents, and LLM automations that compound team output.
  • Excellent written and verbal communication; you can take a complex perimeter decision and explain the tradeoffs to a staff engineer, a PM, and a VP without changing the substance.
  • Relevant certifications a plus including AWS Certified Advanced Networking Specialty, AWS Certified Security Specialty, Cloudflare Certified Security Associate/Professional, CKS, or equivalent.

Compensation:

Our cash compensation amount for this role is targeted at $210,000/yr to $230,000/yr in Denver & most remote locations, and $230,000/yr to $270,000/yr for San Francisco, New York & Seattle. Stock equity is additional. Final offer amounts are determined by multiple factors including candidate experience and expertise and may vary from the amounts listed above.

Location & Remote Work:

Gusto has physical office spaces in Denver, San Francisco, and New York City. Employees who are based in those locations will be expected to work from the office on designated days approximately 2‑3 days per week (or more depending on role). The same office expectations apply to all Symmetry roles, Gusto's subsidiary, whose physical office is in Scottsdale. Note: The San Francisco office expectations encompass both the San Francisco and San Jose metro areas. When approved to work from a location other than a Gusto office, a secure, reliable, and consistent internet connection is required. This includes non‑office days for hybrid employees.

EEO Statement:

Gusto is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Gusto considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Gusto is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. We want to see our candidates perform to the best of their ability. If you require a medical or religious accommodation at any time throughout your candidate journey, please fill out this form and a member of our team will get in touch with you.

#J-18808-Ljbffr