Network Security Engineer

Network Security Engineer

RIT Solutions, Inc.

Albany, NY • Hybrid

$103.80K - $142K/yr

Other

This job posting has expired and is no longer accepting applications. Check out similar jobs


Job description

JOB TITLE: Network Security Engineer
EMPLOYMENT TYPE: Long-term Contract
LOCATION DETAILS: Albany, NY (5 days per week onsite)

This position requires a strong understanding of core networking and cybersecurity principles, best practices, and a demonstrated interest in intelligent transportation technologies.
Key Responsibilities
  • Configure and troubleshoot VLANs, network segments, and routing protocols.
  • Monitor network performance and availability using network management tools
  • Respond to and resolve network incidents, including connectivity issues, performance degradation, and security alerts.
  • Perform routine maintenance tasks such as firmware updates, configuration backups, and equipment replacement support.
  • Provide technical support to internal teams and external partners regarding network connectivity and performance.
  • Assist in the configuration and management of firewalls, intrusion detection and prevention systems (IDS/IPS), and other security appliances.
  • Configure and monitor SIEM platforms for security anomalies and escalate incidents according to established procedures.
  • Document network configurations, standard procedures, and operational guidance.
  • Support vulnerability scanning and remediation efforts.
  • Assist maturing the cybersecurity incident response plans.
Minimum Qualifications
  • Bachelor's degree in computer science, information technology, or a related field, or equivalent experience.
  • Strong understanding of TCP/IP, routing, switching, and network security principles.
  • Proficiency configuring and troubleshooting LANs, VLANs, trunks, spanning tree, IP subnetting, routing protocols, and wireless networking
  • Proven experience in network administration and troubleshooting.
  • Ability to perform and analyze packet traces.
  • Proficiency with firewalls to configure and troubleshoot security rules, NAT, threat protection, and logging
  • Experience with IDS/IPS and SIEM tools, security event triage, and escalation.
  • Industry certifications such as CCNP, PCNSA, or similar are preferred.
  • Familiarity with network monitoring tools.
  • Familiarity with vulnerability scanning tools.
  • Excellent problem-solving and communication skills.
  • Display a strong grasp of key cybersecurity and IT concepts such as:
  • Cloud Concepts: SaaS, IaaS, PaaS, hybrid, on premises
  • Cybersecurity Principles: defense in depth, least privilege, CIA triad
  • Cybersecurity Technology: NAC systems, next-generation firewalls, VPNs, micro segmentation, IAM, vulnerability management, encryption
  • IT principles: High availability, clustering, failover, single point of failure, dynamic routing, classification, tagging
  • Server and Compute: Client Server, virtualization, clustering, failover, backups, imaging
  • A strong desire to learn and grow within the field of intelligent transportation systems.

Preferred Qualifications
  • Data classification principles and enforcement
  • Understanding of cybersecurity frameworks such as NIST CSF, CIS Critical Controls
  • Experience supporting operational technology or critical infrastructure environments.
  • Experience working with distributed networks that support transportation, public sector, industrial, or field-based operations.
  • Familiarity with cybersecurity incident response and escalation procedures.
  • Experience balancing network security requirements with system availability and operational continuity.
  • Hands-on familiarity with modern network security monitoring, event analysis, and infrastructure documentation practices.

Core Knowledge Areas
  • TCP/IP networking, subnetting, routing, and switching.
  • VLAN design, segmentation, and troubleshooting.
  • Network security fundamentals, including firewalls, IDS/IPS, access control, and secure configuration.
  • SIEM monitoring, security event triage, and escalation.
  • Network performance monitoring and availability management.
  • Threat intelligence integration and operational awareness.
  • Incident response support for network disruptions, malicious activity, and denial-of-service conditions.
  • Documentation of network topology, procedures, and configurations.
  • Collaboration with cybersecurity, operations, and engineering teams in a mission-critical environment.



Frequently asked questions

Q: What skills or qualities help someone succeed as a Network Security Engineer?

A: To succeed as a Network Security Engineer, key technical skills include proficiency in network protocols (e.g., TCP/IP, DNS), security frameworks (e.g., NIST, ISO 27001), and threat detection tools (e.g., Snort, Suricata). Additionally, strong problem-solving skills, attention to detail, and the ability to communicate complex technical concepts to non-technical stakeholders are essential soft skills. These strengths enable Network Security Engineers to design and implement secure network architectures, detect and respond to security incidents, and collaborate effectively with cross-functional teams to drive business outcomes.

Q: What is the career path for a Network Security Engineer?

A: A Network Security Engineer's typical career progression involves starting as a Junior Network Security Engineer, where they focus on implementing and maintaining security measures, then advancing to a Senior Network Security Engineer role, where they lead teams and develop comprehensive security strategies. Along the way, they can develop skills in areas like threat analysis, incident response, and compliance, as well as programming languages like Python and PowerShell, and industry-standard tools like Splunk and Nmap. With experience, Network Security Engineers can transition into leadership roles, such as a Chief Information Security Officer (CISO), or pursue specialized roles like a Penetration Tester or a Cybersecurity Consultant.