Haystack
← Back to Jobs
Technology

Network Security Engineer - Onsite - Must work on our W-2

TrustMinds, Inc.Malvern, PA🇺🇸United StatesPosted 22 Jul 2026

Why This Role Stands Out

This role offers a fantastic opportunity to significantly impact a reputable company's security infrastructure, with a clear path to potential conversion after a 6-month contract. You'll thrive here if you have extensive experience with enterprise firewalls and network security technologies, and are eager to contribute your expertise. Apply today to explore this exciting mid-senior level Network Security Engineer position.

Quick Overview

Work Type
On Site
Level
Mid Senior

Job Description

This position requires 4 days onsite Mon-Thrusday

This is a 6 months CTH 

Consultant must work on W-2 OR 1099 only - NO C2C

Either of these locations would work -  Malvern, PA 19355 OR Reading, PA 19611

  • 10+ years of hands-on experience in network security engineering, with demonstrated expertise in enterprise firewall administration and network perimeter security (CCNP Security-level or equivalent experience).
  • 3+ years of hands-on experience with Palo Alto Networks NGFWs, including Panorama management, security policy design, and advanced threat prevention features (App-ID, User-ID, WildFire).
  • Solid hands-on experience with Cisco ASA and/or Firepower (FTD/FMC) – access control policies, IPS tuning, platform upgrades, and migration planning.
  • Strong working knowledge of Cisco ISE for NAC, 802.1X, RADITACACS+, device profiling, and guest access management.
  • Experience with VPN technologies including Cisco AnyConnect/Secure Access and IPSec site-to-site tunnels; understanding of certificate-based authentication and split tunneling design.
  • Solid understanding of core network security protocols and concepts including TCP/IP, BGP, EIGRP, ACLs, NAT, SSL/TLS inspection, and network segmentation/micro-segmentation.
  • Familiarity with Cisco Catalyst SD-WAN security capabilities, including application-aware policy enforcement, encrypted transport, and security service chain integration.
  • Experience with Cisco Umbrella/Secure Access or similar DNS-layer security and cloud-delivered security platforms; working knowledge of URL filtering, threat intelligence, and SaaS policy management.
  • Experience working within an ITIL-based change management process; comfortable authoring change requests, presenting to CAB, and performing post-implementation and after-action reviews.
  • Ability to work with the Microsoft Suite and client’s internal collaboration and ticketing applications; familiarity with scripting (e.g., Python, Ansible) for firewall automation and policy management is a plus.

Preferred Qualifications:

Skills

TCP/IP
Ansible
DNS
Python

Similar jobs