Why This Role Stands Out
This hybrid Network Security Engineer role offers a fantastic opportunity to deepen your expertise in cutting-edge microsegmentation technologies like Guardicore and gain valuable experience with leading firewalls, contributing to robust Zero Trust initiatives. You'll thrive here if you possess strong networking fundamentals, a passion for designing and implementing security controls, and enjoy collaborating with diverse teams to enhance enterprise security.
Quick Overview
Job Description
Job Summary
We are seeking a Microsegmentation / Network Security Engineer with hands-on experience in Guardicore Microsegmentation, Palo Alto, and/or Check Point firewalls. The ideal candidate will have strong networking fundamentals, experience designing and implementing network security controls, and the ability to support Zero Trust and microsegmentation initiatives across enterprise environments.
Key Responsibilities
- Gather and analyze network and security requirements from application, infrastructure, and business teams.
- Design, configure, implement, and upgrade Palo Alto and/or Check Point firewalls and VPNs.
- Configure and manage firewall security policies, NAT, and VPN policies.
- Review and optimize firewall rules to improve security, performance, and maintainability.
- Assist with the design and implementation of Guardicore Microsegmentation / Zero Trust solutions.
- Configure and manage Guardicore segmentation policies, labels, security rules, and enforcement.
- Analyze network traffic and application dependencies to develop effective microsegmentation policies.
- Troubleshoot connectivity issues related to firewall and microsegmentation policies.
- Configure and troubleshoot dynamic routing protocols including RIP, OSPF, and BGP.
- Collaborate with network, security, infrastructure, and application teams on security architecture and implementation.
- Document application flows, firewall policies, segmentation rules, exceptions, and security decisions.
- Create and maintain Visio network/security diagrams and technical design documentation.
- Support security architecture, integration, testing, and implementation activities.
Required Skills
- Hands-on experience configuring and supporting Palo Alto or Check Point firewalls.
- Hands-on experience with or strong exposure to Guardicore Microsegmentation / Akamai Guardicore Segmentation.
- Solid understanding of TCP/IP, network traffic flows, routing, DNS, VLANs, and network security.
- Experience gathering security requirements and translating them into network security designs.
- Experience defining, configuring, reviewing, and optimizing firewall policies and rules.
- Experience configuring and troubleshooting RIP, OSPF, and BGP.
- Understanding of Zero Trust, least privilege, network segmentation, and microsegmentation concepts.
- Excellent understanding of security architecture, network security controls, and security integrations.
- Experience analyzing application traffic and network flows to support segmentation and firewall policy decisions.
- Strong troubleshooting, analytical, communication, and stakeholder engagement skills.
- Proficient in Microsoft Visio for network and security diagrams.
- Strong documentation skills, including policy decisions, application flow maps, segmentation rules, exceptions, and technical procedures.
Preferred Skills
- Experience with Guardicore Centra policy design, labeling, and enforcement.
- Experience with enterprise data center and cloud environments such as AWS or Azure.
- Knowledge of Windows and Linux server environments.
- Experience with security automation or scripting using Python or PowerShell.
- Experience with other enterprise firewall technologies is a plus.
Similar jobs
- MA
Principal Cyber Security Engineer with Security Clearance
NewMANTECH
Chantilly, VA🇺🇸Hybrid21 hours agoMFAAgileAnsible+2Technology - MA
Senior Principal Cyber Security Engineer with Security Clearance
NewMANTECH
Chantilly, VA🇺🇸Hybrid21 hours agoAWSSplunkTCP/IPTechnology - MA
Information Systems Security Engineer with Security Clearance
NewMANTECH
Fort Meade, MD🇺🇸Hybrid21 hours agoDockerAWSEncryption+2Technology - SU
Palo Alto Network Security Engineer (Only Visa Independent Candidate/W2)
NewSumasEdge Corporation
United States🇺🇸Hybrid21 hours agoAWSAzureTechnology - MA
Cybersecurity Incident Response Analyst with Security Clearance
NewMANTECH
McLean, VA🇺🇸Hybrid21 hours agoTechnology - ZP
Product Security Engineer - 175221 with Security Clearance
NewZachary Piper Solutions, LLC
Colorado Springs, CO🇺🇸$110k - $130k/yrOn-site21 hours agoMFAScrumAgileTechnology