Haystack
← Back to Jobs
Technology

Senior Network Security Engineer

Ledgent TechnologyPortland, OR🇺🇸United StatesPosted 6 Aug 2026

Quick Overview

Work Type
On Site
Level
Mid Senior

Job Description



Role: Senior Network Security Engineer


Location: Oregon City, OR - 100% onsite


Position Type: Direct Hire, Full Time


Annual Compensation Range: $120-150K DOE


Position Summary


A Ledgent Technology local client is on the hunt for a Senior Network Security Engineer to help strengthen and modernize our enterprise security environment. This is a highly technical role for someone who enjoys working directly within systems and networks, proactively identifying risks, and implementing practical security improvements that support business operations.


This is not a governance, compliance, or policy-only position. The ideal candidate is a security practitioner with a strong networking foundation who understands how enterprise environments function and can effectively balance security, performance, and operational continuity.


The successful candidate will partner closely with infrastructure, architecture, and IT operations teams to improve security controls, enhance visibility, reduce risk, and implement long-term security initiatives.






Key Responsibilities


Security Engineering & Architecture



  • Design, implement, and maintain enterprise security controls, standards, and hardening practices.

  • Participate in infrastructure, cloud, and application architecture reviews to ensure security requirements are incorporated early in the design process.

  • Evaluate and deploy security technologies that enhance protection without negatively impacting business operations.

  • Review existing security configurations, firewall rules, and access controls to identify opportunities for improvement and risk reduction.

  • Develop and implement security guardrails that support a "do no harm" approach to business operations.


Threat Detection & Vulnerability Management



  • Manage and optimize centralized logging, monitoring, and security analytics platforms.

  • Conduct proactive threat hunting and security investigations across systems and networks.

  • Perform vulnerability assessments, prioritize findings, and coordinate remediation efforts with technical teams.

  • Develop, tune, and improve detection rules, alerts, and security monitoring capabilities.

  • Analyze security trends and recommend improvements to organizational security posture.


Incident Response & Security Operations



  • Lead security incident investigations through detection, containment, eradication, recovery, and post-incident review.

  • Develop and maintain incident response playbooks, operational procedures, and runbooks.

  • Support endpoint security technologies including EDR, antivirus, and endpoint hardening initiatives.

  • Collaborate with infrastructure teams to address and remediate security threats and vulnerabilities.


Network Security



  • Monitor and assess newly discovered devices and network activity.

  • Investigate anomalous communications and coordinate mitigation efforts.

  • Design and support network segmentation strategies, including VLAN implementation and access controls.

  • Review and optimize firewall policies to reduce risk while maintaining business functionality.

  • Provide technical guidance on enterprise network security architecture.

  • Support implementation and maintenance of network security standards and best practices.






Required Qualifications



  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or equivalent professional experience.

  • 5+ years of experience in cybersecurity, network security engineering, infrastructure security, or a related field.

  • Strong understanding of enterprise networking concepts including routing, switching, TCP/IP, network protocols, VLANs, segmentation, and firewall administration.

  • Experience with identity and access management technologies, including Active Directory, Microsoft Entra ID, MFA, and identity lifecycle management.

  • Hands-on experience with endpoint security tools, EDR platforms, vulnerability scanners, antivirus solutions, and security monitoring technologies.

  • Experience with SIEM platforms, centralized logging, and security operations workflows.

  • Ability to evaluate security controls, identify gaps, and recommend practical remediation strategies.

  • Experience conducting security investigations, audits, and remediation planning.

  • Strong troubleshooting, analytical, and problem-solving skills.

  • Excellent written and verbal communication skills.

  • Ability to work effectively across infrastructure, architecture, and support teams.






Preferred Qualifications



  • Experience supporting large-scale enterprise security environments.

  • Experience with enterprise network security platforms, next-generation firewalls, and centralized security management tools.

  • Expertise in threat hunting, detection engineering, and SIEM rule development.

  • Experience implementing network segmentation and VLAN strategies.

  • Experience with Data Loss Prevention (DLP) technologies and data protection controls.

  • Experience with modern identity and access management platforms, including single sign-on and identity governance solutions.

  • Experience with email security, collaboration platform security, and information governance technologies.

  • Experience with Privileged Access Management (PAM) solutions.

  • Industry certifications such as CISSP, GSEC, CEH, Security+, GIAC, or equivalent.






Technical Environment


Technologies and platforms may include:



  • Enterprise firewall and network security solutions

  • Endpoint Detection & Response (EDR)

  • Security Information and Event Management (SIEM)

  • Centralized logging and monitoring tools

  • Vulnerability management platforms

  • Active Directory and cloud identity services

  • Multi-factor authentication solutions

  • Data Loss Prevention (DLP)

  • Network segmentation and access control technologies

  • Endpoint and server security tools

  • Security analytics and threat detection platforms






Ideal Candidate Profile


The ideal candidate:



  • Has deep expertise in enterprise networking and security architecture.

  • Understands how security controls impact business operations and applies a practical, risk-based approach.

  • Enjoys building and improving security capabilities rather than simply responding to alerts.

  • Proactively identifies security gaps and recommends long-term solutions.

  • Can confidently assess and optimize existing firewall policies, security rules, and network controls.

  • Is equally comfortable investigating threats, implementing technical controls, and partnering with infrastructure teams on strategic security initiatives.




All qualified applicants will receive consideration for employment without regard to race, color, national origin, age, ancestry, religion, sex, sexual orientation, gender identity, gender expression, marital status, disability, medical condition, genetic information, pregnancy, or military or veteran status. We consider all qualified applicants, including those with criminal histories, in a manner consistent with state and local laws, including the California Fair Chance Act, City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, Los Angeles County Fair Chance Ordinance, and San Francisco Fair Chance Ordinance.

Skills

MFA
TCP/IP
Active Directory

Similar jobs