Cloud Network Security Architec

TPI Global Solutions
Santa Fe Springs, United States of America
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Remote
Santa Fe Springs, United States of America

Tech stack

Microsoft Access
Microsoft Word
Microsoft Excel
Microsoft Windows
Amazon Web Services (AWS)
Macintosh Computers
Azure
Bash
Border Gateway Protocol
Burp Suite
Cloud Computing
CompTIA Security+
Computer Security
Databases
System Configuration
Linux
Disaster Recovery
Perl
Fault Tolerance
Information Systems Security Architecture Professional
Python
Network Security
McAfee VirusScan
System Center Configuration Manager
Network Architecture
Network Segmentation
Network Service
Citrix Systems
Microsoft PowerPoint
Powershell
Proprietary Software
Security Software
Software Deployment
Software Vulnerability Management
Private Cloud Environment
Cloud-native Network Functions (CNF)
Scripting (Bash/Python/Go/Ruby)
Computer Networking Systems
Network Access Control
Load Balancing
System Availability
Multi-Cloud
Firewalls (Computer Science)
Amazon Web Services (AWS)
Information Technology
Nessus
Nexpose
Puppet
Cisco networks
Qualys
Vulnerability Analysis

Job description

The Senior Information Security Specialist I is responsible for the planning, deployment, field, and operational support of the endpoint security platform(s) and related applications. This role will have responsibility for all aspects of the deployment from the initial customer engagement, planning, installation, optimization/utility and follow on customer support for the endpoint security platform(s) & applications. The Senior Information Security Specialist I will provide technical implementation, configuration, and troubleshooting assistance with the deployment of endpoint security platform(s) and associated applications; troubleshoot customer deployment issues across small to large enterprises; utilize and engineer native and third-party software deployment technologies; install endpoint security software both remotely and physically; develop scripts and processes around software deployment; plan and report software deployment status; work closely and collaborate with customer information technology teams; leveraging security applications to provide support to customers in vulnerability and asset management; and assist customers with the integration of security solutions into existing tools.

Requirements

The Senior Information Security Specialist I will possess knowledge and experience in common vulnerabilities and exposures (CVEs), their impacts, and remediation techniques; deep understanding of software deployment technologies; operating systems: Windows, Linux, and Mac; familiarity with vulnerability management tools like OpenVAS, Nessus, Burp Suite; familiarity with vulnerability scanning tools such as Qualys, Tenable, Rapid 7 Nexpose/Insight VM; scripting: PowerShell, Python, Perl, Bash, Batch; software deployment using SCCM, Group Policy, McAfee EPO, IBM BigFix, Puppet, Chef, Citrix, PDQ, PsExec, Crowstrike; highly knowledgeable on Windows, Mac, and Linux platforms; working knowledge of Microsoft Office applications such as Word, Excel, Access, PowerPoint; extensive understanding of software deployment technologies; comprehensive skills in computer and network systems security; solid analytical/problem solving skills with the capability to identify solutions to unusual and complex problems; and basic knowledge of IT infrastructure components including operating systems, applications, networks, and databases. The Senior Information Security Specialist I will also possess knowledge and experience in customer service; decision making; interpersonal skills; written and oral communication; have a high level of motivation and be a self-starter with a result driven acumen; and the ability to communicate complex technical issues in a clear and concise manne.

  • Capability to design, configure, and operate network infrastructure across Amazon Web Services and Microsoft Azure environments.

  • Expertise in delivering highly available and fault-tolerant cloud network architectures, including multi-region and multi-availability zone designs, failover mechanisms, and resiliency strategies.

  • Hands-on implementation of hybrid connectivity using AWS Transit Gateway and Azure ExpressRoute.

  • Operational knowledge of Megaport services, including provisioning Virtual Cross Connects (VXCs) and enabling private connectivity between cloud and on-premises environments.

  • Strong capability in managing ingress and egress traffic flows, optimizing routing paths, and maintaining high availability and performance across distributed cloud networks.

  • Proficiency in deploying and operating cloud-native load balancing solutions such as AWS Elastic Load Balancing, Azure Load Balancer, and Azure Application Gateway.

  • Capability to deploy and manage virtual firewalls, including third-party network virtual appliances (e.g., Palo Alto VM-Series, Cisco CSR 8000v) alongside native cloud security controls.

  • Solid working knowledge of network security constructs such as Network Security Groups (NSGs), AWS Security Groups, and network Access Control Lists.

  • Capability to design and implement Virtual Private Cloud (VPC)/VNet peering, hybrid connectivity, and multi-region or multi-cloud architectures, including integration through Megaport services.

  • Advanced capability in configuring and managing Border Gateway Protocol within cloud and hybrid network environments.

  • Strong foundation in cloud network security practices, including secure architecture design, access control models, and alignment with compliance requirements.

Experience Required:

This classification must have a minimum of four (4) years of experience performing IT deployments or in an end user/customer environment.

  • Cloud Network Engineering: At least six (6) years of experience designing, implementing, and managing cloud-based network infrastructures, with a strong focus on AWS (Amazon Web Services) and Azure.

  • High Availability Architecture: At least four (4) years of experience designing and implementing highly redundant and highly available cloud network architectures, including failover mechanisms, disaster recovery strategies, and resilient connectivity patterns.

  • Advanced Cloud Networking: At least four (4) years of hands-on experience with AWS (Amazon Web Services) and Azure networking services, including Transit Gateway, ExpressRoute, load balancing, and hybrid connectivity.

  • Megaport Experience: At least four (4) years of experience working with Megaport Network services for private cloud connectivity, including Virtual Cross-connects (VXC) provisioning and hybrid/multi-cloud integration.

  • Traffic & Security Engineering: At least four (4) years of experience in traffic engineering, network segmentation, firewall deployment (native and Network Virtual Appliance (NVA), and secure connectivity design.

This classification requires the possession of (a) a bachelor's degree in an IT-related or Engineering field

and (b) one of the following certifications: a Certified Information Systems Security Professional (CISSP) or equivalent, CompTIA Security+, or Certified Ethical Hacker (CEH).

This classification requires AWS Certified Advanced Networking - Specialty, AWS Certified Solutions Architect, or Microsoft Certified: Azure Network Engineer Associate.

Apply for this position