Information Security Engineer 4 - Network Security (Contingent)
Role details
Job location
Tech stack
Job description
Infrastructure Security is seeking an experienced Lead Information Security Engineer to serve as a Network Security Subject Matter Expert for a highly complex, global enterprise environment. This role focuses on designing, implementing, and sustaining scalable network security controls across segmented internal networks, internet-facing services, and hybrid cloud platforms. The engineer will provide expert-level guidance, participate in enterprise architecture and risk reviews, and partner with technical and compliance teams to ensure alignment with security standards and regulatory expectations. Day-to-Day Responsibilities:
- Provide expert-level network security engineering guidance for large-scale infrastructure initiatives
- Lead strategy, architecture, and design discussions, presenting solutions to leadership for approval
- Identify and assess security risks across network, application, and service architectures
- Design, document, test, and maintain complex security solutions across:
- On-prem
- Cloud
- Hybrid
- AI-enabled environments
- Perform risk assessments, security reviews, and remediation evaluations
- Support or lead security incident response for complex network-based events
- Conduct post-incident investigations and recommend mitigation strategies
- Review and correlate security logs and telemetry
- Provide security consultation for large projects and internal clients
- Ensure solutions meet policy, regulatory, and compliance expectations
- Influence and collaborate with engineers, architects, managers, and risk partners
- Serve as a technical leader and mentor to engineering peers
Requirements
-
5+ years of Information Security Engineering experience, supporting complex, enterprise-scale initiatives.
-
Deep hands-on experience with enterprise firewall platforms, such as:
-
Palo Alto
-
Check Point
-
Cisco
-
Fortinet
Strong expertise in:
- Firewall policy design
- Rule lifecycle management
- Traffic segmentation
Experience implementing and supporting:
- IDS/IPS
- Secure web gateways and proxy technologies
- Network load balancers and edge security controls
Advanced understanding of:
- TCP/IP, routing, switching, VLANs
- DNS, DHCP, NTP
- SSL/TLS and VPN technologies
Desired / Nice-to-Have Qualifications:
Experience managing network security controls at large enterprise scale
Familiarity with automation (Python, Infrastructure-as-Code, firewall-as-code)
Experience evaluating or onboarding new security technologies
Experience creating or maintaining security policies and technical security requirements
Exposure to AI-enabled or modern network security architecturesCompliance & Framework Knowledge (Required Awareness):
- NIST CSF / NIST 800-53
- CIS Critical Security Controls
- FFIEC / Financial Services regulatory guidance
- Familiarity with CRI (Cyber Risk Institute) and cloud security control frameworks is a plus