Network Security Engineer

SmallArc, Inc
New York, United States of America
yesterday

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Shift work
Languages
English
Experience level
Intermediate

Job location

New York, United States of America

Tech stack

Microsoft Windows
Microsoft Active Directory
Amazon Web Services (AWS)
Apple Mac Systems
Software System Penetration Testing
Azure
Border Gateway Protocol
Unix
Ubuntu (Operating System)
CentOS
Cisco PIX
Cloud Computing
Cloud Engineering
Computer Security
Computer Networks
Computer Forensics
Data Security
Dynamic Host Configuration Protocol
Debian Linux
Linux
Digital Assets
DNS
Payment Systems
Cryptographic Protocols
Fiddler (Software)
Federal Information Processing Standards (FIPS)
Identity and Access Management
Internet Protocol Security (IP SEC)
Intrusion Detection and Prevention
Intrusion Detection Systems
Virtual Private Networks (VPN)
Python
Network Security
Lightweight Directory Access Protocols (LDAP)
Log Analysis
Network Monitoring
Routing
Network Protocols
Cisco Nexus Switches
Open Shortest Path First
Open Source Technology
Paessler Router Traffic Grapher
PCI Data Security Standards
Public Key Infrastructure
Systems Development Life Cycle
Role-Based Access Control
Ansible
Security Information and Event Management
Systems Integration
TCP/IP
Wireshark
Virtual Local Area Networks
Software Vulnerability Management
Scripting (Bash/Python/Go/Ruby)
Transport Layer Security
Identity Services Engine
Google Cloud Platform
Load Balancing
Cloud Platform System
System Availability
Software Security
Firewalls (Computer Science)
Infrastructure Automation Frameworks
Information Technology
SolarWinds (Software)
Network Support
Cybercrime
Fortinet
Terraform
Splunk
Vulnerability Analysis

Job description

We are seeking a dynamic and highly skilled Network Security Engineer to join our team. In this pivotal role, you will be responsible for designing, implementing, and maintaining robust network security measures across diverse IT infrastructure environments. Your expertise will ensure the confidentiality, integrity, and availability of our organization's data and systems. This position offers an exciting opportunity to work with cutting-edge security technologies, influence security policies, and respond proactively to emerging threats. If you thrive in a fast-paced environment and are passionate about safeguarding digital assets, we want to hear from you!, Develop and enforce comprehensive network security strategies aligned with industry standards such as NIST and ISO 27000 to protect organizational assets. Configure and manage network security devices including Cisco ASA firewalls, Cisco ISE for identity management, IDS/IPS systems for threat detection, and VPN solutions for secure remote access. Conduct vulnerability assessments and penetration testing to identify potential weaknesses within LAN, WAN, SAN, and cloud infrastructure environments like AWS and Google Cloud Platform. Monitor network traffic using SIEM tools such as Splunk or SolarWinds to detect suspicious activities, perform log analysis, and initiate incident response procedures promptly. Implement system hardening techniques on operating systems including Linux (Debian, CentOS, Ubuntu), Windows, macOS, and UNIX variants to minimize attack surfaces. Manage encryption protocols such as IPsec, SSL/TLS, PKI (Public Key Infrastructure), and FIPS standards to secure data in transit and at rest across diverse platforms. Lead incident recovery efforts by executing disaster recovery plans, system security plans, and threat detection & response strategies in accordance with FISMA and FedRAMP compliance requirements.

Requirements

Network Security: 5 years Zscaler: 3 years Carbon Black: 3 years Palo Alto Firewalls: 5 years FortiGate: 5 years Description

Palo Alto design &Architecture, configuration, deploy &management experience Strong Network Security Framework knowledge & experience Strong Cisco ACI, Palo Alto Firewall, Fortinet (Replacing Cisco ASA) Microsoft Defender, Zscaler, Carbon Black Network: Replacing Switches, Vulnerability, VLAN, OSPF/BGP Network Security: Firewall (Palo Alto/Fortinet) - Rules, Upgrades, VPN, Logs, DLP and SOC, Extensive knowledge of computer networking concepts including LAN/WAN architecture, routing protocols (OSPF, BGP), TCP/IP stack, DHCP/DNS services, and network protocols. Hands-on experience with firewall management (Cisco ASA), network support tools (SolarWinds, PRTG), load balancing solutions, and high availability configurations. Proficiency in scripting languages such as Python or Bash for automation of security tasks and system administration activities. Strong understanding of vulnerability management frameworks like DREAD or CVSS; experience with vulnerability research and assessment tools. Familiarity with cloud computing platforms (AWS, Azure) including cloud architecture design principles for secure deployment. Knowledge of identity & access management (IAM), RBAC policies, SSO integrations (Active Directory), LDAP directories, GPOs, and open-source tools like Ansible or Terraform for infrastructure automation. Ability to analyze network traffic using tools like Fiddler or Wireshark; conduct computer forensics; implement system security hardening measures; perform threat intelligence analysis. Understanding of compliance standards such as PCI DSS for payment systems; experience with incident management frameworks like ITIL; adherence to SDLC processes for secure software deployment. Join us to be at the forefront of cybersecurity innovation! Your expertise will help shape resilient defenses against evolving cyber threats while advancing your career in a collaborative environment committed to excellence in information security.

Apply for this position