Network Security Engineer

CDW
United States
about 1 month ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$187,200.0 - $197,600.0
Working hours
Regular working hours
Job source

Tech stack

IEEE 802.1X Amazon Web Services Application Firewall Microsoft Azure Border Gateway Protocol Cloud Computing Security System Configuration Data Centers DevOps Identity and Access Management Internet Protocol Security (IP SEC) Intrusion Detection Systems
+32 more
Virtual Private Networks (VPN) Network Security Network Monitoring Routing Network Segmentation Network Protocols Open Shortest Path First (OSPF) Overlay Transport Virtualization Open Web Application Security PCI Data Security Standards Azure Active Directory Zero Trust Network Access Security Information and Event Management Virtual Local Area Networks Wide Area Networks Network Routers Computer Networking Systems Transport Layer Security Identity Services Engine Cloud Platform System HybridCloud Firewalls (Computer Science) Amazon Virtual Private Cloud (VPC) Cloudformation Kubernetes Cloudflare Microsoft Sentinel Firepower Terraform Ddos Splunk Cisco

Job description

  • Design, implement, and maintain enterprise network architecture spanning on-prem data centers and cloud environments (AWS and Azure)
  • Architect and manage secure connectivity solutions including VPNs, Direct Connect/ExpressRoute, SD-WAN, and hybrid cloud networking
  • Configure and maintain Cisco networking infrastructure (routers, switches, firewalls, ASA/Firepower, ISE, etc.)
  • Design and enforce network segmentation, Zero Trust architecture, and least-privilege access models
  • Manage cloud-native security controls: AWS (VPC, Security Groups, NACLs, Transit Gateway, WAF, GuardDuty) and Azure (VNets, NSGs, Azure Firewall, Azure WAF/Front Door WAF, Sentinel, Azure AD/Entra ID)
  • Design, deploy, and tune Web Application Firewall (WAF) policies across cloud and on-prem environments to protect against OWASP Top 10 threats, bot traffic, and DDoS attacks
  • Monitor network traffic and security events; respond to incidents and lead root-cause analysis
  • Evaluate and implement IDS/IPS, NGFW, and SIEM integrations
  • Collaborate with DevOps/Platform teams to secure CI/CD pipelines and infrastructure-as-code (Terraform/CloudFormation)
  • Ensure compliance with relevant frameworks (SOC 2, ISO 27001, NIST, HIPAA, PCI-DSS as applicable)

Requirements

Top Skills: Strong WAF, AWS/Azure skills. Good communication skills., * Experience in network engineering with a strong security focus

  • Cisco technologies (routing/switching, ASA/Firepower, ISE, SD-WAN)
  • Strong working knowledge of AWS networking and security services (VPC, Transit Gateway, Security Groups, IAM, GuardDuty, WAF)
  • Strong working knowledge of Azure networking and security services (VNets, NSGs, Azure Firewall, Azure AD/Entra ID, Sentinel)
  • Solid understanding of network protocols (BGP, OSPF, VLANs, VXLAN) and security protocols (IPsec, TLS, 802.1X)
  • Experience with firewall management, IDS/IPS, and network segmentation strategies
  • Hands-on experience configuring and managing Web Application Firewalls (WAF) (e.g., AWS WAF, Azure WAF/Front Door, Cisco/F5, or Cloudflare) including rule tuning and threat mitigation
  • Familiarity with Zero Trust Network Architecture (ZTNA) principles

Nice to haves:

  • CCNP/CCIE Security, AWS Certified Advanced Networking/Security, Azure Network Engineer Associate, CISSP, or equivalent
  • Experience with SIEM tools (Splunk, Microsoft Sentinel, or similar)
  • Experience with container/Kubernetes networking and security, * Network security: 7 years (Preferred)
  • WAF: 5 years (Preferred)
  • AWS: 3 years (Preferred)
  • Azure: 3 years (Preferred)

Benefits & conditions

$90 - $95 an hour - Full-time, Contract, Pulled from the full job description

  • 401(k)
  • Health insurance
  • 401(k) matching
  • Vision insurance
  • Dental insurance, * 401(k)
  • 401(k) matching
  • Dental insurance
  • Health insurance
  • Vision insurance

Application Question(s):

  • Are you open to working a 6 month Contract-to-hire position?

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

1:51 min

Rising DDoS attacks and evaluating CDN mitigation strategies

Chris Heilmann +2 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all