Network Security Engineer

Tech Quarry (SATO), LLC
United States
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours
Job source

Tech stack

Border Gateway Protocol Data Centers Data Control Ethernet Internet Protocol Security (IP SEC) Virtual Private Networks (VPN) Python (Programming Language) Local Area Networks Network Security Network Layer Network Diagrams Ansible
+7 more
Zero Trust Network Access Virtualization Technology Dynamic Routing Scripting Google Cloud Firewalls (Computer Science) Fortinet

Job description

We are hiring a Senior Network Security Engineer to support and modernize a large enterprise firewall environment across corporate, distribution-center, and retail operations. The engineer will administer and troubleshoot Palo Alto and Fortinet/FortiGate technologies, support dynamic routing with a strong emphasis on BGP, and maintain secure connectivity through VPN, IPsec, LAN, Ethernet, and Layer 3 firewall technologies. This person will balance complex project work with day-to-day operational support, including a high-volume firewall ticket queue, rule hygiene, incident response, and audit evidence for PCI and other sensitive-data controls.

Requirements

  • 6+ Years of professional experience in Network Engineering.
  • Technical depth with Palo Alto firewalls.
  • Strong background in dynamic routing, Layer 2 networking, data center engineering, and firewall routing.
  • Hands-on experience with Zero Trust security architectures.
  • Proficiency with LAN, Ethernet, VPN, IPSec, and L3 firewalls.
  • Strong rule-hygiene practices and experience managing high-volume firewall ticket queues.
  • Proficiency with Ansible and Python for automation.
  • Experience driving project work across Systems, Virtualization, and Infrastructure teams.
  • Ability to interpret network diagrams, understand ports and protocols, and analyze system-level interactions.
  • Strong understanding of BGP and dynamic routing (Hard Requirement)
  • Expertise pertaining to firewall protection of PCI, PII, and other sensitive data.

Nice to Haves:

  • Prior experience in retail environments with distributed physical locations.
  • Zscaler experience or familiarity working alongside Zscaler implementations
  • Retail, Datacenter, and/or Multi-site/distributed networks
  • Experience supporting both data-center networking and firewall/security environments
  • Firewall automation experience using Ansible/AAP, scripting, or platforms such as Tufin, FireMon, AlgoSec, or comparable tools
  • Palo Alto, Fortinet, Security+, or other relevant network-security certifications
  • Google Cloud Platform or broader cloud-networking exposure
  • Experience supporting PCI audits and producing firewall-related compliance evidence
  • Deeper expertise in firewall rule hygiene, policy cleanup, and governance
  • Team mentorship, leadership, or project ownership
  • Any Palo Alto or Fortinet Certifications (Certifications generally are a bonus for this team)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · WWC 2024

2:17 min

Fortinet firewall administrative passwords leaked on the dark net

Chris Heilmann +1 · LIVE

4:52 min

Connecting namespaces with local virtual ethernet pairs

Oliver Seitz Oliver Seitz · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:19 min

Executing complex workflows using Ansible Automation Platform

Goetz Rieger Goetz Rieger · WWC 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all