> Markdown version of [/jobs/ext/2026900-sr-network-security-engineer](https://www.wearedevelopers.com/jobs/ext/2026900-sr-network-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Network Security Engineer - **Company:** Axos Bank - **Location:** Los Angeles, CA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Cloud Computing, Cyber Security, Data Centers, DevOps, Domain Name System (DNS), Intrusion Detection Systems, Virtual Private Networks (VPN), Network Security, Machine Learning, Routing, Network Segmentation, Zero Trust Network Access, TCP/IP, Prompt Engineering, Information Technology, Virtual Agents, Software Version Control - **Published:** August 11, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/sr-network-security-engineer-los-angeles-ca-usa-58892088 ## About the Role * Support and troubleshoot issues related to ZTNA policy enforcement, split tunneling, and identity-aware access controls * Learn to design, build, and manage AI agents to automate routine security operations (policy reviews, firewall audits, segmentation gap analysis, anomaly triage) * Create AI-assisted runbooks for autonomous or semi-autonomous handling of security events * Monitor AI agent performance and governance using feedback loops and Axos governance directives * Contribute to AI Governance practices including prompt version control, agent testing, and compliance with governance management directive * Participate in incident response for network events and document architectures and SOPs for transfer and auditability * Stay current on Zero Trust frameworks, AI/ML developments, and regulatory threats in a federally regulated financial institution Tasks * 7+ years of progressive experience in network security engineering with hands-on firewall management, network segmentation, aaaa Tasks and IDS/IPS * Demonstrated experience with micro segmentation platforms and ZTNA * Strong knowledge of TCP/IP, DNS, routing/switching, proxy architectures, and cloud networking * Familiarity or willingness to learn AI/ML concepts, prompt engineering, and agentic automation frameworks * Excellent communication skills for technical and executive audiences * Bachelor's degree in computer science, Information Security, or related field (or equivalent experience) Key requirements * Medical, Dental, Vision, and Life Insurance * Paid Sick Leave, 3 weeks' Vacation, and Holidays * HSA or FSA account and other voluntary benefits * 401(k) Retirement Saving Plan with Employer Match Program and 529 Savings Plan * Employee Mortgage Loan Program and free Axos Bank account with self-directed trading ## Description Experteer Overview In this role, you will own the design, build, and operation of ZTNA and microsegmentation while driving automation with AI agents to handle routine security tasks. You'll work within our Zero Trust team to advance an AI-native security operations model and increase productivity through automation. The position emphasizes architecture, strategy, and complex problem-solving alongside hands-on engineering. You will help shape how security work is done by building AI-enabled workflows and governance. Compensation / Benefits * Own day-to-day engineering, configuration, and optimization of ZTNA and microsegmentation across environments * Design and implement least-privilege microsegmentation policies for data center, cloud, and hybrid workloads * Drive enterprise-wide ZTNA adoption by partnering with infrastructure, application, and DevOps teams * Build and maintain segmentation maps, traffic baselines, and policy rule sets aligned to critical apps and regulatory boundaries * Support and troubleshoot issues related to ZTNA policy enforcement, split tunneling, and identity-aware access controls * Learn to design, build, and manage AI agents to automate routine security operations (policy reviews, firewall audits, segmentation gap analysis, anomaly triage) * Create AI-assisted runbooks for autonomous or semi-autonomous handling of security events * Monitor AI agent performance and governance using feedback loops and Axos governance directives * Contribute to AI Governance practices including prompt version control, agent testing, and compliance with governance management directive * Participate in incident response for network events and document architectures and SOPs for transfer and auditability * Stay current on Zero Trust frameworks, AI/ML developments, and regulatory threats in a federally regulated financial institution Tasks * 7+ years of progressive experience in network security engineering with hands-on firewall management, network segmentation, VPN/ZTNA, and IDS/IPS * Demonstrated experience with micro segmentation platforms and ZTNA * Strong knowledge of TCP/IP, DNS, routing/switching, proxy architectures, and cloud networking * Familiarity or willingness to learn AI/ML concepts, prompt engineering, and agentic automation frameworks * Excellent communication skills for technical and executive audiences * Bachelor's degree in computer science, Information Security, or related field (or equivalent experience) Key requirements * Medical, Dental, Vision, and Life Insurance * Paid Sick Leave, 3 weeks' Vacation, and Holidays * HSA or FSA account and other voluntary benefits * 401(k) Retirement Saving Plan with Employer Match Program and 529 Savings Plan * Employee Mortgage Loan Program and free Axos Bank account with self-directed trading ## Related Videos - [AX is the only Experience that Matters](https://www.wearedevelopers.com/videos/1404-ax-is-the-only-experience-that-matters) - [Creating a routing app with Google Maps API from scratch](https://www.wearedevelopers.com/videos/831-creating-a-routing-app-with-google-maps-api-from-scratch) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [A Technical Introduction to Bitcoin's 2nd Layer- The Lightning Network](https://www.wearedevelopers.com/videos/15-a-technical-introduction-to-bitcoin-s-2nd-layer-the-lightning-network) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) ## Related Articles - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Dev Digest 132 - Binging WADFlix?](https://www.wearedevelopers.com/magazine/473-dev-digest-132-binging-wadflix) - [Dev Digest 166: Sycophancy, Zip bombs and AI Native Development](https://www.wearedevelopers.com/magazine/585-dev-digest-166-sycophancy-zip-bombs-and-ai-native-development) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)