Network Security Microsegmentation Engineer

System One
United States
2 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
0 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Amazon Web Services Microsoft Azure Cloud Computing Security Cyber Security Computer Networks Linux Domain Name System (DNS) Python (Programming Language) Network Security Log Analysis Networking Basics
+17 more
Routing Network Administration Windows PowerShell Zero Trust Network Access Security Information and Event Management TCP/IP Traffic Analysis Software Vulnerability Management Scripting Google Cloud Cloud Platform System QRadar Firewalls (Computer Science) Palo Alto Networks Check Point Firewalls Microsoft Sentinel Splunk

Job description

Network Security Microsegmentation Engineer will help advance our enterprise Zero Trust security strategy. This role will focus on designing, implementing, and supporting microsegmentation controls using Illumio to reduce lateral movement risk and enforce least-privilege access across enterprise workloads.

The successful candidate will have strong network security experience, practical knowledge of network fundamentals, and hands-on exposure to Illumio or similar microsegmentation platforms. This individual will partner closely with application, infrastructure, cybersecurity, and architecture teams to analyze traffic flows, build segmentation policies, troubleshoot connectivity issues, and support secure application communication.

This is a hands-on engineering role suited for someone who understands both the technical depth of network security and the operational discipline required to implement segmentation safely in production environments.

The Network Security Microsegmentation Engineer will support the design, implementation, and operational management of enterprise microsegmentation capabilities. This role will focus on securing application workloads and supporting Zero Trust initiatives using Illumio.

Key Responsibilities

  • Design, implement, and maintain microsegmentation policies using Illumio.

  • Analyze application communication flows and define dependencies.

  • Enforce least-privilege access aligned to Zero Trust principles.

  • Deploy segmentation policies across hybrid and on-prem environments., System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

Requirements

We are currently seeking a Senior Network Security Microsegmentation Engineer role. This role requires a minimum of 10 years of professional experience (ideally 12+ years) and extensive, hands on experience with Illumio (no less than 8 years of experience).

This is a senior, hands-on network security engineering role focused on implementing Zero Trust and microsegmentation across enterprise environments. The engineer will primarily use Illumio to analyze application traffic and dependencies, create and enforce least-privilege segmentation policies, reduce lateral movement, and securely control workload-to-workload communication. The role requires someone with a strong network security foundation and 10+ years of cybersecurity/network security experience, plus practical Illumio experience. The engineer will work closely with application, infrastructure, cybersecurity, and architecture teams and will be responsible for traffic analysis, firewall/policy management, troubleshooting connectivity issues, policy lifecycle/change management, and production support across on-premises, hybrid, and potentially cloud environments.

We are looking for someone who can take an application from traffic discovery to dependency mapping to segmentation policy design to policy deployment to troubleshooting to ongoing policy management without creating production outages. The most important combination of experience must include Illumio, Network Security, Zero Trust, Traffic Analysis, Firewall Policy, and Enterprise Troubleshooting. A minimum of 10+ years of network security/cybersecurity experience and hands-on Illumio experience are KEY, because this is not simply a general cybersecurity or network administration position., * 10+ years experience in network security or cybersecurity engineering.

  • Hands-on experience with Illumio (minimum 8 years)

  • Strong understanding of Zero Trust principles.

  • Solid networking fundamentals (TCP/IP, DNS, routing, firewalls).

  • Experience with firewall policy design and traffic analysis.

  • Strong understanding of network security technologies including firewalls, routing, ACLs, traffic analysis, and policy enforcement across on-premises and cloud environments.

  • Experience analyzing network traffic and security logs to troubleshoot application connectivity and segmentation-related issues.

  • Strong troubleshooting skills.

  • Experience with Windows and Linux.

Preferred Qualifications

  • Experience implementing microsegmentation policies at enterprise scale.
  • Cloud security experience in Azure, AWS, and/or Google Cloud Platform environments.
  • Hands-on experience with Palo Alto Networks and/or Check Point firewall administration, policy management, and traffic analysis.

  • Experience using Splunk or similar SIEM and log analytics platforms (e.g., Microsoft Sentinel, QRadar, Elastic, LogRhythm) for security monitoring, troubleshooting, and traffic investigation.

  • Familiarity with security tools including SIEM, EDR, vulnerability management, and network visibility platforms.

  • Scripting or automation experience using PowerShell, Python, or similar languages.

  • Relevant security certifications such as CISSP, CCNP Security, PCNSE, CCSM, Security+, or equivalent

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all