Senior Network Security Architect

QNity, Inc.
Wilmington, DE, United States
5 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Microsoft Windows Proxy Servers Microsoft Azure Cloud Computing Cyber Security Software Design Patterns Network Address Translation Domain Name System (DNS) Virtual Private Networks (VPN) Network Security Microsoft Security Essentials
+18 more
Virtual Desktops Network Planning and Design Routing Public Key Infrastructure Remote Access Technology Azure Active Directory Application Data Security Information and Event Management Systems Integration Software Vulnerability Management Data Logging Transport Layer Security System Availability HybridCloud Microsoft InTune Palo Alto Networks Microsoft Sentinel Servicenow

Job description

This role will partner closely with Network Engineering, Cloud, Infrastructure, Manufacturing IT, Cybersecurity Operations, and project teams. The architect will develop reference architectures and standards, review designs, and provide flexible implementation options that balance security, reliability, cost, and delivery timelines., * Develop network security reference architectures, standards, and approved design patterns.

  • Define secure patterns for enterprise, Azure, manufacturing, remote access, partner connectivity, internet egress, and application publishing.
  • Serve as the security architecture lead for the Palo Alto Networks portfolio, including NGFW, Panorama or Strata Cloud Manager, Prisma Access, GlobalProtect, and related security services.
  • Review firewall, segmentation, remote-access, cloud, and third-party connectivity designs.
  • Provide practical implementation options rather than a single rigid solution.
  • Identify architectural requirements, preferred approaches, and acceptable alternatives.
  • Integrate network security with Microsoft Entra ID, Defender, Sentinel, Intune, Azure, PKI, vulnerability management, identity, endpoint security, and incident response.
  • Support hybrid cloud and on-premises designs, including Azure routing, private endpoints, cloud egress, DNS, and secure connectivity.
  • Develop segmentation and remote-support patterns for manufacturing and operational technology environments.
  • Partner with project teams to resolve network security issues early in the design process.
  • Define requirements for logging, monitoring, policy ownership, firewall-rule lifecycle management, and security telemetry.
  • Maintain clear, usable architecture documentation, diagrams, and technical decision records.

Requirements

Are you looking to power the next leap in the exciting world of advanced electronics? Do you want to help solve problems that drive success in the rapidly evolving technology and connectivity landscape? Then bring your problem-solving, passion, and creativity to help us power the next leap in electronics., This is a hands-on architecture role. The successful candidate must be comfortable moving between strategic design and detailed discussions involving routing, firewall policy, DNS, TLS, remote access, cloud connectivity, segmentation, and application data flows., * Significant experience in network security architecture or engineering within a complex enterprise.

  • Strong knowledge of the Palo Alto Networks platform, including NGFW, Prisma Access, GlobalProtect, and centralized management.
  • Strong understanding of enterprise networking, including routing, DNS, NAT, VPNs, proxies, TLS, segmentation, and high availability.
  • Experience designing security across both cloud and on-premises environments.
  • Strong knowledge of Microsoft Azure networking and familiarity with Microsoft security technologies.
  • Experience integrating network controls with SIEM, identity, endpoint, vulnerability-management, and IT service-management platforms.
  • Ability to translate application and business requirements into secure, supportable network designs.
  • Experience developing reference architectures, engineering standards, and reusable design patterns.
  • Strong written, verbal, and diagramming skills.
  • Demonstrated judgment in balancing security requirements with operational and project constraints., * Experience in a global manufacturing or industrial environment.
  • Familiarity with Purdue-model segmentation and operational technology.
  • Experience with Microsoft Sentinel, Defender, Entra ID, Intune, ServiceNow, FireMon, or similar platforms.
  • Experience with Azure Virtual WAN, ExpressRoute, Windows 365, Azure Virtual Desktop, and hybrid connectivity.
  • Relevant certifications such as PCNSE, CCNP Security, Microsoft Azure, or CISSP.

Professional Characteristics

  • Pragmatic, technically credible, and comfortable challenging weak designs.
  • Able to explain both what must change and how it can be implemented.
  • Flexible in approach without weakening core security requirements.
  • Comfortable working in a developing organization where standards and operating models are still being established.
  • Produces architecture that engineering teams can actually use.

About the company

At Qnity , we’re more than a global leader in materials and solutions for advanced electronics and high-tech industries - we’re a tight-knit team that is motivated by new possibilities, and always up for a challenge. All our dedicated teams contribute to making cutting-edge technology possible. We value forward-thinking challengers, boundary-pushers, and diverse perspectives across all our departments, because we know we play a critical role in the world enabling faster progress for all. Learn how you can start or jumpstart your career with us.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

1:51 min

Overview of the three Google Maps routing applications

Germán Álvarez · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all