> Markdown version of [/jobs/ext/2514624-senior-network-security-engineer](https://www.wearedevelopers.com/jobs/ext/2514624-senior-network-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Network Security Engineer - **Company:** Zayo Group LLC - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** User Authentication, Cloud Computing Security, Configuration Management, Domain Name System (DNS), Virtual Private Networks (VPN), Information Systems Security Architecture Professional, Network Security, Routing, Network Segmentation, Azure Active Directory, Zero Trust Network Access, Runbook, Web Application Security, Transport Layer Security, Cyberark, System Availability, Firewalls (Computer Science), Palo Alto Networks, Fortinet, SailPoint, Cisco - **Published:** August 10, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/senior-network-security-engineer-usa-58916071 ## About the Role Trust architectures. * Serve as senior escalation point for complex incidents; troubleshoot advanced networking, DNS, routing, authentication, proxy, SSL/TLS, and app connectivity issues. * Configure and operate firewalls, VPNs, secure web gateways, cloud security solutions, and Zero Trust platforms; perform root cause analysis. * Monitor platform health and participate in critical incident response to maintain high availability. * Administer and optimize Zscaler services (ZIA, ZPA, ZDX); configure policies, SSL inspection, tunnels, and App Connectors. * Support Zero Trust access policies and cloud security initiatives; integrate with identity providers (e.g., Microsoft Entra ID, Azure AD, CyberArk, SailPoint). * Develop/security governance and automation; implement configuration management, runbooks, and documentation; ensure regulatory alignment. * Provide technical leadership, mentor teams, and drive continuous improvement in service reliability and customer experience. Tasks * 7+ years D _ network security, cybersecurity, or infrastructure engineering. * 3+ years hands-on with Zscaler (ZIA, ZPA, and/or ZDX). * Experience administering firewall platforms (Palo Alto, Cisco, Fortinet, or Check Point). * Strong knowledge of network security architecture, Zero Trust, Secure Web Gateway, VPN, DNS, routing, SSL/TLS, and identity/authentication. * Experience with cloud security and hybrid networks; strong incident troubleshooting skills. * Familiarity with identity providers such as Microsoft Entra ID (Azure AD), SailPoint, or CyberArk. * Excellent analytical, troubleshooting, documentation, and communication skills. Key requirements * Excellent Health, Dental & Vision Insurance * Retirement 401(k) Savings Plan * Generous paid time off policy including paid parental leave ## Description Experteer Overview You will architect, implement, and operate Zayo's enterprise network security across on-prem, cloud, and hybrid environments. As a technical leader, you balance design excellence with hands-on engineering and L3 support, collaborating with cross-functional teams to deliver scalable Zero Trust and cloud security solutions. You'll mentor engineers, lead complex incidents, and drive automation and operational maturity. This role sits at the intersection of security, networking, and identity to protect critical infrastructure at scale. Compensation / Benefits * Design, implement, and optimize enterprise network security for on-premises, cloud, and hybrid environments. * Architect scalable Zero Trust solutions using Zscaler, NGFWs, VPNs, secure web gateways, and network segmentation. * Lead evaluations, POCs, and implementation of new security technologies; develop roadmaps and standards. * Collaborate with network, security, infrastructure, and identity teams to ensure secure architectures. * Serve as senior escalation point for complex incidents; troubleshoot advanced networking, DNS, routing, authentication, proxy, SSL/TLS, and app connectivity issues. * Configure and operate firewalls, VPNs, secure web gateways, cloud security solutions, and Zero Trust platforms; perform root cause analysis. * Monitor platform health and participate in critical incident response to maintain high availability. * Administer and optimize Zscaler services (ZIA, ZPA, ZDX); configure policies, SSL inspection, tunnels, and App Connectors. * Support Zero Trust access policies and cloud security initiatives; integrate with identity providers (e.g., Microsoft Entra ID, Azure AD, CyberArk, SailPoint). * Develop/security governance and automation; implement configuration management, runbooks, and documentation; ensure regulatory alignment. * Provide technical leadership, mentor teams, and drive continuous improvement in service reliability and customer experience. Tasks * 7+ years in network security, cybersecurity, or infrastructure engineering. * 3+ years hands-on with Zscaler (ZIA, ZPA, and/or ZDX). * Experience administering firewall platforms (Palo Alto, Cisco, Fortinet, or Check Point). * Strong knowledge of network security architecture, Zero Trust, Secure Web Gateway, VPN, DNS, routing, SSL/TLS, and identity/authentication. * Experience with cloud security and hybrid networks; strong incident troubleshooting skills. * Familiarity with identity providers such as Microsoft Entra ID (Azure AD), SailPoint, or CyberArk. * Excellent analytical, troubleshooting, documentation, and communication skills. Key requirements * Excellent Health, Dental & Vision Insurance * Retirement 401(k) Savings Plan * Generous paid time off policy including paid parental leave ## Related Videos - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [Creating a routing app with Google Maps API from scratch](https://www.wearedevelopers.com/videos/831-creating-a-routing-app-with-google-maps-api-from-scratch) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Bridging AI and Nomad: a Go-based MCP Server for Cluster Control](https://www.wearedevelopers.com/videos/2063-bridging-ai-and-nomad-a-go-based-mcp-server-for-cluster-control) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)