Network Security Engineer

Centillion Infotech
Dallas, TX, United States
11 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Proxy Servers Microsoft Azure Border Gateway Protocol Cloud Engineering Cyber Security Data Centers Dynamic Host Configuration Protocol Network Address Translation Domain Name System (DNS) Fault Tolerance
+36 more
Identity and Access Management IT Management IPv4 IPv6 Intrusion Detection and Prevention Intrusion Detection Systems Virtual Private Networks (VPN) Multi-protocol Systems Network Security Multicasting NetFlow Routing Network Segmentation Network Service Network Time Protocols Open Shortest Path First (OSPF) Remote Access Technology Zero Trust Network Access Security Information and Event Management Wide Area Networks WAN Optimization Web Applications Private Cloud Environment Computer Networking Systems Google Cloud Load Balancing In-Plane Switching (IPS) F5 GTM Software Security BIG-IP Local Traffic Manager (LTM) Firewalls (Computer Science) Juniper Information Technology Wireless Technologies Fortinet Firewall Services Module

Job description

  • Translate high-level business strategic objectives and goals into Enterprise IT requirements and conceptual designs.
  • Develop and support comprehensive solutions that meet requirements and align with HPE’s global network security and strategy using Juniper SRX platforms.
  • Develop and maintain a multi-year strategic network and security architecture roadmap, incorporating Zero Trust and firewall-based segmentation models.
  • Lead end-to-end network and security architecture across global platforms ensuring secure, high-performing, fault-tolerant, and resilient environments.

Segmentation & Zero Trust Responsibilities (Juniper SRX Focus)

  • Architect and implement network segmentation strategies using Juniper SRX firewalls across data center, campus, and cloud environments to limit lateral movement and enforce least-privilege access.
  • Design and operationalize Zero Trust Architecture (ZTA) principles, integrating identity, application, and network-based policy enforcement using firewall controls.
  • Collaborate with application owners to discover, validate, and map application dependencies to enable policy-driven segmentation via firewall rules and security zones.
  • Define and enforce granular security policies using zone-based segmentation, VRFs, and SRX policy constructs across hybrid environments.
  • Integrate segmentation with firewalls, SIEM, IAM, EDR/XDR, and cloud-native controls for unified policy enforcement.
  • Lead adoption and standardization of Juniper SRX as the primary segmentation enforcement platform across enterprise environments.
  • Develop segmentation governance models, policy lifecycle management, and compliance alignment (CIS/NIST/Zero Trust frameworks)., * Participate in network security design reviews and ensure all implementations meet enterprise security standards.
  • Analyze business requirements to design and implement security across data centers, campus networks, and hybrid environments.
  • Provide ongoing risk metrics, control effectiveness tracking, and security posture reporting.
  • Conduct and support internal and external security audits and compliance assessments.
  • Maintain awareness of emerging threats and update policies accordingly.
  • Develop and manage policies, processes, and procedures ensuring reliability, availability, and security of network systems.
  • Manage and optimize Security Information and Event Management (SIEM) systems.
  • Collaborate with Cyber Security, infrastructure, and application teams toward compliance and operational excellence.

Requirements

  • Strong hands-on experience in designing and implementing network segmentation using enterprise firewalls (Juniper SRX preferred) in complex environments.
  • Proven capability to build application-aware firewall policies based on traffic flow analysis.
  • Experience with policy design, enforcement, monitoring, and optimization in firewall-based segmentation environments.
  • Strong understanding of east-west traffic inspection, security zoning, and firewall-enforced segmentation.
  • Familiarity with Zero Trust Network Access (ZTNA) and identity-driven access models., * Strong experience managing LAN/WAN security technologies, including firewalls, IDS/IPS, SIEM, VPN, and NAC.
  • Expertise in firewall architecture and design with strong hands-on experience in Juniper SRX (primary), along with Fortinet and Palo Alto.
  • Deep expertise in:
  • Security zones, policies, NAT, routing
  • Application control and threat prevention
  • High-availability clustering and scale design
  • Experience securing public and private cloud (AWS, Azure, Google Cloud Platform) environments.
  • Design and implementation of Web Application and API Protection (WAAP) solutions.
  • Strong experience in proxy (forward/reverse), load balancing, and application security integration.
  • Experience with SDN and SD-WAN architectures, including segmentation use cases., * Strong knowledge of:
  • Routing protocols: BGP, OSPF, RIP, MPLS
  • Network services: DNS, DHCP, NTP
  • IPv4/IPv6 architecture and traffic management
  • Experience in QoS, NetFlow, ACLs, NAT, multicast, and wireless technologies (802.11 variants).
  • Experience with F5 GTM/LTM, VPN technologies, and Internet proxy solutions., + Aruba, Arista, Juniper switching
  • Firewalls, WAN optimization, IDS/IPS, DLP
  • Strong understanding of structured cabling and network facilities., * Bachelor’s Degree in Computer Science, Network Engineering, or related field (or equivalent experience).
  • 10+ years of experience in global network security environments.
  • Preferred certifications:
  • CCNP / CCIE
  • JNCIS/JNCIP/JNCIE (Juniper SRX focus preferred)
  • Security certifications (CISSP, CISM, or equivalent) are a plus

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:22 min

Introducing Skupper for application connectivity

Alex Soto Alex Soto · World Congress 2024

1:34 min

The pros and cons of campus-wide IP authentication

Christoph Eicke Christoph Eicke · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:05 min

Exploring microcontrollers and communication protocols for amateur hardware

Philipp-Alexander Blum · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:45 min

Replacing traditional security workarounds with foundational access controls

Ross Kukulinski Ross Kukulinski · World Congress 2026 Europe

Videos

See all

Related articles

See all