TELECOMMUTE Lead Network Security Engineer

Zettalogix INC
United States
3 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Access Network Amazon Web Services Antivirus Softwares Application Firewall User Authentication Microsoft Azure Border Gateway Protocol Cisco PIX Cloud Computing Cloud Computing Security System Configuration Dynamic Host Configuration Protocol
+33 more
Network Address Translation Domain Name System (DNS) Internet Protocol Security (IP SEC) Intrusion Detection Systems Virtual Private Networks (VPN) Python (Programming Language) Network Security Network Diagrams Network Monitoring Routing Open Shortest Path First (OSPF) Remote Access Technology Ansible Service Pack Security Information and Event Management TCP/IP Virtual Local Area Networks Wide Area Networks Data Logging Scripting Transport Layer Security Google Cloud In-Plane Switching (IPS) Software Troubleshooting Firewalls (Computer Science) Web Filtering Palo Alto Networks Fortinet Firepower Firewall Services Module Open Network Automation Platform SSL VPN Vulnerability Analysis

Job description

We are looking for an experienced Senior Network Security Engineer to design, implement, maintain, and secure enterprise network infrastructure. The ideal candidate will have strong hands-on experience with firewalls, VPNs, network security technologies, cloud security, monitoring, and troubleshooting., Design, implement, and maintain secure enterprise network infrastructure.

Configure and manage firewalls such as Palo Alto, Fortinet, Cisco ASA/Firepower.

Manage VPN, IPS/IDS, NAC, SSL/IPSec, and network access controls.

Monitor network traffic and investigate security incidents.

Perform network security troubleshooting and root-cause analysis.

Implement security policies, standards, and access controls.

Work with routing and switching technologies including TCP/IP, BGP, OSPF, VLANs, DNS, DHCP, and LAN/WAN.

Support cloud networking and security environments such as AWS, Azure, or Google Cloud Platform.

Configure and manage security tools such as SIEM, IDS/IPS, vulnerability scanners, and network monitoring solutions.

Participate in security audits, vulnerability assessments, and remediation activities.

Develop and maintain network diagrams, documentation, and security procedures.

Requirements

14+ years of experience in network engineering/security.

Strong knowledge of TCP/IP, routing, switching, LAN/WAN, DNS, DHCP, VPN.

Hands-on experience with Palo Alto, Fortinet, Cisco ASA/Firepower, or similar firewalls.

Experience with IPS/IDS, NAC, SIEM, SSL/IPSec VPNs.

Knowledge of AWS, Azure, or Google Cloud Platform networking/security.

Strong troubleshooting and incident-response skills.

Knowledge of network security frameworks and best practices.

Experience with network automation/scripting using Python, Ansible, or similar tools is a plus.

Strong hands-on experience configuring and managing Fortinet FortiGate firewalls in enterprise environments.

Configure and maintain FortiGate firewall policies, NAT, security profiles, routing, and access control rules.

Manage FortiManager and FortiAnalyzer for centralized firewall administration, monitoring, logging, and reporting.

Implement and troubleshoot IPSec Site-to-Site VPN, SSL VPN, and Remote Access VPN solutions.

Configure VPN tunnels, encryption parameters, authentication, IKE Phase 1/Phase 2, and VPN failover.

Troubleshoot VPN connectivity, tunnel instability, routing issues, and authentication problems.

Design and implement high-availability firewall clusters (HA) and firewall redundancy.

Perform firewall rule reviews, cleanup, optimization, and security policy audits.

Configure IPS/IDS, Application Control, Web Filtering, Antivirus, SSL Inspection, and DNS Filtering on FortiGate.

Monitor firewall and VPN traffic using logs and security analytics to identify suspicious activity.

Manage firewall upgrades, security patches, configuration backups, and change management.

Experience with Cisco ASA/Firepower, Palo Alto, Check Point, or other enterprise firewall technologies is a plus.

Preferred Certifications:

CCNP Security / CCIE Security

Palo Alto PCNSE

Fortinet NSE/FCP

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

1:51 min

Overview of the three Google Maps routing applications

Germán Álvarez · LIVE

3:19 min

Executing complex workflows using Ansible Automation Platform

Goetz Rieger Goetz Rieger · World Congress 2025

Videos

See all

Related articles

See all