> Markdown version of [/jobs/ext/603295-network-security-engineer-specialist](https://www.wearedevelopers.com/jobs/ext/603295-network-security-engineer-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Network Security Engineer Specialist - **Company:** WorldPay - **Location:** Cincinnati, OH, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Access, Cloud Computing, Continuous Integration, Network Address Translation, Domain Name System (DNS), Intrusion Detection and Prevention, Intrusion Detection Systems, Python (Programming Language), Network Security, Routing, Performance Tuning, Akamai, Zero Trust Network Access, Web Application Security, Security Information and Event Management, TCP/IP, Data Logging, Transport Layer Security, Computer Network Operations, Palo Alto Networks, Cloudflare, Terraform - **Published:** June 20, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=2f4086f1a75455fb ## About the Role Do you have experience in Team leadership?, Do you have a Bachelor's degree?, * Bachelor's degree in a related field and 7+ years of experience, or equivalent practical experience. * Experience in network security or security engineering roles. * Strong hands-on experience with SWG, Proxy, SASE, or Secure Access in enterprise environments. * Strong knowledge of Zscaler ZIA/ZPA and Palo Alto technologies including Panorama, NGFW, Threat Prevention, and Prisma Access. * Experience with proxy policy, SSL inspection, traffic steering, secure access, threat prevention, and user access troubleshooting. * Strong networking and security fundamentals including TCP/IP, TLS, DNS, routing, NAT, certificates, and zero trust. * Experience in large-scale global environments and ability to serve as a senior escalation point during major incidents. * Proven ability to mentor engineers, review work, and communicate effectively across teams. It's a bonus if you have * Experience with IPS/IDS tuning and false-positive reduction. * Experience with Prisma Access, cloud NGFW, or hybrid architectures. * Familiarity with Terraform, Python, CI/CD, or automation for security platforms. * Exposure to WAF technologies (Akamai, Cloudflare, or F5 Distributed Cloud), regulated environments, or relevant certifications such as PCNSE or Zscaler. ## Description This position is not eligible for visa sponsorship, now or in the future. Candidates must be a US Citizen or Green Card Holder, Make your mark at one of the biggest names in payments. We're looking for a Network Security Engineer Specialist to join our ever-evolving Edge&Network Security team and help us unleash the potential of every business. This role strengthens and evolves our secure access and network security platforms across a global enterprise environment. This is a hands-on technical leadership role focused primarily on Secure Web Gateway (SWG), Proxy, SASE, Secure Access, and related network security controls, with responsibility for IPS/IDS and firewall-adjacent security capabilities. Our core platforms include Zscaler (ZIA / ZPA) and Palo Alto Networks technologies, including Panorama, on-prem NGFW, cloud NGFW, Threat Prevention, and Prisma Access. This role supports approximately 30,000 users globally across the US, UK, and APAC, operating in a full proxy environment with selective private access, including broad SSL inspection coverage. You will lead engineering and delivery efforts, improve service reliability, mentor other engineers, and act as a technical escalation point during high-severity incidents. This is an engineering-first role, with approximately 80% of time focused on design, implementation, tuning, and operational improvement, and approximately 20% supporting incident mitigation and high-severity response. On-Call Expectations: Participate in a rotating on-call schedule for incidents. Act as a senior escalation point for major issues affecting secure access, proxy, SASE, or related network security services. Contribute to post-incident analysis and ensure durable corrective actions are implemented. Participate in readiness activities, operational reviews, and resilience improvements for critical control-plane services. What you'll own * Lead engineering and continuous improvement for SWG, Proxy, SASE, Secure Access, and IPS/IDS across a global enterprise environment. * Administer and harden Zscaler (ZIA/ZPA) and Palo Alto platforms, including Panorama, Prisma Access, NGFW, and Threat Prevention. * Design and maintain scalable security policies for internet access, private application access, SSL inspection, traffic steering, and threat prevention. * Drive high-quality changes through safe rollout planning, validation, rollback readiness, and post-change review. * Improve platform reliability, policy quality, and user experience through standardization, tuning, and operational improvements. * Serve as a technical lead and escalation point for complex issues, high-risk changes, and high-severity incidents. * Mentor other engineers, review work, and help establish best practices, standards, and runbooks. * Partner with SOC/IR, Network Operations, infrastructure, application teams, and vendors to deliver secure and reliable services. * Improve logging, telemetry, SIEM integration, and operational visibility while reducing noise and strengthening control effectiveness. * Track and improve key measures such as policy accuracy, false positives, service reliability, change success, and time to mitigation. * Lead vendor escalations and hold partners accountable for response quality, root cause depth, and durable resolution. ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [What the Heck is Edge Computing Anyway?](https://www.wearedevelopers.com/videos/593-what-the-heck-is-edge-computing-anyway) - [Creating a routing app with Google Maps API from scratch](https://www.wearedevelopers.com/videos/831-creating-a-routing-app-with-google-maps-api-from-scratch) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)