Network Security Engineer
Network Security EngineerKey Duties, Accountabilities and Responsibilities:
• Works from established procedures with limited instruction.
• Assist in the development and enhancement of procedures.
• Performs moderately difficult assignments, requiring a great deal of originality and problem solving.
• Working knowledge of project management concepts; able to run small projects.
• Complies with information security policies.
• Exhibits regular, reliable, punctual and predictable attendance.
• Performs analysis of network security needs and contributes to design, integration, and installation of hardware and software.
• Day-to-day operational tasks such as firewall request and incident management.
• Designs and implements remote connectivity solutions including IPSec VPN, and SSLVPN.
• Provide security guidance and drive infrastructure decisions in collaboration with other technical and management teams, ensuring Security principles are being upheld.
• Development, deployment or administration of firewalls such as Palo Alto.
• Strong knowledge of network routing/switching (routing protocols, multicast, other LAN protocols).
• Advanced knowledge of layer 7 firewall technologies and capabilities (e.g. Application awareness, user identities, advanced threat detection, etc.).
• Conduct regular security assessments on controls and policies to iterate and improve the security posture.
• Drive/support global information security initiatives aimed at modernizing security tools and capabilities, reducing the organizations exposure and risks to network-based threats, and delivering quality information security in alignment with the organization’s goals.
Required Qualifications/Skills/Experience:
• Experience implementing network segmentation and security practices in the cloud.
• Proven ability to understand and implement complex network security concepts and technologies using (but not limited to):
o Palo Alto Networks Security Appliances (including Panorama)
o Remote Access VPN solutions (e.g. Global Protect)
o SDN technology – Cisco ACI, Silver Peak
o FireMon Security Manager (or similar firewall management/orchestration tool)
o AWS / Azure Cloud
o Network segmentation
o SSL Decryption
o Splunk
• Proven ability to understand and decode network traces and capture files.
• Proven ability to communicate in the written/spoken language with audiences of diverse technical understanding.
• Proven ability to be a self-starter with self-motivation for learning new technologies.
• Proven ability to quickly understand customer problems and how they relate to network/security infrastructure.
• Strong knowledge of network security, Palo Alto firewalls, intrusion detection systems, authentication mechanisms, encryption technologies, and networking protocols including SMTP, HTTP, DNS, TCP/IP, and SNMP.
• Proven ability to navigate and understand AWS and Azure cloud environments.
• A four year computer science or related technical degree or equivalent work experience.