Network Engineer - Firewall, Vulnerability
NO SPONSORSHIP - NO OPTNetwork EngineerSALARY: $110k - $130k - $140k plus 15% bonusLOCATION: Dallas, TXHybrid 3 days onsiteLooking for a Network Engineer to support and engineer compliance and documentation. Routing and switching, firewalls. Cloud based solutions to ensure security compliance. Support of vulnerability management efforts.Network policy, governance, and complianceSupporting, administrating and overseeing network supportDesign and analysis of new and existing architectureRouting/switching configuration, design and complianceNetwork related business continuity approachesDevelop systems specifications, technical/procedural implementation plansCoordinating complex projects with clients and vendors.Works with a team performing network design and support of new network and security architectures for “on premise” and Cloud networks.Oversee the full lifecycle of network infrastructure, including the design, deployment, support, compliance and documentation of routing, switching, firewalls and cloud-base solutions.Lead and coordinate network changes, ensuring security, performance and compliance with governance framework (NIST-CSF, COBIT).Create and manage Risk Intakes/Acceptance(s) when required.Lead and support Vulnerability Management efforts.Proactively maintain awareness of policy and procedure changes that could affect networks compliance.Technical Skills[Preferred] Experience working in and developing solutions for a highly regulated environment or organization that leverages a security framework (such as NIST, COBIT, etc)[Required] Experience directing use of tools such as Ansible, Terraform, Jenkins, Python, and Github (or industry equivalent)[Required] Experience delivering Infrastructure as code[Required] Experience building cloud infrastructure in environments such as AWS (Preferred), Azure, or Google Cloud, or similar service[Preferred] Knowledge of Controls, Risk Ranking/mapping, Remediation items and general IT audit[Preferred] Understanding of NIST Special Publication 800-53 (Rev. 4) and COBIT framework[Required] Advanced experience with architecting, designing, deploying, and operating network elements such as DNS/IPAM; Firewalls; Network Access Control Solutions (NAC); load balancing; DDoS mitigation, tapping/sniffing infrastructures; and NTP[Preferred] Experience with Cisco IOS/NX-OS configurations[Preferred] Experience with GRC Technologies such as Archer[Preferred] Experience with CIS Benchmarks