North Kansas City Hospital
North Kansas City, Missouri
SUMMARY:The Network Architect partners closely with IT leadership to shape long term infrastructure strategies and technology roadmaps. This includes providing expert guidance in the architecture, design, deployment, and lifecycle management of complex enterprise network systems. The role leads high impact initiatives such as building, testing, implementing, and troubleshooting advanced network solutions across the health system including design, implementation, and optimization to ensure high performance, security, and scalability. This role involves creating detailed network blueprints, selecting appropriate hardware and software, and ensuring seamless integration with existing systems.Key responsibilities include evaluation, recommendation, and championing emerging technologies that strengthen NKC Healths capabilities, supporting strategic objectives across health system environments. The Network Architect is accountable to ensure the Network Engineering team maintain accurate, comprehensive documentation for existing infrastructure as well as newly introduced systems and services. The NA is responsible for developing and reporting of network performance compared to benchmarks.Acting as a subject matter expert across a broad array of technologies, this role delivers technical oversight for all operations under the Network Engineering function and provides mentorship, and direction to ensure consistent execution of architectural standards, operational excellence, and continuous improvement. EXPERIENCE: Seven years experience designing, configuring, and troubleshooting enterprise network systems. Seven years experience managing Cisco routers, switches and managing Cisco Collaboration and VoIP systems. Six years experience managing Cisco and Palo Alto firewalls, as well as managing and troubleshooting wireless networks. SPECIAL SKILLS: Packet capture analysis and troubleshooting with Wireshark or like products. LICENSE/CERT: Required: CCNA (Cisco Certified Network Associate) Preferred: ASE (Architecture Systems Engineer ), CCNP (Cisco Certified Network Professional) EDUCATION: Preferred: Bachelors - Information Technology
09/21/2026
Full time
SUMMARY:The Network Architect partners closely with IT leadership to shape long term infrastructure strategies and technology roadmaps. This includes providing expert guidance in the architecture, design, deployment, and lifecycle management of complex enterprise network systems. The role leads high impact initiatives such as building, testing, implementing, and troubleshooting advanced network solutions across the health system including design, implementation, and optimization to ensure high performance, security, and scalability. This role involves creating detailed network blueprints, selecting appropriate hardware and software, and ensuring seamless integration with existing systems.Key responsibilities include evaluation, recommendation, and championing emerging technologies that strengthen NKC Healths capabilities, supporting strategic objectives across health system environments. The Network Architect is accountable to ensure the Network Engineering team maintain accurate, comprehensive documentation for existing infrastructure as well as newly introduced systems and services. The NA is responsible for developing and reporting of network performance compared to benchmarks.Acting as a subject matter expert across a broad array of technologies, this role delivers technical oversight for all operations under the Network Engineering function and provides mentorship, and direction to ensure consistent execution of architectural standards, operational excellence, and continuous improvement. EXPERIENCE: Seven years experience designing, configuring, and troubleshooting enterprise network systems. Seven years experience managing Cisco routers, switches and managing Cisco Collaboration and VoIP systems. Six years experience managing Cisco and Palo Alto firewalls, as well as managing and troubleshooting wireless networks. SPECIAL SKILLS: Packet capture analysis and troubleshooting with Wireshark or like products. LICENSE/CERT: Required: CCNA (Cisco Certified Network Associate) Preferred: ASE (Architecture Systems Engineer ), CCNP (Cisco Certified Network Professional) EDUCATION: Preferred: Bachelors - Information Technology
North Kansas City Hospital
North Kansas City, Missouri
SUMMARY: Under the direction of the IT Infrastructure Supervisor the Senior Network Engineer (SNE) ensures the stability, integrity and efficient operation of the network infrastructure and telecommunications services. Applies proven analytical and problem-solving skills to identify, communicate and resolve issues. Mentors and guides Network Engineers and Network Administrators regarding technical skills, documentation, analysis and communication standards to achieve a uniform response. Position is hybrid, working 1 day remote per week. Must reside local to MO/KS. EXPERIENCE: Five years experience designing, configuring and troubleshooting enterprise network systems. Five years experience managing Cisco routers, switches and managing Cisco Collaboration and VoIP systems. Four years experience managing Cisco and Palo Alto firewalls, as well as managing and troubleshooting Wireless networks. SPECIAL SKILLS:Packet capture analysis and troubleshooting with Wireshark. Network Automation with scripting languages or automation frameworks - Python, Ansible. LICENSE/CERT: Required: CCNA (Cisco Certified Network Associate) Preferred: ASE (Architecture Systems Engineer ), CCNP (Cisco Certified Network Professional), HP AIS (Accredited Integration Specialist) EDUCATION: Preferred: Bachelors - Information Technology
09/21/2026
Full time
SUMMARY: Under the direction of the IT Infrastructure Supervisor the Senior Network Engineer (SNE) ensures the stability, integrity and efficient operation of the network infrastructure and telecommunications services. Applies proven analytical and problem-solving skills to identify, communicate and resolve issues. Mentors and guides Network Engineers and Network Administrators regarding technical skills, documentation, analysis and communication standards to achieve a uniform response. Position is hybrid, working 1 day remote per week. Must reside local to MO/KS. EXPERIENCE: Five years experience designing, configuring and troubleshooting enterprise network systems. Five years experience managing Cisco routers, switches and managing Cisco Collaboration and VoIP systems. Four years experience managing Cisco and Palo Alto firewalls, as well as managing and troubleshooting Wireless networks. SPECIAL SKILLS:Packet capture analysis and troubleshooting with Wireshark. Network Automation with scripting languages or automation frameworks - Python, Ansible. LICENSE/CERT: Required: CCNA (Cisco Certified Network Associate) Preferred: ASE (Architecture Systems Engineer ), CCNP (Cisco Certified Network Professional), HP AIS (Accredited Integration Specialist) EDUCATION: Preferred: Bachelors - Information Technology
Job Description Job Description Network Security Engineer DALLAS, TX LONG TERM Are you a Network Security Engineer with a passion for designing, securing, and optimizing enterprise-level network infrastructures? We are looking for a results-driven professional who thrives in high-stakes environments, tackling complex security challenges while ensuring seamless network performance. If you have a strong background in network architecture, security compliance, and performance optimization , we invite you to join our team and make an impact! Key Responsibilities: Network Architecture & Optimization - Design, configure, and optimize network infrastructure, including routers, switches, firewalls, and VPNs. Security & Compliance - Implement robust security policies, risk mitigation strategies, and access controls to safeguard critical data. Monitoring & Threat Detection - Leverage advanced tools for real-time network monitoring, anomaly detection, and security incident response. Incident Response & Troubleshooting - Analyze security threats, diagnose network issues, and deploy timely solutions to maintain business continuity. Disaster Recovery & Redundancy Planning - Develop and maintain backup, recovery, and failover strategies to ensure high availability. Collaboration & Documentation - Work cross-functionally with IT teams to enforce security best practices and document network configurations. Qualifications & Experience: Experience: Minimum 7 + years in network security engineering , covering: Network design, architecture, and security enforcement. Advanced routing, switching, and firewall configuration. Hands-on experience with IDS/IPS, VPNs, SD-WAN, and cloud security controls. Deep knowledge of network security monitoring and threat intelligence tools. Technical Skills: Strong expertise in TCP/IP, VPNs, VLANs, BGP, OSPF, EIGRP, and MPLS . Proficiency in securing LAN/WAN environments, firewalls (Palo Alto, Cisco, Fortinet), and cloud-based security . Familiarity with SIEM, intrusion detection/prevention systems, and vulnerability management . Scripting experience (Python, PowerShell, or Bash) is a plus. Certifications (Preferred but not mandatory): CCNA, CCNP, CCIE, CISSP, MCSE, MCSA, or equivalent . If you're ready to elevate network security standards and drive innovation , we'd love to hear from you!
09/21/2026
Full time
Job Description Job Description Network Security Engineer DALLAS, TX LONG TERM Are you a Network Security Engineer with a passion for designing, securing, and optimizing enterprise-level network infrastructures? We are looking for a results-driven professional who thrives in high-stakes environments, tackling complex security challenges while ensuring seamless network performance. If you have a strong background in network architecture, security compliance, and performance optimization , we invite you to join our team and make an impact! Key Responsibilities: Network Architecture & Optimization - Design, configure, and optimize network infrastructure, including routers, switches, firewalls, and VPNs. Security & Compliance - Implement robust security policies, risk mitigation strategies, and access controls to safeguard critical data. Monitoring & Threat Detection - Leverage advanced tools for real-time network monitoring, anomaly detection, and security incident response. Incident Response & Troubleshooting - Analyze security threats, diagnose network issues, and deploy timely solutions to maintain business continuity. Disaster Recovery & Redundancy Planning - Develop and maintain backup, recovery, and failover strategies to ensure high availability. Collaboration & Documentation - Work cross-functionally with IT teams to enforce security best practices and document network configurations. Qualifications & Experience: Experience: Minimum 7 + years in network security engineering , covering: Network design, architecture, and security enforcement. Advanced routing, switching, and firewall configuration. Hands-on experience with IDS/IPS, VPNs, SD-WAN, and cloud security controls. Deep knowledge of network security monitoring and threat intelligence tools. Technical Skills: Strong expertise in TCP/IP, VPNs, VLANs, BGP, OSPF, EIGRP, and MPLS . Proficiency in securing LAN/WAN environments, firewalls (Palo Alto, Cisco, Fortinet), and cloud-based security . Familiarity with SIEM, intrusion detection/prevention systems, and vulnerability management . Scripting experience (Python, PowerShell, or Bash) is a plus. Certifications (Preferred but not mandatory): CCNA, CCNP, CCIE, CISSP, MCSE, MCSA, or equivalent . If you're ready to elevate network security standards and drive innovation , we'd love to hear from you!
RELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE REQUIRED FOR START: YesCLEARANCE TYPE: SecretTRAVEL: Yes, 25% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage, and a pioneering spirit to join forces to invent the future and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Northrop Grumman Defense Systems has an opening for a Sr Principal Network Engineer. We are looking for you to join our team as a Sr Principal Network Engineer based out of Orlando, FL. As a Sr Principal Network Engineer at Northrop Grumman, you will have a challenging and rewarding opportunity to be a part of our Cross-Domain Handling of Releasable Data (CHORD) portfolio. CHORD is a Foreign Military Sales (FMS) Cross Domain Solution (CDS). The CHORD portfolio comprises multiple contract awards and with various customers. The successful candidate will be exceptionally meticulous, collaborative, open, transparent, and team-oriented with a focus on team empowerment & personal responsibility, flexibility, continuous learning, and a culture of seeking the best performance from everyone. Roles & Responsibilities: The Sr Principal Network Engineer serves as a senior technical resource responsible for sustaining and troubleshooting a fully defined network architecture, including secure external connectivity through next-generation firewalls (preferably Palo Alto) and DoD end-to-end encryption devices such as TACLANE. Manages and handles COMSEC material in accordance with DoD directives, and cross-trains as a tester to support system and integration test activities alongside multi-disciplinary engineering teams The engineer also performs end-to-end fault isolation to distinguish product issues from customer network issues under a CLS contract. Basic Qualifications: Bachelor's degree in Computer Science, Information Technology, Electrical Engineering, or related STEM discipline with 8+ years of relevant network engineering experience OR Master's degree in STEM and 6+ years of experience OR 12 years of experience in lieu of a degree. U.S. citizenship and Active DoD Secret Clearance Extensive hands-on experience configuring, operating, and troubleshooting Cisco-based network infrastructure, including enterprise-/mission-scale switches and routers (IOS/IOS-XE/NX-OS). Deep understanding of TCP/IP networking, routing protocols (e.g., OSPF, BGP, EIGRP), VLANs, trunking, spanning-tree, and QoS. Demonstrated experience supporting and troubleshooting a fully defined/fielded network architecture in a production or mission environment. Proven ability to perform end-to-end fault isolation and root cause analysis, including clearly determining whether issues originate within the supported product/system or in the customer's external network. Experience supporting systems under a Contractor Logistics Support (CLS) or similar sustainment contract, including incident/ticket management and documentation of findings. Working knowledge of firewall concepts (e.g., security zones, ACLs, NAT, VPNs) and secure external connectivity. Familiarity with DoD end-to-end encryption devices (e.g., TACLANE or equivalent) and their role in secure network architectures. Willingness and ability to cross-train as a system/test engineer and support execution of formal and informal test activities (e.g., test setup, test execution, defect documentation). Strong written and verbal communication skills, including the ability to interface with customers, operations staff, and internal engineering/test teams. Preferred Qualifications: Current Cisco certification (e.g., CCNP Enterprise, CCNP Security, or higher). Current DoD 8570/8140-compliant cybersecurity certification, such as: CompTIA Security+ Ability to obtain and maintain a higher DoD clearance status as required (ISC) CISSP (or Associate of CISSP) Hands-on experience with Palo Alto Networks firewalls, including configuration of security policies, NAT, VPNs, and routing, and troubleshooting using logs, packet captures, and CLI/GUI tools. Experience integrating Cisco routing/switching with Palo Alto (or similar next-generation firewalls) to provide secure external connectivity for deployed systems. Experience in a senior network engineer role, including reviewing/approving network changes and mentoring junior engineers. Experience operating in DoD or other secure/regulated network environments, including exposure to RMF, DISA STIGs, or equivalent cybersecurity/compliance requirements. Proficiency with network monitoring and analysis tools (e.g., Wireshark, SolarWinds, NetFlow, SNMP) for proactive issue detection and performance troubleshooting. Hands-on experience with TACLANE or similar DoD end-to-end encryption devices, including configuration, operational management, and integration with routing and firewall policies. Experience managing and handling COMSEC material, including key loading/changes, adherence to handling and storage procedures, and coordination with COMSEC custodians. Experience supporting system and integration test activities, such as: Building and configuring test network environments Executing test procedures and capturing objective evidence Reproducing and troubleshooting defects found during test Experience coordinating with multi-disciplinary teams (systems engineering, software, cybersecurity, logistics, test) to resolve complex field and test issues under CLS or similar support constructs. Primary Level Salary Range: $111,700.00 - $167,500.00The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
09/21/2026
Full time
RELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE REQUIRED FOR START: YesCLEARANCE TYPE: SecretTRAVEL: Yes, 25% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage, and a pioneering spirit to join forces to invent the future and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Northrop Grumman Defense Systems has an opening for a Sr Principal Network Engineer. We are looking for you to join our team as a Sr Principal Network Engineer based out of Orlando, FL. As a Sr Principal Network Engineer at Northrop Grumman, you will have a challenging and rewarding opportunity to be a part of our Cross-Domain Handling of Releasable Data (CHORD) portfolio. CHORD is a Foreign Military Sales (FMS) Cross Domain Solution (CDS). The CHORD portfolio comprises multiple contract awards and with various customers. The successful candidate will be exceptionally meticulous, collaborative, open, transparent, and team-oriented with a focus on team empowerment & personal responsibility, flexibility, continuous learning, and a culture of seeking the best performance from everyone. Roles & Responsibilities: The Sr Principal Network Engineer serves as a senior technical resource responsible for sustaining and troubleshooting a fully defined network architecture, including secure external connectivity through next-generation firewalls (preferably Palo Alto) and DoD end-to-end encryption devices such as TACLANE. Manages and handles COMSEC material in accordance with DoD directives, and cross-trains as a tester to support system and integration test activities alongside multi-disciplinary engineering teams The engineer also performs end-to-end fault isolation to distinguish product issues from customer network issues under a CLS contract. Basic Qualifications: Bachelor's degree in Computer Science, Information Technology, Electrical Engineering, or related STEM discipline with 8+ years of relevant network engineering experience OR Master's degree in STEM and 6+ years of experience OR 12 years of experience in lieu of a degree. U.S. citizenship and Active DoD Secret Clearance Extensive hands-on experience configuring, operating, and troubleshooting Cisco-based network infrastructure, including enterprise-/mission-scale switches and routers (IOS/IOS-XE/NX-OS). Deep understanding of TCP/IP networking, routing protocols (e.g., OSPF, BGP, EIGRP), VLANs, trunking, spanning-tree, and QoS. Demonstrated experience supporting and troubleshooting a fully defined/fielded network architecture in a production or mission environment. Proven ability to perform end-to-end fault isolation and root cause analysis, including clearly determining whether issues originate within the supported product/system or in the customer's external network. Experience supporting systems under a Contractor Logistics Support (CLS) or similar sustainment contract, including incident/ticket management and documentation of findings. Working knowledge of firewall concepts (e.g., security zones, ACLs, NAT, VPNs) and secure external connectivity. Familiarity with DoD end-to-end encryption devices (e.g., TACLANE or equivalent) and their role in secure network architectures. Willingness and ability to cross-train as a system/test engineer and support execution of formal and informal test activities (e.g., test setup, test execution, defect documentation). Strong written and verbal communication skills, including the ability to interface with customers, operations staff, and internal engineering/test teams. Preferred Qualifications: Current Cisco certification (e.g., CCNP Enterprise, CCNP Security, or higher). Current DoD 8570/8140-compliant cybersecurity certification, such as: CompTIA Security+ Ability to obtain and maintain a higher DoD clearance status as required (ISC) CISSP (or Associate of CISSP) Hands-on experience with Palo Alto Networks firewalls, including configuration of security policies, NAT, VPNs, and routing, and troubleshooting using logs, packet captures, and CLI/GUI tools. Experience integrating Cisco routing/switching with Palo Alto (or similar next-generation firewalls) to provide secure external connectivity for deployed systems. Experience in a senior network engineer role, including reviewing/approving network changes and mentoring junior engineers. Experience operating in DoD or other secure/regulated network environments, including exposure to RMF, DISA STIGs, or equivalent cybersecurity/compliance requirements. Proficiency with network monitoring and analysis tools (e.g., Wireshark, SolarWinds, NetFlow, SNMP) for proactive issue detection and performance troubleshooting. Hands-on experience with TACLANE or similar DoD end-to-end encryption devices, including configuration, operational management, and integration with routing and firewall policies. Experience managing and handling COMSEC material, including key loading/changes, adherence to handling and storage procedures, and coordination with COMSEC custodians. Experience supporting system and integration test activities, such as: Building and configuring test network environments Executing test procedures and capturing objective evidence Reproducing and troubleshooting defects found during test Experience coordinating with multi-disciplinary teams (systems engineering, software, cybersecurity, logistics, test) to resolve complex field and test issues under CLS or similar support constructs. Primary Level Salary Range: $111,700.00 - $167,500.00The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
Today, NVIDIA is tapping into the unlimited potential of AI to define the next era of computing! An era in which our GPU acts as the brains of computers, robots, and self-driving cars that can understand the world. Doing what's never been done before takes vision, innovation, and the world's best talent. As an NVIDIAN, you are immersed in a diverse, encouraging environment where everyone is inspired to do their best work. Come join the team and see how we can make a lasting impact on the world. NVIDIA is transforming how the world builds and operates computing infrastructure for accelerated computing and AI. Our Network Deployment Engineering team designs and delivers the global network infrastructure supporting NVIDIA's data centers, offices, labs, and critical business services. We are looking for a Senior Network Deployment Engineer to lead complex data center and WAN deployments from architecture and design through production readiness and operational handoff. This highly technical, hands-on role combines large-scale network engineering, deployment execution, advanced troubleshooting, and infrastructure automation. The position offers the opportunity to work across modern EVPN/VXLAN fabrics, global WAN connectivity, multi-vendor networking, software-driven infrastructure, and emerging AI networking technologies. The ideal candidate combines deep networking expertise with strong execution skills and an approach focused on transforming repeatable engineering processes into scalable automation. What you'll be doing: Lead end-to-end deployment of complex global data center and WAN infrastructure, from requirements and technical design through implementation, validation, production cutover, and operational handoff. Design, build, and optimize highly available network architectures using BGP, EVPN, VXLAN, underlay/overlay routing, multi-tenancy, segmentation, SD-WAN, and IPsec technologies. Deliver large-scale, multi-vendor environments incorporating technologies such as Arista, NVIDIA Cumulus Linux, Palo Alto Networks, F5, Citrix, and associated network services. Develop and expand network automation using Python, Ansible, Salt, APIs, and related frameworks to make deployments repeatable, scalable, auditable, and less dependent on manual configuration. Partner with Network Architecture, Network Operations, Security, Data Center Engineering, Facilities, compute and infrastructure teams, TPMs, and external vendors to deliver complex infrastructure programs globally. Establish rigorous deployment practices covering network standards, topology documentation, implementation procedures, configuration validation, pre/post-change testing, telemetry, and production readiness. Serve as a senior technical escalation point, applying deep routing knowledge, Linux tools, packet-level troubleshooting, telemetry, and performance analysis to resolve complex network issues. Translate lessons from production deployments into reusable engineering standards, automated workflows, design improvements, and more efficient deployment models across NVIDIA's global infrastructure. What we need to see: Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, Information Technology, or a related technical field, or equivalent experience. 8+ years of progressive network engineering experience, including significant hands-on responsibility for large-scale data center, WAN, or enterprise network design and deployment. Deep technical knowledge of BGP and IP routing, along with strong understanding of EVPN/VXLAN leaf-spine or Clos/fat-tree architectures, routing policy, segmentation, and multi-tenant networking. Proven ability to independently drive complex network deployments through design, implementation, testing, migration or cutover, troubleshooting, and production acceptance. Hands-on expertise with both Arista and NVIDIA Cumulus Linux, including configuration, deployment, operations, and Linux-based network troubleshooting. Proficiency with network automation and scripting, including technologies such as Python, Ansible, Salt, REST APIs, or comparable automation frameworks. Advanced troubleshooting capabilities across routing, switching, overlays, firewalls, load balancers, and network connectivity, including packet-level analysis using tools such as Wireshark or tcpdump. Strong technical communication, organizational, and project execution skills, with demonstrated ability to coordinate cross-functional stakeholders and deliver multiple concurrent infrastructure projects. Ways to stand out from the crowd: Advanced knowledge of Palo Alto Networks firewalls, F5 or Citrix load balancing, SD-WAN, IPsec VPNs, and large-scale network segmentation architectures. Design or deployment background with AI/HPC networking, including NVIDIA Spectrum-X, RoCEv2, RDMA, lossless Ethernet, or native InfiniBand fabrics. Strong understanding of network telemetry, observability, automated validation, configuration compliance, and closed-loop infrastructure automation. Hands-on exposure to modern AI or agentic software frameworks applied to network engineering, including AI-assisted deployment, validation, troubleshooting, or infrastructure operations. Advanced networking certifications such as CCNP, CCIE, JNCIE, or equivalent demonstrated technical depth. NVIDIA is leading the way in groundbreaking developments in Artificial Intelligence, High-Performance Computing and Visualization. The GPU, our invention, serves as the visual cortex of modern computers and is at the heart of our products and services. Our work opens up new universes to explore, enables outstanding creativity and discovery, and powers what were once science fiction inventions from artificial intelligence to autonomous cars. NVIDIA is looking for exceptional people like you to help us accelerate the next wave of artificial intelligence. NVIDIA is widely recognized as one of the world's leading technology companies, bringing together skilled, driven people to solve complex problems at scale. This role offers the opportunity to grow design ownership, work on high-impact enterprise products, and help create thoughtful experiences alongside a collaborative team! Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 168,000 USD - 264,500 USD for Level 4, and 208,000 USD - 333,500 USD for Level 5. You will also be eligible for equity and benefits. Applications for this job will be accepted at least until September 20, 2026. This posting is for an existing vacancy. NVIDIA uses AI tools in its recruiting processes. NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.
09/21/2026
Full time
Today, NVIDIA is tapping into the unlimited potential of AI to define the next era of computing! An era in which our GPU acts as the brains of computers, robots, and self-driving cars that can understand the world. Doing what's never been done before takes vision, innovation, and the world's best talent. As an NVIDIAN, you are immersed in a diverse, encouraging environment where everyone is inspired to do their best work. Come join the team and see how we can make a lasting impact on the world. NVIDIA is transforming how the world builds and operates computing infrastructure for accelerated computing and AI. Our Network Deployment Engineering team designs and delivers the global network infrastructure supporting NVIDIA's data centers, offices, labs, and critical business services. We are looking for a Senior Network Deployment Engineer to lead complex data center and WAN deployments from architecture and design through production readiness and operational handoff. This highly technical, hands-on role combines large-scale network engineering, deployment execution, advanced troubleshooting, and infrastructure automation. The position offers the opportunity to work across modern EVPN/VXLAN fabrics, global WAN connectivity, multi-vendor networking, software-driven infrastructure, and emerging AI networking technologies. The ideal candidate combines deep networking expertise with strong execution skills and an approach focused on transforming repeatable engineering processes into scalable automation. What you'll be doing: Lead end-to-end deployment of complex global data center and WAN infrastructure, from requirements and technical design through implementation, validation, production cutover, and operational handoff. Design, build, and optimize highly available network architectures using BGP, EVPN, VXLAN, underlay/overlay routing, multi-tenancy, segmentation, SD-WAN, and IPsec technologies. Deliver large-scale, multi-vendor environments incorporating technologies such as Arista, NVIDIA Cumulus Linux, Palo Alto Networks, F5, Citrix, and associated network services. Develop and expand network automation using Python, Ansible, Salt, APIs, and related frameworks to make deployments repeatable, scalable, auditable, and less dependent on manual configuration. Partner with Network Architecture, Network Operations, Security, Data Center Engineering, Facilities, compute and infrastructure teams, TPMs, and external vendors to deliver complex infrastructure programs globally. Establish rigorous deployment practices covering network standards, topology documentation, implementation procedures, configuration validation, pre/post-change testing, telemetry, and production readiness. Serve as a senior technical escalation point, applying deep routing knowledge, Linux tools, packet-level troubleshooting, telemetry, and performance analysis to resolve complex network issues. Translate lessons from production deployments into reusable engineering standards, automated workflows, design improvements, and more efficient deployment models across NVIDIA's global infrastructure. What we need to see: Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, Information Technology, or a related technical field, or equivalent experience. 8+ years of progressive network engineering experience, including significant hands-on responsibility for large-scale data center, WAN, or enterprise network design and deployment. Deep technical knowledge of BGP and IP routing, along with strong understanding of EVPN/VXLAN leaf-spine or Clos/fat-tree architectures, routing policy, segmentation, and multi-tenant networking. Proven ability to independently drive complex network deployments through design, implementation, testing, migration or cutover, troubleshooting, and production acceptance. Hands-on expertise with both Arista and NVIDIA Cumulus Linux, including configuration, deployment, operations, and Linux-based network troubleshooting. Proficiency with network automation and scripting, including technologies such as Python, Ansible, Salt, REST APIs, or comparable automation frameworks. Advanced troubleshooting capabilities across routing, switching, overlays, firewalls, load balancers, and network connectivity, including packet-level analysis using tools such as Wireshark or tcpdump. Strong technical communication, organizational, and project execution skills, with demonstrated ability to coordinate cross-functional stakeholders and deliver multiple concurrent infrastructure projects. Ways to stand out from the crowd: Advanced knowledge of Palo Alto Networks firewalls, F5 or Citrix load balancing, SD-WAN, IPsec VPNs, and large-scale network segmentation architectures. Design or deployment background with AI/HPC networking, including NVIDIA Spectrum-X, RoCEv2, RDMA, lossless Ethernet, or native InfiniBand fabrics. Strong understanding of network telemetry, observability, automated validation, configuration compliance, and closed-loop infrastructure automation. Hands-on exposure to modern AI or agentic software frameworks applied to network engineering, including AI-assisted deployment, validation, troubleshooting, or infrastructure operations. Advanced networking certifications such as CCNP, CCIE, JNCIE, or equivalent demonstrated technical depth. NVIDIA is leading the way in groundbreaking developments in Artificial Intelligence, High-Performance Computing and Visualization. The GPU, our invention, serves as the visual cortex of modern computers and is at the heart of our products and services. Our work opens up new universes to explore, enables outstanding creativity and discovery, and powers what were once science fiction inventions from artificial intelligence to autonomous cars. NVIDIA is looking for exceptional people like you to help us accelerate the next wave of artificial intelligence. NVIDIA is widely recognized as one of the world's leading technology companies, bringing together skilled, driven people to solve complex problems at scale. This role offers the opportunity to grow design ownership, work on high-impact enterprise products, and help create thoughtful experiences alongside a collaborative team! Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 168,000 USD - 264,500 USD for Level 4, and 208,000 USD - 333,500 USD for Level 5. You will also be eligible for equity and benefits. Applications for this job will be accepted at least until September 20, 2026. This posting is for an existing vacancy. NVIDIA uses AI tools in its recruiting processes. NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.
Job Description: The Cyber Security Engineer at Northwestern Mutual Life Insurance Company in Milwaukee, WI will administer, configure, and maintain Palo Alto Networks next-generation firewalls, including security policies, NAT, URL and content filtering, and threat prevention services. Design, implement, and support secure connectivity solutions including Site-to-Site VPNs, Client VPNs, and encryption and decryption technologies. Manage and troubleshoot Zscaler Secure Web Gateway (SWG) services to enforce internet access controls, traffic inspection, and enterprise security policies with senior engineers. Provide Tier 3 cybersecurity and network support for connectivity, security, and internet access issues affecting 10,000+ users across 353+ nationwide locations. Support highly available and complex data center infrastructures, ensuring redundancy, segmentation, and secure interconnectivity for critical business systems. Provide security and connectivity administration for hybrid cloud environments hosted in Amazon Web Services (AWS) and Microsoft Azure. Manage incidents, service requests, change requests, and problem records through ServiceNow in accordance with ITIL processes and defined SLAs. Collaborate with vendors and technical support teams (Palo Alto TAC, Zscaler, cloud providers) to resolve advanced production incidents. Communicate technical risks, vulnerabilities, and remediation strategies effectively to stakeholders at multiple technical levels. Develop automation scripts (PowerShell, Python, Bash) to streamline operational tasks and improve efficiency. Build, manage, and maintain security tools and infrastructure that support Enterprise Cybersecurity. Design and implement automation to aid the team in creating efficiencies. Monitor the security community for and research the latest assessment and exploit methodologies and sharing the information back to the team in the form of informal reports, newly written tools and attack techniques. Work in tandem with architects, the security operations center, incident responders, and technology infrastructure and development team members as necessary. Work with select team members to track, monitor, and report testing results in a meaningful way so that risk-based security metrics are delivered to the enterprise. Telecommuting permitted 2 days per week. Salary $86,030- $159,770 per year. Minimum Requirements: Bachelor's degree in Computer Engineering or a related field and 2 years of experience as a cyber security engineer or related occupation. Experience must include 2 years of experience with each of the following: (1) firewalls, proxies, and active directory; (2) DNS, IP, NAT, VLANs, and subnetting; (3) Python, JavaScript, and Java; (4) Amazon Web Services or Microsoft Azure; and (5) Agile/DevOps operating model. Interested candidates send resume to . Reference code 632 in the subject line. We believe in fairness and transparency. It's why we share the salary range for most of our roles. However, final salaries are based on a number of factors, including the skills and experience of the candidate; the current market; location of the candidate; and other factors uncovered in the hiring process. If noted, this is standard pay structure for this position. Grow your career with a best-in-class company that puts our clients' interests at the center of all we do. Get started now! Northwestern Mutual is an equal opportunity employer that welcomes talented individuals of all backgrounds. We are committed to creating and maintaining an environment in which each employee can contribute creative ideas, seek challenges, assume leadership and continue to focus on meeting and exceeding business and personal objectives. If you work or would be working in California, Colorado, New York City, Washington or outside of a Corporate location, please click here for additional information pertaining to compensation and benefits.
09/21/2026
Full time
Job Description: The Cyber Security Engineer at Northwestern Mutual Life Insurance Company in Milwaukee, WI will administer, configure, and maintain Palo Alto Networks next-generation firewalls, including security policies, NAT, URL and content filtering, and threat prevention services. Design, implement, and support secure connectivity solutions including Site-to-Site VPNs, Client VPNs, and encryption and decryption technologies. Manage and troubleshoot Zscaler Secure Web Gateway (SWG) services to enforce internet access controls, traffic inspection, and enterprise security policies with senior engineers. Provide Tier 3 cybersecurity and network support for connectivity, security, and internet access issues affecting 10,000+ users across 353+ nationwide locations. Support highly available and complex data center infrastructures, ensuring redundancy, segmentation, and secure interconnectivity for critical business systems. Provide security and connectivity administration for hybrid cloud environments hosted in Amazon Web Services (AWS) and Microsoft Azure. Manage incidents, service requests, change requests, and problem records through ServiceNow in accordance with ITIL processes and defined SLAs. Collaborate with vendors and technical support teams (Palo Alto TAC, Zscaler, cloud providers) to resolve advanced production incidents. Communicate technical risks, vulnerabilities, and remediation strategies effectively to stakeholders at multiple technical levels. Develop automation scripts (PowerShell, Python, Bash) to streamline operational tasks and improve efficiency. Build, manage, and maintain security tools and infrastructure that support Enterprise Cybersecurity. Design and implement automation to aid the team in creating efficiencies. Monitor the security community for and research the latest assessment and exploit methodologies and sharing the information back to the team in the form of informal reports, newly written tools and attack techniques. Work in tandem with architects, the security operations center, incident responders, and technology infrastructure and development team members as necessary. Work with select team members to track, monitor, and report testing results in a meaningful way so that risk-based security metrics are delivered to the enterprise. Telecommuting permitted 2 days per week. Salary $86,030- $159,770 per year. Minimum Requirements: Bachelor's degree in Computer Engineering or a related field and 2 years of experience as a cyber security engineer or related occupation. Experience must include 2 years of experience with each of the following: (1) firewalls, proxies, and active directory; (2) DNS, IP, NAT, VLANs, and subnetting; (3) Python, JavaScript, and Java; (4) Amazon Web Services or Microsoft Azure; and (5) Agile/DevOps operating model. Interested candidates send resume to . Reference code 632 in the subject line. We believe in fairness and transparency. It's why we share the salary range for most of our roles. However, final salaries are based on a number of factors, including the skills and experience of the candidate; the current market; location of the candidate; and other factors uncovered in the hiring process. If noted, this is standard pay structure for this position. Grow your career with a best-in-class company that puts our clients' interests at the center of all we do. Get started now! Northwestern Mutual is an equal opportunity employer that welcomes talented individuals of all backgrounds. We are committed to creating and maintaining an environment in which each employee can contribute creative ideas, seek challenges, assume leadership and continue to focus on meeting and exceeding business and personal objectives. If you work or would be working in California, Colorado, New York City, Washington or outside of a Corporate location, please click here for additional information pertaining to compensation and benefits.
Job Description Job Description Senior Network Security Engineer Type: Staff Augmentation (W2 employee of Innovation Consulting) Location: San Jose, CA (Onsite - Monday through Friday, 8:30 AM-5:00 PM PST) Estimated Duration: Approximately 6 months (August 2026 - February 2027) Salary: $225K - $270K per year, DOE About the Role Innovation Consulting LLC is partnered with California's largest investor-owned water utility to recruit a Senior Network Security Engineer for a six-month onsite engagement in San Jose, CA, running from August 2026 through February 2027. This network security engineer role supports the design, configuration, and implementation of Zero Trust networking, starting with VPN access using Palo Alto Networks technologies. The position advances the organization's Zero Trust Architecture (ZTA) initiatives, strengthens network security controls across on-premises and cloud environments, improves network visibility and access management, and supports infrastructure modernization. The ideal candidate is a hands-on, security-focused network security engineer comfortable working closely with cybersecurity and infrastructure teams in a regulated, audit-conscious environment. As a W2 employee of Innovation Consulting, you will be placed on assignment with our client for the duration of the contract. Key Responsibilities Zero Trust & VPN Engineering • Design and configure Palo Alto Networks VPN solutions to support Zero Trust principles • Implement least-privilege VPN access so users can reach only the systems required for their role • Define and enforce user- and group-based access policies rather than broad network access • Partner with cybersecurity leadership to align VPN controls with Zero Trust strategy Network Security & Visibility • Support network segmentation and secure access to sensitive systems, including admin and infrastructure services • Ensure configurations are fully auditable and defensible for future compliance reviews • Apply cloud networking security, segmentation, and access controls Forensics & Access Context • Use AlienVault and Palo Alto to analyze VPN traffic and user activity and identify systems and applications accessed by approximately 100 VPN users for this engagement • Support forensic investigations related to VPN access • Build a VPN access context from traffic analysis and assign users to the correct VPN groups as part of the Zero Trust initiative Collaboration & Communication • Work closely with the IT Architecture and Cybersecurity teams • Clearly communicate technical findings, access models, and design decisions • Participate in design reviews, scoping discussions, and implementation planning Work Model and On-Site Requirements • Fully onsite in San Jose, CA - this position is not eligible for remote work • Standard business hours: 8:30 AM - 5:00 PM PST, Monday through Friday • Relocation required if not within commutable distance of San Jose, CA Qualifications Required • U.S. Citizenship required • Ability to work onsite in San Jose, CA • Senior-level experience in network security engineering • Strong hands-on experience with Palo Alto Networks firewalls and VPN • Demonstrated understanding of Zero Trust networking concepts • Experience implementing identity-based and role-based access controls • Hands-on experience using SIEM (AlienVault preferred) for logging, analysis, and forensic investigations • Strong troubleshooting and analytical skills, with the ability to communicate effectively with highly technical teams Preferred • Experience in regulated, audit-conscious environments (e.g., utilities / critical infrastructure) • Palo Alto Networks Certified Network Security Administrator (PCNSA) or Palo Alto Networks Certified Network Security Engineer (PCNSE) certification • Familiarity with SASE and cloud-delivered Zero Trust access Compensation & Employment Employment Type: Staff Augmentation. As a W2 employee of Innovation Consulting, you will be placed on assignment with our client. Salary: $225K - $270K per year, DOE. Contract Duration: Approximately 6 months (August 2026 - February 2027). Benefits: Comprehensive benefits package including medical, dental, and vision, 401(k) with safe-harbor matching, HRA, and PTO. No waiting period - benefits are available immediately and accrual items begin accruing immediately. Innovation Consulting LLC is an equal opportunity employer and recruiter. We review candidates without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity, or any other protected characteristic.
09/21/2026
Full time
Job Description Job Description Senior Network Security Engineer Type: Staff Augmentation (W2 employee of Innovation Consulting) Location: San Jose, CA (Onsite - Monday through Friday, 8:30 AM-5:00 PM PST) Estimated Duration: Approximately 6 months (August 2026 - February 2027) Salary: $225K - $270K per year, DOE About the Role Innovation Consulting LLC is partnered with California's largest investor-owned water utility to recruit a Senior Network Security Engineer for a six-month onsite engagement in San Jose, CA, running from August 2026 through February 2027. This network security engineer role supports the design, configuration, and implementation of Zero Trust networking, starting with VPN access using Palo Alto Networks technologies. The position advances the organization's Zero Trust Architecture (ZTA) initiatives, strengthens network security controls across on-premises and cloud environments, improves network visibility and access management, and supports infrastructure modernization. The ideal candidate is a hands-on, security-focused network security engineer comfortable working closely with cybersecurity and infrastructure teams in a regulated, audit-conscious environment. As a W2 employee of Innovation Consulting, you will be placed on assignment with our client for the duration of the contract. Key Responsibilities Zero Trust & VPN Engineering • Design and configure Palo Alto Networks VPN solutions to support Zero Trust principles • Implement least-privilege VPN access so users can reach only the systems required for their role • Define and enforce user- and group-based access policies rather than broad network access • Partner with cybersecurity leadership to align VPN controls with Zero Trust strategy Network Security & Visibility • Support network segmentation and secure access to sensitive systems, including admin and infrastructure services • Ensure configurations are fully auditable and defensible for future compliance reviews • Apply cloud networking security, segmentation, and access controls Forensics & Access Context • Use AlienVault and Palo Alto to analyze VPN traffic and user activity and identify systems and applications accessed by approximately 100 VPN users for this engagement • Support forensic investigations related to VPN access • Build a VPN access context from traffic analysis and assign users to the correct VPN groups as part of the Zero Trust initiative Collaboration & Communication • Work closely with the IT Architecture and Cybersecurity teams • Clearly communicate technical findings, access models, and design decisions • Participate in design reviews, scoping discussions, and implementation planning Work Model and On-Site Requirements • Fully onsite in San Jose, CA - this position is not eligible for remote work • Standard business hours: 8:30 AM - 5:00 PM PST, Monday through Friday • Relocation required if not within commutable distance of San Jose, CA Qualifications Required • U.S. Citizenship required • Ability to work onsite in San Jose, CA • Senior-level experience in network security engineering • Strong hands-on experience with Palo Alto Networks firewalls and VPN • Demonstrated understanding of Zero Trust networking concepts • Experience implementing identity-based and role-based access controls • Hands-on experience using SIEM (AlienVault preferred) for logging, analysis, and forensic investigations • Strong troubleshooting and analytical skills, with the ability to communicate effectively with highly technical teams Preferred • Experience in regulated, audit-conscious environments (e.g., utilities / critical infrastructure) • Palo Alto Networks Certified Network Security Administrator (PCNSA) or Palo Alto Networks Certified Network Security Engineer (PCNSE) certification • Familiarity with SASE and cloud-delivered Zero Trust access Compensation & Employment Employment Type: Staff Augmentation. As a W2 employee of Innovation Consulting, you will be placed on assignment with our client. Salary: $225K - $270K per year, DOE. Contract Duration: Approximately 6 months (August 2026 - February 2027). Benefits: Comprehensive benefits package including medical, dental, and vision, 401(k) with safe-harbor matching, HRA, and PTO. No waiting period - benefits are available immediately and accrual items begin accruing immediately. Innovation Consulting LLC is an equal opportunity employer and recruiter. We review candidates without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity, or any other protected characteristic.
Job Description Job Description This position is for a 12 month contract located in Columbia SC. The position offers a Hybrid work schedule (2 days in office, 3 days remote). Candidate MUST be a NC, GA, SC resident and willing to relocate to SC prior to starting the role at their own expense. Scope of the project: The Sr. Palo Alto Cloud Engineer will collaborate with Product Owners, Applications Owners, Network and Security teams to design and deliver optimal solutions for large-scale app and infrastructure cloud solutions. Candidates should possess proficiency in both public and hybrid cloud models. Exceptional consulting skills and the ability to clearly derive desired states from customer requests are essential. The role also requires the ability to work with delivery teams. Importantly, this role is hands-on in delivery, requiring active involvement in the implementation and execution of security solutions. This is not a developer role. This position requires demonstrated proficiency in Palo Alto cloud firewalls with a similar level of expertise in cloud architecture and design. Daily Duties / Responsibilities: Design and deploy highly available, scalable, and secure cloud infrastructure with a focus on AWS and Azure Cloud. Manage and deploy VM-Series Palo Alto firewalls in Azure and AWS cloud. Manage and deploy F5 BIG-IP LTM and ASM in Azure and AWS cloud. Analyze and resolve configuration issues in development, test, and production environments. Familiar with major security compliance frameworks and building effective monitoring, logging, and auditing of production systems to ensure compliance with mandated compliance policies (e.g., ARC-AMP (formerly known as MARS-E), NIST, HIPAA, PII, SOX, PCI, CMMC, CUI, etc.). Experience implementing secure (zero trust) infrastructure in cloud. Security experience with state and local government customers Required Skills (rank in order of Importance): 10 years' experience in Network Security and Engineering Minimum 5 years hands-on experience designing, deploying, scaling, upgrading, troubleshooting, and optimizing palo alto VM-Series Firewalls in both AWS and azure cloud environments. Experience with Panorama Management, security policy design, threat prevention tuning, and log analysis required. must demonstrate ability to architect zero-trust controls using Palo Alto Technology. 5 years' experience in deploying, configuring and maintaining BIG-IP F5 LTM Preferred Skills (rank in order of Importance): Palo Alto Firewalls F5 LTM F5 ASM F5 I-Rules INFOBLOX DDI Forescout OPSWAT METADEFENDER/ICAP Big-IP F5 XC Prisma Cloud Cisco Umbrella Preferred Certifications: PCNSA, PCNSE SC100 - Microsoft Cybersecurity Architect AWS Certified Cloud Solutions Architect ADDITIONAL SKILLS/DUTIES: Excellent communication skills, both written and verbal. Self-starter explicit experience in panorama templates and device groups, global protect in cloud, and high availability VPN/Traffic routing on VM-series Experience designing and maintaining infrastructure in AWS/AZURE Cloud Security design, operations, and automation experience Documentation of security tools, deployment configuration, incident reports, etc. Required Education: College degree or 10+ years of equivalent experience as a palo alto cloud engineer Must hold Palo alto, AWS, or azure certification If a candidate falsely lies on a resume regarding actual skillset (work experience); then the candidate will be disqualified immediately upon discovery of such dishonesty. Also, if a candidate is selected for an interview and it is determined that the candidate is using an AI tool during the process, the interviewer reserves the right to cancel the interview immediately.
09/20/2026
Full time
Job Description Job Description This position is for a 12 month contract located in Columbia SC. The position offers a Hybrid work schedule (2 days in office, 3 days remote). Candidate MUST be a NC, GA, SC resident and willing to relocate to SC prior to starting the role at their own expense. Scope of the project: The Sr. Palo Alto Cloud Engineer will collaborate with Product Owners, Applications Owners, Network and Security teams to design and deliver optimal solutions for large-scale app and infrastructure cloud solutions. Candidates should possess proficiency in both public and hybrid cloud models. Exceptional consulting skills and the ability to clearly derive desired states from customer requests are essential. The role also requires the ability to work with delivery teams. Importantly, this role is hands-on in delivery, requiring active involvement in the implementation and execution of security solutions. This is not a developer role. This position requires demonstrated proficiency in Palo Alto cloud firewalls with a similar level of expertise in cloud architecture and design. Daily Duties / Responsibilities: Design and deploy highly available, scalable, and secure cloud infrastructure with a focus on AWS and Azure Cloud. Manage and deploy VM-Series Palo Alto firewalls in Azure and AWS cloud. Manage and deploy F5 BIG-IP LTM and ASM in Azure and AWS cloud. Analyze and resolve configuration issues in development, test, and production environments. Familiar with major security compliance frameworks and building effective monitoring, logging, and auditing of production systems to ensure compliance with mandated compliance policies (e.g., ARC-AMP (formerly known as MARS-E), NIST, HIPAA, PII, SOX, PCI, CMMC, CUI, etc.). Experience implementing secure (zero trust) infrastructure in cloud. Security experience with state and local government customers Required Skills (rank in order of Importance): 10 years' experience in Network Security and Engineering Minimum 5 years hands-on experience designing, deploying, scaling, upgrading, troubleshooting, and optimizing palo alto VM-Series Firewalls in both AWS and azure cloud environments. Experience with Panorama Management, security policy design, threat prevention tuning, and log analysis required. must demonstrate ability to architect zero-trust controls using Palo Alto Technology. 5 years' experience in deploying, configuring and maintaining BIG-IP F5 LTM Preferred Skills (rank in order of Importance): Palo Alto Firewalls F5 LTM F5 ASM F5 I-Rules INFOBLOX DDI Forescout OPSWAT METADEFENDER/ICAP Big-IP F5 XC Prisma Cloud Cisco Umbrella Preferred Certifications: PCNSA, PCNSE SC100 - Microsoft Cybersecurity Architect AWS Certified Cloud Solutions Architect ADDITIONAL SKILLS/DUTIES: Excellent communication skills, both written and verbal. Self-starter explicit experience in panorama templates and device groups, global protect in cloud, and high availability VPN/Traffic routing on VM-series Experience designing and maintaining infrastructure in AWS/AZURE Cloud Security design, operations, and automation experience Documentation of security tools, deployment configuration, incident reports, etc. Required Education: College degree or 10+ years of equivalent experience as a palo alto cloud engineer Must hold Palo alto, AWS, or azure certification If a candidate falsely lies on a resume regarding actual skillset (work experience); then the candidate will be disqualified immediately upon discovery of such dishonesty. Also, if a candidate is selected for an interview and it is determined that the candidate is using an AI tool during the process, the interviewer reserves the right to cancel the interview immediately.
Job Description Job Description About Zedcor Inc. Zedcor Inc. (TSX-V:ZDC) is disrupting the traditional physical security industry through its proprietary MobileyeZ security towers by providing turnkey and customized mobile surveillance and live monitoring solutions to blue-chip customers across North America. The Company continues to expand its established platform of over 1,200 MobileyeZ towers in Canada and the United States, with emphasis on industry leading service levels, data-supported efficiency outcomes, and continued innovation. Zedcor services the Canadian market through equipment and service centers currently located in British Columbia, Alberta, Manitoba, and Ontario. The Company continues to advance its U.S. expansion which now has the capacity to service markets throughout the Midwest with locations throughout Texas Colorado, Arizona, Nevada and Florida. For more information, check out . Position Overview The Senior Network / Firewall Engineer to design, build, secure, and maintain a large-scale hybrid network environment. This is not an entry-level role. The successful candidate must be able to solve complex technical problems under pressure and operate with cybersecurity, uptime, encryption, monitoring, and compliance in mind. The environment includes Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint routers, switches, Wi-Fi, F5 BIG-IP, Azure WAF, Azure Application Gateway, Azure Front Door, centralized logging, centralized monitoring, and internal PKI. Key Responsibilities Design, build, maintain, and troubleshoot IPsec and SSL VPN networks. Manage and support a Cradlepoint environment of 20,000+ devices. Manage Sophos firewalls or become proficient with Sophos within the first 30 days if experienced with another major firewall platform. Ensure DNS and DHCP are centrally managed, monitored, logged, secured, and not hosted directly on firewalls. Patch, monitor, log, audit, and secure network infrastructure. Ensure network links, management access, VPNs, and sensitive data flows are encrypted. Document network designs, firewall rules, routing policies, VPN configurations, standards, and runbooks. Support incident response, change management, vulnerability remediation, disaster recovery, SOC 2, FedRAMP, and StateRAMP readiness. Use Zedcor's internal PKI solution for device identity, certificates, authentication, encryption, and secure management. Maintain centralized logging, centralized audit logging, centralized authentication, centralized monitoring, and alerting. Ensure firewalls are used as security enforcement points, not as core infrastructure service providers. Support F5 BIG-IP, Azure WAF, Azure Application Gateway, and Azure Front Door. Configure and troubleshoot dynamic routing, including internal BGP. Support Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint, switches, Wi-Fi, WAF, and load-balancing platforms. Qualifications & Requirements Key Responsibilities Design, build, maintain, and troubleshoot IPsec and SSL VPN networks. Manage and support a Cradlepoint environment of 20,000+ devices. Manage Sophos firewalls or become proficient with Sophos within the first 30 days if experienced with another major firewall platform. Ensure DNS and DHCP are centrally managed, monitored, logged, secured, and not hosted directly on firewalls. Patch, monitor, log, audit, and secure network infrastructure. Ensure network links, management access, VPNs, and sensitive data flows are encrypted. Document network designs, firewall rules, routing policies, VPN configurations, standards, and runbooks. Support incident response, change management, vulnerability remediation, disaster recovery, SOC 2, FedRAMP, and StateRAMP readiness. Use Zedcor's internal PKI solution for device identity, certificates, authentication, encryption, and secure management. Maintain centralized logging, centralized audit logging, centralized authentication, centralized monitoring, and alerting. Ensure firewalls are used as security enforcement points, not as core infrastructure service providers. Support F5 BIG-IP, Azure WAF, Azure Application Gateway, and Azure Front Door. Configure and troubleshoot dynamic routing, including internal BGP. Support Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint, switches, Wi-Fi, WAF, and load-balancing platforms. Minimum Qualifications 5+ years of hands-on network engineering, firewall engineering, or network security engineering experience. Strong Azure Networking experience, including Azure VPN Gateway, virtual networks, routing, NSGs, private connectivity, and hybrid networking. Strong knowledge of IPsec VPNs, SSL VPNs, routing, switching, segmentation, firewall policies, NAT, high availability, and secure remote access. Solid understanding of DNS and DHCP design, troubleshooting, and security best practices. Strong understanding of encryption, PKI, certificate-based authentication, secure management access, and network security best practices. Ability to work full-time on-site in Houston, Texas. Ability to troubleshoot complex production issues under pressure. Understanding of why DNS and DHCP should not be hosted directly on firewalls, including separation of duties, availability, scalability, logging, auditability, and change-control risks. Hands-on experience with BGP and dynamic routing. Strong experience with Sophos or another major enterprise firewall platform such as Fortinet, Palo Alto, Cisco, or Check Point. Local Houston-area candidate able to work in office 5 days per week. Preferred Qualifications Sophos firewall experience. F5 BIG-IP, WAF, load-balancing, Azure WAF, Azure Application Gateway, or Azure Front Door experience. Enterprise PKI and certificate lifecycle experience. Certifications such as CCNP, CCNA, NSE, PCNSE, Sophos, Azure Network Engineer Associate, Security+, CISSP, or equivalent practical experience. Azure Monitor, Microsoft Sentinel, Defender for Cloud, Intune, or similar monitoring/security tooling experience. Cradlepoint or large-scale cellular router experience. Why Join Zedcor? At Zedcor, you won't just maintain systems, you'll help build and shape the future of security technology. We provide the tools, mentorship, and the environment to help you thrive and grow in your career. If you're looking to take your skills to the next level, Zedcor offers a dynamic and rewarding opportunity. Zedcor Inc. is an Equal Opportunity Employer and maintains the policy of recruiting and retaining the best-qualified personnel who demonstrate the ability to perform competently and work well with others. It is the policy of Zedcor to provide equal employment opportunity regardless of race (including traits historically or culturally associated with race, such as hair texture and protective hairstyles), religion (including religious dress and religious grooming), color, age (40 and over), genetic information, disability (mental and physical), medical condition (as defined under state law), national origin (including language use restrictions and possession of a driver's license issued under section 12801.9 of the California Vehicle Code), ancestry, sex (including gender, gender identity, gender expression), sexual orientation, marital status, familial status, parental status, domestic partner status, citizenship status, pregnancy (including perceived pregnancy, childbirth, lactation, or pregnancy-related conditions), military caregiver status, military status, veteran status, or any other status protected by federal, state, or local law. This policy of nondiscrimination is applied to all aspects of the employment relationship. The Company complies with the Americans with Disabilities Act (ADA) and applicable state and local laws in ensuring equal opportunity and employment for qualified persons with disabilities. We also consider qualified applicants with criminal histories, consistent with legal requirements. The following link provides more information regarding the Federal laws prohibiting discrimination in employment: EEO is the Law - Notice of Applicant Rights Under the Law.
09/20/2026
Full time
Job Description Job Description About Zedcor Inc. Zedcor Inc. (TSX-V:ZDC) is disrupting the traditional physical security industry through its proprietary MobileyeZ security towers by providing turnkey and customized mobile surveillance and live monitoring solutions to blue-chip customers across North America. The Company continues to expand its established platform of over 1,200 MobileyeZ towers in Canada and the United States, with emphasis on industry leading service levels, data-supported efficiency outcomes, and continued innovation. Zedcor services the Canadian market through equipment and service centers currently located in British Columbia, Alberta, Manitoba, and Ontario. The Company continues to advance its U.S. expansion which now has the capacity to service markets throughout the Midwest with locations throughout Texas Colorado, Arizona, Nevada and Florida. For more information, check out . Position Overview The Senior Network / Firewall Engineer to design, build, secure, and maintain a large-scale hybrid network environment. This is not an entry-level role. The successful candidate must be able to solve complex technical problems under pressure and operate with cybersecurity, uptime, encryption, monitoring, and compliance in mind. The environment includes Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint routers, switches, Wi-Fi, F5 BIG-IP, Azure WAF, Azure Application Gateway, Azure Front Door, centralized logging, centralized monitoring, and internal PKI. Key Responsibilities Design, build, maintain, and troubleshoot IPsec and SSL VPN networks. Manage and support a Cradlepoint environment of 20,000+ devices. Manage Sophos firewalls or become proficient with Sophos within the first 30 days if experienced with another major firewall platform. Ensure DNS and DHCP are centrally managed, monitored, logged, secured, and not hosted directly on firewalls. Patch, monitor, log, audit, and secure network infrastructure. Ensure network links, management access, VPNs, and sensitive data flows are encrypted. Document network designs, firewall rules, routing policies, VPN configurations, standards, and runbooks. Support incident response, change management, vulnerability remediation, disaster recovery, SOC 2, FedRAMP, and StateRAMP readiness. Use Zedcor's internal PKI solution for device identity, certificates, authentication, encryption, and secure management. Maintain centralized logging, centralized audit logging, centralized authentication, centralized monitoring, and alerting. Ensure firewalls are used as security enforcement points, not as core infrastructure service providers. Support F5 BIG-IP, Azure WAF, Azure Application Gateway, and Azure Front Door. Configure and troubleshoot dynamic routing, including internal BGP. Support Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint, switches, Wi-Fi, WAF, and load-balancing platforms. Qualifications & Requirements Key Responsibilities Design, build, maintain, and troubleshoot IPsec and SSL VPN networks. Manage and support a Cradlepoint environment of 20,000+ devices. Manage Sophos firewalls or become proficient with Sophos within the first 30 days if experienced with another major firewall platform. Ensure DNS and DHCP are centrally managed, monitored, logged, secured, and not hosted directly on firewalls. Patch, monitor, log, audit, and secure network infrastructure. Ensure network links, management access, VPNs, and sensitive data flows are encrypted. Document network designs, firewall rules, routing policies, VPN configurations, standards, and runbooks. Support incident response, change management, vulnerability remediation, disaster recovery, SOC 2, FedRAMP, and StateRAMP readiness. Use Zedcor's internal PKI solution for device identity, certificates, authentication, encryption, and secure management. Maintain centralized logging, centralized audit logging, centralized authentication, centralized monitoring, and alerting. Ensure firewalls are used as security enforcement points, not as core infrastructure service providers. Support F5 BIG-IP, Azure WAF, Azure Application Gateway, and Azure Front Door. Configure and troubleshoot dynamic routing, including internal BGP. Support Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint, switches, Wi-Fi, WAF, and load-balancing platforms. Minimum Qualifications 5+ years of hands-on network engineering, firewall engineering, or network security engineering experience. Strong Azure Networking experience, including Azure VPN Gateway, virtual networks, routing, NSGs, private connectivity, and hybrid networking. Strong knowledge of IPsec VPNs, SSL VPNs, routing, switching, segmentation, firewall policies, NAT, high availability, and secure remote access. Solid understanding of DNS and DHCP design, troubleshooting, and security best practices. Strong understanding of encryption, PKI, certificate-based authentication, secure management access, and network security best practices. Ability to work full-time on-site in Houston, Texas. Ability to troubleshoot complex production issues under pressure. Understanding of why DNS and DHCP should not be hosted directly on firewalls, including separation of duties, availability, scalability, logging, auditability, and change-control risks. Hands-on experience with BGP and dynamic routing. Strong experience with Sophos or another major enterprise firewall platform such as Fortinet, Palo Alto, Cisco, or Check Point. Local Houston-area candidate able to work in office 5 days per week. Preferred Qualifications Sophos firewall experience. F5 BIG-IP, WAF, load-balancing, Azure WAF, Azure Application Gateway, or Azure Front Door experience. Enterprise PKI and certificate lifecycle experience. Certifications such as CCNP, CCNA, NSE, PCNSE, Sophos, Azure Network Engineer Associate, Security+, CISSP, or equivalent practical experience. Azure Monitor, Microsoft Sentinel, Defender for Cloud, Intune, or similar monitoring/security tooling experience. Cradlepoint or large-scale cellular router experience. Why Join Zedcor? At Zedcor, you won't just maintain systems, you'll help build and shape the future of security technology. We provide the tools, mentorship, and the environment to help you thrive and grow in your career. If you're looking to take your skills to the next level, Zedcor offers a dynamic and rewarding opportunity. Zedcor Inc. is an Equal Opportunity Employer and maintains the policy of recruiting and retaining the best-qualified personnel who demonstrate the ability to perform competently and work well with others. It is the policy of Zedcor to provide equal employment opportunity regardless of race (including traits historically or culturally associated with race, such as hair texture and protective hairstyles), religion (including religious dress and religious grooming), color, age (40 and over), genetic information, disability (mental and physical), medical condition (as defined under state law), national origin (including language use restrictions and possession of a driver's license issued under section 12801.9 of the California Vehicle Code), ancestry, sex (including gender, gender identity, gender expression), sexual orientation, marital status, familial status, parental status, domestic partner status, citizenship status, pregnancy (including perceived pregnancy, childbirth, lactation, or pregnancy-related conditions), military caregiver status, military status, veteran status, or any other status protected by federal, state, or local law. This policy of nondiscrimination is applied to all aspects of the employment relationship. The Company complies with the Americans with Disabilities Act (ADA) and applicable state and local laws in ensuring equal opportunity and employment for qualified persons with disabilities. We also consider qualified applicants with criminal histories, consistent with legal requirements. The following link provides more information regarding the Federal laws prohibiting discrimination in employment: EEO is the Law - Notice of Applicant Rights Under the Law.
Job Description Job Description SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
09/19/2026
Full time
Job Description Job Description SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
Job Description Job Description ︎ Job Details Job Title: Japanese Bilingual Mid-Senior Network / Security Engineer Client: Japanese IT Company Working Location: New York, NY 10022 Working Style: Hybrid (2-3 days/week onsite) Employment Type: Full-time Salary: $70,000 - $100,000 (DOE) Benefit: Standard benefits package Visa Support: Possible Working Hours: 9:00 AM - 5:00 PM (after-hours/weekend incident response may be required; compensatory time off available) Language: Japanese & English (Bilingual) Key Responsibilities: Design, implement, and maintain IP network infrastructure including firewalls, routers, and switches Configure and support servers, PCs, networks, and telephony hardware/software for customers Perform onsite installation and troubleshooting at client offices and data centers (NY/NJ/CT); occasional business travel required Provide remote and onsite technical support for network and infrastructure environments Manage pre-sales and post-sales technical projects, coordinating with vendors and subcontractors Conduct security assessments and implement tailored network/security solutions Build, operate, and enhance security technologies such as endpoint protection and network security platforms Respond to infrastructure incidents and participate in emergency support when needed Maintain installation records, project documentation, and troubleshooting logs Report project and issue status to project leaders Support proposal and quotation preparation Research products and market trends Support existing customer accounts and ensure high service quality Collaborate closely with sales teams on solution delivery Mentor junior engineers as needed ︎ The right candidate will possess: Strong hands-on experience in enterprise network environments Solid IP networking fundamentals Client-facing communication skills in Japanese and English Flexibility to respond to infrastructure incidents outside business hours Ability to manage multiple projects and priorities simultaneously Adaptability to evolving technologies ︎ Required Qualifications & Skills: 4-6+ years of practical experience in network engineering (junior-senior level considered) Experience with Cisco, Fortinet, Palo Alto (firewalls, routers, switches) Network certifications such as CCNA / CCNP preferred (practical experience prioritized) Unix/Linux and Windows server operation LAN / WAN technologies Virtualization and storage platforms Security tools including endpoint protection and vulnerability assessment Experience with Microsoft, Citrix, VMware environments MSP / MSSP experience a plus Powered by JazzHR yAONBfXqXz
09/17/2026
Full time
Job Description Job Description ︎ Job Details Job Title: Japanese Bilingual Mid-Senior Network / Security Engineer Client: Japanese IT Company Working Location: New York, NY 10022 Working Style: Hybrid (2-3 days/week onsite) Employment Type: Full-time Salary: $70,000 - $100,000 (DOE) Benefit: Standard benefits package Visa Support: Possible Working Hours: 9:00 AM - 5:00 PM (after-hours/weekend incident response may be required; compensatory time off available) Language: Japanese & English (Bilingual) Key Responsibilities: Design, implement, and maintain IP network infrastructure including firewalls, routers, and switches Configure and support servers, PCs, networks, and telephony hardware/software for customers Perform onsite installation and troubleshooting at client offices and data centers (NY/NJ/CT); occasional business travel required Provide remote and onsite technical support for network and infrastructure environments Manage pre-sales and post-sales technical projects, coordinating with vendors and subcontractors Conduct security assessments and implement tailored network/security solutions Build, operate, and enhance security technologies such as endpoint protection and network security platforms Respond to infrastructure incidents and participate in emergency support when needed Maintain installation records, project documentation, and troubleshooting logs Report project and issue status to project leaders Support proposal and quotation preparation Research products and market trends Support existing customer accounts and ensure high service quality Collaborate closely with sales teams on solution delivery Mentor junior engineers as needed ︎ The right candidate will possess: Strong hands-on experience in enterprise network environments Solid IP networking fundamentals Client-facing communication skills in Japanese and English Flexibility to respond to infrastructure incidents outside business hours Ability to manage multiple projects and priorities simultaneously Adaptability to evolving technologies ︎ Required Qualifications & Skills: 4-6+ years of practical experience in network engineering (junior-senior level considered) Experience with Cisco, Fortinet, Palo Alto (firewalls, routers, switches) Network certifications such as CCNA / CCNP preferred (practical experience prioritized) Unix/Linux and Windows server operation LAN / WAN technologies Virtualization and storage platforms Security tools including endpoint protection and vulnerability assessment Experience with Microsoft, Citrix, VMware environments MSP / MSSP experience a plus Powered by JazzHR yAONBfXqXz
Job Description Job Description This position is for a 12 month contract located in Columbia SC. The position offers a Hybrid work schedule (2 days in office, 3 days remote). Candidate MUST be a NC, GA, SC resident and willing to relocate to SC prior to starting the role at their own expense. Scope of the project: The Sr. Palo Alto Cloud Engineer will collaborate with Product Owners, Applications Owners, Network and Security teams to design and deliver optimal solutions for large-scale app and infrastructure cloud solutions. Candidates should possess proficiency in both public and hybrid cloud models. Exceptional consulting skills and the ability to clearly derive desired states from customer requests are essential. The role also requires the ability to work with delivery teams. Importantly, this role is hands-on in delivery, requiring active involvement in the implementation and execution of security solutions. This is not a developer role. This position requires demonstrated proficiency in Palo Alto cloud firewalls with a similar level of expertise in cloud architecture and design. Daily Duties / Responsibilities: Design and deploy highly available, scalable, and secure cloud infrastructure with a focus on AWS and Azure Cloud. Manage and deploy VM-Series Palo Alto firewalls in Azure and AWS cloud. Manage and deploy F5 BIG-IP LTM and ASM in Azure and AWS cloud. Analyze and resolve configuration issues in development, test, and production environments. Familiar with major security compliance frameworks and building effective monitoring, logging, and auditing of production systems to ensure compliance with mandated compliance policies (e.g., ARC-AMP (formerly known as MARS-E), NIST, HIPAA, PII, SOX, PCI, CMMC, CUI, etc.). Experience implementing secure (zero trust) infrastructure in cloud. Security experience with state and local government customers Required Skills (rank in order of Importance): 10 years' experience in Network Security and Engineering Minimum 5 years hands-on experience designing, deploying, scaling, upgrading, troubleshooting, and optimizing palo alto VM-Series Firewalls in both AWS and azure cloud environments. Experience with Panorama Management, security policy design, threat prevention tuning, and log analysis required. must demonstrate ability to architect zero-trust controls using Palo Alto Technology. 5 years' experience in deploying, configuring and maintaining BIG-IP F5 LTM Preferred Skills (rank in order of Importance): Palo Alto Firewalls F5 LTM F5 ASM F5 I-Rules INFOBLOX DDI Forescout OPSWAT METADEFENDER/ICAP Big-IP F5 XC Prisma Cloud Cisco Umbrella Preferred Certifications: PCNSA, PCNSE SC100 - Microsoft Cybersecurity Architect AWS Certified Cloud Solutions Architect ADDITIONAL SKILLS/DUTIES: Excellent communication skills, both written and verbal. Self-starter explicit experience in panorama templates and device groups, global protect in cloud, and high availability VPN/Traffic routing on VM-series Experience designing and maintaining infrastructure in AWS/AZURE Cloud Security design, operations, and automation experience Documentation of security tools, deployment configuration, incident reports, etc. Required Education: College degree or 10+ years of equivalent experience as a palo alto cloud engineer Must hold Palo alto, AWS, or azure certification If a candidate falsely lies on a resume regarding actual skillset (work experience); then the candidate will be disqualified immediately upon discovery of such dishonesty. Also, if a candidate is selected for an interview and it is determined that the candidate is using an AI tool during the process, the interviewer reserves the right to cancel the interview immediately.
09/15/2026
Full time
Job Description Job Description This position is for a 12 month contract located in Columbia SC. The position offers a Hybrid work schedule (2 days in office, 3 days remote). Candidate MUST be a NC, GA, SC resident and willing to relocate to SC prior to starting the role at their own expense. Scope of the project: The Sr. Palo Alto Cloud Engineer will collaborate with Product Owners, Applications Owners, Network and Security teams to design and deliver optimal solutions for large-scale app and infrastructure cloud solutions. Candidates should possess proficiency in both public and hybrid cloud models. Exceptional consulting skills and the ability to clearly derive desired states from customer requests are essential. The role also requires the ability to work with delivery teams. Importantly, this role is hands-on in delivery, requiring active involvement in the implementation and execution of security solutions. This is not a developer role. This position requires demonstrated proficiency in Palo Alto cloud firewalls with a similar level of expertise in cloud architecture and design. Daily Duties / Responsibilities: Design and deploy highly available, scalable, and secure cloud infrastructure with a focus on AWS and Azure Cloud. Manage and deploy VM-Series Palo Alto firewalls in Azure and AWS cloud. Manage and deploy F5 BIG-IP LTM and ASM in Azure and AWS cloud. Analyze and resolve configuration issues in development, test, and production environments. Familiar with major security compliance frameworks and building effective monitoring, logging, and auditing of production systems to ensure compliance with mandated compliance policies (e.g., ARC-AMP (formerly known as MARS-E), NIST, HIPAA, PII, SOX, PCI, CMMC, CUI, etc.). Experience implementing secure (zero trust) infrastructure in cloud. Security experience with state and local government customers Required Skills (rank in order of Importance): 10 years' experience in Network Security and Engineering Minimum 5 years hands-on experience designing, deploying, scaling, upgrading, troubleshooting, and optimizing palo alto VM-Series Firewalls in both AWS and azure cloud environments. Experience with Panorama Management, security policy design, threat prevention tuning, and log analysis required. must demonstrate ability to architect zero-trust controls using Palo Alto Technology. 5 years' experience in deploying, configuring and maintaining BIG-IP F5 LTM Preferred Skills (rank in order of Importance): Palo Alto Firewalls F5 LTM F5 ASM F5 I-Rules INFOBLOX DDI Forescout OPSWAT METADEFENDER/ICAP Big-IP F5 XC Prisma Cloud Cisco Umbrella Preferred Certifications: PCNSA, PCNSE SC100 - Microsoft Cybersecurity Architect AWS Certified Cloud Solutions Architect ADDITIONAL SKILLS/DUTIES: Excellent communication skills, both written and verbal. Self-starter explicit experience in panorama templates and device groups, global protect in cloud, and high availability VPN/Traffic routing on VM-series Experience designing and maintaining infrastructure in AWS/AZURE Cloud Security design, operations, and automation experience Documentation of security tools, deployment configuration, incident reports, etc. Required Education: College degree or 10+ years of equivalent experience as a palo alto cloud engineer Must hold Palo alto, AWS, or azure certification If a candidate falsely lies on a resume regarding actual skillset (work experience); then the candidate will be disqualified immediately upon discovery of such dishonesty. Also, if a candidate is selected for an interview and it is determined that the candidate is using an AI tool during the process, the interviewer reserves the right to cancel the interview immediately.
Job Description Job Description The Elevator Pitch Are you ready to own the network and cybersecurity backbone of a company that's redefining security technology? Do you thrive at the intersection of network engineering, cybersecurity operations, and compliance-where your work directly reduces risk and keeps the business resilient against an ever-changing threat landscape? Evolv is seeking a Network & Cybersecurity Engineer to design, implement, and defend our network infrastructure and security tooling. You'll be the technical owner of Evolv's network and security posture-from firewalls and access control to identity governance and threat detection-reporting to the Senior Director of Cybersecurity & Technology. This is a pivotal role in maturing Evolv's security program to meet the evolving demands of the business and our growing compliance obligations. You'll partner closely with the Systems Engineer and the rest of the IT team, and serve as the subject matter expert on networking, enterprise cybersecurity, and compliance tooling. If you're energized by staying ahead of emerging threats and building durable, well-governed security controls, this role is for you. Success in the Role: What are performance outcomes over the first 6-12 months you will work toward completing? In the first 30 days, you will: Get to know the IT and security team and the tools/platforms currently in use Start building relationships with key stakeholders across the company, especially R&D and Legal/Compliance Learn Evolv's compliance commitments and ongoing authorization efforts, and how best to support them Gain familiarity with the current network/security toolstack: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, VPN/ZTNA, identity platforms (Okta, Entra ID), SIEM/EDR/DLP tooling, and the MDR relationship Within 3 months, you will: Begin implementing or improving network and security controls that measurably reduce risk Build trust-based relationships with peers in IT and stakeholders across business units Become the established subject matter expert on network security and compliance tooling at Evolv Take ownership of the MDR relationship and escalated detection response By the end of the first year, you will: Be recognized as the trusted subject matter expert across network infrastructure, and security operations Have driven measurable improvements to Evolv's security posture and compliance readiness Successfully supported compliance requirements and audit readiness, partnering closely with Legal/Compliance and R&D Documented network and security architecture, processes, and runbooks that reduce single points of failure Be seen as the go-to resource for network security questions, escalations, and best-practice guidance The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis? Infrastructure, Security & Compliance: Design, implement, and maintain network infrastructure: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, and VPN/ZTNA solutions Administer identity and access: Okta/Entra ID, Conditional Access policies, MFA enforcement, identity lifecycle management, and IGA Own security tooling and controls: SIEM, EDR, DLP, and vulnerability management, aligned to CIS Controls, NIST CSF, and other relevant compliance frameworks Manage the MDR relationship and respond to escalated detections Drive the IT process and policy redesign required to meet current compliance requirements, and to support additional frameworks as those efforts come online, in partnership with Legal/Compliance Harden AWS/Azure environments from a security perspective: IAM least-privilege, VPC/network security, Azure Policy Provide front-line escalation support and mentoring to IT teammates; maintain runbooks and documentation Assess technology and network risk across the company and recommend remediations Leadership, Team Structure & Culture You will join the IT organization as a direct report to the Senior Director of Cybersecurity & Technology, working alongside a Systems Engineer peer who owns day-to-day systems and endpoint operations. This is a hands-on, collaborative team that takes security and operational excellence seriously. This is a senior individual contributor role focused on deep technical impact-your job is to own and mature Evolv's network security and cybersecurity posture through the systems, controls, and automation you build. You'll have meaningful autonomy over how you approach problems and are actively encouraged to bring creative solutions, identify improvement opportunities, and advocate for better ways of working. You'll work alongside teammates who share your drive for continuous improvement, and you'll have a manager who values initiative, trusts the team to execute, and wants to hear your ideas. Where is the role located? This role is based out of Evolv HQ in Waltham, Massachusetts. This is a hybrid role with an expectation of 3 days per week on-site. Fully remote candidates will not be considered. Compensation and Transparency Statement The base salary range for this full-time position is $102,000-$166,000. In addition to base salary, this role offers a competitive target bonus, equity, and a comprehensive benefits package. This range reflects our commitment to pay transparency and equity, in alignment with applicable state laws. Our compensation ranges are determined based on factors such as role, level, location, market benchmarks, and internal equity. The posted range represents the good-faith estimate of what we expect to pay for this role across U.S. locations. Actual compensation within the range will be based on the candidate's skills, experience, education, and geographic location. In accordance with state and local pay transparency laws-including those in California, Colorado, Massachusetts, New York, New Jersey, and others-we disclose salary ranges in all job postings and provide additional information upon request. During the hiring process, your recruiter will share: •The specific salary range for your preferred location •A general overview of our benefits and equity offerings •Insights into how compensation decisions are made, including factors that influence starting pay We are committed to fair pay practices, and we regularly review our compensation programs to ensure they are competitive, equitable, and aligned with our values. Benefits At Evolv, we're on a mission to help make public spaces safer through innovative security technology. So, we're looking for future teammates who embody our values, people who: Do the right thing, always; Put people first' Own it; Win together; and continue to Be bold, stay curious. Our Benefits Include : Equity as part of your total compensation package Medical, dental, and vision insurance Health Savings Account (HSA) A 401(k) plan (and 2% company match) Flexible Paid Time Off (PTO)- take the time you need to recharge, with manager approval and business needs in mind Quarterly stipend for perks and benefits that matter most to you Tuition reimbursement to support your ongoing learning and development Subscription to Calm Evolv Technology ("Evolv") is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We welcome and encourage diversity in the workplace, and all employment decisions are made without regard to race, color, religion, national, social or ethnic origin, sex (including pregnancy), age, disability, HIV Status, sexual orientation, gender identity and/or expression, veteran status, or any other status protected by law in the locations where we operate. Evolv will not tolerate discrimination or harassment based on any of these characteristics. Evolv is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. If you need a reasonable accommodation as part of the job application process, please connect with us at . Evolv participates in E-verify for all employees after the completion of Form I-9.
09/15/2026
Full time
Job Description Job Description The Elevator Pitch Are you ready to own the network and cybersecurity backbone of a company that's redefining security technology? Do you thrive at the intersection of network engineering, cybersecurity operations, and compliance-where your work directly reduces risk and keeps the business resilient against an ever-changing threat landscape? Evolv is seeking a Network & Cybersecurity Engineer to design, implement, and defend our network infrastructure and security tooling. You'll be the technical owner of Evolv's network and security posture-from firewalls and access control to identity governance and threat detection-reporting to the Senior Director of Cybersecurity & Technology. This is a pivotal role in maturing Evolv's security program to meet the evolving demands of the business and our growing compliance obligations. You'll partner closely with the Systems Engineer and the rest of the IT team, and serve as the subject matter expert on networking, enterprise cybersecurity, and compliance tooling. If you're energized by staying ahead of emerging threats and building durable, well-governed security controls, this role is for you. Success in the Role: What are performance outcomes over the first 6-12 months you will work toward completing? In the first 30 days, you will: Get to know the IT and security team and the tools/platforms currently in use Start building relationships with key stakeholders across the company, especially R&D and Legal/Compliance Learn Evolv's compliance commitments and ongoing authorization efforts, and how best to support them Gain familiarity with the current network/security toolstack: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, VPN/ZTNA, identity platforms (Okta, Entra ID), SIEM/EDR/DLP tooling, and the MDR relationship Within 3 months, you will: Begin implementing or improving network and security controls that measurably reduce risk Build trust-based relationships with peers in IT and stakeholders across business units Become the established subject matter expert on network security and compliance tooling at Evolv Take ownership of the MDR relationship and escalated detection response By the end of the first year, you will: Be recognized as the trusted subject matter expert across network infrastructure, and security operations Have driven measurable improvements to Evolv's security posture and compliance readiness Successfully supported compliance requirements and audit readiness, partnering closely with Legal/Compliance and R&D Documented network and security architecture, processes, and runbooks that reduce single points of failure Be seen as the go-to resource for network security questions, escalations, and best-practice guidance The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis? Infrastructure, Security & Compliance: Design, implement, and maintain network infrastructure: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, and VPN/ZTNA solutions Administer identity and access: Okta/Entra ID, Conditional Access policies, MFA enforcement, identity lifecycle management, and IGA Own security tooling and controls: SIEM, EDR, DLP, and vulnerability management, aligned to CIS Controls, NIST CSF, and other relevant compliance frameworks Manage the MDR relationship and respond to escalated detections Drive the IT process and policy redesign required to meet current compliance requirements, and to support additional frameworks as those efforts come online, in partnership with Legal/Compliance Harden AWS/Azure environments from a security perspective: IAM least-privilege, VPC/network security, Azure Policy Provide front-line escalation support and mentoring to IT teammates; maintain runbooks and documentation Assess technology and network risk across the company and recommend remediations Leadership, Team Structure & Culture You will join the IT organization as a direct report to the Senior Director of Cybersecurity & Technology, working alongside a Systems Engineer peer who owns day-to-day systems and endpoint operations. This is a hands-on, collaborative team that takes security and operational excellence seriously. This is a senior individual contributor role focused on deep technical impact-your job is to own and mature Evolv's network security and cybersecurity posture through the systems, controls, and automation you build. You'll have meaningful autonomy over how you approach problems and are actively encouraged to bring creative solutions, identify improvement opportunities, and advocate for better ways of working. You'll work alongside teammates who share your drive for continuous improvement, and you'll have a manager who values initiative, trusts the team to execute, and wants to hear your ideas. Where is the role located? This role is based out of Evolv HQ in Waltham, Massachusetts. This is a hybrid role with an expectation of 3 days per week on-site. Fully remote candidates will not be considered. Compensation and Transparency Statement The base salary range for this full-time position is $102,000-$166,000. In addition to base salary, this role offers a competitive target bonus, equity, and a comprehensive benefits package. This range reflects our commitment to pay transparency and equity, in alignment with applicable state laws. Our compensation ranges are determined based on factors such as role, level, location, market benchmarks, and internal equity. The posted range represents the good-faith estimate of what we expect to pay for this role across U.S. locations. Actual compensation within the range will be based on the candidate's skills, experience, education, and geographic location. In accordance with state and local pay transparency laws-including those in California, Colorado, Massachusetts, New York, New Jersey, and others-we disclose salary ranges in all job postings and provide additional information upon request. During the hiring process, your recruiter will share: •The specific salary range for your preferred location •A general overview of our benefits and equity offerings •Insights into how compensation decisions are made, including factors that influence starting pay We are committed to fair pay practices, and we regularly review our compensation programs to ensure they are competitive, equitable, and aligned with our values. Benefits At Evolv, we're on a mission to help make public spaces safer through innovative security technology. So, we're looking for future teammates who embody our values, people who: Do the right thing, always; Put people first' Own it; Win together; and continue to Be bold, stay curious. Our Benefits Include : Equity as part of your total compensation package Medical, dental, and vision insurance Health Savings Account (HSA) A 401(k) plan (and 2% company match) Flexible Paid Time Off (PTO)- take the time you need to recharge, with manager approval and business needs in mind Quarterly stipend for perks and benefits that matter most to you Tuition reimbursement to support your ongoing learning and development Subscription to Calm Evolv Technology ("Evolv") is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We welcome and encourage diversity in the workplace, and all employment decisions are made without regard to race, color, religion, national, social or ethnic origin, sex (including pregnancy), age, disability, HIV Status, sexual orientation, gender identity and/or expression, veteran status, or any other status protected by law in the locations where we operate. Evolv will not tolerate discrimination or harassment based on any of these characteristics. Evolv is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. If you need a reasonable accommodation as part of the job application process, please connect with us at . Evolv participates in E-verify for all employees after the completion of Form I-9.
Job Description Job Description Benefits: Competitive salary 6-Month Contract-to-Hire (CTH) Experience Level Senior Level (5 or more years of experience) Role Overview The Network Security Engineer serves as a technical Subject Matter Expert (SME) responsible for designing, deploying, administering, and optimizing enterprise network security infrastructure. This role focuses on architecting and managing Palo Alto Networks Next-Generation Firewalls (NGFWs), Cisco Firepower/ASA firewalls, Cisco ISE (Identity Services Engine), VPN infrastructure, and SD-WAN security to protect network perimeters and secure multi-site data flows across a regulated financial institution. Key Responsibilities Firewall Engineering & Perimeter Defense • Design, deploy, and manage Palo Alto Networks Next-Generation Firewalls (NGFWs) using Panorama, configuring NAT, App-ID, User-ID, Threat Prevention, URL Filtering, and WildFire. • Administer and maintain Cisco ASA and Firepower (FTD/FMC) firewalls, managing access control policies, IPS tuning, and platform lifecycle upgrades. • Lead investigations and incident responses for network-layer security alerts, policy violations, and anomalies. Network Access Control & Secure Connectivity • Administer Cisco Identity Services Engine (ISE) for Network Access Control (NAC), 802.1X authentication, RADIUS/TACACS+, device profiling, and guest access. • Manage and maintain VPN infrastructure (Cisco AnyConnect / Secure Access and site-to-site IPSec tunnels), supporting certificate-based authentication and split-tunnel configurations. • Configure and secure Cisco Catalyst SD-WAN environments, enforcing application-aware policies, traffic segmentation, and encrypted transport. • Administer Cisco Umbrella / Secure Access DNS-layer security, category-based controls, and web filtering policies. Architecture, Compliance, & Change Management • Collaborate with Cloud, Infrastructure, and Information Security teams to implement network segmentation, zero-trust controls, and security standards aligned with PCI-DSS, SOX, and NIST frameworks. • Author, review, and execute ITIL-aligned change management requests, presenting to Change Advisory Boards (CAB) and conducting post-implementation reviews. • Maintain comprehensive technical documentation, including firewall rulesets, network security architecture diagrams, runbooks, and standard operating procedures (SOPs). Required Qualifications • 5 or more years of hands-on experience in network security engineering, enterprise firewall administration, and perimeter security (CCNP Security-level expertise). • 3 or more years of hands-on experience designing, deploying, and managing Palo Alto Networks NGFWs and Panorama. • Solid hands-on experience administering Cisco ASA and Firepower (FTD/FMC) firewall environments, access control policies, and platform upgrades. • Strong working knowledge of Cisco ISE for NAC, 802.1X, RADIUS/TACACS+, and device profiling. • Experience configuring and troubleshooting enterprise VPN solutions (Cisco AnyConnect, Secure Access, IPSec site-to-site tunnels). • Solid understanding of core networking protocols, routing, and security concepts (TCP/IP, BGP, EIGRP, ACLs, NAT, SSL/TLS inspection, network micro-segmentation). • Experience working within an ITIL-based change management framework. • Must be legally authorized to work in the United States without current or future visa sponsorship. Preferred Qualifications • Industry certifications such as Palo Alto Networks Certified Network Security Engineer (PCNSE), Cisco Certified Network Professional Security (CCNP Security), or CCIE Security. • Familiarity with financial regulatory frameworks and compliance standards (e.g., FFIEC, PCI-DSS, SOX, NIST CSF). • Experience with Microsoft Azure networking and cloud security (Azure Firewall, NSGs, Virtual WAN, ExpressRoute). • Experience utilizing automation scripts (e.g., Python, Ansible) for firewall configuration and policy management. Core Skills & Attributes • Exceptional analytical, problem-solving, and root-cause diagnostic abilities for complex network security issues. • High accountability and attention to detail when executing production changes and maintaining documentation. • Excellent interpersonal and communication skills to collaborate with cross-functional IT teams, security leaders, and external auditors. • Self-driven approach to continuous learning and staying current with evolving cybersecurity threats. Flexible work from home options available.
09/15/2026
Full time
Job Description Job Description Benefits: Competitive salary 6-Month Contract-to-Hire (CTH) Experience Level Senior Level (5 or more years of experience) Role Overview The Network Security Engineer serves as a technical Subject Matter Expert (SME) responsible for designing, deploying, administering, and optimizing enterprise network security infrastructure. This role focuses on architecting and managing Palo Alto Networks Next-Generation Firewalls (NGFWs), Cisco Firepower/ASA firewalls, Cisco ISE (Identity Services Engine), VPN infrastructure, and SD-WAN security to protect network perimeters and secure multi-site data flows across a regulated financial institution. Key Responsibilities Firewall Engineering & Perimeter Defense • Design, deploy, and manage Palo Alto Networks Next-Generation Firewalls (NGFWs) using Panorama, configuring NAT, App-ID, User-ID, Threat Prevention, URL Filtering, and WildFire. • Administer and maintain Cisco ASA and Firepower (FTD/FMC) firewalls, managing access control policies, IPS tuning, and platform lifecycle upgrades. • Lead investigations and incident responses for network-layer security alerts, policy violations, and anomalies. Network Access Control & Secure Connectivity • Administer Cisco Identity Services Engine (ISE) for Network Access Control (NAC), 802.1X authentication, RADIUS/TACACS+, device profiling, and guest access. • Manage and maintain VPN infrastructure (Cisco AnyConnect / Secure Access and site-to-site IPSec tunnels), supporting certificate-based authentication and split-tunnel configurations. • Configure and secure Cisco Catalyst SD-WAN environments, enforcing application-aware policies, traffic segmentation, and encrypted transport. • Administer Cisco Umbrella / Secure Access DNS-layer security, category-based controls, and web filtering policies. Architecture, Compliance, & Change Management • Collaborate with Cloud, Infrastructure, and Information Security teams to implement network segmentation, zero-trust controls, and security standards aligned with PCI-DSS, SOX, and NIST frameworks. • Author, review, and execute ITIL-aligned change management requests, presenting to Change Advisory Boards (CAB) and conducting post-implementation reviews. • Maintain comprehensive technical documentation, including firewall rulesets, network security architecture diagrams, runbooks, and standard operating procedures (SOPs). Required Qualifications • 5 or more years of hands-on experience in network security engineering, enterprise firewall administration, and perimeter security (CCNP Security-level expertise). • 3 or more years of hands-on experience designing, deploying, and managing Palo Alto Networks NGFWs and Panorama. • Solid hands-on experience administering Cisco ASA and Firepower (FTD/FMC) firewall environments, access control policies, and platform upgrades. • Strong working knowledge of Cisco ISE for NAC, 802.1X, RADIUS/TACACS+, and device profiling. • Experience configuring and troubleshooting enterprise VPN solutions (Cisco AnyConnect, Secure Access, IPSec site-to-site tunnels). • Solid understanding of core networking protocols, routing, and security concepts (TCP/IP, BGP, EIGRP, ACLs, NAT, SSL/TLS inspection, network micro-segmentation). • Experience working within an ITIL-based change management framework. • Must be legally authorized to work in the United States without current or future visa sponsorship. Preferred Qualifications • Industry certifications such as Palo Alto Networks Certified Network Security Engineer (PCNSE), Cisco Certified Network Professional Security (CCNP Security), or CCIE Security. • Familiarity with financial regulatory frameworks and compliance standards (e.g., FFIEC, PCI-DSS, SOX, NIST CSF). • Experience with Microsoft Azure networking and cloud security (Azure Firewall, NSGs, Virtual WAN, ExpressRoute). • Experience utilizing automation scripts (e.g., Python, Ansible) for firewall configuration and policy management. Core Skills & Attributes • Exceptional analytical, problem-solving, and root-cause diagnostic abilities for complex network security issues. • High accountability and attention to detail when executing production changes and maintaining documentation. • Excellent interpersonal and communication skills to collaborate with cross-functional IT teams, security leaders, and external auditors. • Self-driven approach to continuous learning and staying current with evolving cybersecurity threats. Flexible work from home options available.
Job Description Job Description Network Security Engineer II Location - Onsite, Irvine, CA Grade: 8 Company Overview Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis. HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group. At HAEA, we understand that IT is the cornerstone of today's fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations. If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that's driving the future of automotive innovation. What You Will Be Doing The Security Architecture and Engineering team within the CISO organization is seeking a Network Security Engineer II to help design, implement, operate, and continuously improve enterprise network security controls. This role will focus on technologies including Web Application Firewalls, Network Access Control, IDS, and IPS, while partnering closely with the IT Networking team to ensure secure, reliable, and scalable network services. This is an onsite role, five days per week, based in our Irvine office. The key responsibilities of this role are as described below: The Network Security Engineer II will be responsible for supporting and maintaining critical network security platforms across the enterprise. Responsibilities include: Administer, monitor, and optimize Web Application Firewall platforms to protect internet-facing and internal applications. Support and maintain Network Access Control technologies, including device profiling, policy enforcement, segmentation support, and exception handling. Operate and tune Intrusion Detection and Intrusion Prevention Systems to improve detection accuracy and reduce false positives. Partner with the IT Networking team on secure network design, routing, switching, firewall, segmentation, and connectivity initiatives. Assist other Security and IT teams by reviewing security events, alerts, logs, and traffic patterns to identify potential threats or misconfigurations. Assist with the implementation of network security architecture standards, hardening guidelines, and secure configuration baselines. Participate in incident response activities related to network-based threats, unauthorized access, or suspicious traffic. Develop and maintain documentation, including network security diagrams, platform runbooks, standard operating procedures, and change records. Support vulnerability remediation efforts related to network infrastructure, application exposure, and security control gaps. Perform policy reviews and rulebase hygiene for WAF, NAC, IDS, and IPS technologies. Participate in change management activities, including risk assessment, implementation planning, testing, and post-change validation. Collaborate with security operations, infrastructure, application, and compliance teams to support business and regulatory requirements. Assist with lifecycle management for network security tools, including upgrades, patching, certificate management, integrations, and capacity planning. Provide technical recommendations to improve visibility, segmentation, access control, and threat prevention across the environment. Basic Qualifications: Experience: 8+ years of network security, infrastructure security, and/or security engineering. Practical and demonstrated experience working Web Application Firewalls, Network Access Control platforms, IDS/IPS technologies, Firewalls or secure network gateways in platforms by Cisco, Palo Alto, Trend Micro, Gigamon, Trellix, etc. Education: Bachelor's degree in Cybersecurity, Information Technology, Computer science or a related field. Technical Expertise: Advanced level knowledge of networking concepts, including TCP/IP, DNS, DHCP, VLANs, routing, switching, NAT, VPNs, and network segmentation. Experience analyzing logs, packet captures, alerts, and network traffic to troubleshoot issues or investigate security events. Familiarity with common network and application-layer attack techniques. Experience supporting production environments and following change management processes. Strong troubleshooting, documentation, and communication skills. Language Skills: Excellent stakeholder management and communication skills. Proficient in English for effective communication and coordination. Schedule: This is an onsite position requiring presence in the Irvine office five days per week. Some after-hours or weekend work may be required for planned maintenance, incident response, or critical security changes. Preferred Qualifications: Experience: Experience with enterprise WAF policy tuning, bot protection, API protection, or application security rule sets. Experience with NAC deployment models, including 802.1X, MAC authentication bypass, posture assessment, guest access, and device profiling. Familiarity with SIEM, SOAR, vulnerability management, endpoint security, or cloud security tools. Scripting or automation experience using Python, PowerShell, APIs, or infrastructure-as-code tools. Education and Certifications: Masters degree in Cybersecurity, Information Technology, Computer Science or a related discipline is preferred. Industry-recognized credentials such as Security+, Network+, CCNA, CCNP Security, PCNSE, CISSP, GSEC, GCIH, or vendor-specific certifications. Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication. Team Culture: The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed. Base Salary Range: $100,000 - 130,000 Powered by JazzHR FgOdYKZ9EK
09/15/2026
Full time
Job Description Job Description Network Security Engineer II Location - Onsite, Irvine, CA Grade: 8 Company Overview Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis. HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group. At HAEA, we understand that IT is the cornerstone of today's fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations. If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that's driving the future of automotive innovation. What You Will Be Doing The Security Architecture and Engineering team within the CISO organization is seeking a Network Security Engineer II to help design, implement, operate, and continuously improve enterprise network security controls. This role will focus on technologies including Web Application Firewalls, Network Access Control, IDS, and IPS, while partnering closely with the IT Networking team to ensure secure, reliable, and scalable network services. This is an onsite role, five days per week, based in our Irvine office. The key responsibilities of this role are as described below: The Network Security Engineer II will be responsible for supporting and maintaining critical network security platforms across the enterprise. Responsibilities include: Administer, monitor, and optimize Web Application Firewall platforms to protect internet-facing and internal applications. Support and maintain Network Access Control technologies, including device profiling, policy enforcement, segmentation support, and exception handling. Operate and tune Intrusion Detection and Intrusion Prevention Systems to improve detection accuracy and reduce false positives. Partner with the IT Networking team on secure network design, routing, switching, firewall, segmentation, and connectivity initiatives. Assist other Security and IT teams by reviewing security events, alerts, logs, and traffic patterns to identify potential threats or misconfigurations. Assist with the implementation of network security architecture standards, hardening guidelines, and secure configuration baselines. Participate in incident response activities related to network-based threats, unauthorized access, or suspicious traffic. Develop and maintain documentation, including network security diagrams, platform runbooks, standard operating procedures, and change records. Support vulnerability remediation efforts related to network infrastructure, application exposure, and security control gaps. Perform policy reviews and rulebase hygiene for WAF, NAC, IDS, and IPS technologies. Participate in change management activities, including risk assessment, implementation planning, testing, and post-change validation. Collaborate with security operations, infrastructure, application, and compliance teams to support business and regulatory requirements. Assist with lifecycle management for network security tools, including upgrades, patching, certificate management, integrations, and capacity planning. Provide technical recommendations to improve visibility, segmentation, access control, and threat prevention across the environment. Basic Qualifications: Experience: 8+ years of network security, infrastructure security, and/or security engineering. Practical and demonstrated experience working Web Application Firewalls, Network Access Control platforms, IDS/IPS technologies, Firewalls or secure network gateways in platforms by Cisco, Palo Alto, Trend Micro, Gigamon, Trellix, etc. Education: Bachelor's degree in Cybersecurity, Information Technology, Computer science or a related field. Technical Expertise: Advanced level knowledge of networking concepts, including TCP/IP, DNS, DHCP, VLANs, routing, switching, NAT, VPNs, and network segmentation. Experience analyzing logs, packet captures, alerts, and network traffic to troubleshoot issues or investigate security events. Familiarity with common network and application-layer attack techniques. Experience supporting production environments and following change management processes. Strong troubleshooting, documentation, and communication skills. Language Skills: Excellent stakeholder management and communication skills. Proficient in English for effective communication and coordination. Schedule: This is an onsite position requiring presence in the Irvine office five days per week. Some after-hours or weekend work may be required for planned maintenance, incident response, or critical security changes. Preferred Qualifications: Experience: Experience with enterprise WAF policy tuning, bot protection, API protection, or application security rule sets. Experience with NAC deployment models, including 802.1X, MAC authentication bypass, posture assessment, guest access, and device profiling. Familiarity with SIEM, SOAR, vulnerability management, endpoint security, or cloud security tools. Scripting or automation experience using Python, PowerShell, APIs, or infrastructure-as-code tools. Education and Certifications: Masters degree in Cybersecurity, Information Technology, Computer Science or a related discipline is preferred. Industry-recognized credentials such as Security+, Network+, CCNA, CCNP Security, PCNSE, CISSP, GSEC, GCIH, or vendor-specific certifications. Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication. Team Culture: The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed. Base Salary Range: $100,000 - 130,000 Powered by JazzHR FgOdYKZ9EK
Job Description Job Description As a Senior Network Security Engineer at Penumbra, you will play a critical role in determining the company's long term goals. You will be a key member of the Information Security and Compliance team. This is a highly technical, hands-on role. The Sr. Network Engineer will collaborate with Security, IT, Manufacturing, and Engineering teams and be responsible for engineering solutions and supporting operational activities across a hybrid cloud environment. The role responsibilities include ensuring compliance with legal and regulatory requirements and maintaining company security policies, standards, and industry's best practices. What You'll Work On • Ensure the network security of on-premises and cloud-based systems, networks, infrastructure, and services. • Enforce secure design standards and specifications for services, systems, and products. • Responsible for network security solutions, control designs, and enforcement across our environment. • Design and perform security assessments, configuration verification, configuration reporting, and other activities to validate control effectiveness. • Engage and share results of security audits with the Information Security and business partners to promote changes vital to improve risk posture. • Collaborate with cross-functional teams to develop and implement security measures supporting on-prem and cloud systems. • Develop roadmaps, standards, and documentation for technical solutions and existing configurations. Serve as the subject matter expert across the network security environment. • Respond to and lead, as appropriate, incident response activities for security incidents. • Collaborate with IT and line of business teams to integrate security into new and existing systems, processes, and initiatives. • Manage and configure security services, e.g., firewalls, intrusion detection/prevention systems, threat prevention technologies, VPNs, and other network security appliances. • Create and maintain documentation for security procedures, designs, and protocols, conduct security training and awareness for staff as appropriate to the role. • Stay current with emerging security threats and technologies in the security landscape. Ensure compliance with regulatory requirements and industry standards in the Company's environment. What You Contribute • A Bachelor's degree in computer science or related field with 10+ years of related experience, or equivalent combination of education and experience. • Master's degree preferred in Computer Science or Engineering with an emphasis in Computer Security or a related field • Highly analytical and results and process-oriented mindset strongly desired • 10+ years of hands-on design, enforcement and testing/validation of offensive security, defensive security, systems, and solutions engineering in a large enterprise • 5+ years of hands-on security experience with cloud platforms, i.e., Azure, AWS or Google Cloud Platform services, automation, or IaC • 5+ years of hands-on experience network security experience and expert-level knowledge on security technologies such as Palo Alto Firewalls, Cisco ISE, IPS, CASB, VPN management, SAML/OIDC NAC 802.1X, SIEM, SOAR, Radius/TACACS+, directory services • Proficient with network topologies, routing protocols, i.e., OSPF, BGP, ISIS, SDN, and tunneling technologies. • Proficient with diagramming and threat models, ability and competency to design and implement controls at scale based on risks • Proficient in conducting solutions architecture, security design reviews, passionate about security and privacy research, technologies, and methods. • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends • Understanding security and compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment • Outstanding ethical standards and integrity. • Excellent communicator with strong oral, written, and interpersonal communication skills • High degree of accuracy and attention to detail • Proficiency with Microsoft Word, Excel, Visio, and PowerPoint • Excellent organizational skills with the ability to prioritize assignments while handling various projects simultaneously. Working Conditions General office environment. Willingness and ability to work on site. May have business travel up to 10%. Requires some lifting and moving of up to 10 pounds Must be able to move between buildings and floors. Must be able to remain stationary and use a computer or other standard office equipment, such as a printer or copy machine, for an extensive period of time each day. Must be able to read, prepare emails, and produce documents and spreadsheets. Must be able to move within the office and access file cabinets or supplies, as needed. Must be able to communicate and exchange accurate information with employees at all levels on a daily basis. Annual Base Salary Range: $146,000 - $220,000/ year We offer a competitive compensation package plus a benefits and equity program, when applicable. Individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. What We Offer • A collaborative teamwork environment where learning is constant, and performance is rewarded. • The opportunity to be part of the team that is revolutionizing the treatment of some of the world's most devastating diseases. • A generous benefits package for eligible employees that includes medical, dental, vision, life, AD&D, short and long-term disability insurance, 401(k) with employer match, paid parental leave, eleven paid company holidays per year, a minimum of fifteen days of accrued vacation per year, which increases with tenure, and paid sick time in compliance with applicable law(s). Penumbra, Inc., headquartered in Alameda, California, is a global healthcare company focused on innovative therapies. Penumbra designs, develops, manufactures, and markets novel products and has a broad portfolio that addresses challenging medical conditions in markets with significant unmet need. Penumbra sells its products to hospitals and healthcare providers primarily through its direct sales organization in the United States, most of Europe, Canada, and Australia, and through distributors in select international markets. The Penumbra logo is a trademark of Penumbra, Inc. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, age, disability, military or veteran status, or any other characteristic protected by federal, state, or local laws. If you reside in the State of California, please also refer to Penumbra's Privacy Notice for California Residents. For additional information on Penumbra's commitment to being an equal opportunity employer, please see Penumbra's AAP Policy Statement.
09/15/2026
Full time
Job Description Job Description As a Senior Network Security Engineer at Penumbra, you will play a critical role in determining the company's long term goals. You will be a key member of the Information Security and Compliance team. This is a highly technical, hands-on role. The Sr. Network Engineer will collaborate with Security, IT, Manufacturing, and Engineering teams and be responsible for engineering solutions and supporting operational activities across a hybrid cloud environment. The role responsibilities include ensuring compliance with legal and regulatory requirements and maintaining company security policies, standards, and industry's best practices. What You'll Work On • Ensure the network security of on-premises and cloud-based systems, networks, infrastructure, and services. • Enforce secure design standards and specifications for services, systems, and products. • Responsible for network security solutions, control designs, and enforcement across our environment. • Design and perform security assessments, configuration verification, configuration reporting, and other activities to validate control effectiveness. • Engage and share results of security audits with the Information Security and business partners to promote changes vital to improve risk posture. • Collaborate with cross-functional teams to develop and implement security measures supporting on-prem and cloud systems. • Develop roadmaps, standards, and documentation for technical solutions and existing configurations. Serve as the subject matter expert across the network security environment. • Respond to and lead, as appropriate, incident response activities for security incidents. • Collaborate with IT and line of business teams to integrate security into new and existing systems, processes, and initiatives. • Manage and configure security services, e.g., firewalls, intrusion detection/prevention systems, threat prevention technologies, VPNs, and other network security appliances. • Create and maintain documentation for security procedures, designs, and protocols, conduct security training and awareness for staff as appropriate to the role. • Stay current with emerging security threats and technologies in the security landscape. Ensure compliance with regulatory requirements and industry standards in the Company's environment. What You Contribute • A Bachelor's degree in computer science or related field with 10+ years of related experience, or equivalent combination of education and experience. • Master's degree preferred in Computer Science or Engineering with an emphasis in Computer Security or a related field • Highly analytical and results and process-oriented mindset strongly desired • 10+ years of hands-on design, enforcement and testing/validation of offensive security, defensive security, systems, and solutions engineering in a large enterprise • 5+ years of hands-on security experience with cloud platforms, i.e., Azure, AWS or Google Cloud Platform services, automation, or IaC • 5+ years of hands-on experience network security experience and expert-level knowledge on security technologies such as Palo Alto Firewalls, Cisco ISE, IPS, CASB, VPN management, SAML/OIDC NAC 802.1X, SIEM, SOAR, Radius/TACACS+, directory services • Proficient with network topologies, routing protocols, i.e., OSPF, BGP, ISIS, SDN, and tunneling technologies. • Proficient with diagramming and threat models, ability and competency to design and implement controls at scale based on risks • Proficient in conducting solutions architecture, security design reviews, passionate about security and privacy research, technologies, and methods. • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends • Understanding security and compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment • Outstanding ethical standards and integrity. • Excellent communicator with strong oral, written, and interpersonal communication skills • High degree of accuracy and attention to detail • Proficiency with Microsoft Word, Excel, Visio, and PowerPoint • Excellent organizational skills with the ability to prioritize assignments while handling various projects simultaneously. Working Conditions General office environment. Willingness and ability to work on site. May have business travel up to 10%. Requires some lifting and moving of up to 10 pounds Must be able to move between buildings and floors. Must be able to remain stationary and use a computer or other standard office equipment, such as a printer or copy machine, for an extensive period of time each day. Must be able to read, prepare emails, and produce documents and spreadsheets. Must be able to move within the office and access file cabinets or supplies, as needed. Must be able to communicate and exchange accurate information with employees at all levels on a daily basis. Annual Base Salary Range: $146,000 - $220,000/ year We offer a competitive compensation package plus a benefits and equity program, when applicable. Individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. What We Offer • A collaborative teamwork environment where learning is constant, and performance is rewarded. • The opportunity to be part of the team that is revolutionizing the treatment of some of the world's most devastating diseases. • A generous benefits package for eligible employees that includes medical, dental, vision, life, AD&D, short and long-term disability insurance, 401(k) with employer match, paid parental leave, eleven paid company holidays per year, a minimum of fifteen days of accrued vacation per year, which increases with tenure, and paid sick time in compliance with applicable law(s). Penumbra, Inc., headquartered in Alameda, California, is a global healthcare company focused on innovative therapies. Penumbra designs, develops, manufactures, and markets novel products and has a broad portfolio that addresses challenging medical conditions in markets with significant unmet need. Penumbra sells its products to hospitals and healthcare providers primarily through its direct sales organization in the United States, most of Europe, Canada, and Australia, and through distributors in select international markets. The Penumbra logo is a trademark of Penumbra, Inc. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, age, disability, military or veteran status, or any other characteristic protected by federal, state, or local laws. If you reside in the State of California, please also refer to Penumbra's Privacy Notice for California Residents. For additional information on Penumbra's commitment to being an equal opportunity employer, please see Penumbra's AAP Policy Statement.
Job Description Job Description Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12 month contract, with potential for permanent conversion, to support the Information Security organization. This role focuses on monitoring network security activities and operating and optimizing security infrastructure. The engineer will drive policy, rule, and architecture improvements to prevent and remediate incidents, perform security configuration changes, and collaborate with IT and business stakeholders on triage. The position emphasizes enterprise firewalls, SASE and ZTNA, identity and access management, Microsoft security tooling, and process development aligned to best practices and regulatory requirements. Rate : $42.00 - $48.00 per hour W2 Responsibilities: Monitor network security activities and maintain oversight of security infrastructure. Implement, monitor, and manage enterprise firewall solutions, including NGFW, to enforce network security policies. Operate and configure SASE capabilities including secure web gateways, ZTNA, and CASB. Execute security configuration changes and support incident prevention and remediation through policy, rule, and architecture optimization. Collaborate with IT and business stakeholders on security triage and operational support. Leverage Microsoft Security Suite such as Defender for Endpoint, Sentinel, and Entra/Azure AD across on premises and cloud environments. Develop and refine procedures, policies, and processes aligned with best practices and regulatory requirements. Recommend remediation measures to improve security posture and reduce risk. Communicate security concepts to cross functional teams and stakeholders. Perform other related duties as assigned. Experience Requirements: 3+ years in cloud or network security engineering, security operations, insider risk management, or security event management. Hands on experience with identity, firewall, cloud, and SIEM tools such as Microsoft Azure, Okta, Duo, Palo Alto, Fortinet, Zscaler, Windows Defender, OCI, and Sentinel. Ability to convey complex information risk and security issues in an actionable manner. Demonstrated judgment, urgency, ethical standards, regulatory awareness, customer service, and business integrity. Preferred proficiency with automation or scripting such as Ansible, Python, KQL, or PowerShell. Strong written and oral communication skills and the ability to work cross functionally with network, cloud, infrastructure, and application teams. Strong organizational skills with the ability to prioritize and deliver in a fast paced environment. Ability to accommodate approximately 5% travel. Recruitment Transparency Notice Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team ( , ) inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group's use of these tools, including AI tools, as part of the application and hiring process. Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following: When you work with Eliassen Group, all email communication will come from an address, never Gmail, Yahoo, etc. Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group. If you have any indication of fraudulent activity, please contact . About Eliassen Group: Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients' capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve. Eliassen is committed to building a diverse and inclusive team from a variety of backgrounds, perspectives, and skills. We are an Equal Opportunity and Affirmative Action Employer and all employment decisions are based on merit, performance, and business needs. Eliassen does not discriminate on the basis of race, color, gender identity or expression, sexual preference or orientation, sex (including pregnancy, childbirth, and related medical conditions), marital status, creed, religion, physical or mental disability, genetic information, military or veteran status, age, ancestry, national origin, citizenship status, prohibited criminal record inquiries of applicants and employees, or any other category protected by federal, state, or local laws. Don't miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!
09/15/2026
Full time
Job Description Job Description Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12 month contract, with potential for permanent conversion, to support the Information Security organization. This role focuses on monitoring network security activities and operating and optimizing security infrastructure. The engineer will drive policy, rule, and architecture improvements to prevent and remediate incidents, perform security configuration changes, and collaborate with IT and business stakeholders on triage. The position emphasizes enterprise firewalls, SASE and ZTNA, identity and access management, Microsoft security tooling, and process development aligned to best practices and regulatory requirements. Rate : $42.00 - $48.00 per hour W2 Responsibilities: Monitor network security activities and maintain oversight of security infrastructure. Implement, monitor, and manage enterprise firewall solutions, including NGFW, to enforce network security policies. Operate and configure SASE capabilities including secure web gateways, ZTNA, and CASB. Execute security configuration changes and support incident prevention and remediation through policy, rule, and architecture optimization. Collaborate with IT and business stakeholders on security triage and operational support. Leverage Microsoft Security Suite such as Defender for Endpoint, Sentinel, and Entra/Azure AD across on premises and cloud environments. Develop and refine procedures, policies, and processes aligned with best practices and regulatory requirements. Recommend remediation measures to improve security posture and reduce risk. Communicate security concepts to cross functional teams and stakeholders. Perform other related duties as assigned. Experience Requirements: 3+ years in cloud or network security engineering, security operations, insider risk management, or security event management. Hands on experience with identity, firewall, cloud, and SIEM tools such as Microsoft Azure, Okta, Duo, Palo Alto, Fortinet, Zscaler, Windows Defender, OCI, and Sentinel. Ability to convey complex information risk and security issues in an actionable manner. Demonstrated judgment, urgency, ethical standards, regulatory awareness, customer service, and business integrity. Preferred proficiency with automation or scripting such as Ansible, Python, KQL, or PowerShell. Strong written and oral communication skills and the ability to work cross functionally with network, cloud, infrastructure, and application teams. Strong organizational skills with the ability to prioritize and deliver in a fast paced environment. Ability to accommodate approximately 5% travel. Recruitment Transparency Notice Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team ( , ) inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group's use of these tools, including AI tools, as part of the application and hiring process. Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following: When you work with Eliassen Group, all email communication will come from an address, never Gmail, Yahoo, etc. Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group. If you have any indication of fraudulent activity, please contact . About Eliassen Group: Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients' capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve. Eliassen is committed to building a diverse and inclusive team from a variety of backgrounds, perspectives, and skills. We are an Equal Opportunity and Affirmative Action Employer and all employment decisions are based on merit, performance, and business needs. Eliassen does not discriminate on the basis of race, color, gender identity or expression, sexual preference or orientation, sex (including pregnancy, childbirth, and related medical conditions), marital status, creed, religion, physical or mental disability, genetic information, military or veteran status, age, ancestry, national origin, citizenship status, prohibited criminal record inquiries of applicants and employees, or any other category protected by federal, state, or local laws. Don't miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!
Job Description Job Description Lead Firewall EngineerClearance: Active TS/SCIExperience: 8+ yearsLead an enterprise boundary security team responsible for firewall operations, engineering, compliance, and modernization. You will provide technical direction, oversee complex troubleshooting, and support secure, reliable network performance.What You Will DoLead daily firewall operations, maintenance, troubleshooting, and project execution.Design and implement solutions using Palo Alto, Juniper SRX, and F5 technologies.Review network changes and assess operational and security impacts.Maintain secure configuration baselines, architecture diagrams, inventories, procedures, and technical documentation.Monitor performance, logs, software versions, and configuration drift.Lead compliance reviews, technical evaluations, and modernization efforts.Brief stakeholders and mentor engineering personnel.What You BringActive TS/SCI clearance with the ability to obtain and maintain a CI polygraph.At least eight years of network security experience, including five years supporting large enterprise networks.Experience leading a firewall or boundary security team.Advanced experience with Palo Alto, Juniper SRX, and F5 platforms.Strong knowledge of firewall policy, TLS/SSL, PKI, Kerberos, LDAP, Active Directory, SAML, OAuth, and network architecture.Experience with network design, implementation, cost estimates, and labor estimates.Current DoD 8140/8570 IAT Level II certification.Ability to obtain CSSP Infrastructure Support certification within 120 days.Availability for occasional evening or weekend work.Preferred QualificationsBachelor 's or master's degree in computer science, cybersecurity, network security, or a related field.F5, Juniper, or Palo Alto professional certification. Job Posted by ApplicantPro
09/15/2026
Full time
Job Description Job Description Lead Firewall EngineerClearance: Active TS/SCIExperience: 8+ yearsLead an enterprise boundary security team responsible for firewall operations, engineering, compliance, and modernization. You will provide technical direction, oversee complex troubleshooting, and support secure, reliable network performance.What You Will DoLead daily firewall operations, maintenance, troubleshooting, and project execution.Design and implement solutions using Palo Alto, Juniper SRX, and F5 technologies.Review network changes and assess operational and security impacts.Maintain secure configuration baselines, architecture diagrams, inventories, procedures, and technical documentation.Monitor performance, logs, software versions, and configuration drift.Lead compliance reviews, technical evaluations, and modernization efforts.Brief stakeholders and mentor engineering personnel.What You BringActive TS/SCI clearance with the ability to obtain and maintain a CI polygraph.At least eight years of network security experience, including five years supporting large enterprise networks.Experience leading a firewall or boundary security team.Advanced experience with Palo Alto, Juniper SRX, and F5 platforms.Strong knowledge of firewall policy, TLS/SSL, PKI, Kerberos, LDAP, Active Directory, SAML, OAuth, and network architecture.Experience with network design, implementation, cost estimates, and labor estimates.Current DoD 8140/8570 IAT Level II certification.Ability to obtain CSSP Infrastructure Support certification within 120 days.Availability for occasional evening or weekend work.Preferred QualificationsBachelor 's or master's degree in computer science, cybersecurity, network security, or a related field.F5, Juniper, or Palo Alto professional certification. Job Posted by ApplicantPro
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset Responsibilities:Network Infrastructure & Operations Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management. Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity. Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government). Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process. Oversee network configuration management and backups to ensure recoverability and business continuity. Analyze and resolve escalated Tier 2+ network support tickets. Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation. Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions. Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening). Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed. Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles. Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments. Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes. Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions. Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles. Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards. Cloud Infrastructure & GCP Governance Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries. Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments. Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT. Requirements Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience). Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role. Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals. Hands-on experience with enterprise firewall administration; Palo Alto NGFW experience and Cisco or equivalent routing and switching experience required. Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus). Must be familiar with configuration management, monitoring, and documentation tools. Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions. Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff. Preferred Qualifications Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent. FortiGate experience, including FortiGate VM in Azure Government, preferred; candidates with strong enterprise firewall experience may ramp up on FortiGate with internal support. Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred. Familiarity with VoIP, secure mail flow, and endpoint management integration. Experience contributing to IT/security-related project initiatives. Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping. Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments. Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible. Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts. GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience. Familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy. Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred. Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks. Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development Wellness Resources
09/15/2026
Full time
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset Responsibilities:Network Infrastructure & Operations Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management. Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity. Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government). Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process. Oversee network configuration management and backups to ensure recoverability and business continuity. Analyze and resolve escalated Tier 2+ network support tickets. Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation. Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions. Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening). Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed. Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles. Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments. Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes. Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions. Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles. Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards. Cloud Infrastructure & GCP Governance Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries. Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments. Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT. Requirements Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience). Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role. Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals. Hands-on experience with enterprise firewall administration; Palo Alto NGFW experience and Cisco or equivalent routing and switching experience required. Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus). Must be familiar with configuration management, monitoring, and documentation tools. Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions. Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff. Preferred Qualifications Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent. FortiGate experience, including FortiGate VM in Azure Government, preferred; candidates with strong enterprise firewall experience may ramp up on FortiGate with internal support. Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred. Familiarity with VoIP, secure mail flow, and endpoint management integration. Experience contributing to IT/security-related project initiatives. Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping. Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments. Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible. Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts. GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience. Familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy. Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred. Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks. Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development Wellness Resources
Job Description Job Description Zoox's Network Security team architects and defends the digital borders of the company - from corporate offices to engineering labs and product/mission environments. As a Network Security Engineer, you will design, implement, and operate security controls across Zoox's enterprise, OT networks, and cloud infrastructure spanning on-premises data centers and public cloud environments (AWS, GCP), partnering closely with Network Engineering, IT, Product Security, and Software Engineering teams. In This Role, You Will Design, implement, and maintain secure hybrid/multi-cloud network architectures (AWS/GCP, CloudWAN); enforce zero-trust access controls and network segmentation across corporate, data center, lab, and edge environments; develop and maintain related policies, standards, and architecture diagrams Own and operate next-generation firewall platforms (Palo Alto Networks, Fortinet), managing policy architecture, segmentation, NAT, URL filtering, SSL/TLS decryption, and threat prevention tuning Architect, operate, and own the lifecycle of secure remote access solutions (VPN, ZTNA, site-to-site tunnels), ensuring high availability, certificate-based authentication, and integration with identity providers (SAML, Entra ID) Drive automation and Infrastructure-as-Code (IaC) using Terraform, Python, CI/CD, and REST APIs for configuration management, firewall policies, and security baselines; integrate LLM-based tools to streamline operational tasks and reduce manual toil Oversee security operations including 24/7 network security monitoring, traffic analysis, threat detection, vulnerability assessments, and remediation; support compliance requirements by conducting security reviews for new projects and infrastructure changes Drive 802.1X/certificate-based Network Access Control (NAC) initiatives across wired and wireless environments Collaborate with team members and contribute to cross-functional security initiatives with Product Security, SRE, IT, and Software Engineering teams Qualifications 6+ years of network security engineering experience securing enterprise, cloud, and OT/lab environments Platform Expertise: Deep, hands-on expertise in next-gen firewalls (Palo Alto, Fortinet), AWS NFW, WAFs, IDS/IPS, NAC/802.1X, PKI, VPN, and ZTNA solutions (Zscaler, Netskope, Prisma Access, or equivalent) Technical Knowledge: Strong understanding of core network protocols (TCP/IP, BGP, OSPF, VLAN, 802.1X, TLS/PKI) and cloud networking security principles (AWS, GCP, or Azure) Automation: Hands-on experience with IaC and automation tooling including Terraform, Python, CI/CD pipelines, and REST APIs Security Operations: Experience with network security monitoring, threat detection, and security operations tooling (SIEM, IDS/IPS, vulnerability management platforms), including integration with network controls Compliance: Proven experience supporting major compliance initiatives (NIST 800-53, CSF 2.0, ISO 27001), including control implementation and evidence collection Bonus Qualifications Experience in autonomous vehicle, robotics, IT/OT or automotive environments Certifications: PCNSE, AWS Security Specialty, CCNA Experience experimenting with or deploying AI/ML-based security capabilities (e.g., anomaly detection, behavioral analytics, LLM-driven copilots) in network or cloud security workflows There are three major components to compensation for this position: salary, Amazon Restricted Stock Units (RSUs), and Zoox Stock Appreciation Rights. A sign-on bonus may be offered as part of the compensation package. The listed range applies only to the base salary. Compensation will vary based on geographic location and level. Leveling, as well as positioning within a level, is determined by a range of factors, including, but not limited to, a candidate's relevant years of experience, domain knowledge, and interview performance. The salary range listed in this posting is representative of the range of levels Zoox is considering for this position. Zoox also offers a comprehensive package of benefits, including paid time off (e.g. sick leave, vacation, bereavement), unpaid time off, Zoox Stock Appreciation Rights, Amazon RSUs, health insurance, long-term care insurance, long-term and short-term disability insurance, and life insurance. About Zoox Zoox is developing the first ground-up, fully autonomous vehicle fleet and the supporting ecosystem required to bring this technology to market. Sitting at the intersection of robotics, machine learning, and design, Zoox aims to provide the next generation of mobility-as-a-service in urban environments. We're looking for top talent that shares our passion and wants to be part of a fast-moving and highly execution-oriented team. Follow us on LinkedIn Accommodations If you need an accommodation to participate in the application or interview process please reach out to or your assigned recruiter. A Final Note: You do not need to match every listed expectation to apply for this position. Here at Zoox, we know that diverse perspectives foster the innovation we need to be successful, and we are committed to building a team that encompasses a variety of backgrounds, experiences, and skills. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
09/15/2026
Full time
Job Description Job Description Zoox's Network Security team architects and defends the digital borders of the company - from corporate offices to engineering labs and product/mission environments. As a Network Security Engineer, you will design, implement, and operate security controls across Zoox's enterprise, OT networks, and cloud infrastructure spanning on-premises data centers and public cloud environments (AWS, GCP), partnering closely with Network Engineering, IT, Product Security, and Software Engineering teams. In This Role, You Will Design, implement, and maintain secure hybrid/multi-cloud network architectures (AWS/GCP, CloudWAN); enforce zero-trust access controls and network segmentation across corporate, data center, lab, and edge environments; develop and maintain related policies, standards, and architecture diagrams Own and operate next-generation firewall platforms (Palo Alto Networks, Fortinet), managing policy architecture, segmentation, NAT, URL filtering, SSL/TLS decryption, and threat prevention tuning Architect, operate, and own the lifecycle of secure remote access solutions (VPN, ZTNA, site-to-site tunnels), ensuring high availability, certificate-based authentication, and integration with identity providers (SAML, Entra ID) Drive automation and Infrastructure-as-Code (IaC) using Terraform, Python, CI/CD, and REST APIs for configuration management, firewall policies, and security baselines; integrate LLM-based tools to streamline operational tasks and reduce manual toil Oversee security operations including 24/7 network security monitoring, traffic analysis, threat detection, vulnerability assessments, and remediation; support compliance requirements by conducting security reviews for new projects and infrastructure changes Drive 802.1X/certificate-based Network Access Control (NAC) initiatives across wired and wireless environments Collaborate with team members and contribute to cross-functional security initiatives with Product Security, SRE, IT, and Software Engineering teams Qualifications 6+ years of network security engineering experience securing enterprise, cloud, and OT/lab environments Platform Expertise: Deep, hands-on expertise in next-gen firewalls (Palo Alto, Fortinet), AWS NFW, WAFs, IDS/IPS, NAC/802.1X, PKI, VPN, and ZTNA solutions (Zscaler, Netskope, Prisma Access, or equivalent) Technical Knowledge: Strong understanding of core network protocols (TCP/IP, BGP, OSPF, VLAN, 802.1X, TLS/PKI) and cloud networking security principles (AWS, GCP, or Azure) Automation: Hands-on experience with IaC and automation tooling including Terraform, Python, CI/CD pipelines, and REST APIs Security Operations: Experience with network security monitoring, threat detection, and security operations tooling (SIEM, IDS/IPS, vulnerability management platforms), including integration with network controls Compliance: Proven experience supporting major compliance initiatives (NIST 800-53, CSF 2.0, ISO 27001), including control implementation and evidence collection Bonus Qualifications Experience in autonomous vehicle, robotics, IT/OT or automotive environments Certifications: PCNSE, AWS Security Specialty, CCNA Experience experimenting with or deploying AI/ML-based security capabilities (e.g., anomaly detection, behavioral analytics, LLM-driven copilots) in network or cloud security workflows There are three major components to compensation for this position: salary, Amazon Restricted Stock Units (RSUs), and Zoox Stock Appreciation Rights. A sign-on bonus may be offered as part of the compensation package. The listed range applies only to the base salary. Compensation will vary based on geographic location and level. Leveling, as well as positioning within a level, is determined by a range of factors, including, but not limited to, a candidate's relevant years of experience, domain knowledge, and interview performance. The salary range listed in this posting is representative of the range of levels Zoox is considering for this position. Zoox also offers a comprehensive package of benefits, including paid time off (e.g. sick leave, vacation, bereavement), unpaid time off, Zoox Stock Appreciation Rights, Amazon RSUs, health insurance, long-term care insurance, long-term and short-term disability insurance, and life insurance. About Zoox Zoox is developing the first ground-up, fully autonomous vehicle fleet and the supporting ecosystem required to bring this technology to market. Sitting at the intersection of robotics, machine learning, and design, Zoox aims to provide the next generation of mobility-as-a-service in urban environments. We're looking for top talent that shares our passion and wants to be part of a fast-moving and highly execution-oriented team. Follow us on LinkedIn Accommodations If you need an accommodation to participate in the application or interview process please reach out to or your assigned recruiter. A Final Note: You do not need to match every listed expectation to apply for this position. Here at Zoox, we know that diverse perspectives foster the innovation we need to be successful, and we are committed to building a team that encompasses a variety of backgrounds, experiences, and skills. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.