drjobs Senior Network Security Engineer

Senior Network Security Engineer

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Orange, FL - USA

Monthly Salary drjobs

$ 114332 - 142916

Vacancy

1 Vacancy

Job Description

Job Title: Senior Network Security Engineer

Department: Information Technology

Reports to: Director Network Technology
Location: In Office Orange CT

The base salary range for this position is dependent upon experience and location ranging from: $114332.80 $142916

Job Summary

We are seeking a highly skilledSenior Network Security Engineerto join our team and play a key role insecuring optimizing and transforming our enterprise network infrastructure. The ideal candidate will have deep expertise infirewall security NAT IPSEC SDWAN routing protocols (EIGRP BGP OSPF) and cloud security solutions. This position will focus on managing and enhancing our security infrastructure which includes:

  • Cisco ASA Checkpoint Fortinet FortiGate Palo Alto Firewalls.

  • Radware for DDoS protection.

  • Zscaler ZIA/ZPA for cloud security.

  • SDWAN for optimized global connectivity.

  • EIGRP BGP and OSPFbased network routing.

  • NAT policy design and implementation

A key initiative for this role is leading themigration from Checkpoint to Fortinet firewallswhile ensuring seamless network security operations. Additionally the engineer will support and enhance ourSDWAN deploymentfor optimized global connectivity and application performance.

Key Responsibilities

  • Lead themigration from Checkpoint to Fortinet includingpolicy conversion rule optimization and traffic validation.

  • Manage and maintainCisco ASA Palo Alto Fortinet and Checkpoint firewallsacross corporate cloud and remote sites.

  • Design and optimize firewall rule sets for improvedsecurity performance and compliance.

  • Performrisk assessments and firewall auditsto ensure network security best practices.

  • Manage and optimizeSDWAN architectureto improve application performance and reduce latency.

  • Implementpolicybased traffic steering failover mechanisms and WAN optimization.

  • Ensure seamlessintegration between SDWAN firewalls cloud security solutions and onprem networks.

  • TroubleshootSDWAN performance issues routing conflicts and connectivity problems.

  • Work with network and security engineers to ensuresecure connectivity between onpremises branch locations and cloud.

  • Design and implementNAT policies includingstatic NAT dynamic NAT and PAT (Port Address Translation).

  • Configure and troubleshootEIGRP BGP and OSPFfor enterprise and cloud routing.

  • Optimize routing policies to ensurehigh availability redundancy and performance.

  • Work closely with the network engineering team to enhanceSDWAN intersite and cloud connectivity.

  • Administer and optimizeZscaler ZIA/ZPA solutionsforsecure cloud access and web filtering.

  • Implementzerotrust security policiesfor cloud applications and remote users.

  • TroubleshootZscaler tunnels proxy configurations and application access issues.

  • Implement and maintainRadware DDoS protectionto safeguard network infrastructure from volumetric and applicationlayer attacks.

  • ConfigureIPS/IDS solutionsto detect and mitigate security threats.

  • Work withSOC teamsto analyze and respond to security incidents.

  • Leadfirewall SDWAN NAT and routing issue troubleshootingaffecting businesscritical applications.

  • Performpacket capture analysisand use security logs to diagnose network issues.

  • Work with vendors (Cisco Fortinet Palo Alto Zscaler) to resolve complex technical issues.

  • Develop and enforcefirewall and network security policiesin compliance withNIST CIS benchmarks and ISO 27001 standards.

  • Conductregular security audits and risk assessments.

  • Maintain uptodatedocumentation of firewall rules SDWAN policies and security configurations.

  • Developscripts (Python Bash PowerShell)for automating firewall audits and SDWAN policy updates.

  • Optimize firewall and SDWAN policies toreduce latency and improve efficiency.

  • Implementnetwork automation frameworksto streamline security operations.

Required Skills & Experience

  • 58 years of experienceinnetwork security engineering.

  • Expertise inFortinet FortiGate Checkpoint Palo Alto and Cisco ASA firewalls.

  • Strong knowledge ofSDWAN solutions (Fortinet SDWAN Cisco SDWAN Prisma Access).

  • Experience configuring and troubleshootingEIGRP BGP and OSPF routing protocols.

  • Handson experience managingZscaler ZIA/ZPAfor cloud security.

  • Proficiency inVPN technologies (IPSec SSL GRE DMVPN L2TP)and their security implications.

  • Strong skills inNAT firewall rule optimization and routing table analysis.

  • Experience withRadware DDoS protection IPS/IDS and threat mitigation.

  • Knowledge ofzerotrust security architectures and secure SDWAN implementation.

  • Strong analytical skills fortroubleshooting network security issues including packet captures and firewall logs.

Preferred Qualifications

  • Certifications:Fortinet NSE 4/7 Checkpoint CCSA/CCSE Palo Alto PCNSA/PCNSE Cisco CCNP Security Zscaler ZCCP SDWAN certifications.

  • Experience withAWS Azure and GCP cloud security best practices.

  • Familiarity withSIEM solutionsfor security event monitoring.

  • Experienceautomating security tasksusing Python Ansible or Terraform.

Company:

AVANGRID MANAGEMENT COMPANY LLC.

Mobility Information

Please note that any applicant who is not a citizen of the country of the vacancy will be subject to compliance with the applicable immigration requirements to legally work in that country.

At Avangrid we provide fair and equal employment and advancement opportunities for all employees and candidates regardless of race color religion national origin gender sexual orientation age marital status disability protected veteran status or any other status protected by federal state or local law.
If you are an individual with a disability or a disabled veteran who is unable to use our online tool to search for or to apply for jobs you may request a reasonable accommodation by contacting our People and Organization department at .

Avangrid employees may be assigned a system emergency role and in the event of a system emergency may be required to work outside of their regular schedule/job duties. This is applicable to employees that will work in Connecticut Maine Massachusetts and New York within Avangrid Network and Corporate functions. This does not include those that will work for Avangrid Power.

Job Posting End Date:

April212025

Required Experience:

Senior IC

Employment Type

Full Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.