Principal RAN Security Engineer
Ashburn, IL - USA
Job Summary
When you join Verizon
You want more out of a career. A place to share your ideas freely even if theyre daring or different. Where the true you can learn grow and thrive. At Verizon we power and empower how people live work and play by connecting them to what brings them joy. We do what we love driving innovation creativity and impact in the world. Our V Team is a community of people who anticipate lead and believe that listening is where learning crisis and in celebration we come together lifting our communities and building trust in how we show up everywhere & always. Want in Join the #VTeamLife.
What youll be doing
The Global Network & Technology team seeks highly motivated Network Security Engineer to secure and harden Verizons critical Radio Access Networks Terrestrial Non-Terrestrial and In-Building.
This role requires candidates to translate high-level security frameworks into concrete configurations for devices like Cell Site Routers eNBs out of band networks focusing on security implementation beyond a standard firewall scope. The role requires deep expertise in network protocols hands-on experience with Routers/switches SIEM tools (especially SPLUNK and ISE) and a strong focus on automation threat detection incident response and continuous security validation across the organization. The Principal Engineer will specifically set strategic direction and define architectural patterns for long-term resilience.
Key Responsibilities:
Lead the design architecture and implementation of cutting-edge network security solutions to address technology gaps.
Act as the security subject matter expert in network design reviews ensuring that all network assets meet stringent carrier-grade security standards and embed secure design patterns.
Drive continuous improvement of network visibility and telemetry collection conduct proactive threat hunting and serve as escalation support for network security incidents.
Execute root cause analysis for incidents perform regular security control assessments and lead strategic security solution implementation in a highly scalable environment.
Develop essential technical documentation including Playbooks Confluence pages Network diagrams and Method of Procedures (MOPs).
Drive security architecture lead policy implementation manage incident response and integrate security principles early into the development lifecycle.
Leverage tools or custom automation eg: Python Ansible playbooks to run automated audits against security benchmarks ensuring zero configuration drift.
Analyze network logs and configurations to identify vulnerabilities recommend & build proactive mitigations.
Develop comprehensive assessment reports and provide prioritized recommendations for remediations.
Identifying opportunities to mentor guide and delegate technical documentation/tasks to support the team and broader organization
Where youll be working
In this hybrid role youll have a defined work location that includes work from home and assigned office days in one of the offices listed for this order to be eligible to apply for this position you must be within commuting distance of one of those locations.
What were looking for...
Youll need to have:
Bachelors degree or four or more years of work experience.
Six or more years of relevant experience required demonstrated through one or a combination of work and/or military experience or specialized training.
Experience in securing RAN technologies (Diameter GTP eCPRI/CPRI) and a wide array of network devices such as Cell Site Routers eNBs gNBs FWA In-Building solutions and non-terrestrial networks. Knowledge of Internet protocols Software-Defined Networking (SDN) OTNGN and Hub & Spoke architectures.
Strong practical experience with Splunk/SIEM tools is necessary for data analysis dashboard creation alerting automation risk-based alerting managing notable events and defining/tuning correlation searches. Familiarity with Identity and Access Management (IAM) solutions is also beneficial.
Demonstrated leadership skills along with the ability to lead and manage cross-functional projects build consensus resolve conflict negotiate and possess strong analytical communication and programming skills including 3-5 years of experience with Python.
Even better if you have one or more of the following:
Certifications like CCIE (Service Provider or Security) or Nokia NRS II/SRA. Additional certifications such as CISSP CompTIA Security OSCP CCNP CCIE or CCNA are beneficial.
Expertise in using Python Ansible or Terraform to automate network device configurations and operations.
Competence in using Splunk or Elasticsearch for network data analysis creating dashboards setting up alerts and handling large-scale internet data sources (Netflow BGP DNS IDS logs).
Knowledge of Firewalls VPNs IDS/IPS DDoS mitigation encryption technologies (IPsec TLS) identifying vulnerabilities in RAN and Security Information and Event Management (SIEM) tools like Splunk.
Familiarity with Network Function Virtualization (NFV) Identity and Access Management (IAM) solutions the system development lifecycle mitigating network/system/application layer attacks and working with SQL/NoSQL databases and UNIX/Linux operating systems.
Strong organizational project management and written/verbal communication abilities with the capacity to collaborate with various stakeholders and demonstrate leadership and mentoring skills.
Fluency in security frameworks particularly the application of CIS Benchmarks (Level 1 & 2 hardening) and mitigating MITRE ATT&CK Tactics Techniques and Procedures (TTPs) on network devices along with a solid understanding of network security fundamentals.
Where youll be working
Scheduled Weekly Hours
40Equal Employment Opportunity
Verizon is an equal opportunity employer. We evaluate qualified applicants without regard to veteran status disability or other legally protected characteristics.
Benefits and Compensation
Our benefits are designed to help you move forward in your career and in areas of your life outside of Verizon. From health and wellness benefit options including: medical dental vision short and long term disability basic life insurance supplemental life insurance AD&D insurance identity theft protection pet insurance and group home & auto insurance. We also offer a matched 401(k) savings plan up to 8 company paid holidays per year and up to 6 personal days per year paid parental leave adoption assistance and tuition assistance plus other incentives weve got you covered with our award-winning total rewards package. Depending on the role employees have the opportunity to receive compensation in the form of premium pay such as overtime shift differential holiday pay allowances etc. Newly hired employees receive up to 15 days of vacation per year which grows with additional service. For part-timers your coverage will vary as you may be eligible for some of these benefits depending on your individual circumstances.
The salary will vary depending on your location and confirmed job-related skills and experience. This is an incentive based position with the potential to earn more. For part-time roles your compensation will be adjusted to reflect your hours.The annual salary range for the location(s) listed on this job requisition based on a full-time schedule is: $120500.00 - $231000.00.Required Experience:
Staff IC
About Company
Shop Verizon smartphone deals and wireless plans on the largest 4G LTE network. First to 5G. Get Fios for the fastest internet, TV and phone service.