# Cloud Network Security Architect / EngineerGeorgia IT, Inc.**Title: Cloud Network Security Architect / Engineer****Location: Brazil (Remote)****Type: Contract****Job Description**We are seeking an experienced **Cloud Network Security Architect / Engineer** to design, implement, and secure enterprise AWS cloud network environments.The ideal candidate will have strong hands-on experience with cloud network security, next-generation firewalls, AWS Gateway Load Balancer, Zero Trust architecture, traffic inspection, ingress/egress controls, and network security automation.**Key Responsibilities*** Design and implement secure **AWS cloud network security architectures**.* Develop security solutions using **Palo Alto Networks and/or FortiGate** firewalls.* Design and implement **AWS Gateway Load Balancer (GWLB)** architectures for centralized traffic inspection.* Design secure ingress and egress traffic flows across AWS environments.* Implement network segmentation based on **Zero Trust security principles**.* Design and enforce security controls for north-south and east-west traffic.* Develop secure VPC, subnet, routing, firewall, and inspection architectures.* Implement threat inspection and traffic filtering across cloud environments.* Integrate cloud network security controls with enterprise security architecture.* Design highly available and resilient security infrastructure.* Automate security and network configuration using **Terraform, Python, Ansible, or similar technologies**.* Collaborate with cloud, network, cybersecurity, DevOps, and application teams.* Troubleshoot complex network security, routing, and connectivity issues.* Develop security architecture documentation, diagrams, standards, and operational procedures.* Support security assessments, vulnerability remediation, and compliance requirements.**Required Skills*** Strong experience with **AWS cloud networking and security**.* Hands-on experience with **Palo Alto Networks and/or FortiGate firewalls**.* Strong knowledge of **AWS Gateway Load Balancer (GWLB)**.* Experience designing **Zero Trust network security and segmentation**.* Strong understanding of ingress/egress traffic controls and security inspection.* Knowledge of AWS VPC, Transit Gateway, routing, Security Groups, NACLs, and load balancing.* Strong understanding of TCP/IP, DNS, routing, VPN, and network security concepts.* Experience with Infrastructure-as-Code and automation.* Strong troubleshooting and analytical skills.* Ability to develop enterprise-level security architecture and technical documentation.**Preferred Qualifications*** AWS security or networking certification.* Palo Alto PCNSE or equivalent firewall certification.* Fortinet certification or equivalent experience.* Experience with AWS Network Firewall and other cloud-native security services.* Experience implementing cloud-based Zero Trust architectures.* Strong Terraform, Python, or Ansible experience.* Experience integrating cloud security with SIEM, SOC, and security monitoring platforms.* Experience working in large enterprise or multi-cloud environments.expand\\_moreO modelo informado é PJ. Benefícios e jornada estão no anúncio.Perfil alinhado a Infraestrutura. Stack, senioridade e responsabilidades estão no anúncio.expand\\_more