Title: Cloud Network Security Architect / Engineer
Type: Contract
Job Description
We are seeking an experienced Cloud Network Security Architect / Engineer to design, implement, and secure enterprise AWS cloud network environments.
The ideal candidate will have strong hands-on experience with cloud network security, next-generation firewalls, AWS Gateway Load Balancer, Zero Trust architecture, traffic inspection, ingress/egress controls, and network security automation.
Key Responsibilities
- Design and implement secure AWS cloud network security architectures.
- Develop security solutions using Palo Alto Networks and/or FortiGate firewalls.
- Design and implement AWS Gateway Load Balancer (GWLB) architectures for centralized traffic inspection.
- Design secure ingress and egress traffic flows across AWS environments.
- Implement network segmentation based on Zero Trust security principles.
- Design and enforce security controls for north-south and east-west traffic.
- Develop secure VPC, subnet, routing, firewall, and inspection architectures.
- Implement threat inspection and traffic filtering across cloud environments.
- Integrate cloud network security controls with enterprise security architecture.
- Design highly available and resilient security infrastructure.
- Automate security and network configuration using Terraform, Python, Ansible, or similar technologies.
- Collaborate with cloud, network, cybersecurity, DevOps, and application teams.
- Troubleshoot complex network security, routing, and connectivity issues.
- Develop security architecture documentation, diagrams, standards, and operational procedures.
- Support security assessments, vulnerability remediation, and compliance requirements.
Required Skills
- Strong experience with AWS cloud networking and security.
- Hands-on experience with Palo Alto Networks and/or FortiGate firewalls.
- Strong knowledge of AWS Gateway Load Balancer (GWLB).
- Experience designing Zero Trust network security and segmentation.
- Strong understanding of ingress/egress traffic controls and security inspection.
- Knowledge of AWS VPC, Transit Gateway, routing, Security Groups, NACLs, and load balancing.
- Strong understanding of TCP/IP, DNS, routing, VPN, and network security concepts.
- Experience with Infrastructure-as-Code and automation.
- Strong troubleshooting and analytical skills.
- Ability to develop enterprise-level security architecture and technical documentation.
Preferred Qualifications
- AWS security or networking certification.
- Palo Alto PCNSE or equivalent firewall certification.
- Fortinet certification or equivalent experience.
- Experience with AWS Network Firewall and other cloud-native security services.
- Experience implementing cloud-based Zero Trust architectures.
- Strong Terraform, Python, or Ansible experience.
- Experience integrating cloud security with SIEM, SOC, and security monitoring platforms.
- Experience working in large enterprise or multi-cloud environments.