Location
Warsaw, Poland (30%); Off-site (70%)
Security Clearance
EU RESTRICTED
Deadline for Application
02.07.2026 r.
Specific Requirements
Desired Certifications
- CCSP (Certified Cloud Security Professional) or equivalent
- AZ-305: Designing Microsoft Azure Infrastructure Solutions or equivalent
Local Network Knowledge, Hands-on Experience
- Manage Palo Alto Firewalls using Panorama
- Manage Cisco Switching based networks
- Manage Palo Alto GlobalProtect at scale
- Internet edge forward-proxy / outbound security on Palo Alto
- Advanced troubleshooting (packet + firewall dataplane)
- Verification of security Firewall security rules
- Identification of gaps and provisions of improvements or corrections
- VPN design plus operations at scale
- 802.1X/EAP & NAC integration (provide examples of known specific brands)
Cloud Networking Knowledge, Hands-on Experience
- Hub-and-spoke / landing zone networking
- Design and operate VNets, subnets, peering (incl. cross-subscription)
- Segmentation, route isolation
- Network security enforcement: implementing and troubleshooting NSGs/ASGs, service tags
- "Why is this flow blocked" workflow using effective security rules
- Private access patterns: Private Link / Private Endpoints, Private DNS Zones
- DNS forwarding/resolution across on-prem to Azure
- Hybrid connectivity: operating and troubleshooting Site-to-Site VPN and/or ExpressRoute
- BGP basics, failover, throughput/MTU, tunnels, active/active patterns
SASE/SSE Hands-on Experience
- Remote access & ZTNA
- Traffic steering / routing
- TLS inspection / decryption operations
- Threat protection at the edge
- Identity integration
Migration Experience
- Phased rollout
- Exceptions handling
- Legacy apps
- Rollback strategy
- Stakeholder communications
Zero Trust Networking Knowledge, Hands-on Experience
- Policy based on identity + device posture
- Microsegmentation / least privilege
- Designing segmentation for east-west and north-south traffic
- Trust zones
- App dependency mapping
- Deny-by-default between segments
- Controlled egress
WAF / Load Balancer Knowledge
Administer, monitor and troubleshoot network security solutions specific to the domain
Minimum Requirements
- Minimum level of education: Level 4
- Minimum English language skills (CEFR): B2
- Minimum IT relevant professional experience (years): 5
- Minimum experience at similar position (years): 5
- Required certificates: CCNP Security or equivalent from other network vendors (e.g. Palo Alto certifications)
- Very good understanding of TCP/IP protocols, IP routing, Network Security Policies
- Good knowledge of network services like DNS, DHCP, NTP, etc.
- Good understanding of the wired and wireless access technologies (wifi, 802.1x/EAP etc.)
- Good understanding of the application-layer authentication and encryption mechanisms, e.g. HTTPS/SSL/TLS protocols, PKI and X.509 certificates
- Hands-on experience with the products and solutions related to the domain (e.g. Cisco routers and switches, wireless controllers, network firewalls etc.)
- Hands-on experience in administering a large enterprise network
- Good knowledge of the network configuration of the endpoint operating systems (Windows, Linux, IOS etc.)
- Work experience with stateful and stateless traffic filtering
Required Skills
- Excellent communication skills both technical and non-technical (in written and verbal communication)
- Very good analytical and trouble-shooting skills
- Open minded, excellent troubleshooting, analytical and problem solving skills
- Very strong sense of responsibility, accuracy and attention to details
- Sense of tact and diplomacy
- Friendly, supportive and helpful personality with cooperative and service-oriented attitude
- Ability to work in stressful environment with minimal supervision
- High level of motivation and initiative, creating thinking
- Proactive attitude and team-work spirit
Other
- Able to travel occasionally inside Europe (plane, boat, car etc.) up to 10 travels/year
- Driving license cat. B
- Ability to drive rented car, including abroad
Typical Tasks and Responsibilities
- Administering, monitoring and troubleshooting network security solutions specific to the domain
- Providing 2nd line support to Frontex system and network users
- Creating and updating technical documentation and operating procedures
- Advising on possible network security improvements, changes or upgrades