Network Security Engineer

Intone Inc

New York, Northern (NY, KY)

Hybrid

USD 120,000 - 160,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Intone Inc. is seeking a Network Security Engineer for a 12+ month contract in New York City. You will design, implement, and maintain robust network security across diverse IT environments, ensuring confidentiality, integrity, and availability of data and systems.

The role involves configuring Palo Alto and Fortinet devices, Cisco ACI, Defender, Zscaler, and VPNs; conducting vulnerability assessments; and leading incident response in line with FISMA and FedRAMP.

Qualifications

  • Hands-on Palo Alto design, architecture, configuration, deployment, and management exposure.
  • Strong knowledge of network security framework concepts and secure design practices.
  • Experience with Cisco ACI, Palo Alto Firewalls, and Fortinet solutions.
  • Experience with Microsoft Defender, Zscaler, and Carbon Black security products.
  • Network engineering experience including switch work, VLANs, and routing protocols (OSPF/BGP).
  • Bachelor’s degree and solid networking fundamentals (TCP/IP, DHCP/DNS).
  • Hands-on firewall management, network support tools (SolarWinds, PRTG), load balancing, and high availability setups.
  • Ability to analyze traffic with Fiddler/Wireshark; perform security hardening; threat intel analysis.
  • Understanding of PCI DSS and ITIL processes; SDLC adherence for secure deployments.

Responsibilities

  • Design, implement, and maintain network security across diverse IT environments.
  • Configure and manage Palo Alto, Fortinet, Cisco ACI, Defender, Zscaler, and VPN solutions.
  • Perform vulnerability assessments and penetration testing of LAN/WAN/SAN and cloud infra (AWS, GCP).
  • Monitor networks with SIEM tools, analyze logs, and drive incident response.
  • Hardening operating systems (Linux, Windows, macOS, UNIX variants).
  • Manage encryption protocols (IPsec, SSL/TLS, PKI, FIPS) for data in transit and at rest.
  • Lead disaster recovery planning and incident response aligned with FISMA and FedRAMP.
  • Manage firewall rules, VPN configs, logs, and DLP activities.
  • Occasional hands-on work at data centers as needed.

Skills

Palo Alto
Cisco ACI
Fortinet
Microsoft Defender
Zscaler
Carbon Black
Network security framework
OSPF/BGP routing
LAN/WAN concepts
Firewall management
Threat intelligence
ITIL
SDLC security
VLAN configuration

Education

Bachelor’s degree

Tools

SolarWinds
PRTG
Fiddler
Wireshark
GPOs
Ansible
Terraform

Job description

We are seeking a Network Security Engineer for a contract position (12+ months) based in New York City, New York. In this role, you will design, implement, and maintain robust network security measures across diverse IT infrastructure environments, ensuring the confidentiality, integrity, and availability of organizational data and systems. You will work with cutting-edge security technologies, influence security policies, and respond proactively to emerging threats.

Responsibilities
  • Develop and enforce comprehensive network security strategies aligned with industry standards such as NIST and ISO 27000 to protect organizational assets.
  • Configure and manage network security devices including Palo Alto firewalls, Fortinet solutions, Cisco ACI, Microsoft Defender, and VPN solutions for secure remote access.
  • Conduct vulnerability assessments and penetration testing to identify potential weaknesses within LAN, WAN, SAN, and cloud infrastructure environments such as AWS and Google Cloud Platform.
  • Monitor network traffic using SIEM tools to detect suspicious activities, perform log analysis, and initiate incident response procedures promptly.
  • Implement system hardening techniques on operating systems including Linux (Debian, CentOS, Ubuntu), Windows, macOS, and UNIX variants to minimize attack surfaces.
  • Manage encryption protocols such as IPsec, SSL/TLS, PKI (Public Key Infrastructure), and FIPS standards to secure data in transit and at rest across diverse platforms.
  • Lead incident recovery efforts by executing disaster recovery plans, system security plans, and threat detection and response strategies in accordance with FISMA and FedRAMP compliance requirements.
  • Manage firewall rules, upgrades, VPN configurations, logs, and DLP (Data Loss Prevention) activities.
  • Perform some physical work at datacenter locations as needed.
Qualifications
  • Required
    • Hands‑on Palo Alto design, architecture, configuration, deployment, and management experience.
    • Strong network security framework knowledge and experience.
    • Strong experience with Cisco ACI, Palo Alto Firewall, and Fortinet solutions.
    • Experience with Microsoft Defender, Zscaler, and Carbon Black.
    • Network experience including switch replacement, vulnerability assessment, VLAN configuration, and routing protocols (OSPF/BGP).
    • Bachelor’s degree.
    • Extensive knowledge of computer networking concepts including LAN/WAN architecture, routing protocols (OSPF, BGP), TCP/IP stack, DHCP/DNS services, and network protocols.
    • Hands‑on experience with firewall management, network support tools (SolarWinds, PRTG), load balancing solutions, and high availability configurations.
    • Ability to analyze network traffic using tools such as Fiddler or Wireshark; conduct computer forensics; implement system security hardening measures; perform threat intelligence analysis.
    • Understanding of compliance standards such as PCI DSS; experience with incident management frameworks such as ITIL; adherence to SDLC processes for secure software deployment.
  • Preferred
    • 5+ years of network security experience.
    • 3+ years of experience with Zscaler.
    • 3+ years of experience with Carbon Black.
    • 5+ years of experience with Palo Alto Firewalls.
    • 5+ years of experience with FortiGate.
    • Proficiency in scripting languages such as Python or Bash for automation of security tasks and system administration activities.
    • Strong understanding of vulnerability management frameworks such as DREAD or CVSS; experience with vulnerability research and assessment tools.
    • Familiarity with cloud computing platforms (AWS, Azure) including cloud architecture design principles for secure deployment.
    • Knowledge of identity and access management (IAM), RBAC policies, SSO integrations (Active Directory), LDAP directories, GPOs, and open-source tools such as Ansible or Terraform for infrastructure automation.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Network Security Engineer
Network Security Engineer

Vivid Resourcing • United States

On-site
USD 100,000 - 140,000
Network Security Engineer
Network Security Engineer

10xTalents • Newtown (PA)

On-site
USD 100,000 - 130,000
Contract Network Security Engineer – Palo Alto & Cloud
Contract Network Security Engineer – Palo Alto & Cloud

Intone Inc • New York (NY), Northern (KY)

Hybrid
USD 120,000 - 160,000
Network Security Engineer
Network Security Engineer

Bee Talent Solutions • Foster City (CA)

On-site
USD 110,000 - 140,000
Network Security Engineer
Network Security Engineer

Phaxis • Providence (RI)

On-site
USD 110,000 - 150,000
Network Security Engineer
Network Security Engineer

Recru • Houston (TX)

On-site
USD 100,000 - 120,000
Network Security Engineer
Network Security Engineer

EASTERN DATACOMM INC • North Carolina

Hybrid
USD 120,000 - 160,000
Competitive salary
Performance bonuses
401(k) with company match
+2
Network Security Engineer
Network Security Engineer

Tiger Advisory • New York (NY)

Hybrid
USD 120,000 - 180,000
Network Security Engineer
Network Security Engineer

NMC2 • Dallas (TX)

On-site
USD 100,000 - 120,000
Network Security Engineer
Network Security Engineer

Mindlance • Torrance (CA)

On-site
USD 90,000 - 130,000