Responsibilities
Responsibilities of the Network Security Engineer are:
- Effectively design, develop, engineer, and implement access management and control network security solutions.
- Define and maintain role-based access control through determining and documenting the access rights necessary for each role within the enterprise to successfully carry out its assigned duties.
- Research and implement security tools such as biometrics, smart cards, secure remote access, VPN, Intrusion detection, port scanning, and web security as appropriate for each project, technology, and/or tool.
- Design and deploy security solutions on end-user devices which require user authentication via enterprise-managed VPN and authentication services before allowing access to enterprise resources, applications, and data.
- Diligently use processes and tools to assign and manage authorization for user account credentials (administrator accounts and service accounts) to enterprise assets and software.
- Establish and follow an “add and/or change access” process, preferably automated, for granting enterprise assets access rights to new hires, existing users, and/or role/job changes.
- Oversee and improve network security.
- Complete vulnerability assessments and necessary remediation, including documentation for lessons learned and knowledge base.
- Proactively establish, implement, and actively manage the tracking reporting, and correction of network devices, to prevent attackers from exploiting vulnerable network services and access points.
Required Qualifications
Education: A Bachelor’s Degree from an accredited college or university with a major in Computer Science, Information Systems, or equivalent work experience.
Certification: CompTIA Security+ or equivalent certification required.
Minimum Experience:
- 8+ years in Information Technology including 5+ years in Information Security.
- Experience with installing and supporting Palo Alto Security applications (hardware/virtual).
- Remote user access technologies including Global Protect.
- Experience with Wireshark and/or other protocol analyzers.
- Certificate Management and authentication methodologies, including 2FA, RADIUS, LDAP, and AD.
- Practical experience with SASE, Prisma Access, or SD-WAN architectures and providers.
- Strong networking skills with routing, BGP, OSPF, WAN, etc.
- Strong Microsoft Azure experience.
- Excellent written and communication skills.