Network Security Specialist Senior (SWG)

tsys

Cincinnati (OH)

Hybrid

USD 140,000 - 170,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

tsys is seeking a Network Security Engineer Senior Specialist to drive a global zero-trust transformation. You will lead Secure Access architecture, leverage Zscaler and Palo Alto platforms, and implement scalable security controls across internet access and private apps.

The role demands deep hands-on expertise in SWG/Proxy, SASE, and enterprise security, with a focus on reliability, automation, and cross-functional collaboration.

Qualifications

  • Bachelor's degree and 12+ years in network security at scale.
  • Extensive hands-on experience with Zscaler and Palo Alto platforms.
  • Strong TCP/IP, TLS, DNS, and Zero Trust concepts.

Responsibilities

  • Lead Secure Access and Zero Trust transformation across global enterprise.
  • Own architecture, engineering, and optimization of Zscaler and Palo Alto platforms.
  • Design and implement scalable security controls for internet access and private app access.
  • Drive operations, telemetry, and SIEM integration for performance.
  • Mentor engineers and collaborate across teams.

Skills

Network security
Zero Trust
SASE
SWG/Proxy
Zscaler
Palo Alto

Education

Bachelor's degree

Tools

Zscaler ZIA/ZPA
Palo Alto Panorama
Prisma Access
NGFW
SIEM

Job description

Job Description

This position is not eligible for visa sponsorship, now or in the future. Candidates must be a US Citizen or Green Card Holder

This position is hybrid 3 days per week in either our Cincinnati, OH (preferred) or Atlanta, GA office

Are you ready to write your next chapter?

Make your mark at one of the biggest names in payments. We're looking for a Network Security Engineer Senior Specialist to join our ever-evolving Edge&Network Security team and help us unleash the potential of every business.

This role is responsible for strengthening, modernizing, and evolving our secure access and network security platforms across a global enterprise environment, while leading the organization's Zero Trust transformation journey. This is a hands-on technical leadership role focused primarily on Secure Web Gateway (SWG), Proxy, SASE, Secure Access, and Zero Trust architectures, with responsibility for driving strategy, architecture, adoption, and continuous improvement across related network security capabilities, including IPS/IDS and firewall-adjacent controls.

Our core platforms include Zscaler (ZIA / ZPA) and Palo Alto Networks technologies, including Panorama, on-prem NGFW, cloud NGFW, Threat Prevention, and Prisma Access.

On-Call Expectations: Participate in a rotating on-call schedule for incidents. Act as a senior escalation point for major issues affecting secure access, proxy, SASE, or related network security services. Contribute to post-incident analysis and ensure durable corrective actions are implemented. Participate in readiness activities, operational reviews, and resilience improvements for critical control-plane services.

On-Call Schedule:

Weekdays: 10 am - 10 pm ET (rotates between 4 colleagues)

Weekends: 10 pm Friday - 10 pm Sunday ET ( rotates between 7 colleagues

What you'll own:
  • Lead the organization's Secure Access and Zero Trust transformation journey, providing technical leadership and strategic direction for SASE, SWG, Proxy, Secure Access, and related network security services.
  • Own the architecture, engineering, and continuous improvement of Zscaler (ZIA/ZPA), Palo Alto (Panorama, NGFW, Threat Prevention, Prisma Access), and associated security platforms across a global enterprise environment.
  • Design, implement, and optimize scalable security controls and policies for internet access, private application access, SSL inspection, traffic steering, threat prevention, and Zero Trust access models.
  • Drive operational excellence and platform reliability through standardization, tuning, automation, telemetry improvements, SIEM integration, and data-driven performance metrics.
  • Lead high-quality change management and major initiatives, including rollout planning, validation, risk mitigation, rollback readiness, and post-implementation reviews.
  • Serve as the senior technical authority and final escalation point for complex issues, high-risk changes, major incidents, and cross-functional initiatives impacting critical security services.
  • Mentor engineers and partner with security, infrastructure, operations, application teams, and vendors to establish best practices, improve operational maturity, and deliver secure, resilient, and scalable services.
What you’ll bring
  • Bachelor's degree in a related field and 12+ years of experience, or equivalent practical experience, with extensive experience in network security and security engineering within large-scale enterprise environments.
  • Deep hands-on expertise with Zscaler technologies and Secure Access architectures, including ZIA, ZPA, SWG, Proxy, SASE, SSL Inspection, Traffic Steering, and Zero Trust deployments at enterprise scale.
  • Strong experience with Palo Alto security platforms, including Panorama, NGFW, Threat Prevention, Prisma Access, and cloud-delivered security services.
  • Expert-level knowledge of networking and security fundamentals, including TCP/IP, TLS, DNS, routing, NAT, certificates, identity-aware access, cloud networking, and Zero Trust principles.
  • Demonstrated ability to lead large-scale security initiatives, influence architecture and technical direction, establish engineering standards, and drive operational maturity.
  • Experience serving as a senior escalation point for major incidents and complex enterprise-wide issues, balancing security, resiliency, operational efficiency, and user experience in global environments.
  • Proven leadership, mentoring, and stakeholder management skills, with the ability to collaborate effectively across security, infrastructure, cloud, application, operations, and executive teams.
It's a bonus if you have
  • Experience developing automation and Infrastructure-as-Code solutions using Terraform, Python, APIs, Git, and CI/CD pipelines to improve operational efficiency and platform consistency.
  • Experience with WAF technologies (Akamai, Cloudflare, or F5 Distributed Cloud) and application security controls.
  • Experience with cloud-native and hybrid security architectures across multi-cloud and ente
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Network Security Specialist Senior (SWG)
Network Security Specialist Senior (SWG)

RiseMe • Cincinnati (OH)

Hybrid
USD 120,000 - 180,000
Senior Specialist Network Security
Senior Specialist Network Security

Linde • Houston (TX)

On-site
USD 120,000 - 180,000
Senior Network Security Architect
Senior Network Security Architect

Stellent IT LLC • San Jose (CA)

On-site
USD 180,000 - 240,000
Senior Manager, Zscaler
Senior Manager, Zscaler

Vanguard • Wayne (PA)

On-site
USD 100,000 - 130,000
Network Security Specialist Senior (SWG)
Network Security Specialist Senior (SWG)

Global Payments • Cincinnati (OH)

On-site
USD 120,000 - 180,000
Palo Alto Firewalls Engineer
Palo Alto Firewalls Engineer

Liberty Personnel Services, Inc. • Houston (TX)

On-site
USD 120,000 - 170,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Eliassen Group • Cary (NC)

Hybrid
USD 130,000 - 135,000
Sr Network Security Engineer
Sr Network Security Engineer

brobstongroup.com - Jobboard • Seattle (WA)

Hybrid
USD 120,000 - 160,000
Senior Security Solutions Engineer
Senior Security Solutions Engineer

ConRes • Bedford (MA)

On-site
USD 155,000 - 175,000
Senior Manager, Zscaler
Senior Manager, Zscaler

Vanguard • Scottsdale (AZ)

On-site
USD 140,000 - 190,000