Senior Network Security Engineer

Green Key Resources

New York (NY)

On-site

USD 120,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Green Key Resources is seeking a Network Security Engineer for a leading global financial services organization in New York. You will design, implement, and manage network security controls across on‑prem and cloud environments, focusing on firewalls, VPNs, IDS/IPS, and Zero Trust architectures.

The role emphasizes architecture reviews, cloud connectivity, and incident response support, with a strong emphasis on regulatory compliance and advanced threat protection.

Qualifications

  • Bachelor's degree or equivalent professional experience in IT/cybersecurity.
  • 5+ years of experience in network security engineering or related roles.
  • Strong experience administering enterprise firewall platforms such as Palo Alto, Check Point, Cisco Firepower, or Fortinet.
  • Hands-on experience supporting VPN technologies, network segmentation, IDS/IPS, proxy, and secure remote access.
  • Strong understanding of TCP/IP, DNS, DHCP, BGP, OSPF, routing, switching, and troubleshooting.
  • Experience with network packet analysis and Wireshark.
  • Experience supporting security monitoring, incident response, and vulnerability management.
  • Knowledge of cloud networking and cloud security concepts in Azure and Microsoft 365.
  • Strong understanding of cybersecurity principles, attack vectors, threat actor methodologies, and best practices.
  • Excellent analytical, troubleshooting, and communication skills.

Responsibilities

  • Design, implement, and maintain enterprise network security controls across corporate, cloud, and data center environments.
  • Administer and optimize next-generation firewalls, VPNs, IDS/IPS, secure web gateways, and NACs.
  • Develop and maintain network segmentation strategies for security, compliance, and operations.
  • Review and approve network security changes, firewall rules, VPN configurations, and routing changes.
  • Evaluate new technologies and recommend solutions to improve security visibility and efficiency.
  • Participate in architecture reviews and provide security guidance for network, cloud, and application initiatives.
  • Design secure connectivity for cloud platforms, branches, third-party vendors, and remote users.
  • Support Zero Trust and defense-in-depth architectures.
  • Monitor security events and investigate suspicious activity.
  • Develop reports and dashboards showing network security posture and risk.

Skills

Firewall administration
Network security architecture
Cloud security
Threat prevention
Secure network operations

Education

Bachelor's degree or equivalent in IT/Cybersecurity/CS

Tools

Palo Alto
Check Point
Cisco Firepower
Fortinet
Wireshark

Job description

A leading global financial services organization is seeking a Network Security Engineer to join its Information Security and Infrastructure teams. This position will be responsible for the design, implementation, administration, and continuous improvement of network security technologies that protect critical business systems, cloud platforms, market-facing applications, and enterprise infrastructure.

The ideal candidate will possess a strong background in firewall administration, network security architecture, cloud security, threat prevention, and secure network operations within a highly regulated environment. This individual will partner closely with cybersecurity, infrastructure, cloud, networking, and application teams to strengthen the organization's security posture while supporting business growth and operational stability.

Key Responsibilities
Network Security Engineering
  • Design, implement, and maintain enterprise network security controls across corporate, cloud, and data center environments.
  • Administer and optimize next-generation firewalls, VPN technologies, intrusion detection and prevention systems, secure web gateways, and network access controls.
  • Develop and maintain network segmentation strategies that support security, compliance, and operational requirements.
  • Review and approve network security changes, firewall rules, VPN configurations, and routing modifications.
  • Evaluate new technologies and recommend solutions that improve network security, visibility, and operational efficiency.
Security Architecture & Infrastructure Protection
  • Participate in architecture reviews and provide security guidance for network, cloud, and application initiatives.
  • Design secure connectivity solutions for cloud platforms, branch offices, third‑party vendors, and remote users.
  • Support implementation of Zero Trust and defense‑in‑depth security architectures.
  • Ensure security controls are aligned with organizational standards, regulatory requirements, and industry best practices.
  • Monitor network security events and investigate suspicious activity.
  • Tune and optimize security monitoring tools to improve threat detection and reduce false positives.
  • Assist with threat hunting, forensic investigations, and incident response activities.
  • Develop reporting and dashboards that provide visibility into network security posture and operational risk.
Vulnerability & Risk Management
  • Conduct network security assessments and identify vulnerabilities within enterprise infrastructure.
  • Partner with infrastructure teams to prioritize remediation and reduce risk exposure.
  • Evaluate security risks associated with network changes, cloud deployments, and third‑party integrations.
  • Provide recommendations for mitigating identified threats and vulnerabilities.
  • Secure connectivity between on‑premises infrastructure and cloud environments.
  • Support security controls within Microsoft Azure and Microsoft 365 environments.
  • Implement secure access controls, network monitoring, and cloud security best practices.
  • Partner with cloud engineering teams to ensure consistent security standards across hybrid environments.
Governance, Compliance & Documentation
  • Develop and maintain network security standards, procedures, and technical documentation.
  • Support internal audits, regulatory examinations, penetration tests, and security assessments.
  • Assist with compliance initiatives aligned to frameworks such as NIST, CIS Controls, ISO 27001, and financial services cybersecurity requirements.
  • Maintain accurate documentation of network architecture, security controls, and operational procedures.
Required Qualifications
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field, or equivalent professional experience.
  • 5+ years of experience in network security engineering, network infrastructure, or cybersecurity roles.
  • Strong experience administering enterprise firewall platforms such as Palo Alto, Check Point, Cisco Firepower, or Fortinet.
  • Hands‑on experience supporting VPN technologies, network segmentation, IDS/IPS solutions, proxy technologies, and secure remote access platforms.
  • Strong understanding of TCP/IP, DNS, DHCP, BGP, OSPF, routing, switching, and network troubleshooting.
  • Experience with network packet analysis and diagnostic tools such as Wireshark.
  • Experience supporting security monitoring, incident response, and vulnerability management initiatives.
  • Knowledge of cloud networking and cloud security concepts within Microsoft Azure and Microsoft 365 environments.
  • Strong understanding of cybersecurity principles, attack vectors, threat actor methodologies, and security best practices.
  • Excellent analytical, troubleshooting, and communication skills.
Preferred Qualifications
  • Experience within financial services, banking, capital markets, or other highly regulated industries.
  • Experience supporting Palo Alto firewalls, Prisma Access, GlobalProtect, or similar enterprise platforms.
  • Familiarity with SIEM technologies such as Microsoft Sentinel, Splunk, QRadar, or LogRhythm.
  • Experience with cloud security services, Zero Trust architecture, and network access control solutions.
  • Knowledge of DDoS mitigation, web application firewalls, and enterprise traffic inspection technologies.
  • Experience with endpoint security, identity security, and Microsoft security platforms.
  • Industry certifications including CISSP, CCSP, PCNSE, CCNP Security, Fortinet NSE, or equivalent credentials.
Desired Characteristics
  • Strong ownership mentality and commitment to operational excellence.
  • Ability to balance security requirements with business objectives.
  • Excellent collaboration skills and ability to work across technical and non‑technical teams.
  • Effective communicator capable of presenting security concepts to a variety of audiences.
  • Continuous learner with a passion for cybersecurity, emerging threats, and evolving technologies.
  • Ability to remain calm and decisive during critical incidents and high‑priority operational events.
Why Join Us

This role offers the opportunity to work within a sophisticated financial services environment where network security is critical to business operations. You will play a key role in securing enterprise infrastructure, enhancing cybersecurity capabilities, and partnering with technology leaders to support strategic initiatives across cloud, network, and security domains.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Network Security Engineer
Network Security Engineer

Vivid Resourcing • United States

On-site
USD 100,000 - 140,000
Networking & Security Engineer
Networking & Security Engineer

Capula Investment Management LLP • New York (NY)

On-site
USD 100,000 - 130,000
Network Security Engineer
Network Security Engineer

10xTalents • Newtown (PA)

On-site
USD 100,000 - 130,000
Network Security Engineer
Network Security Engineer

Liquid-Env-Solutions-of-Texa • Irving (TX)

On-site
USD 95,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

Qualibar • United States

Hybrid
USD 120,000 - 180,000
Senor Network Engineer
Senor Network Engineer

Private Label Staff • Tallahassee (FL)

On-site
USD 110,000 - 150,000
Network Security Engineer
Network Security Engineer

Liquid Environmental Solutions Corporation • Irving (TX)

On-site
USD 110,000 - 160,000
Network Security Engineer- remote with light travel
Network Security Engineer- remote with light travel

Calance • Detroit (MI)

Hybrid
USD 110,000 - 165,000
Senior Security Engineer
Senior Security Engineer

Green Key Resources • New York (NY)

Hybrid
USD 140,000 - 190,000
Hybrid work environment
Senior Network Engineer
Senior Network Engineer

Teal Drones • Salt Lake City (UT)

On-site
USD 120,000 - 180,000