Sr. Network Security Engineer

Newell Brands

Atlanta, Northern (GA, KY)

Hybrid

USD 120,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Newell Brands in Atlanta is seeking a Senior Network Security Engineer to lead network segmentation efforts across IT, OT, and cloud. You will design, validate, and enforce security controls, partnering with infrastructure and business teams to reduce the enterprise attack surface.

You will drive adoption of Zero Trust principles, coordinate with Security Engineering, and advance secure network architectures across a multi-site footprint.

Qualifications

  • 5+ years hands-on network security engineering experience.
  • Experience designing and validating network segmentation across multiple sites.
  • Knowledge of Zero Trust Network Access (ZTNA).
  • Experience with cloud network security in Azure, AWS, or GCP.
  • Familiarity with firewall policy management and runbooks.
  • Understanding OT/ICS networks (Purdue Model, IEC 62443).
  • Strong documentation: diagrams, runbooks, and network design docs.
  • Bachelor's degree in a related field or equivalent practical experience.

Responsibilities

  • Own and drive the network segmentation roadmap with firewall rules.
  • Architect zone boundaries and trusted relationships per Zero Trust.
  • Lead app-ID and User-ID based segmentation initiatives.
  • Design microsegmentation for OT, data centers, cloud, and POS segments.
  • Specify cloud network security controls and cloud-to-premises connectivity.
  • Collaborate with OT Security to design DMZ and traffic flow.
  • Conduct architecture reviews to identify trust boundary gaps.
  • Validate firewall rules against segmentation designs.
  • Maintain runbooks and configuration baselines.
  • Use AI tools to accelerate policy analysis and docs.

Skills

Firewall policy
Network segmentation
ZTNA concepts
Cloud security (Azure/AWS/GCP)
Documentation skills

Education

Bachelor's degree in Computer Science, Network Engineering, Information Security, or equivalent

Tools

Policy orchestration tools
Change management platforms

Job description

Search by Keyword, Job Title or Location

Select how often (in days) to receive an alert:

Newell Brands is a leading consumer products company with a portfolio of iconic brands like Graco®, Coleman®, Oster®, Rubbermaid®, Sharpie® and Yankee Candle® - and 24,000 talented teammates around the world. Our culture is built on values in action: Integrity, Teamwork, Passion for Winning, Ownership, and Leadership. We work together to win, grow, and make a real impact—supported by a high-performing, inclusive, and collaborative environment where you can be your best, every day.

Job Summary:

The Senior Network Security Engineer provides dedicated engineering capacity to accelerate Newell Brands network segmentation buildout and materially reduce lateral movement risk across the enterprise. This role is the hands‑on technical lead for network segmentation architecture and enforcement of network security controls across IT, OT, and cloud environments within Newell’s global multi‑site footprint. The engineer does not just design; they design, validate, and partner across infrastructure and business stakeholders to drive adoption of controls that reduce real‑world attack surface.

Key Responsibilities:
  • Own and drive execution of the network segmentation roadmap, translating architecture designs into firewall rule requirements, validated post‑implementation with the network team
  • Architect and support network zone boundaries, trust relationships, and inter‑zone communication rules aligned to Zero Trust principles
  • Drive the strategic shift from port/protocol-based to App-ID and User-ID driven segmentation, integrating identity‑based access controls across sites
  • Lead microsegmentation design for high‑risk environments including manufacturing OT, data center, cloud connected, and retail POS segments
  • Architect and specify cloud network security controls — network segmentation, cloud firewall policy, and secure cloud‑to‑on‑prem connectivity
  • Partner with the OT Security Specialist to design and support IT/OT demilitarized zone architecture and manage converged traffic flow design safely
  • Conduct and document network architecture reviews to identify trust boundary gaps, flat network zones, and legacy segment exposure
  • Specify and validate firewall rules against segmentation design and security baselines across IT and OT environments
  • Drive firewall rule lifecycle reviews: review and tune rule sets, identify unused or overly permissive rules, and coordinate remediation with the network team
  • Review and approve firewall change requests for security impact, and verify post‑implementation rule accuracy
  • Build and maintain network security engineering runbooks and configuration baselines for the Security Engineering team
  • Leverage AI‑assisted tools and automation to accelerate firewall policy analysis, segmentation validation, and engineering documentation
Required Qualifications:
  • 5+ years of hands‑on network security engineering experience: firewall policy, segmentation design, and enterprise network architecture
  • Demonstrated experience designing and validating network segmentation in a complex, multi‑site environment
  • Working knowledge of Zero Trust Network Access (ZTNA) concepts and practical application to enterprise segmentation
  • Working knowledge of cloud network security controls and architecture in at least one major cloud platform (Azure, AWS, or GCP)
  • Familiarity with enterprise firewall policy management and rule lifecycle tooling (e.g., policy orchestration and change management platforms)
  • Understanding of OT/ICS network environments and IT/OT segmentation best practices (Purdue Model, IEC 62443)
  • Strong documentation skills: ability to produce architecture diagrams, configuration runbooks, and network design documentation
  • Bachelor's degree in Computer Science, Network Engineering, Information Security, or equivalent practical experience
Preferred Qualifications:
  • Experience with SASE or cloud‑delivered network security platforms
  • Demonstrated experience securing hybrid cloud environments, including cloud‑to‑on‑prem network segmentation and enforcement (Azure, AWS, or GCP)
  • Cloud security certifications (e.g., AZ-500, AWS Security Specialty, CCSP)
  • Experience in a manufacturing, consumer goods, or retail environment with distributed site and OT/IT network challenges
  • Experience with SD‑WAN architecture and security policy enforcement across distributed sites
  • Industry certifications in network security (e.g., PCNSE, CCNP Security, GIAC GAWN, or equivalent)

Newell Brands (NASDAQ: NWL) is a leading global consumer goods company with a strong portfolio of well‑known brands, including Rubbermaid, Sharpie, Graco, Coleman, Rubbermaid Commercial Products, Yankee Candle, Paper Mate, FoodSaver, Dymo, EXPO, Elmer’s, Oster, NUK, Spontex and Campingaz. We are focused on delighting consumers by lighting up everyday moments. Newell Brands and its subsidiaries are Equal Opportunity Employers and comply with applicable employment laws. EOE/M/F/Vet/Disabled are encouraged to apply.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Manager, Incident Response
Senior Manager, Incident Response

Newell Brands • Atlanta (GA)

On-site
USD 150,000 - 210,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Santa Fe (NM)

On-site
USD 113,000 - 188,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Juneau (AK)

On-site
USD 150,000 - 188,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Honolulu (HI)

Remote
USD 150,000 - 188,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Boise (ID)

On-site
USD 144,000 - 195,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Hartford (CT)

Remote
USD 150,000 - 188,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Columbus (OH)

On-site
USD 150,000 - 188,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Frankfort (KY)

On-site
USD 150,000 - 188,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Salt Lake City (UT)

On-site
USD 150,000 - 188,000
Director, Global AI Security & CISO Initiatives
Director, Global AI Security & CISO Initiatives

Newell Brands • Montpelier (VT)

On-site
USD 113,000 - 188,000