Sr Network Security Engineer

Accylerate

Mechanicsville (VA)

Hybrid

USD 130,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Accylerate seeks an experienced Sr Network Security Engineer to implement and support the agency's IT network, cloud, and computing infrastructure within a hybrid enterprise environment. The role focuses on securing, documenting, researching, and implementing network security across 300+ locations and various technologies.

The candidate will collaborate with Infrastructure, Cloud Engineering, and the Information Security Office to maintain confidentiality, integrity, and availability of client

Qualifications

  • Experience in securing and supporting large-scale network and computing infrastructure.
  • Strong knowledge of network security standards and secure hybrid networks across on-premises and cloud environments.
  • Experience with SIEMs (Splunk, Microsoft Sentinel) and vulnerability management tools (Nessus, Tenable).
  • Ability to communicate technical issues to both technical and executive audiences and mentor junior engineers.

Responsibilities

  • Ensure network security architecture aligns with operational security standards before and after deployment.
  • Lead investigation and containment of network security incidents.
  • Review firewall rule requests for compliance with security standards.
  • Design and maintain secure hybrid network architecture across on-premises and Azure environments.
  • Monitor security events using SIEM technologies and coordinate incident response activities.
  • Perform network security assessments and recommend remediation strategies.
  • Develop and maintain network security standards, diagrams, and operational documentation.
  • Support penetration testing and remediation efforts.
  • Participate in on-call support during critical security incidents.
  • Conduct proactive threat hunting and anomaly detection.
  • Validate WAF and firewall placement and integration; lead implementation, review, and management of agency WAFs.
  • Identify and diagnose system problems and threats using logs, SIEM, and diagnostic tools.
  • Identify, prioritize, and remediate network security vulnerabilities.
  • Provide documentation, network topology diagrams, IP schemes, firewall rules, and access controls when required.
  • Work independently on assigned projects.

Skills

Enterprise Networking
Enterprise Security
Azure Networking
WAF/NGFW
Incident response
Security investigations
Log analysis
Threat intelligence
Security monitor
Active Directory
MFA
Conditional Access
Certificates
NIST CSF
NIST 800-53
Zero Trust
Cisco Client
NAC
802.1X
RADIUS
TACACS
Palo Alto
F5 Distributed Cloud
Azure WAF
Cisco VPN
Global Protect
F5 BIG-IP

Tools

Splunk
Microsoft Sentinel
Nessus
Tenable

Job description

Required Skills & Experience
  • Enterprise Networking
Ideal Candidate Profile

Seeking an experienced Sr Network Security Engineer (Sr NSE) to implement and support the agency's IT network, cloud, and computing infrastructure. The Sr NSE performs day-to-day activities related to securing, documenting, performing research, analysis, design, and implementation of client network and computing related infrastructure. Candidate will support a hybrid enterprise environment consisting of approximately 300 statewide locations, Palo Alto firewalls, Azure networking, ExpressRoute connectivity, WAF technologies, Splunk SIEM, SD-WAN, and mission-critical public-facing applications. The role partners closely with Infrastructure, Cloud Engineering, and the Information Security Office to maintain the confidentiality, integrity, and availability of client network infrastructure.

Key Responsibilities
  • Ensures network security architecture aligns with operational security standards prior to and after deployment.
  • Lead investigation and containment of network security incidents.
  • Review firewall rule requests and ensure compliance with security standards.
  • Design and maintain secure hybrid network architecture across on-premises and Azure environments.
  • Monitor security events using SIEM technologies and coordinate incident response activities.
  • Perform network security assessments and recommend remediation strategies.
  • Develop and maintain network security standards, diagrams, and operational documentation.
  • Support penetration testing and remediation efforts.
  • Participate in on-call support during critical security incidents.
  • Responsible for conducting proactive threat hunting and anomaly detection.
  • Validates WAF and firewall placement and integration exposure/connectivity. Also leads implementation, review, and management of agency WAF(s).
  • Identifies and diagnoses system problems and threats by using system logs, line monitors, SIEM, diagnostic software, and test equipment.
  • Identifies, prioritizes, and remediates network security vulnerabilities.
  • Must have the ability to provide documentation, network architecture topology diagrams, IP schemes, firewall rules, and access controls when required.
  • Must have the ability to work independently on assigned projects.
Required Skills & Experience
  • Enterprise Networking
  • Enterprise Security
  • Azure Networking
  • WAF/NGFW
  • Supporting environments with 300+ Network Devices
  • Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor
  • Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel)
  • Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def
  • Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates
  • Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles
  • Candidate must have experience with the following: Cisco Client, NAC, 802.1X, RADIUS, TACACS
  • Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP
  • Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages
  • Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers.
  • Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Network Security Engineer
Sr Network Security Engineer

Creative Solutions Services, LLC • Mechanicsville (VA)

Hybrid
USD 120,000 - 150,000
Senior Network Security Engineer
Senior Network Security Engineer

Mbi Llc • Mechanicsville (VA)

Hybrid
USD 110,000 - 140,000
Senior Network Security Engineer
Senior Network Security Engineer

Ampcus, Inc • Mechanicsville (VA)

On-site
USD 140,000 - 170,000
Senior Network Security Engineer
Senior Network Security Engineer

Data Capital Inc • Richmond (VA)

Hybrid
USD 120,000 - 160,000
Network Security Engineer
Network Security Engineer

Leeds Professional Resources • Miami (FL)

On-site
USD 100,000 - 130,000
Senior Network Security Engineer
Senior Network Security Engineer

Jobtailor • Mechanicsville (VA)

On-site
USD 120,000 - 150,000
Network Security Engineer - Must be local to Mechanicsville, VA 23116
Network Security Engineer - Must be local to Mechanicsville, VA 23116

HCL Global Systems Inc • Mechanicsville (VA)

On-site
USD 120,000 - 150,000
Senior Network Security Engineer
Senior Network Security Engineer

LanceSoft, Inc. • Atlantic City (NJ)

On-site
USD 80,000 - 120,000
Network Security Engineer
Network Security Engineer

Insight Global • Greenwood Village (CO)

On-site
USD 100,000 - 130,000
Senior Network Engineer
Senior Network Engineer

Openkyber • United States

On-site
USD 120,000 - 180,000