Sr Network Security Engineer

Accylerate

Mechanicsville (VA)

Hybrid

USD 110,000 - 160,000

Full time

38 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Accylerate seeks an experienced Sr Network Security Engineer to implement and support the agency's IT network, cloud, and computing infrastructure in a hybrid environment across 300+ locations. You will secure, document, and analyze client network and computing infrastructure, closely collaborating with Infra, Cloud, and InfoSec teams.

The role covers Palo Alto, Azure networking, WAF technologies, SIEM, SD-WAN, and critical public-facing apps, with on-call duties and mentorship for junior

Qualifications

  • Experience in securing large-scale networks across on-prem and cloud environments.
  • Proven ability to design secure network architectures and documentation.
  • Hands-on experience with incident response, threat hunting, and vulnerability remediation.

Responsibilities

  • Ensure network security architecture aligns with standards before and after deployment.
  • Lead investigation and containment of security incidents.
  • Review firewall rule requests for compliance with security standards.
  • Design and maintain secure hybrid network architecture across on-premises and Azure.
  • Monitor security events with SIEM and coordinate incident response.
  • Perform network security assessments and remediation recommendations.
  • Develop and maintain security standards, diagrams, and docs.
  • Support penetration testing and remediation efforts.
  • Participate in on-call support during critical incidents.
  • Threat hunting and anomaly detection.
  • Validate WAF/firewall placement and integration.
  • Lead implementation and management of agency WAF(s).
  • Identify and remediate vulnerabilities using logs and SIEM.
  • Document topology, IP schemes, firewall rules, access controls.
  • Work independently on assigned projects.

Skills

Enterprise Networking
Enterprise Security
Azure Networking
WAF/NGFW
SIEM
Vulnerability Management
Active Directory
MFA
Zero Trust
Cisco VPN
Palo Alto
F5 BIG-IP
Azure WAF

Tools

NAC
802.1X
RADIUS
TACACS
NIST CSF
NIST 800-53
Zero Trust

Job description

Required Skills & Experience
  • Enterprise Networking
Ideal Candidate Profile

Seeking an experienced Sr Network Security Engineer (Sr NSE) to implement and support the agency's IT network, cloud, and computing infrastructure. The Sr NSE performs day-to-day activities related to securing, documenting, performing research, analysis, design, and implementation of client network and computing related infrastructure. Candidate will support a hybrid enterprise environment consisting of approximately 300 statewide locations, Palo Alto firewalls, Azure networking, ExpressRoute connectivity, WAF technologies, Splunk SIEM, SD-WAN, and mission-critical public-facing applications. The role partners closely with Infrastructure, Cloud Engineering, and the Information Security Office to maintain the confidentiality, integrity, and availability of client network infrastructure.

Responsibilities
Key Responsibilities
  • Ensures network security architecture aligns with operational security standards prior to and after deployment.
  • Lead investigation and containment of network security incidents.
  • Review firewall rule requests and ensure compliance with security standards.
  • Design and maintain secure hybrid network architecture across on-premises and Azure environments.
  • Monitor security events using SIEM technologies and coordinate incident response activities.
  • Perform network security assessments and recommend remediation strategies.
  • Develop and maintain network security standards, diagrams, and operational documentation.
  • Support penetration testing and remediation efforts.
  • Participate in on-call support during critical security incidents.
  • Responsible for conducting proactive threat hunting and anomaly detection.
  • Validates WAF and firewall placement and integration exposure/connectivity. Also leads implementation, review, and management of agency WAF(s).
  • Identifies and diagnoses system problems and threats by using system logs, line monitors, SIEM, diagnostic software, and test equipment.
  • Identifies, prioritizes, and remediates network security vulnerabilities.
  • Must have the ability to provide documentation, network architecture topology diagrams, IP schemes, firewall rules, and access controls when required.
  • Must have the ability to work independently on assigned projects.
Required Skills
Required Skills & Experience
  • Enterprise Networking
  • Enterprise Security
  • Azure Networking
  • WAF/NGFW
  • Supporting environments with 300+ Network Devices
  • Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor
  • Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel)
  • Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def
  • Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates
  • Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles
  • Candidate must have experience with the following: Cisco Client, NAC, 802.1X, RADIUS, TACACS
  • Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP
  • Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages
  • Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers.
  • Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Network Security Engineer
Senior Network Security Engineer

Mbi Llc • Mechanicsville (VA)

Hybrid
USD 110,000 - 140,000
Senior Network Security Engineer
Senior Network Security Engineer

GlobalPoint • Mechanicsville (VA)

Hybrid
USD 120,000 - 180,000
Hybrid work model
Network Security Engineer
Network Security Engineer

Liquid-Env-Solutions-of-Texa • Irving (TX)

On-site
USD 95,000 - 150,000
Network Security Engineer
Network Security Engineer

Liquid Environmental Solutions Corporation • Irving (TX)

On-site
USD 110,000 - 160,000
Senior Network Perimeter Security Engineer
Senior Network Perimeter Security Engineer

Insight Global • Sugar Land (TX)

On-site
USD 140,000 - 190,000
Network Security Engineer
Network Security Engineer

Vivid Resourcing • United States

On-site
USD 100,000 - 140,000
Network Security Analyst
Network Security Analyst

Tech Army, LLC • Columbia (SC)

On-site
USD 70,000 - 110,000
Network Security Engineer
Network Security Engineer

10xTalents • Newtown (PA)

On-site
USD 100,000 - 130,000
Senior Network Security Engineer - Hybrid Cloud Defense
Senior Network Security Engineer - Hybrid Cloud Defense

Mbi Llc • Mechanicsville (VA)

Hybrid
USD 110,000 - 140,000
Network Security Engineer
Network Security Engineer

Credence • McLean (VA)

Hybrid
USD 120,000 - 170,000