
Network Security Architect
Posted May 7

Posted May 7
This is a fully remote position, open to applicants in Brazil.
• Transform enterprise-level security architecture into practical, site-specific security blueprints that align with the overarching program vision.
• Establish and document the target-state architecture for the Network Security domain, encompassing firewall rule consolidation, VRF-based macro-segmentation, and strategies for DDoS mitigation.
• Evaluate and enhance legacy security policies by merging overlapping firewall rules into efficient, standardized templates.
• Work closely with client Security and CISO teams to support design validation, risk alignment, and adherence to regulatory frameworks (e.g., CISA, HIPAA).
• Detect and address complex IP subnet overlaps and security-related routing conflicts identified during data analysis phases.
• Set clear security exit criteria and guardrails as part of the migration factory's Definition of Done (DoD).
• Engage in architecture governance, participating in architecture reviews, design approvals, and the development of enterprise standards and reference architectures, while collaborating with architects across domains.
• Over 10 years of experience in enterprise Network Security Architecture, with a strong emphasis on large-scale firewall migrations and rule consolidation.
• Profound expertise in NAT/PAT, VRF segmentation, Zero Trust frameworks, and enterprise firewall platforms (e.g., Palo Alto, Fortinet, Cisco).
• Demonstrated experience in designing and integrating DDoS mitigation and traffic scrubbing solutions at network perimeters.
• Strong capability to convert complex security policies into standardized, reusable Low-Level Design (LLD) templates suitable for automated deployment.
• Comprehensive understanding of compliance-driven architecture, with the ability to align technical designs with regulatory frameworks without holding final approvals.
• Experience operating within secure client environments (VDI/VPN) and adhering to stringent change control processes without direct access to production.
• Proficient in English at B2 (Upper-Intermediate) to C1 (Advanced) level, with excellent spoken communication skills.
• Culture of Relentless Performance: join an unstoppable technology development team with a 99% project success rate and over 30% year-over-year revenue growth.
• Competitive Pay and Benefits: enjoy a comprehensive compensation and benefits package, including health insurance and a relocation program.
• Work From Anywhere Culture: take full advantage of the flexibility offered by remote work.
• Growth Mindset: benefit from a variety of professional development opportunities, including certification programs, mentorship, talent investment programs, internal mobility, and internship opportunities.
• Global Impact: collaborate on significant projects for top global clients and influence the future of industries.
• Welcoming Multicultural Environment: become part of a dynamic, global team and excel in an inclusive and supportive work setting with open communication and regular team-building social events.
• Social Sustainability Values: engage with our sustainable business practices focused on five pillars, including IT education, community empowerment, fair operating practices, environmental sustainability, and gender equality.
Weekday (YC W21)
Cherokee Federal
Lumin Digital
Order.co
Get handpicked remote jobs straight to your inbox weekly.