
Network Security Engineer
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Europe.
• Develop and uphold security architectures aligned with Zero Trust principles for enterprise and data center networks.
• Set up Layer 3/4 and Multi-VRF segmentation, along with security policies and secure remote access solutions.
• Deploy and evaluate hyperscale data center security measures, including IPS/NDR and Anti-DDoS protections.
• Integrate next-generation firewall (NGFW) platforms with identity management systems such as Microsoft Entra ID and Okta.
• Manage NGFW automation, logging, and operational capabilities necessary for the Security team.
• Establish and sustain Layer 7 application inspection, IPS, user identification, ZTNA, and SASE integrations.
• Incorporate and utilize monitoring tools like Zabbix, Grafana, and Akvorado.
• Conduct security hardening, vulnerability management, patching, and upgrades on network and infrastructure devices.
• Collaborate with network architects and management to steer designs through Security team evaluations and approvals.
• Operate and oversee the daily functionality of implemented network security solutions.
• Configure and resolve issues in complex routing, switching, and network security environments.
• Proven experience with networking and security protocols (TCP/IP, HTTP(S), DNS, TLS, IPsec, routing protocols).
• Strong knowledge of backbone and data center technologies (EVPN, L3VPN MPLS, MPBGP, L2VPN).
• Practical experience with next-generation firewalls (Palo Alto Networks, Check Point, or similar technologies).
• Familiarity with automation techniques using Python, Go, or equivalent languages.
• Proficient in Unix/Linux systems and experienced with major network vendors (Cisco, Juniper, Aruba, etc.).
• Experience in configuring and troubleshooting NGFW capabilities and integrations, including IPS, User-ID, Microsoft Entra ID, and ZTNA.
• Solid understanding of IPv6.
• Experience utilizing automation tools (Ansible, Terraform, NetBox, SaltStack, etc.).
• Background with large-scale, highly available distributed systems.
• Knowledge of Zero Trust concepts and micro-segmentation methodologies.
• Relevant certifications (CCNP/CCIE, PCNSE, NSE 4/7) and a professional working proficiency in English.
• Familiarity with monitoring, logging, security analytics, EDR/XDR, and centralized NGFW management platforms.
• Bonus: Experience with DevSecOps practices, CSPM/CWPP platforms, offensive security, or security frameworks, standards, and regulations.
• Competitive compensation.
• Opportunities for career advancement and learning.
• Flexibility and ownership in your work.
• A collaborative and innovative work culture.
• Chance to engage in impactful AI projects.
• A multicultural environment with talented teams.
CTI Staffing
Forward Networks, Inc.
Associated Bank
Red River
Get handpicked remote jobs straight to your inbox weekly.