Remotery

Principal Technical Consultant – Network Security

Posted 21 hours ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Act as the principal technical authority for network security projects involving next-generation firewalls, Cisco ISE network access control, F5 BIG-IP load balancing and application delivery, as well as SASE/Zero Trust frameworks.

• Architect, implement, and resolve issues in intricate multi-domain networking and security setups.

• Manage extensive, multi-technology initiatives and cross-functional teams through all phases, including discovery, architecture, execution, testing, transition, and knowledge transfer.

• Facilitate client-facing discovery meetings, design workshops, architecture assessments, and strategic technical discussions.

• Develop both high-level and detailed designs, network schematics, policy matrices, implementation guides, migration strategies, rollback plans, and as-built documentation.

• Act as the design authority and technical escalation resource for consultants and offshore engineers.

• Educate client operations teams on ongoing platform management and incident response.

• Assist sales efforts as a subject matter expert and contribute to statements of work, proposals, and scope assessments.

• Create reusable delivery tools, automation scripts, enablement resources, technical documentation, and reference architectures.

• Guide technical consultants and enhance the maturity of practice delivery.

• Ensure engagement quality, documentation, technical results, client satisfaction, risk management, and adherence to delivery schedules.

• Maintain a target utilization rate of 60 percent, reserving remaining capacity for presales activities, mentorship, practice enhancement, and thought leadership.


⛳️ Requirements

• A minimum of 10 years of experience in network security, infrastructure security, or security engineering, with at least 4 years in consulting, professional services, or client-facing roles.

• Practical experience in enterprise production environments using next-generation firewalls from at least two of the following: Palo Alto Networks, Cisco Secure Firewall, and Fortinet.

• Hands-on experience deploying Cisco ISE for 802.1X, TACACS+, and network access policy enforcement in wired, wireless, and VPN settings, including distributed nodes.

• Working knowledge of F5 BIG-IP application delivery, covering Local Traffic Manager and either BIG-IP DNS or BIG-IP Advanced WAF.

• Experience with at least one SASE platform such as Zscaler ZIA/ZPA or Palo Alto Prisma Access, including secure web gateway, CASB, ZTNA policy configuration, and connector or traffic-forwarding design.

• Strong comprehension of BGP, OSPF, EIGRP, IPsec, SSL/TLS, network segmentation, DNS, and Zero Trust architecture.

• Familiarity with AWS VPC, Azure VNet, and GCP VPC, including security groups, cloud firewalls, cloud-native load balancing, and hybrid connectivity solutions.

• Experience with Okta, Microsoft Entra ID, SAML 2.0, and SCIM integrations.

• Proficient in integrating security platforms with Splunk, Microsoft Sentinel, and syslog infrastructure.

• Demonstrated capability in automating deployment using Terraform, Ansible, and vendor REST APIs.

• Proven ability to independently manage large, multi-technology projects and guide other technical teams.

• Exceptional written and verbal communication skills suitable for executive-level interaction and the production of client-ready deliverables.

• Willingness to travel at least 25 percent.

• Preferred qualifications include: CCIE Security or equivalent, PCNSE/PCNSC, Fortinet NSE 7/8, F5 certifications, Zscaler ZCCA/ZCCP, CCNP Security, CISSP, experience in microsegmentation, additional SSE platforms, compliance in regulated environments, multi-cloud IaC/CI/CD, consulting or managed services experience, mentoring, and producing technical content.


🏝️ Benefits

• Medical, Dental, and Vision Insurance

• 401(k)

• Paid company holidays

• Paid time off

• Paid parental and caregiver leave

• Cross-department training and development

• Sponsored certifications and credentials for ongoing learning

• Access to a multi-million-dollar technology lab

• Commitment to diversity, inclusion, and employee resource groups, including Moving Women AHEAD and RISE AHEAD

People also viewed

SouthState Bank19 hours ago

Network Engineer III

US flagAlabama, +6 more statesFull-timeNetwork Engineer / Network Administrator$101.7k – $162.5k/year
ApplyView job
SHOP APOTHEKE EUROPE23 hours ago

Senior Azure Network Engineer

DE flagGermany OnlyFull-timeNetwork Engineer / Network Administrator
ApplyView job
SupplyHouse.com1 day ago

Network Engineer

US flagArizona, +13 more statesFull-timeNetwork Engineer / Network Administrator$88.1k – $110.1k/year
ApplyView job
Mirantis1 day ago

HPC Network Engineer

JP flagJapan OnlyFull-timeNetwork Engineer / Network Administrator
ApplyView job
Magna51 day ago

Tier 2 Network Engineer, End User Support

US flagUnited States OnlyFull-timeNetwork Engineer / Network Administrator
ApplyView job
Magna51 day ago

Senior Network Engineer, End User Support

US flagUnited States OnlyFull-timeNetwork Engineer / Network Administrator
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers