Job Title | Location | Description | Posted** |
---|---|---|---|
Network Security Engineer - North Central (Remote in the U.S.)
GuidePoint Security |
Chicago, IL
|
GuidePoint Security provides trusted cybersecurity expertise solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered holistic approach for evaluating security posture and ecosystems GuidePoint enables some of the nation's top organizations such as Fortune 500 companies and U.S. government agencies to identify threats optimize resources and integrate best-fit solutions that mitigate risk. Role and responsibilities : Primary responsibilities include performing project-based engineering design installation and troubleshooting of data/security solutions Working with the engineering team to successfully implement secure network solutions Security configuration and deployment in medium to very large environments Provide security engineering consulting services including assessment design and implementation of data and secure networking environments Assist clients through planning design and implementation of secure data communications environments Develop comprehensive graphical and text-based design documentation and effectively manage the implementation process from design to customer acceptance Performs assessments of client environments and develops detailed documentation including deliverable reports and summary presentations based on industry and vendor best practices Experience/Education/Certification requirements : Advanced-level knowledge and experience with security design implementation and support with at least four (4) or more of the following in order of priority: Firewalls/VPNs (Palo Alto is a must. Cisco ASA/Firepower and Fortinet a plus) IDS/IPS solutions (Palo Alto is a must. Cisco ASA/Firepower Fortinet FireEye a plus) Malware Prevention (Palo Alto is a must. Cisco ASA/Firepower Fortinet FireEye a plus) Solid understanding of routing and switching architectures (CCNA level knowledge is desired CCNP+ preferred) Cloud Edge Security including Transit Architectures (Palo VM in AWS Azure GCP a huge plus) Cloud Visibility and Core Security Solutions (Palo RedLock(Prisma Cloud) Redseal Dome9 a plus) Container and Serverless Security Solutions (Aqua Twistlock Pursec Lacework a plus) Endpoint Security: Next Gen AV (Palo Traps Crowdstrike Sentinel One Cisco AMP a plus) On premise Virtual Infrastructures (VMware ESXi/NSX Microsoft HyperV KVM a plus) BS in CS or EE and/or 2-4 years related experience with specific focus on Next Generation Firewall design and implementation Palo Alto PCNSE 10+ Strongly Desired. ACE/PCNSE 6/7 Considered Industry security certification such as CISSP & CEH - Desired CCNA Preferred. CCNP/CCIE Security and/or R&S a plus We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing profitable privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011 GuidePoint has grown to over 1000 employees established strategic partnerships with leading security vendors and serves as a trusted advisor to more than 4200 customers. Firmly-defined core values drive all aspects of the business which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint your colleagues are knowledgeable skilled and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. Remote workforce primarily (U.S. based only some travel may be required for certain positions working on-site may be required for Federal positions) Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/family options) Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans 12 corporate holidays and a Flexible Time Off (FTO) program Healthy mobile phone and home internet allowance Eligibility for retirement plan after 2 months at open enrollment Pet Benefit Option
|
|
Network Security Engineer - 100% Remote
Prodware Solutions |
|
Network Security Engineer Duration: 12+ Months Contract Location: 100% Remote / Hybrid in Des Moines IA (2-3 days onsite) Qualifications: 6+ year’s experience. Proven experience as a senior IT network professional. Advanced network skills required. Advanced planning/organizational problem-solving analytical time management decision-making and communication skills required as well as solid leadership and basic presentation skills. Must be able to effectively communicate technical plans strategies and designs to all levels of the company. Basic knowledge of business unit applications preferred. Must be able to maintain a high degree of accuracy and confidentiality. Bachelor's degree in computer related field or equivalent work experience. Responsibilities : Our network security infrastructure team is looking for a talented IT professional to join the team! In this role you will be responsible for supporting administrating and maintaining network infrastructure and network security infrastructure in accordance with business requirements. An understanding of information security and best practices when implementing rulesets access control lists and allowlist is desired. Responsibilities also include providing technical guidance to our business partners. Performing operational tasks and following change control procedures is expected with this position. Required Experience/Skills: Intermediate level of network skills including switching routing and basic network troubleshooting. Experience with: Next generation firewall technologies Intrusion prevention technologies Deploying supporting and troubleshooting Zscaler services Strong experience with network-based segmentation solutions like firewalls private VLANs TrustSEC etc Maintain integrity of the network server deployments and align with security policies and procedures Preferred Experience/Skills: Basic knowledge of scripting - GitHub and software development lifecycle (SDLC) tooling Terraform and Infrastructure-as-Code (IaC) Supporting and troubleshooting public cloud environments An understanding of information security and best practices when implementing rulesets access control lists and allowlists
|
|
Networking Security Sr Staff Engineer (REMOTE)
GEICO |
Chevy Chase, MD
|
At GEICO we offer a rewarding career where your ambitions are met with endless possibilities. Every day we honor our iconic brand by offering quality coverage to millions of customers and being there when they need us most. We thrive through relentless innovation to exceed our customers’ expectations while making a real impact for our company through our shared purpose. When you join our company we want you to feel valued supported and proud to work here. That’s why we offer The GEICO Pledge: Great Company Great Culture Great Rewards and Great Careers. At GEICO we offer a rewarding career where your ambitions are met with endless possibilities. Every day we honor our iconic brand by offering quality coverage to millions of customers and being there when they need us most. We thrive through relentless innovation to exceed our customers’ expectations while making a real impact for our company through our shared purpose. When you join our company we want you to feel valued supported and proud to work here. That’s why we offer The GEICO Pledge: Great Company Great Culture Great Rewards and Great Careers. GEICO is seeking an experienced Senior Staff Engineer to solve complex Network Security-related challenges. You will help drive our insurance business transformation as we redefine our Identity Access Management and Governance strategies. Position Description Our Senior Staff Engineer works with our Distinguished Engineers and Staff Engineers to innovate and build new systems improve and enhance existing systems and identify new opportunities to apply your knowledge to solve critical problems. You will lead the execution of a technical roadmap that will increase the speed of delivering products and unlock new engineering capabilities. The ideal candidate has good technical expertise ensuring secure authentication and communication across the organization. Position Responsibilities As a Senior Staff Engineer you will: Collaborate with product managers team members customers and other engineering teams to solve our toughest problems Develop and execute technical Network Security strategies across all network access-related services and systems while optimizing for performance and efficiency Own accountability for the quality usability and performance of the solutions Consistently share best practices and improve processes within and across teams Take on-call and operational support Qualifications Extensive experience in security access services products and protocols such as MFA and Kerberos as well as Proxy and VPN clients. Extensive experience in designing and optimizing complex firewall ACL configurations. Experience communicating and presentation to senior and junior staff with the ability to influence stakeholders. Experience in a multi-platform environment with Linux Mac Windows. Experience in ZTNA technologies from companies such as Zscaler Private Access (ZPA) Experience in implementing administering and troubleshooting web access firewall and network proxy solutions. Experience in implementing a remote access solution leveraging least privilege principles providing access based upon a person's role in the organization. Experience with solving security control requirements with engineering approaches. Ability to excel in a fast-paced startup-like environment. Ability to design perform experiments and influence security detection and protection solutions. Strong knowledge of industry-standard security tools frameworks and best practices including MITRE CIS and NIST. Fluency and specialization with at least one modern language such as Python or Go. Experience in cryptographic protocols digital certificates and encryption standards such as X.509 Transport Layer Security (TLS) and Advanced Encryption Standard (AES). Experience working with auditors and demonstrating security controls. Experience 4+ years of professional experience in technology or identity engineering 3+ years of experience with security identity architecture and design 2+ years of experience with open-source frameworks is desired 3+ years of experience with AWS GCP Azure or another cloud service Education Bachelor's degree in computer science Information Systems or equivalent education or work experience Annual Salary $130000.00 - $260000.00 The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/ annual salary to be offered to the selected candidate. Factors include but are not limited to the scope and responsibilities of the role the selected candidate’s work experience education and training the work location as well as market and business considerations. At this time GEICO will not sponsor a new applicant for employment authorization for this position. The GEICO Pledge: Great Company: At GEICO we help our customers through life’s twists and turns. Our mission is to protect people when they need it most and we’re constantly evolving to stay ahead of their needs. We’re an iconic brand that thrives on innovation exceeding our customers’ expectations and enabling our collective success. From day one you’ll take on exciting challenges that help you grow and collaborate with dynamic teams who want to make a positive impact on people’s lives. Great Careers: We offer a career where you can learn grow and thrive through personalized development programs created with your career – and your potential – in mind. You’ll have access to industry leading training certification assistance career mentorship and coaching with supportive leaders at all levels. Great Culture: We foster an inclusive culture of shared success rooted in integrity a bias for action and a winning mindset. Grounded by our core values we have an an established culture of caring inclusion and belonging that values different perspectives. Our teams are led by dynamic multi-faceted teams led by supportive leaders driven by performance excellence and unified under a shared purpose. As part of our culture we also offer employee engagement and recognition programs that reward the positive impact our work makes on the lives of our customers. Great Rewards: We offer compensation and benefits built to enhance your physical well-being mental and emotional health and financial future. Comprehensive Total Rewards program that offers personalized coverage tailor-made for you and your family’s overall well-being. Financial benefits including market-competitive compensation a 401K savings plan vested from day one that offers a 6% match performance and recognition-based incentives and tuition assistance. Access to additional benefits like mental healthcare as well as fertility and adoption assistance. Supports flexibility- We provide workplace flexibility as well as our GEICO Flex program which offers the ability to work from anywhere in the US for up to four weeks per year. The equal employment opportunity policy of the GEICO Companies provides for a fair and equal employment opportunity for all associates and job applicants regardless of race color religious creed national origin ancestry age gender pregnancy sexual orientation gender identity marital status familial status disability or genetic information in compliance with applicable federal state and local law. GEICO hires and promotes individuals solely on the basis of their qualifications for the job to be filled. GEICO reasonably accommodates qualified individuals with disabilities to enable them to receive equal employment opportunity and/or perform the essential functions of the job unless the accommodation would impose an undue hardship to the Company. This applies to all applicants and associates. GEICO also provides a work environment in which each associate is able to be productive and work to the best of their ability. We do not condone or tolerate an atmosphere of intimidation or harassment. We expect and require the cooperation of all associates in maintaining an atmosphere free from discrimination and harassment with mutual respect by and for all associates and applicants.
|
|
Senior Network Security Engineer (3rd Level) (m/w/d) remote
InfoGuard Com-Sys GmbH |
|
WIR SIND DIE INFOGUARD COM-SYS GBMH! Schön dass dein Weg zu uns geführt hat. Als ganzheitlicher IT-Dienstleister und Wegweiser durch die komplexe Welt der Cybersecurity begleiten wir Unternehmen auf ihrem Weg in die digitale Zukunft unterstützen sie im Kampf gegen Cyberangriffe und bieten innovative Jobs am Puls der Zeit. Mit mehr als 100 Mitarbeitenden bieten wir das gesamte Spektrum der Informationssicherheit und navigieren unsere Kunden täglich durch die Herausforderungen des Cybersecurity-Dschungels – ohne Umwege in die digitale Transformation. Wir sind der Navigator mit Herzblut. Your compass to cybersecurity. Wen wir suchen... Du bist ein Techniktalent und hast Lust dich gemeinsam mit deinen Kolleg:innen um den Betrieb der Netzwerk- und Sicherheitskomponenten unserer Kunden zu kümmern? Dann bist du bei uns genau richtig! Wir benötigen deine Unterstützung bei der Konfiguration und im Betrieb von produktiven Netzwerk-Infrastrukturen: Du optimierst und wartest Netzwerkinfrastrukturen mit Produkten von Herstellern wie Fortinet Palo Alto Networks und Extreme Networks und richtest diese ein Du überwachst die Netzwerkleistung und -sicherheit und wendest branchenübliche Best Practices an bei der Planung und Durchführung von komplexen Changes in diversen Kundenumgebungen: Du entwickelst und implementierst Netzwerkänderungen die speziell auf die Anforderungen der Kunden abgestimmt sind und minimale Betriebsunterbrechungen verursachen bei der Mitarbeit in komplexen Infrastruktur-Projekten und als Technical Lead von komplexen Teilprojekten sowie Systemmigration und Softwareupdates: Du übernimmst die technische Leitung und Koordination von Projekten einschließlich Systemmigrationen und Software-Updates unter Einsatz verschiedener Netzwerktechnologien für das Release Management: Du koordinierst die Planung Überprüfung und Implementierung neuer Software-Releases über verschiedene Netzwerkplattformen bei der Bearbeitung von Anfragen und Störungsmeldungen (2nd und 3rd Level Support) sowie deren Dokumentation im Ticketsystem (Incident- Problem- und Change-Management): Du bearbeitest fortgeschrittene technische Anfragen und Probleme und dokumentierst diese in einem zentralen Ticketsystem in den Bereichen der Qualifizierung und Eskalation (“Problem-Management”) mit dem Hersteller: Du eskalierst Probleme an Hersteller wie Fortinet Palo Alto Networks oder Extreme Networks für spezialisierte Unterstützung für die Problemlösung von Sicherheitsproblemen in IT-Netzwerkinfrastrukturen Du identifizierst und behebst Sicherheitsprobleme unter Verwendung diverser Sicherheitstechnologien und -protokolle für die Durchführung und Begleitung der Transition zwischen Professional Services und Betrieb: Du unterstützt bei der Übergabe von Projektergebnissen in den laufenden Betrieb und schulst das Betriebsteam für die Prozessoptimierung und Automatisierung Du definierst und optimierst Prozesse sowie Verfahrensanweisungen für den Betrieb in Abstimmung mit dem Team- und Abteilungsleiter Zur Steigerung der Effizienz automatisierst du wiederkehrende Arbeitsabläufe für die Steuerung von externen Dienstleistern und Providern: Du managst und überwachst die Leistung externer Dienstleister um die Einhaltung von Verträgen und Qualitätsstandards sicherzustellen bei der Erstellung und Pflege von technischen Dokumentationen: Du erstellst Betriebshandbücher und technische Dokumentationen um den Netzwerkbetrieb zu unterstützen und regulatorische Anforderungen einzuhalten Du passt zu uns wenn du… ein abgeschlossenes Studium in Informatik Informationstechnologie oder vergleichbare einschlägige Berufserfahrung vorweisen kannst mindestens 5 Jahre in vergleichbarer Position gesammelt hast ein tiefes Verständnis von Netzwerkprotokollen wie TCP/IP UDP ICMP SNMP FTP HTTP(S) SMTP DNS DHCP hast umfangreiche Erfahrung mit Routing-Protokollen wie OSPF BGP EIGRP und MPLS mitbringst ein tiefes Verständnis von VPN-Technologien und -Konzepten einschließlich IPSec und SSL/TLS hast weitreichende Kenntnisse in der Konfiguration und dem Betrieb von Netzwerkgeräten wie Routern Switches und Firewalls verschiedener Hersteller (z.B. Fortinet Palo Alto Extreme Networks) hast ein tiefes Verständnis von Security & Network Best Practices einschließlich Firewall-Konfigurationen Intrusion Detection und Prevention Systems (IDS/IPS) und Secure Network Architecture mitbringst bereits Erfahrung in der Handhabung und Analyse von Sicherheitsvorfällen und -bedrohungen sammeln konntest Kenntnisse von Sicherheitsprotokollen und Authentifizierungsverfahren wie 802.1X RADIUS TACACS+ nachweisen kannst Verständnis von und Erfahrungen mit Netzwerküberwachungstools und -software wie z.B. SolarWinds Nagios PRTG oder Zabbix sowie den entsprechenden Monitoring-Verfahren mitbringst Netzwerkanalysetools wie Wireshark oder Tcpdump zur Fehlerbehebung und Leistungsanalyse anwenden kannst du über fortgeschrittene Kenntnisse in Skriptsprachen wie Python Bash oder PowerShell verfügst und diese zur Automatisierung wichtiger Betriebsprozesse einsetzt erfahren nach ITIL-Richtlinien insbesondere im Incident- Problem- und Change-Management arbeiten kannst Verständnis für die Priorisierung und Bewertung von Risiken bei der Durchführung von Netzwerkänderungen hast hervorragende mündliche und schriftliche Kommunikationsfähigkeiten in Deutsch und Englisch hast ein ausgeprägtes Talent zum Konflikt- und Eskalationsmanagement hast ausgeprägte analytische Fähigkeiten sowie die Fähigkeit unter Druck präzise und methodisch Probleme zu diagnostizieren und zu lösen mitbringst Haben wir dein Interesse geweckt? Perfekt! Dann sende uns direkt deinen Lebenslauf per E-Mail an recruitment@com-sys.de. Und wie geht es dann weiter? Den vollständigen Bewerbungsprozess findest du hier . Wir freuen uns auf deine Bewerbung und melden uns innerhalb kurzer Zeit bei dir zurück! P.S.: Wir begrüßen Bewerbungen von Menschen aller Geschlechter Herkünfte und Hintergründe. Wir sind bestrebt ein diverses und inklusives Arbeitsumfeld zu schaffen und diskriminierendes Verhalten jeglicher Art zu vermeiden. Wir freuen uns auf deine Mail!
|
|
Senior Network and Security Engineer (Remote - Eastern Time Zone Region)
Presidio |
|
Presidio Where Teamwork and Innovation Shape the Future At Presidio we’re at the forefront of a global technology revolution transforming industries through cutting-edge digital solutions and next-generation AI. We empower businesses—and their customers—to achieve more through innovation automation and intelligent insights. The Role Presidio is looking for a Sr. Network and Security Engineer to manage all Route/Switch and Network Security for several datacenters and office locations. Travel Requirements This role will be remote for candidates situated within the Eastern Time Zone region. In this role you will be expected to travel up to 20%. Responsibilities Include Design implement and support Cisco-centric WAN LAN and wireless infrastructure. Design implement and support Routing & Switching technologies Manage Cisco Firewalls including IPS/IDS modules Design implement and manage network load balancing. Manage Email Gateways Email Security Appliances and other Security products in line with Email and WAN access Manage and support remote access technologies (VPN etc.) including posturing Manage and support Wireless technologies Work with emerging technologies such as SD-WAN and data center products. Required Skills And Professional Experience Bachelor's degree or the equivalent work experience and/or military experience 10+ years of Network Engineering experience in a similar role dealing with complex enterprise networking environments Cisco certification in CCNP R&S is required Experience with SD-WAN network switching (capacity planning & VLAN’s) network routing (OSPF EIGRP BGP) WAN technologies (MPLS VPLS VPN) and network security (Cisco Firewalls IPS). Experience with SIP trunking Cisco wireless deployments Cisco data center and load balancing. Experience with Cisco Nexus and Catalyst switches (IOS-XE and NX-OS) Experience with Cisco ASR and ISR routers Experience with Cisco FTD Firewalls with FMC Experience with Wireless WLCs w/Cisco APs Experience with Ironport technologies including ESA and SMA Experience with F5 LTM/GTM Load Balancers Cisco ISE Trellix FireEye Email Security Appliances Experience with VoIP BGP EIGRP OSPF TACACS DNS DHCP Cloud support (Cross connects and routing) Strong analytical organizational and time management skills able to work independently Excellent oral and written communication skills ability to interact with all levels of the organization The ability to interact with people in a manner which shows sensitivity tact and professionalism Team player mentality Desired Skills And Professional Experience Splunk Qualys/Nessus Scanners Cisco Umbrella/OpenDNS Cisco DNA Center / Catalyst Center Cisco CCNP Enterprise and CCNP Security is desired Your future at Presidio Joining Presidio means stepping into a culture of trailblazers—thinkers builders and collaborators—who push the boundaries of what’s possible. With our expertise in AI-driven analytics cloud solutions cybersecurity and next-gen infrastructure we enable businesses to stay ahead in an ever-evolving digital world. Here your impact is real. Whether you're harnessing the power of Generative AI architecting resilient digital ecosystems or driving data-driven transformation you’ll be part of a team that is shaping the future. Ready to innovate? Let’s redefine what’s next—together. About Presidio At Presidio speed and quality meet technology and innovation. Presidio is a trusted ally for organizations across industries with a decades-long history of building traditional IT foundations and deep expertise in AI and automation security networking digital transformation and cloud computing. Presidio fills gaps removes hurdles optimizes costs and reduces risk. Presidio’s expert technical team develops custom applications provides managed services enables actionable data insights and builds forward-thinking solutions that drive strategic outcomes for clients globally. For more information visit www.presidio.com . Applications will be accepted on a rolling basis. Presidio is an Equal Opportunity / Affirmative Action Employer / VEVRAA Federal Contractor. All qualified candidates will receive consideration for this position regardless of race color creed religion national origin age sex citizenship ethnicity veteran status marital status disability sexual orientation gender identification or any other characteristic protected by applicable federal state and local statutes regulations and ordinances. To read more about discrimination protections under Federal Law please visit: https://www.dol.gov/ofccp/regs/compliance/posters/pdf/OFCCPEEOSupplementFinalJRFQA508c.pdf If you have any difficulty using our online system and need an accommodation in the job application process due to a disability please send an email to recruitment@presidio.com for assistance. Presidio is a VEVRAA Federal Contractor requesting priority referrals of protected veterans for its openings. State Employment Services please provide priority referrals to recruitment@presidio.com . Notice to Massachusetts Candidates: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Recruitment Agencies Please Note: Presidio does not accept unsolicited agency resumes/CVs. Do not forward resumes/CVs to our careers email address Presidio employees or any other means. Presidio is not responsible for any fees related to unsolicited resumes/CVs.
|
|
Remote Network Security Engineer
StopAHack.com® |
|
Company Description StopAHack.com Corporation is a cybersecurity company founded by an honorable military veteran. We serve a diverse client base ranging from startups to Fortune 500 companies providing cutting-edge digital safety offerings that combine military-grade precision with cybersecurity innovation. StopAHack.com is honored to be Certified by Great Place to Work. Great Place To Work Certification is the most definitive “employer-of-choice” recognition that companies aspire to achieve. It is the only recognition based entirely on what employees report about their workplace experience – specifically how consistently they experience a high-trust workplace. Great Place to Work Certification is recognized worldwide by employees and employers alike and is the global benchmark for identifying and recognizing outstanding employee experience. Every year more than 10000 companies across 60 countries apply to get Great Place To Work-Certified. StopAHack.com Corporation employs professionals on a full time W-2 hourly basis as subject matter experts (SMEs). We assign the vetted SME to our esteemed partner Palo Alto Networks Inc. (Palo) where the SME is responsible for providing cybersecurity solutions to Palo's clients. The identity of Palo's client remains confidential until the vetting process for the subject matter expert is successfully completed. Below Is The Process Flow: StopAHack (W-2 Full-time Employer NOT a contract position) v Assigned to Palo Alto Networks Inc. (Professional Services Contractor Consultant) v Placed in Palo Alto's Client Portfolio for Daily Task Step 1 : StopAHack hires you as a W-2 employee (not a contract position). Step 2 : StopAHack assigns you to Palo Alto Networks Inc. as a Professional Services Contractor Consultant after passing all interviews and background checks. Step 3 : Palo Alto Networks places you in their client portfolio to provide specialized professional services after successfully completing their onboarding training. Position Overview: We are actively seeking an experienced Senior Network Security Engineer with a focus on Palo Alto Networks technologies to join our dynamic cybersecurity team. This critical role is designed for a professional who possesses deep expertise in network security particularly in utilizing Palo Alto Networks features such as App-ID User-ID Content-ID Decryption Global Protect SD-WAN and AI-Ops. The ideal candidate will be adept at deploying managing and optimizing these technologies to ensure robust and sophisticated network security for the end client. Key Responsibilities: Must be capable of independently deploying any of these: PA 220 series PA 400 series PA 800 series PA 1400 series PA 3200/3400 series PA 5200/5400 series PA 5450 series PA 7000 series CN or VM series (VM-50/100/300/500/700). Leverage Panorama implement and manage advanced network security solutions using Palo Alto Networks technologies including App-ID (Application Override Custom App-ID) User-ID (Windows agent Integrated agent syslog listener API) and Content-ID (AV Vulnerability Protection Spyware Protection File Blocking Data Filtering Wildfire DNS Security DoS Protection). Configure and administer Decryption features such as SSL Forward Proxy SSL Inbound Inspection SSH Proxy Decrypt Mirror and Decrypt Broker. Deploy and manage Global Protect for secure and scalable remote access and integrate Palo Alto Networks' SD-WAN solutions for enhanced network performance. Leverage AI-Ops for intelligent network security operations and analytics ensuring a proactive approach to threat detection and response. Perform network security assessments and audits ensuring compliance with industry standards and best practices and addressing vulnerabilities proactively. Collaborate closely with cybersecurity teams to develop comprehensive security strategies and resolve complex network security issues. Mentor junior team members fostering an environment of continuous learning and professional development in advanced network security technologies. Stay updated with the latest trends in network security and Palo Alto Networks solutions continuously enhancing the organization’s security infrastructure. Mandatory Qualifications: A minimum of 10 years of experience in network security with extensive expertise in Palo Alto Networks technologies. In-depth knowledge of Palo Alto Networks features including App-ID User-ID Content-ID Decryption Global Protect SD-WAN and AI-Ops. Proven ability to design implement and manage complex network security solutions. Strong analytical problem-solving and decision-making skills. Excellent communication skills with the ability to collaborate effectively in a team environment. Bachelor’s or Master’s degree in Computer Science Information Security or a related field. Relevant network security certifications especially those related to Palo Alto Networks are highly valued. Requirement: References Required: In order to proceed with the interview process we kindly request two professional references upfront. These references will be required prior to facilitating an interview with both StopAHack and Palo Alto Networks. What We Offer: A role that is both challenging and rewarding set in a fast-paced and growing cybersecurity environment. Opportunities for career advancement and skill enhancement especially in Palo Alto Networks technologies. Exposure to the latest network security technologies and practices. A collaborative forward-thinking company culture focused on innovation and efficiency.
|
|
Network Security Engineer (NAC) - North Central (Remote in the U.S.)
GuidePoint Security |
Remote United States
|
GuidePoint Security provides trusted cybersecurity expertise solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered holistic approach for evaluating security posture and ecosystems GuidePoint enables some of the nation's top organizations such as Fortune 500 companies and U.S. government agencies to identify threats optimize resources and integrate best-fit solutions that mitigate risk. We are looking for a Network Security Engineer with deep expertise in Network Access Control (NAC) to lead and support NAC implementations in complex enterprise environments. The ideal candidate will have extensive hands-on experience with Cisco Identity Services Engine (ISE) and a strong understanding of 802.1X RADIUS posture assessment and endpoint profiling. This is a consulting-focused role that requires strong client-facing skills and the ability to design implement and troubleshoot NAC solutions in diverse network infrastructures. Key Responsibilities: Lead the design deployment and operational support of NAC solutions primarily using Cisco ISE. Work with clients to develop access control policies device profiling posture assessments and guest/BYOD workflows. Configure and troubleshoot 802.1X MAB RADIUS TACACS+ and integration with AD PKI and other identity stores. Integrate NAC with other security tools such as firewalls SIEMs MDM solutions and EPP/EDR platforms. Provide strategic guidance to clients on NAC policy development user segmentation and zero trust principles. Deliver documentation runbooks and knowledge transfer for ongoing client operations. Support NAC assessments policy refinement and incident response scenarios where NAC plays a role. Work in tandem with network security and desktop teams to ensure alignment across all access control layers. Required Qualifications: 3+ years of experience implementing and managing Cisco ISE in enterprise environments. Strong understanding of network security concepts including 802.1X RADIUS EAP-TLS device profiling and posture checks. Experience integrating ISE with Active Directory certificate authorities and third-party MDM/SIEM tools. Solid knowledge of LAN switching VLANs and network architecture required to support NAC deployments. Familiarity with NAC in both wired and wireless environments including Cisco Catalyst Cisco WLC or Meraki infrastructure. Experience working in a consulting or MSP environment and managing multiple projects or clients. Excellent communication skills both written and verbal for stakeholder engagement and documentation. Preferred Qualifications: Experience with other NAC platforms such as Aruba ClearPass Forescout or Portnox. Cisco certifications such as CCNP Security Cisco ISE Specialist or relevant NAC vendor certifications. Understanding of Zero Trust Network Access (ZTNA) and how NAC fits into a modern segmentation and access strategy. Experience with guest access portals self-registration and contractor device onboarding. We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing profitable privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011 GuidePoint has grown to over 1000 employees established strategic partnerships with leading security vendors and serves as a trusted advisor to more than 4200 customers. Firmly-defined core values drive all aspects of the business which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint your colleagues are knowledgeable skilled and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. Remote workforce primarily (U.S. based only some travel may be required for certain positions working on-site may be required for Federal positions) Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/family options) Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans 12 corporate holidays and a Flexible Time Off (FTO) program Healthy mobile phone and home internet allowance Eligibility for retirement plan after 2 months at open enrollment Pet Benefit Option
|
|
Network Security Engineer (WAF) - North Central (Remote in the U.S.)
GuidePoint Security |
Remote United States
|
GuidePoint Security provides trusted cybersecurity expertise solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered holistic approach for evaluating security posture and ecosystems GuidePoint enables some of the nation's top organizations such as Fortune 500 companies and U.S. government agencies to identify threats optimize resources and integrate best-fit solutions that mitigate risk. We are looking for a Network Security Engineer with hands-on experience in deploying and managing cloud-based DDoS protection and Web Application Firewall (WAF) solutions. The ideal candidate will have deep technical knowledge of platforms like Cloudflare Akamai or equivalent and experience building custom rulesets for application-layer protection and traffic shaping. This role involves both strategic consulting and hands-on implementation in enterprise environments with a strong emphasis on secure traffic delivery performance optimization and incident mitigation. Key Responsibilities: Design deploy and manage cloud-based security platforms including WAF DDoS mitigation bot protection and CDN configuration (Cloudflare Akamai etc.). Build and manage custom rules (e.g. page rules rate limits transform rules iRules) to enforce security policies and traffic optimization. Work closely with application DevOps and infrastructure teams to ensure secure and resilient traffic flow to internet-facing assets. Optimize configurations for latency performance and availability including global traffic routing failover and load balancing. Support incident response efforts involving DDoS events or WAF bypass attempts. Document configurations and provide operational runbooks for client handoffs or internal support teams. Conduct WAF and edge security assessments to identify improvements or misconfigurations. Assist in migration from or integration with on-premises platforms such as F5 including custom logic translation to cloud WAF equivalents. Stay up to date on evolving threat actor behaviors industry DDoS tactics and mitigation techniques. Required Qualifications: 2–4 years of experience managing cloud WAF/DDoS platforms in enterprise environments. Deep familiarity with Cloudflare and/or Akamai edge protection services. Experience building custom page rules rate limiting policies or traffic filtering logic. Strong knowledge of core networking concepts (TCP/IP DNS HTTP/S load balancing NAT routing). Hands-on experience with on-premises application delivery controllers such as F5 BIG-IP especially working with iRules SSL offloading and WAF modules. Strong troubleshooting skills across application-layer traffic and network-layer protection. Experience working in consulting MSP or client-facing roles is a strong plus. Preferred Qualifications: Familiarity with cloud platforms (AWS/GCP/Azure) and edge integration patterns (e.g. using Cloudflare with AWS ALB). Experience with automating WAF/DNS/DDoS configurations via API or Terraform. Certifications related to Cloudflare Akamai F5 or network security (e.g. F5 CTS Cloudflare Zero Trust certs). Experience with API security protections client fingerprinting and bot mitigation strategies. We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing profitable privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011 GuidePoint has grown to over 1000 employees established strategic partnerships with leading security vendors and serves as a trusted advisor to more than 4200 customers. Firmly-defined core values drive all aspects of the business which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint your colleagues are knowledgeable skilled and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. Remote workforce primarily (U.S. based only some travel may be required for certain positions working on-site may be required for Federal positions) Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/family options) Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans 12 corporate holidays and a Flexible Time Off (FTO) program Healthy mobile phone and home internet allowance Eligibility for retirement plan after 2 months at open enrollment Pet Benefit Option
|
* unlock: sign-up / login and use the searches from your home page
** job listings updated in real time 🔥
Login & search by other job titles, a specific location or any keyword.
Powerful custom searches are available once you login.