Job Title:Network and Security Engineer
Department: SecOps
Level & Status Position Description:The Network and Security Engineer helps design, implement, and maintain the network infrastructure and security controls that keep the organization running safely. This role works across on-prem, cloud, and hybrid environments to build reliable, well-secured networks, respond to incidents, and continuously improve the organization's security posture. This is a hands-on infrastructure role suited to someone looking to grow their expertise in both networking and security.
Duties & Responsibilities:- Implement, configure, and maintain network infrastructure including routers, switches, firewalls, load balancers, and wireless systems
- Support network security operations, including firewall rule management, VPN configuration, and IDS/IPS monitoring
- Assist in defining and enforcing network security policies, standards, and best practices
- Own secure configuration of cloud infrastructure components, including security groups, VPC/network ACLs, and core network appliances
- Apply cloud security baselines and guardrails (e.g., CIS Benchmarks, AWS Well-Architected security pillar, Azure Security Benchmark) to new and existing resources
- Perform regular cloud configuration audits to identify and remediate misconfigurations, excessive permissions, or public exposure of resources
- Monitor network and cloud environments for anomalies, drift, and unauthorized changes using SIEM, NetFlow, CSPM/CNAPP, and native cloud tools (e.g., AWS Config, GuardDuty, Azure Security Center)
- Participate in incident response for network and security events, including investigation, containment, and documentation
- Support vulnerability scans and support remediation efforts for network and cloud infrastructure
- Manage network segmentation, access control lists (ACLs), and access policies to reduce attack surface
- Maintain accurate network documentation, diagrams, and configuration records
- Support compliance efforts by ensuring infrastructure aligns with relevant regulatory and audit requirements (e.g., SOC 2)
- Collaborate with IT, DevOps, and Produt teams on cross-functional projects
- Participate in on-call rotation for network and security incidents
Education & Experience:- 3+ years of experience in network engineering or network security roles
- Solid understanding of network protocols (TCP/IP, VLANs, DNS, DHCP, routing/switching fundamentals)
- Experience with firewall platforms and security appliances
- Hands-on experience with cloud networking and secure configuration (AWS, Azure, or GCP - VPCs, security groups, encryption)
- Experience identifying and remediating cloud misconfigurations
- Familiarity with VPN technologies, IDS/IPS, and basic SIEM/log analysis tools
- Working knowledge of scripting or automation tools (Python, Ansible, Terraform, or similar)
- Strong troubleshooting skills and attention to detail
- Good communication skills and ability to work collaboratively across teams
Preferred Qualifications- Relevant certifications: CCNA/CCNP, Security+, CySA+, or cloud security certifications (AWS Certified Security - Specialty, Azure Security Engineer Associate, GCP Professional Cloud Security Engineer)
- Experience with cloud security posture management (CSPM) or cloud-native application protection platform (CNAPP) tooling
- Exposure to zero-trust network concepts
- Experience with container/Kubernetes networking and security