Security Engineer

Orange

$90K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's in Computer Science, Information Systems, or Engineering.
  • 5 years in networking/security support roles.
  • 5 years with IP, MPLS, and Core enterprise networks.
  • 5 years troubleshooting Layer 3 routing protocols (OSPF, BGP).
  • 3 years hands-on with firewall platforms (Fortinet, Palo Alto, Check Point, Cisco).
  • 3 years securing AWS environments and configuring VPCs.

Responsibilities

  • Troubleshoot critical security incidents on firewall platforms and VPNs.
  • Perform diagnostics for routing issues involving BGP and SD-WAN.
  • Coordinate with engineering and support teams for network-related problems.
  • Engage vendors for hardware failures and software defects resolution.
  • Prepare RCA and TIR documentation for complex issues.
  • Tune Web Application Firewalls and enforce security policies.
  • Configure and manage firewalls through centralized tools.
  • Monitor performance and develop improvement plans for network security.

Benefits

  • Global opportunities to collaborate with international teams.
  • Flexible work environment with hybrid remote options.
  • Professional development and upskilling opportunities.
  • Career growth and internal mobility within the company.
  • Health and well-being programs along with diversity initiatives.
  • Reward programs including employee referrals and recognition awards.
Full Job Description
About the role

Orange Cyber defenseis seeking a highly motivated, customer-oriented, Mid-Level Network Security Engineer to join our team. The engineer will act as a subject matter expert for the customer27s firewall/VPN/loadbalancer and other network related technologies. The engineer will maintain firewall operations and document the current environment. The engineer will also incorporate change management into all processes and procedures.

About you

  • Troubleshoot and resolve critical security incidents related to firewall platforms (Fortinet FortiGate, Palo Alto Networks NGFW, Check Point, Cisco ASA), SSL/IPSec VPNs, DNS/IPAM systems (Infoblox), and secure remote access (Ivanti Connect Secure, Zscaler ZIA/ZPA).
  • Perform deep-dive diagnostics for routing issues involving Border Gateway Protocol (BGP), policy-based routing, and Software-Defined WAN (SD-WAN) overlays.
  • Coordinate with Engineering, Planning, Customer Configuration, and VPN (Virtual Private Network) teams to address network design, capacity, or service-related problems.
  • Engage external vendors (Fortinet, Palo Alto Networks, Check Point) to resolve hardware failures and software defects.
  • Support internal stakeholders in preparing RCA (Root Cause Analysis), TIR (Technical Incident Report), and SIP (Service Improvement Plan) documentation for complex issues.
  • Perform Web Application Firewall (WAF) tuning and policy enforcement using FortiWeb, addressing threats like SQL injection and cross-site scripting in compliance with OWASP Top 10 standards.
  • Configure and centrally manage firewalls through FortiManager, Panorama, and Check Point SmartConsole, ensuring consistency and audit-readiness across customer environments.
  • Implement and validate security features and upgrades, including:
  • FortiAnalyzer for log correlation and event analysis.
  • Palo Alto Panorama templates for large-scale policy deployment.
  • GlobalProtect for secure user access via SAML/LDAP integrations.
  • Support service introduction projects by validating new hardware/software features, documenting operational acceptance criteria, and performing pilot deployments.
  • Monitor firewall and routing performance using vendor tools and third-party telemetry; develop improvement plans in collaboration with Engineering teams.

Assist in the execution of critical changes, such as SSL decryption policy deployment, advanced NAT configurations, SD-WAN path monitoring, and high availability failover validation.REQUIREMENTS:Bachelor27s degree in computer science, Information Systems, or Engineering followed by 5 years of experience in networking and/or security support roles. Experience must include:

  • 5 years of experience with IP, MPLS (Multiprotocol Label Switching) and Core enterprise networks.
  • 5 years of experience troubleshooting Layer 3 routing protocols (OSPF, BGP), packet capture analysis, and VPN tunnel diagnostics.
  • 3 years of hands-on experience with FortiGate, FortiWeb, FortiManager, FortiAnalyzer, Panorama, Palo Alto NGFW, Check Point, Cisco ASA, Infoblox, Zscaler, and Ivanti SSL VPN platforms.
  • 3 years of experience securing AWS, FortiGate, firewalls, configuring VPCs, Security Groups, NACLs, and IAM (Identity and Access Management) policies.
  • 3 years of experience with SIEM (Security Information and Event Management) integration, syslog analysis, and log forwarding.

TELEWORK: Hybrid position; 2 days per week remote.

LOCATION: 100 Galleria Parkway, Suite 300, Atlanta, GA, 30339

You bring a can-do attitude, tackle challenges head-on and challenge the status quo with new and innovative ideas.

What we offer

 Global Opportunities: Work in multi-national teams with opportunity to collaborate with colleagues and customers from all over the world. Flexible Work Environment: Flexible working hours and possibility to combine work from office and home (hybrid ways of working). Professional Development: training programs and upskilling/re-skilling opportunities. Career Growth: Internal growth and mobility opportunities within Orange. Caring and Daring Culture: Health and well-being programs and benefits, diversity & inclusion initiatives, CSR and employee connect events. Reward Programs: Employee Referral Program, Change Maker Awards.

Similar Jobs

More Jobs at Orange

More Information Technology Jobs

Find similar Security Engineer jobs: