About the TeamThe Network Security team delivers innovative solutions to sophisticated challenges, serving as a critical component of the Workday Security organization's mission to ensure the security and safety of Workday customers, users, and their data. We design, build, and operate critical security controls for customer data environments, overcoming constantly shifting - and exciting - technical challenges to ensure trust in the Workday service.
Our team is responsible for operating the systems and controls that we build, advising other Workday business units on ways to securely implement services and infrastructure, and partnering with our information security team to ensure policy compliance and address gaps. We operate data centers and cloud environments across the globe and are constantly improving our network security posture and capabilities.
Over the next year, we are focused on delivering scalable network security controls across the Workday enterprise, improving platform resilience and the consistency of security controls in all areas of the business, and leveraging AI and agents to accelerate how we deliver effective solutions for all of Workday's customers.
Our team is spread across the US and EU, and though we connect mostly virtually, we love sharing in each other's successes, celebrating wins, and embracing fun with informal team meetings and activities. We genuinely enjoy getting to know each other beyond our technical skills - because great work is even better when you're part of a great team.
About the RoleAs a Senior Cybersecurity Engineer on the Network Security team, you'll play a key role in designing, building, and operating the security controls that protect Workday's customer data environments and our own Workmates across AWS, GCP, private cloud, and enterprise infrastructure.
You'll be both a hands-on builder and a technical leader: architecting scalable network security solutions, automating security control deployment and enforcement, mentoring team members, and partnering across the organization to ensure security is embedded into the way we design and operate systems.
In this role, you will be responsible to:
- Architect and Build: Design and implement next-generation network security controls, patterns, and templates across AWS, GCP, private cloud, and enterprise environments.
- Automate: Enhance the security of the enterprise by building scalable systems for effective continuous monitoring and enforcement of expected security posture using tools such as Terraform, GoLang, and Python.
- Mentor: Serve as a technical lead by driving initiatives forward and guiding team members in their development.
- Consult: Evaluate production infrastructure designs to determine security requirements and conduct rigorous network security assessments.
- Collaborate: Partner with Cybersecurity and Trust teams to develop policies, standards, and guidelines aligned with industry best practices (CIS, NIST, FedRAMP) and implement control enforcement against those standards.
- Deliver Operational Excellence: Provide operational support for critical security infrastructure, including DDoS detection, WAF, and firewall controls (appliances and cloud-native) in a production environment.
On the Network Security team at Workday, you'll help protect environments that support some of the world's most trusted organizations and the people that run them. If you're passionate about building scalable security solutions, advancing cloud network security controls in a dynamic landscape, and helping teams operate securely at scale, we'd love to hear from you.
About YouBasic Qualifications- Minimum of 7 years of experience in network security architecture, engineering, and design
- Hands-on experience deploying network security controls across AWS and/or GCP
- Experience with cloud-native security technologies such as AWS Network Firewall, AWS WAF, GCP Cloud Armor, or controls
- Has experience with at least one scripting or programming language, such as Python or Go
- Experience with infrastructure automation tools such as Terraform, Ansible, Consul, or similar technologies.
- Experience designing, implementing, or managing zero trust architectures or SASE solutions, including identity-aware access, software-defined perimeters, and secure remote access frameworks
Other Qualifications- Proven experience delivering network security initiatives in production, customer-facing environments
- Deep understanding of public cloud networking and security across AWS and GCP, with the ability to design secure architectures for multi-cloud and hybrid environments
- Experience evaluating, implementing, and operating security platforms, including firewalls, web application firewalls, DDoS protection, and cloud-native network security controls
- Strong understanding of application, system, and network security threats, attack techniques, and mitigating controls
- Experience implementing security policies and supporting compliance with data protection and security standards
- Ability to leverage AI and agentic capabilities to streamline engineering workflows, improve consistency, and deliver security solutions at scale
- Experience supporting DDoS detection, IPS/IDS tooling, and participating in an on-call rotation for production networks
- Ability to align security programs with industry standards such as CIS, NIST, and FedRAMP
- Ability to clearly document complex security architectures, decisions, and control implementations
- Excellent written and verbal communication skills, with the ability to build strong relationships with technical and non-technical stakeholders
Workday Pay Transparency StatementThe annualized base salary ranges for the primary location and any additional locations are listed below. Workday pay ranges vary based on work location. As a part of the total compensation package, this role may be eligible for the Workday Bonus Plan or a role-specific commission/bonus, as well as annual refresh stock grants. Recruiters can share more detail during the hiring process. Each candidate's compensation offer will be based on multiple factors including, but not limited to, geography, experience, skills, job duties, and business need, among other things. For more information regarding Workday's comprehensive benefits, please click here.
Primary Location: USA.GA.Atlanta
Primary Location Base Pay Range: $152,000 USD - $228,000 USD
Additional US Location(s) Base Pay Range: $144,400 USD - $258,000 USD
Our Approach to Flexible WorkWith Flex Work, we're combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. We know that flexibility can take shape in many ways, so rather than a number of required days in-office each week, we simply
spend at least half (50%) of our time each quarter in the office or in the field with our customers, prospects, and partners (depending on role). This means you'll have the freedom to create a flexible schedule that caters to your business, team, and personal needs, while being intentional to make the most of time spent together. Those in our remote "home office" roles also have the opportunity to come together in our offices for important moments that matter.