ASSYST is seeking a
Senior Network Security Engineer to support a state client's enterprise network and cybersecurity environment. The role will be responsible for designing, implementing, administering, and securing network infrastructure, including
next-generation firewalls, VPNs, network segmentation, cloud networking, and security controls.
The ideal candidate will have strong enterprise networking and cybersecurity experience, with hands-on expertise in
Palo Alto or Check Point firewalls, GlobalProtect VPN, firewall migrations, security policies, and NIST-based security practices.
Roles & Responsibilities- Design, implement, and manage secure enterprise network and security infrastructure.
- Administer Palo Alto, Check Point, and GlobalProtect VPN environments.
- Perform firewall deployments, administration, rule migrations, and policy conversions.
- Configure and monitor firewall/security policies within cloud network environments.
- Design and maintain network segmentation, access controls, VPNs, and secure network architectures.
- Monitor network and security events, investigate incidents, and lead complex troubleshooting and remediation.
- Conduct security risk assessments and support vulnerability and security management activities.
- Develop and maintain security, network, and configuration documentation following NIST guidelines.
- Support enterprise network infrastructure including LAN/WAN, routing/switching, wireless, data center, Internet, and cloud connectivity.
- Provide technical leadership, guidance, and support for complex network and cybersecurity projects.
- Evaluate emerging networking and security technologies and provide implementation recommendations.
- Collaborate with infrastructure, cybersecurity, cloud, systems, database, and application teams.
Required Skills- 5-10 years of IT and cybersecurity/network engineering experience.
- Strong enterprise networking and cybersecurity background.
- 3-5 years of experience with information security tools/practices based on NIST standards.
- Hands-on experience with Palo Alto or Check Point NGFW.
- Experience with GlobalProtect VPN.
- Experience with firewall deployment, administration, rule migration, and policy conversion.
- Strong knowledge of network architecture, routing/switching, VPNs, segmentation, cloud networking, access controls, and security monitoring.
- Experience troubleshooting complex network and security incidents.
- Experience with network/security documentation and schematic diagramming tools.
- Bachelor's degree in Computer Science, Information Systems, or related field, or equivalent experience.
Preferred Certifications: PCNSE, CISSP, CCNP, or CCIE.