Senior Network Security Architect

Qnity Electronics, Inc.

$120K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Significant network security architecture or engineering experience in complex enterprises.
  • Deep knowledge of Palo Alto Networks security solutions, including NGFW and Prisma Access.
  • Comprehensive understanding of enterprise networking concepts such as routing, DNS, and segmentation.
  • Experience in designing security for both cloud and on-premises environments.
  • Strong expertise in Microsoft Azure networking and associated security technologies.
  • Ability to synthesize application and business needs into secure network architectures.
  • Proficient in creating reference architectures and engineering standards.

Responsibilities

  • Develop and define reference architectures and security standards for network security.
  • Design secure network patterns across various environments, including enterprise and cloud.
  • Lead architecture for Palo Alto Networks' security products.
  • Review and assess designs for various network configurations and security measures.
  • Offer flexible implementation strategies that adapt to project requirements.
  • Pinpoint architectural needs and potential solutions for network security.
  • Interface with project teams to tackle network security challenges early on.

Benefits

  • Hybrid work environment.
  • Opportunities for professional development and certification support.
  • Access to cutting-edge technologies and tools.
  • Collaborative team culture across multiple disciplines.
Full Job Description
Qnity is seeking a Senior Network Security Architect to define secure, practical network patterns across our global enterprise, cloud, manufacturing, and remote-access environments.

This role will partner closely with Network Engineering, Cloud, Infrastructure, Manufacturing IT, Cybersecurity Operations, and project teams. The architect will develop reference architectures and standards, review designs, and provide flexible implementation options that balance security, reliability, cost, and delivery timelines.

This is a hands-on architecture role. The successful candidate must be comfortable moving between strategic design and detailed discussions involving routing, firewall policy, DNS, TLS, remote access, cloud connectivity, segmentation, and application data flows.

Key Responsibilities

* Develop network security reference architectures, standards, and approved design patterns.
* Define secure patterns for enterprise, Azure, manufacturing, remote access, partner connectivity, internet egress, and application publishing.
* Serve as the security architecture lead for the Palo Alto Networks portfolio, including NGFW, Panorama or Strata Cloud Manager, Prisma Access, GlobalProtect, and related security services.
* Review firewall, segmentation, remote-access, cloud, and third-party connectivity designs.
* Provide practical implementation options rather than a single rigid solution.
* Identify architectural requirements, preferred approaches, and acceptable alternatives.
* Integrate network security with Microsoft Entra ID, Defender, Sentinel, Intune, Azure, PKI, vulnerability management, identity, endpoint security, and incident response.
* Support hybrid cloud and on-premises designs, including Azure routing, private endpoints, cloud egress, DNS, and secure connectivity.
* Develop segmentation and remote-support patterns for manufacturing and operational technology environments.
* Partner with project teams to resolve network security issues early in the design process.
* Define requirements for logging, monitoring, policy ownership, firewall-rule lifecycle management, and security telemetry.
* Maintain clear, usable architecture documentation, diagrams, and technical decision records.

Required Qualifications

* Significant experience in network security architecture or engineering within a complex enterprise.
* Strong knowledge of the Palo Alto Networks platform, including NGFW, Prisma Access, GlobalProtect, and centralized management.
* Strong understanding of enterprise networking, including routing, DNS, NAT, VPNs, proxies, TLS, segmentation, and high availability.
* Experience designing security across both cloud and on-premises environments.
* Strong knowledge of Microsoft Azure networking and familiarity with Microsoft security technologies.
* Experience integrating network controls with SIEM, identity, endpoint, vulnerability-management, and IT service-management platforms.
* Ability to translate application and business requirements into secure, supportable network designs.
* Experience developing reference architectures, engineering standards, and reusable design patterns.
* Strong written, verbal, and diagramming skills.
* Demonstrated judgment in balancing security requirements with operational and project constraints.

Preferred Qualifications

* Experience in a global manufacturing or industrial environment.
* Familiarity with Purdue-model segmentation and operational technology.
* Experience with Microsoft Sentinel, Defender, Entra ID, Intune, ServiceNow, FireMon, or similar platforms.
* Experience with Azure Virtual WAN, ExpressRoute, Windows 365, Azure Virtual Desktop, and hybrid connectivity.
* Relevant certifications such as PCNSE, CCNP Security, Microsoft Azure, or CISSP.

Professional Characteristics

* Pragmatic, technically credible, and comfortable challenging weak designs.
* Able to explain both what must change and how it can be implemented.
* Flexible in approach without weakening core security requirements.
* Comfortable working in a developing organization where standards and operating models are still being established.
* Produces architecture that engineering teams can actually use.

#LI-LH1

#LI-Hybrid

Similar Jobs

More Jobs at Qnity Electronics, Inc.

More Information Technology Jobs

Find similar Senior Network Security Architect jobs: