-
Lead the design, deployment, and administration of secure network architectures across on-premises and cloud environments.
-
Manage firewall platforms, intrusion prevention systems, VPN technologies, secure routing, segmentation, and network access control solutions.
-
Oversee security monitoring, incident response, threat analysis, and vulnerability management activities.
-
Conduct security risk assessments, penetration testing coordination, remediation planning, and compliance audits.
-
Develop and maintain network security policies, documentation, runbooks, and standard operating procedures.
-
Collaborate with cybersecurity, infrastructure, DevOps, and cloud architecture teams to align security with business initiatives.
-
Evaluate and recommend new security technologies, tools, and best practices.
-
Lead and mentor a team of security engineers and analysts, providing technical direction and performance guidance.
-
Support governance, regulatory compliance, and certification efforts including SOC2, NIST, PCI, and ISO.
-
Coordinate and manage major security projects, escalations, and service delivery improvements.
-
Ensure high availability and performance of security solutions within complex enterprise environments.
-
Bachelor's degree in Computer Science, Information Security, Engineering, or related technical field.
-
12+ years of experience in network engineering and network security leadership roles.
-
Strong hands-on experience with enterprise firewalls, IDS/IPS, WAF, NAC, VPN, and advanced threat protection platforms.
-
Expert knowledge of routing and switching technologies including BGP, OSPF, MPLS, VLANs, SD-WAN, and network segmentation.
-
Proficiency in cloud security solutions for AWS, Azure, or Google Cloud.
-
Strong experience with SIEM/SOAR tools and security log analysis.
-
Proven experience leading security incident response and forensic investigations.
-
Strong understanding of security frameworks and compliance standards such as NIST, ISO 27001, PCI-DSS, and Zero Trust.
-
Certifications such as CISSP, CCNP Security, CCIE Security, CEH, or equivalent.