Senior Network Security Engineer
  • E-Solutions Inc.
1 Days Ago
NA
C2C
Houston-TX
10-15 Years
Required Skills: QoS, NetFlow, ACLs, NAT, multicast, wireless technologies
Job Description
Note :- Microsegmentation experience is must

Key Responsibilities

· Translate high-level business strategic objectives and goals into Enterprise IT requirements and conceptual designs.
· Develop and support comprehensive solutions that meet requirements and align with Client’s global network security and microsegmentation strategy.
·  Develop and maintain a multi-year strategic network and security architecture roadmap, incorporating Zero Trust and segmentation-driven security models.
·  Lead end-to-end network and security architecture across global platforms ensuring secure, high-performing, fault-tolerant, and resilient environments.

Microsegmentation & Zero Trust Responsibilities

·  Architect and implement microsegmentation strategies across data center, campus, and cloud environments to limit lateral movement and enforce least-privilege access.
·  Design and operationalize Zero Trust Architecture (ZTA) principles, integrating identity, application, and network-based policy enforcement.
·  Collaborate with application owners to discover, validate, and map application dependencies to enable policy-driven segmentation.
·  Define and enforce granular security policies using label/tag-based segmentation approaches across hybrid environments.
·  Integrate microsegmentation with firewalls, SIEM, IAM, EDR/XDR, and cloud-native controls for unified policy enforcement.
·  Lead adoption of microsegmentation platforms (e.g, Guardicore/Akamai Segmentation).
·  Develop segmentation governance models, policy lifecycle management, and compliance alignment (CIS/NIST/Zero Trust frameworks).

Core Network Security Responsibilities

· Participate in network security design reviews and ensure all implementations meet enterprise security standards.
· Analyze business requirements to design and implement security across data centers, campus networks, and hybrid environments.
· Provide ongoing risk metrics, control effectiveness tracking, and security posture reporting.
· Conduct and support internal and external security audits and compliance assessments.
· Maintain awareness of emerging threats and update policies accordingly.
· Develop and manage policies, processes, and procedures ensuring reliability, availability, and security of network systems.
· Manage and optimize Security Information and Event Management (SIEM) systems.
· Collaborate with Cyber Security, infrastructure, and application teams toward compliance and operational excellence.

Technical Qualifications

· 10+ years of experience in enterprise network security architecture, engineering, and operations.

Microsegmentation & Advanced Security

· Strong hands-on experience in designing and implementing microsegmentation solutions in complex enterprise environments.
· Proven capability to build application-aware segmentation policies based on traffic flow analysis.
· Experience with policy simulation, enforcement, monitoring, and optimization in segmentation platforms.
· Understanding of east-west traffic inspection, workload protection, and software-defined segmentation.
· Familiarity with Zero Trust Network Access (ZTNA) and identity-driven access models.

Network Security & Infrastructure

· Strong experience managing LAN/WAN security technologies, including firewalls, IDS/IPS, SIEM, VPN, and NAC.
· Expertise in firewall architecture and design with hands-on experience in: 
o    Fortinet (Fortigate), Palo Alto, Juniper
o    Policy design, NAT, routing, application control, and threat prevention profiles
· Experience securing public and private cloud (AWS, Azure, GCP) environments.
· Design and implementation of Web Application and API Protection (WAAP) solutions.
· Strong experience in proxy (forward/reverse), load balancing, and application security integration.
· Experience with SDN and SD-WAN architectures, including segmentation use cases.

Networking & Protocol Expertise

· Strong knowledge of: 
o    Routing protocols: BGP, OSPF, RIP, MPLS
o    Network services: DNS, DHCP, NTP
o    IPv4/IPv6 architecture and traffic management
· Experience in QoS, NetFlow, ACLs, NAT, multicast, and wireless technologies (802.11 variants).
· Experience with F5 GTM/LTM, VPN technologies, and Internet proxy solutions.

Data Center & Infrastructure

· Experience managing enterprise data center environments with technologies including: 
o    Aruba, Arista, Juniper switching
o    Firewalls, WAN optimization, IDS/IPS, DLP
· Strong understanding of structured cabling and network facilities.

Operations & Lifecycle Management

· Plan, implement, and document infrastructure changes, including upgrades and migrations.
· Work within ITIL frameworks for incident, change, and problem management.

Education & Certifications

· Bachelor’s Degree in Computer Science, Network Engineering, or related field (or equivalent experience).
· 10+ years of experience in global network security environments.
· Preferred certifications: 
o    CCNP / CCIE
o    JNCIE
o    Security certifications (CISSP, CISM, or equivalent) are a plus

Key Differentiators Added (for your context)

This version strengthens the JD by:

· Embedding microsegmentation as a core capability (not just one bullet)
· Aligning with Zero Trust and application dependency mapping (important for your programs)
· Emphasizing cross-team collaboration with application owners (critical for rollout success)
· Integrating segmentation with existing firewall + SIEM ecosystem (not replacing, but complementing)

Jobseeker

Looking For Job?
Search Jobs

Recruiter

Are You Recruiting?
Search Candidates