Summary
What you’ll impact
The Senior Network Security Engineer will own and manage the firewall, VPN, and network security infrastructure for a state government agency in Tallahassee, FL, handling both on-premises and cloud environments. The role involves administering enterprise firewalls, configuring VPN solutions, designing secure network segmentation, and leading incident investigations while collaborating with architecture, cybersecurity, and other teams.
Responsibilities
What you'll do
- Perform security administration to configure and document firewall access rules across Palo Alto, Check Point, and GlobalProtect VPN environments
- Lead firewall deployments, rule migrations, and conversion of existing rule based policies onto new platforms
- Administer core network security infrastructure including next generation firewalls, VPNs, log collectors, and monitoring tools
- Configure firewall and security policies for cloud network infrastructure and monitor network traffic
- Design and support enterprise network infrastructure including LAN/WAN, routing and switching, wireless, segmentation, Internet and cloud connectivity, and data center networks
- Develop segmentation strategies that limit lateral movement and evaluate east-west and north-south traffic flows for security risk
- Monitor, analyze, and respond to security events, and lead root cause analysis of complex network and security incidents using logging, packet analysis, and monitoring tools
- Perform security risk assessments and prepare executive level status reports, security metrics, and recommendations
- Maintain NIST aligned documentation including network diagrams, IP addressing, VLANs, firewall rules, security configurations, and disaster recovery procedures
- Provide technical leadership, establish network engineering standards, and mentor network and security staff
Requirements
What you’ll bring
- 5 to 10 years of combined IT and information security experience
- 3 to 5 years of experience with information security tools based on NIST standards
- Hands-on administration of next generation firewalls, preferably Palo Alto Networks or Check Point
- Firewall rule migrations and policy conversion between platforms
- VPN technologies, including GlobalProtect or similar remote access solutions
- Routing and switching, LAN/WAN, network segmentation, and wireless infrastructure
- Cloud network security, including firewall and security policy configuration in cloud environments
- Security monitoring, incident response, packet analysis, and vulnerability management
- Network diagramming with Visio or similar schematic tools
- Ability to work onsite Monday through Friday in Tallahassee, FL