Product Security Engineer
Security engineer job at Early Warning
At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.
Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.
Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.
Overall Purpose
This position consults with Project Management, Product Management, Product Development and Engineering teams to enable them to build and enhance security in EWS products and Services in line with EWS and industry standards. This position is highly technical and will lead Product Security efforts in maturing our product security program, mentor others and be a hands-on partner to our product teams to deliver innovative and secure products to our customers.
Essential Functions
* Completes the Identification, measurement, control and minimization of security risks to information systems across a broad range of disciplines including application and host security
* Develops and implements repeatable application security architecture patterns working with internal and external partners to ensure that systems are placed within the relevant security zones based on the data they house and their purpose.
* Contributes to the development of Early Warning security policy and procedures.
* Develop Threat Models, design and develop Security architectures and publish reference architecture/patterns implementations for Products and drive companywide adoptions
* Supports Product and Stakeholder teams efforts in building Cloud Native applications by implementing and engineering Cloud Security and Microservices Security best practices and industry standards
* Document and present risks and security issues that could impact the confidentiality, integrity and/or availability of the business (both internally and externally) by assisting in documentation, tracking and creating solutions for mitigation.
* Develop reference engineering implementations of Security patterns and Security Guardrails into Software frameworks and technology stack.
* Support and implement Security technology and security control design proof of concepts and implementations.
* Contribute and further integration of Secure Development lifecycle into product implementation and engineering efforts.
* Evaluates all product business cases including functional and security specs to ensure security standards are met.
* Support efforts with Product Development and Engineering teams to perform security analysis on all internally developed products and services.
* Participates in the development of EWS DevSecOps security strategy and posture by designing, advocating and helping build secure-by-default CI/CD pipelines and processes
* Identifies opportunities for automation, develop and build integrations for security automated scans and establishes patterns for product and infrastructure automated security
* Builds and maintains automation in and improvements in the build and deployment pipelines that are part of Continuous Integration (CI) and Continuous Deployment (CD)
* Provide support and technical guidance and foster a collective understanding of secure development and deployment of products and infrastructure
* Assists in the implementation of DevSecOps methodologies while addressing requirements and orchestrating security impact.
* Implements, tests, and supports the development of CI/CD pipelines in Gitlab, Harness and deployment of cloud native configuration management solutions using 3rd party tools
* Works with architecture teams to ensure that all newly developed and legacy applications and infrastructure implementations are in line with security policy and are compliance to the required frameworks (ISO, PCI, OWASP, NIST 800-53, etc.)
* Support the company's commitment to risk management and protecting the integrity and confidentiality of systems and data.
Minimum Qualifications
* Education and experience typically obtained through completion of a Bachelor's degree in Computer Science, Engineering, Math or Physical Science
* A minimum of 4 or more years of related experience
* Combined 3 years of application security, Security Architecture, Consulting, related IT or Information Security experience.
* Application development and/or Software Security background.
* Experience in Threat Modeling and control implementation.
* Exposure to Agile SDLC process
* Advanced knowledge of operating system, application, network, and database security architectures
* Experience in designing security for Cloud hosted products and containerized workloads
* Knowledge of Security Integration into CI/CD and experience in driving CI/CD adaptation for Security controls
* Hands-on experience with a diverse range of cloud security technologies and access management, Kubernetes, mitigation, encryption technologies, security information, threat management and infrastructure as code (IaC).
* Demonstrate advanced understanding in the field of Information Security in terms of both concepts and technology.
* Able to work with both technical and business stakeholder to design solutions that bring optimal security posture to products and infrastructure.
* Working knowledge of one or more general purpose programming/script languages including but not limited to Java, C/C++ and Python.
Preferred Qualifications
* Hands-on experience with DevSecOps tools like Gitlab, Github, Ansible, Packer and Harness
* Hands-on experience with DevOps and cybersecurity domains like vulnerability management and system hardening compliance in hybrid cloud and on-prem environment.
* CEH/CPT, or CISSP or CSSLP Certification and one of GWEB, GCSAC (GIAC Cloud Security and DevSecOps Automation), CKS (Kubernetes Security Specialist), AWS Cloud practitioner, Solutions Architect or Security Specialist or recognized Application Security certification
* Familiarity and experience with Security tools for SAST, Composition analysis and runtime testing.
* In depth knowledge with public cloud architecture, such as GCP, AWS and Azure, and virtualization technologies, such as Kubernetes, VMware and OpenStack
* Experience with defining and implementing security reference architectures and standards
* In depth knowledge of threat model, network security, cryptography, authentication and authorization
* Experience with automation tools and methodologies associated with DevOps and CI/CD pipelines
* Experience with enterprise architecture and partnering cross functionally
* Ability to establish priorities, work independently and proceed with objectives
* Experience with implementing common security frameworks and controls in highly automated environments, especially in CI/CD environments
The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.
Physical Requirements
Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.
Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.
The base pay scale for this position in:
Phoenix, AZ/ Chicago, IL in USD per year is: $132,000 - $165,000.
New York, NY/ San Francisco, CA in USD per year is: $158,000 - $198,000.
Additionally, candidates are eligible for a discretionary incentive plan and benefits.
This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.
Some of the Ways We Prioritize Your Health and Happiness
* Healthcare Coverage - Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
* 401(k) Retirement Plan - Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
* Paid Time Off - Unlimited Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
* 12 weeks of Paid Parental Leave
* Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.
And SO much more! We continue to enhance our program, so be sure to check our Benefits page here for the latest. Our team can share more during the interview process!
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.
Auto-ApplySr Security Engineer
Orange, CA jobs
Top Must Haves to Include in Submittal
Required: 4+ years of experience with a Senior Security Engineer Title.
Required: 4+ years of experience with active threat hunting, looking for potential attacks rather than just passively waiting for attacks
Required: Experience with Microsoft Defender, Sentinel, Azure Security Center, and Microsoft 365 security solutions, helping to identify vulnerabilities, mitigate threats, and enhance security postures.
Required: 4+ years of experience with Microsoft Defender for Endpoint
Required: 4+ years of experience with Microsoft Sentinel (SIEM/SOAR)
Required: 4+ years of experience with Azure Security Center & Microsoft Purview Compliance Manager
Required: Certifications such as OSCP, OSWE, CISSP, CEH, GPEN, AZ-500 (Microsoft Azure Security Engineer), SC-200 (Microsoft Security Operations Analyst), or SC-300 (Microsoft Identity and Access Administrator) are a plus.
Required: 3+ years of experience in Microsoft security technologies and tools such as Purview Information Protection
Required: 4+ years of experience with Managed Extended Detection and Response (MXDR)
Required: 9 out of 10 communication skills (must be able to understand everything they say and must have 10 out of 10 English comprehension. Accents are ok.)
Very Nice To Have: 2+ years of experience with red team/blue team exercises to test defenses and improve security operations.
Very Nice To Have: 2+ years of experience evaluating, influencing, and recommending technology and product direction
What does the company do Insurance
Location / Address: Orange, California
On-Site / Hybrid / Remote Fully Remote in any State in the US (PST Hours)
Reports To: Director of IT Infrastructure
Does this Position have Direct Reports No
COVDI19 Vax required No vaccination requirements
Accept Visa / H1b Sponsorship No (GC or USC only)
Schedule PST hours
Dress code Business Professional
Full Time Compensation
Base Salary: 120k-143k (could be flexible but would need approval)
Signing Bonus Potential: Potentially (would need approval)
Discretionary Bonus? Yes, they have an annual discretionary bonus but did not specify an exact percentage.
Annual Base Salary Merit Increase: Up to 4% per year
Stock: No
401k Match: 30% match up to 100% of IRS Annual Contribution Allotment
Relocation: No (fully remote role)
----------------------------------------------------------------------------
Minimum of 6+ years hands-on experience directly related to security (Minimum of 4 years as Sr. Level position)
Proactive hands-on threat hunting experience looking for potential attacks and identifying potential security risks
Deep experience and understanding of Microsoft Defender, Sentinel, Azure Security Center
Experience with Managed Extended Detection and Response (MXDR)
Security related certifications such as Certified Ethical Hacker (CEH), AZ-500 (Microsoft Azure Security Engineer) Certified Information Systems Security Professional (CISSP)
Reports to -- Director of IT Infrastructure
Perform active threat hunting, looking for potential attacks rather than just passively waiting for attacks
Perform red team/blue team exercises to test defenses and improve security operations.
Assists with vulnerability assessments, using provided security tools to identify system vulnerabilities
Design and implement security controls across cloud and on-premises environments
Create and maintain security monitoring and alerting solutions
Data Loss Prevention (DLP): Monitor DLP alerts, investigate incidents, and recommend actions to relevant teams to mitigate data breaches.
Assists in the planning and deployment of the companys cloud information security strategies
Manage Infrastructure and application security monitoring tools to detect and respond to security incidents in real-time
Participate in the development and improvement of the company's SDLC processes, ensuring security practices are integrated into all stages of product development
Responsible for evaluating, influencing, and recommending technology and product direction
Stay informed on the latest cybersecurity trends, emerging threats, attack techniques, and zero-day vulnerabilities affecting Microsoft environments and other relevant technologies.
On-site or remote regular attendance and punctuality are essential functions of the job.
Perform other business tasks or functions as assigned.
Qualifications
Knowledge, Skills & Abilities Required:
Experience with Microsoft Defender, Sentinel, Azure Security Center, and Microsoft 365 security solutions, helping to identify vulnerabilities, mitigate threats, and enhance security postures.
Deep knowledge of Microsoft security solutions
o Microsoft Defender for Endpoint
o Microsoft Sentinel (SIEM/SOAR)
o Azure Security Center & Microsoft Purview Compliance Manager
o Microsoft Intune and Conditional Access Policies
Strong understanding of security principles and best practices
Strong knowledge and hands on experience with Data Loss Prevention
Hands-on experience in threat hunting
Certifications such as OSCP, OSWE, CISSP, CEH, GPEN, AZ-500 (Microsoft Azure Security Engineer), SC-200 (Microsoft Security Operations Analyst), or SC-300 (Microsoft Identity and Access Administrator) are a plus.
Proficiency in Microsoft security technologies and tools such as Purview Information Protection, Defender for Cloud and Sentinel
Experience with Managed Extended Detection and Response (MXDR)
Proficient in Microsoft Office programs, including Word, Excel, PowerPoint, as well as Outlook.
Adhere to all PHI (Protected Health Information) and HIPAA (Health Insurance Portability and Accountability Act) guidelines.
Educational Requirements:
High School Diploma or equivalent required.
Bachelors degree in Computer Science, Cyber Security or equivalent experience required.
Minimum of six (6) years of hands-on experience in IT with a focus on security.
Physical Requirements:??Must be able to sit for extended periods and occasionally stand and walk. Must have adequate hearing for phone work. Vision requirements include close vision and the ability to adjust focus. Must be able to communicate effectively in English. Must be able to use a keyboard and other office equipment. Ability to lift up to 10 pounds occasionally.
“Benefit offerings include medical, dental, vision, life insurance, short-term disability, additional voluntary benefits,
EAP program, commuter benefits, and 401K plan. Our program provides employees the flexibility to choose the type
of coverage that meets their individual needs. Available paid leave may include Paid Sick Leave, where required by
law; any other paid leave required by Federal, State, or local law; and Holiday pay upon meeting eligibility criteria.”
“Equal Opportunity Employer/Veterans/Disabled
To read our Candidate Privacy Information Statement, which explains how we will use your information, please navigate to *******************************************
The Company will consider qualified applicants with arrest and conviction records in accordance with federal, state, and local laws and/or security clearance requirements, including, as applicable:
• The California Fair Chance Act
• Los Angeles City Fair Chance Ordinance
• Los Angeles County Fair Chance Ordinance for Employers
• San Francisco Fair Chance Ordinance”
Lead Security Engineer
New York, NY jobs
Lead Security Engineer - Hands-On Role with Leadership Opportunity
We're looking to hire a senior-level Security Engineer who's ready to step up and take the lead. Someone who's still very hands-on technically but also enjoys mentoring others, setting direction, and building scalable solutions that make a real difference.
Title: Lead Security Engineer
Salary: $160,000 to 190,000 +Bonus
Location: Queens, NY (Hybrid)
This role sits at the center of engineering, operations, and security-you'll be working directly with software and infrastructure teams to make sure security is embedded into everything we do. You won't just be managing tools; you'll help shape how security is done across the company.
If you're based in the NYC area and looking for the next serious step in your career-where your ideas are heard and your work actually drives change-this is worth a conversation.
What the Role Looks Like:
You'll lead and mentor a small but growing team of security engineers, helping them grow while staying deep in the tech yourself.
Work with internal teams to design and implement security solutions-cloud security, PAM, app and system hardening, etc.
You'll be the one connecting the dots between development, infrastructure, and security-building relationships across teams and making sure security is part of the process from the start.
Help optimize and improve the tools we already have, and figure out what's missing.
What We're Hoping You Bring:
A few years of experience leading or mentoring other security engineers-you don't need to have managed huge teams, but you've helped others level up.
Solid technical background (5+ years in security engineering) and experience with on-prem and cloud security solutions (AWS or Azure).
Hands-on knowledge of privileged access, identity management, system hardening, and network security.
Strong instincts for risk, practical problem-solving, and keeping systems both secure and usable.
Someone who communicates clearly, doesn't get lost in buzzwords, and works well with people across teams.
Nice to Have, But Not Dealbreakers:
Certifications like CISSP, CEH, CISM
Experience with Linux security or scripting
Familiarity with CI/CD pipelines and how security fits into DevOps
Why This Role Might Be Right for You:
You're ready for more responsibility and leadership, but don't want to give up the technical side of the work.
You want to be part of a stable company with real backing and complex challenges to work on.
Security Engineer
Schaumburg, IL jobs
Security Engineer - Application Security (Azure Focus)
An established global logistics leader is seeking a Security Engineer to join its growing cybersecurity team. This is the second dedicated security hire, reporting directly to the CISO, and will play a key role in advancing the company's security posture across application environments.
Day-to-Day:
This engineer will own new initiatives from research through implementation, focusing on application security in Azure environments. The role involves incident response, tool deployment, vendor collaboration, policy creation, and hands-on engineering work. You'll partner closely with both technical and non-technical teams to establish security best practices, communicate effectively across departments, and drive adoption of new solutions.
The position requires someone who can operate independently, lead projects, and contribute strategically to ongoing security improvements. While networking knowledge is helpful, this role is security-focused-ideal for someone with experience in an MSSP or enterprise security environment.
What You'll Bring:
Application Security expertise with hands-on engineering experience
Strong Azure Cloud background
Advanced GIAC certifications
Excellent communication and collaboration skills
Self-driven, proactive approach to problem-solving and project ownership
This is not a compliance or analyst position-it's a hands-on, technical engineering role for someone ready to take ownership of the application security landscape and shape the future of security initiatives within a global organization.
Lead Security Engineer - Trading Technology
Great Neck, NY jobs
The Team:
The Security Engineering Lead will be responsible for designing, building, and maintaining the organization's security infrastructure. This role requires a highly skilled professional who can lead a team of engineers, implement innovative security solutions, and ensure the resilience of the organization's systems and networks. The ideal candidate will have extensive experience in security engineering, a strong technical background, and the ability to manage and deliver complex security projects.
**This Role does NOT provide sponsorship**
Salary: $150k-$190k base w/ 20% bonus
Responsibilities:
Leadership and Management: Lead and mentor a team of security engineers, fostering a culture of continuous learning and innovation. Build and scale a global team to meet organizational needs.
Architecting Security Solutions: Assist teams in designing and implementing advanced security solutions, including cloud security, privilege access management and application/system security.
Collaboration: Partner with software development, infrastructure, and operations teams to embed security into the development lifecycle and operational processes.
Performance Optimization: Regularly evaluate and optimize existing security tools and technologies to ensure maximum efficacy and efficiency.
Training and Knowledge Sharing: Develop and deliver technical security training to engineers and other staff, ensuring a strong organizational security posture.
Documentation and Reporting: Create detailed documentation for security systems and processes, and provide regular project reports senior management.
Required Skills and Experience:
Experience (3+ year) in people leadership roles, nurturing security engineers into high-performing teams.
Experience (5+ years) in a security engineering role, focusing on designing and implementing security solutions and managing security infrastructure, both on-premise and cloud.
Experience working with privilege and identity management solutions.
Experience with operating system security and system hardening.
Knowledge of network security principles, protocols, and technologies.
Strong analytical and problem-solving skills, with the ability to assess risks and develop appropriate security controls.
Excellent communication and interpersonal skills, with the ability to effectively communicate complex security concepts to technical and non-technical stakeholders.
Ability to work independently, prioritize tasks, and manage multiple projects simultaneously.
Strong leadership skills, with the ability to mentor and guide junior team members.
Skills and Experience That Would Help You Stand Out:
A bachelor's degree in Computer Science, Information Security, or a related field. A master's degree is a plus.
Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or Certified Information Security Manager (CISM) are highly desirable.
Linux security experience
Familiarity with DevSecOps and integrating security into CI/CD pipelines.
Scripting experience.
Sr Security Engineer
San Francisco, CA jobs
Urgent hiring need for a Senior Security Engineer reporting to the CTO. This will join a fast-growing company in the entertainment technology industry. This role will lead their security strategy and implementation across infrastructure, endpoints, and internal systems. This is an onsite position (M-Thrs), Friday (remote) in San Francisco. The position offers up to 185k base plus profit sharing and discretionary bonus. They offer a rich benefits package including 2 weeks paid time off during closure the winter holiday!
Duties but not limited to:
Security Architecture & Policy: Design, implement, and enforce security policies and best practices across infrastructure, applications, and cloud environments (AWS, Google Workspace), while leading IAM strategy using Okta.
Threat Detection & Response: Monitor systems for vulnerabilities and threats, manage incident response, and oversee tools like GuardDuty, Security Hub, SIEM platforms, AWS Inspector, and EDR solutions (CrowdStrike, SentinelOne).
Engineering Collaboration & Tooling: Partner with engineering teams to embed secure development workflows, implement Zero Trust principles, and evaluate security tooling to support scalable, secure operations.
Qualifications:
Ideal candidates have experience in startup or fast paced environments.
5+ years of experience in security engineering, with strong hands-on expertise in AWS, Google Workspace, and Okta.
Deep understanding of IAM, network security, encryption, and incident response.
Familiarity with SIEM tools, vulnerability scanning, and scalable security design in fast-paced or startup environments.
Bonus: Experience with compliance frameworks such as SOC 2, ISO 27001, or NIST.
Cyber Command Forensic Analyst
New York, NY jobs
Contact Details:
1.Poonam Khandelwal
Email: poonam.khandelwal@peer-consulting.com
Cell: (732) 797-9766
Job Title: Cyber Command Forensic Analyst
Duration: 48 months
Years of Experience: 8+ years
Required Hours/Week: 35hrs/week
Job Description:
The forensics Analyst will investigate network intrusions and other cyber incidents to determine cause, extent and consequences of the breach.
Research and develop new techniques, and procedures to continually improve the digital forensics process.
Produce high quality written work product presenting complex technical issues clearly and concisely.
Managing and maintaining the analysis labs and forensics tools leveraged for investigations.
Ensuring data is collected and preserved within industry standard best practices and in alignment evidence integrity requirements.
Assisting the Cyber Emergency Response Team during critical incidents.
Investigate network intrusions and other cybersecurity incidents to determine the cause and extent of the breach. Includes ability to perform host-based and network-based forensic analysis.
Mandatory Skills/ Experience:
Candidates who do not have the mandatory skills will not be considered.
Minimum 4 years of experience in Threat Management/Forensics Investigations/Incident Response environment
Proficient in performing digital forensic investigations on a variety of platforms and operating systems with a deep understanding of digital forensics processes and tools.
Desirable Skills/ Experience:
Experience with a wide range of forensic tools (FTK, X-Ways, SIFT, AXIOM, EnCase, etc.)
Experience with memory analysis tools (i.e. Volatility, MemProcFS)
Experience with Linux and open source tools
Experience investigating intrusions on Windows and Linux/Unix operating systems
Experience with performing forensics collections in cloud environments (AWS, Azure, GCP)
Knowledge of gathering, accessing, and assessing evidence from computer systems and electronic devices
Knowledge of virtual environments
Knowledge of forensic imaging techniques
Knowledge of Microsoft Windows operating system and Windows artifacts
Knowledge of Linux/UNIX operating systems and artifacts
Knowledge of mac OS operating system and forensics artifacts
Knowledge of file systems
Strong analytical skills
Security Analyst
Los Angeles, CA jobs
We are seeking an Information Security Analyst to support enterprise security operations with a focus on vendor risk management, security control integration, and infrastructure security. This role is responsible for conducting security assessments, coordinating the implementation of core security services (including SSO, logging, IAM, and data protection), and supporting compliance activities aligned with frameworks such as NIST and ISO 27001. The ideal candidate has experience in cybersecurity risk management, cloud environments (AWS/Azure), and collaborating with technical teams to ensure the effective delivery of security controls.
At least 2+ years of experience in the following:
Security & Compliance Frameworks
NIST CSF
ISO 27001
CIS Controls
ITIL
SOC 2
PCI DSS
FedRAMP
GDPR / CCPA
Vendor Risk & GRC Tools
OneTrust
SIG (Standardized Information Gathering)
Other GRC/TPRM platforms
Identity, SSO & Access Management
SSO (PingFederate, SAML)
Active Directory
Azure AD
AWS IAM
Endpoint Security Architect
Sunnyvale, CA jobs
The Endpoint Security Architect will be responsible for designing, assessing, and enhancing the organization's endpoint security posture across laptops, desktops, mobile devices, servers, and VMs. This role ensures alignment of endpoint operations, policies, and enforcement mechanisms with industry standards (NIST), organizational security policies, and regulatory requirements. The ideal candidate has deep experience with EDR/XDR, AV, MDM/Intune, device compliance, endpoint hardening, and integration with SIEM/SOAR/AD environments.
Key Responsibilities:
1. Endpoint Security Architecture & Design
Review and enhance endpoint architecture, including AV, EDR solutions.
Evaluate endpoint configuration, control enforcement, coverage, and security baselines.
Assess integration of endpoint platforms with SIEM, SOAR, Active Directory, Intune/MDM, and CMDB.
Review architectural components, telemetry flow, and sensor deployment methodology.
Validate data exchange between endpoint security tools and central monitoring systems.
2. Policy & Governance
Ensure endpoint security operations align with organizational security policies.
Review and update endpoint security policies aligned with NIST standards.
Validate roles & responsibilities across IT, SecOps, and endpoint management teams.
Evaluate policy coverage including patching, EDR/AV, device onboarding, and compliance.
3. Endpoint Operations & Integration
Assess GPOs, MDM/Intune policies, device configuration profiles, and enforcement controls.
Review endpoint discovery & profiling mechanisms to identify unmanaged/rogue devices.
Validate tagging, categorization, and asset mapping across EDR platforms and CMDB.
Check integration with NAC, SIEM, AD, vulnerability management, and patching tools.
4. Risk Management, Patching & Compliance
Review patch management and vulnerability remediation processes across endpoints.
Verify endpoint compliance monitoring, dashboards, and alerting workflows.
Assess patching SLAs, automation processes, and compliance reporting.
Skills & Qualifications
Technical Skills
Strong expertise in EDR/XDR platforms (e.g., CrowdStrike, Defender for Endpoint, Trellix, SentinelOne).
Hands-on experience with Intune/MDM, SCCM, JAMF, or similar device management tools.
Solid understanding of SIEM/SOAR platforms and AD integration.
Strong knowledge of NIST CSF, NIST 800-53/171, CIS benchmarks, and endpoint hardening.
Familiarity with NAC, vulnerability management, and patching tools (Tenable, Qualys, BigFix, etc.).
Experience designing endpoint security architectures for large enterprises.
Network Security Engineer
San Diego, CA jobs
Role: Network Security Engineer
Duration: Contract
Look for strong Palo Alto and Infoblox experience
Who had worked on deployment of Palo Alto and Infoblox
Key skills: Panorama, Expedition, Infoblox, palo alto, Prisma excess
Senior Security Engineer We seek to hire a Firewall Security Engineer that will be responsible for maintaining firewalls, supporting computer network defense, to include auditing the network for vulnerabilities, identifying relevant threats, recommending corrective actions, developing solutions for security issues, and investigating security incidents and breaches. Also manage and maintain the network security systems.
Responsibilities
Firewall management (e.g. DMZ, Internet, Third Party connections), specifically for Next Generation Firewalls
Maintenance of IPAM
Maintenance of remote access tools
Support enterprise incidents
Researches emerging threats and vulnerabilities to aid in the identification of network incidents
Analyzes data from threat and vulnerability feeds and analyzes data for applicability to the client's organization
Ensures compliance with all applicable configuration standards
Recommends security controls and/or corrective actions for mitigating technical and business risk
Produces vulnerability, configuration, and coverage metrics and reporting to demonstrate assessment coverage and remediation effectiveness
Provision and management of multi-factor authentication (e.g., token, certificate)
Malicious code detection and prevention, and Internet monitoring (e.g. IDS/IPS)
Security policy verification
Tiered web filtering (e.g., URL filtering, malicious sites, spyware, advertisements, instant messaging, free software downloads)
Internet usage reporting
Provision, installation, configuration, management, and maintenance of network intrusion detection and prevention sensors at specified network entry points
Intrusion Incident reporting
Ongoing vulnerability assessment and remediation activities
Support of Third Party security assessment, scanning and penetration testing
Design, implementation, management and maintenance of encryption solutions
Management of Client-owned security certificates, SSLs and domain names; where applicable
Logging, tracking and management of security risks and issues to Resolution and closure
Network security Services reporting per Client requirements
Remediation of discovered security risks from any security audit findings
Qualifications
BS in Computer Science, Information Security, or a related field is highly desirable
7+ years of work experience in information security, especially in a network security Engineer role
Preferred Certification - CSA+, CISSP, GIAC, PCNSA, PCNSE, PCDRA
Competencies Required
Experience with NGFW, specifically with Palo Alto and Panorama
Experience managing Infoblox
Technical expertise in analyzing threat event data, evaluating malicious activity, documenting unusual files and data, and identifying tactics, techniques and procedures used by attackers
Technical expertise in system security vulnerabilities and remediation techniques, network and web-related protocols (e.g., TCP/IP, UDP, IPSEC, HTTP, etc.)
Technical and troubleshooting expertise in security engineering, system and network security, authentication and security protocols
Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
An understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business
An understanding of organizational mission, values, and goals and consistent application of this knowledge
ISO 2700 Awareness
Senior Network Security Engineer
Mountain View, CA jobs
Job Title: Senior Network Security Engineer
Employment: Contract opportunity on w2
Experience: 9+ years
About VLink: Started in 2006 and headquartered in Connecticut, VLink is one of the fastest growing digital technology services and consulting companies. Since its inception, our innovative team members have been solving the most complex business, and IT challenges of our global clients.
Job Description:
About the Role:
We are seeking a highly motivated and experienced Senior Network Security Engineer to join our growing team. This critical role will be responsible for the design, implementation, and maintenance of complex network infrastructure, with a strong emphasis on cloud integration, security, and automation. The ideal candidate will possess a deep understanding of networking principles, hands-on experience with AWS, a scripting proficiency in Python, and expertise in cybersecurity best practices, particularly with AWS, Palo Alto Networks and Zscaler security solutions.
Responsibilities:
Design, implement, and manage our hybrid cloud and on-premises network infrastructure.
Implement and manage network security solutions, including firewalls (Palo Alto Networks), secure web gateways (Zscaler), and intrusion detection/prevention systems.
Monitor network performance and troubleshoot network issues.
Proactively identify and mitigate security vulnerabilities.
Collaborate with other teams to ensure network connectivity and performance.
Create and maintain network documentation.
Participate in on-call rotation for network support.
Mentor and guide junior network engineers.
Stay current with the latest networking technologies and security threats.
Lead the migration and integration of network services into AWS.
Develop and maintain network automation scripts using Python.
Qualifications:
Bachelor's degree in Computer Science, Information Technology, or a related field.
7+ years of experience in network engineering.
Deep understanding of networking protocols (TCP/IP)
Hands-on experience with Palo Alto Networks firewalls and security appliances.
Expertise in Zscaler (ZIA/ZPA/ZDX) administration and configuration.
Solid understanding of cybersecurity principles and best practices.
Experience with network monitoring and troubleshooting tools.
Excellent communication and collaboration skills.
Ability to work independently and as part of a team.
Extensive experience with AWS networking services (VPC, Transit Gateway, Direct Connect, etc.).
Strong scripting skills in Python for network automation.
Good to have AWS development and microservices automation experience.
Preferred Qualifications:
Palo Alto Networks certifications (e.g., PCNSE).
Zscaler certifications.
AWS certifications (e.g., AWS Certified Advanced Networking - Specialty).
Good to have
Experience with Infrastructure as Code (IaC) tools like Terraform or CloudFormation.
Experience with container networking (e.g., Kubernetes).
Knowledge of other cloud platforms (Azure, GCP).
Certified Information Systems Security Professional (CISSP)
Warm Regards,
**************************
D: **************
System Engineer
Oxnard, CA jobs
NO C2C candidates please:
Job Title: Systems Engineer
Description & Requirements:
This role is Onsite in Oxnard, CA & it's a 6+ months contract
KORE1, a nationwide provider of staffing and recruiting solutions, has an immediate opening for a Systems Engineer in Oxnard, CA
Summary:
We are seeking a highly skilled and motivated Systems Engineer to support and enhance our IT infrastructure. This role is essential to the stability, security, and efficiency of our technology systems. The successful candidate will be responsible for the architecture, implementation, maintenance, and troubleshooting of core systems that support municipal operations and services.
Essential Responsibilities:
Design, implement, and manage Active Directory infrastructure including architecture and troubleshooting.
Maintain and support physical and virtual server hardware across the organization.
Architect, install, and support Windows Operating Systems, including patch management and OS/app updates.
Administer robust backup and recovery solutions and ensure systems meet RPO/RTO requirements.
Design and manage system/application patching strategies across environments.
Handle certificate lifecycle management, including installation, renewal, and trust chain validation.
Deploy, configure, and monitor system performance and availability using enterprise monitoring tools.
Lead lifecycle management initiatives including asset tracking, upgrades, and retirement planning.
Utilize PowerShell scripting to automate administrative tasks and configuration management.
Design, manage, and troubleshoot VMWare and HyperV virtualization platforms.
Support NAS/SAN infrastructure and storage networking systems.
Ensure operational readiness through thorough documentation, change control, and knowledge sharing.
Required Experience:
Proficiency required in the following areas, including architecture, design, day-to-day operations, and troubleshooting:
Active Directory
Server Hardware
Windows O/S
Backup/Recovery Systems
O/S & Application Patching
Certificate Management
System Monitoring Tools
Lifecycle Management
PowerShell Scripting
Virtual Server Hardware
VMWare
NAS/SAN Solutions
Storage System Networking
Nice to Have Skills:
Experience in the following areas is highly desirable:
Linux O/S (RHEL/Ubuntu/SUSE)
SFTP/FTP Tool Management
IIS / Apache Web Server Management
Advanced Certificate Management Architecture
Advanced System Monitoring Design
Cloud Infrastructure Solutions (Azure, AWS, etc.)
Horizon Client Virtualization
HyperV Management
Advanced NAS/SAN Architecture
Storage Network Design & Architecture
Qualifications:
Bachelor of Science degree in Computer Science, Information Technology, or related field (or equivalent work experience)
Minimum of 5 years of experience in a Systems Engineer or similar infrastructure role
Relevant certifications preferred (e.g., Microsoft, VMware, CompTIA, Cisco, etc.)
Strong problem-solving and analytical skills
Ability to communicate effectively with technical and non-technical stakeholders
Compensation depends on experience but is typically $60-70/hr on W2
System Engineer
New York, NY jobs
NYC-Based Hedge Fund / Midtown Manhattan
Our client, a dynamic NYC based hedge fund / investment management firm, is seeking a System Administrator to join its in house technology team. The firm offers an incredible suite of benefits, including profit sharing, fully paid health, dental and vision benefits and the chance to learn and grow alongside an incredible team of technologists.
As a System Engineer, you'll work closely with all areas of the IT organization and other internal stakeholders to provide both onsite and remote support, maintain system uptime, and contribute towards IT projects and Information Security initiatives.
Core Responsibilities:
Provide day-to-day support for end users across Windows and Mac environments, troubleshooting desktop, laptop, and mobile device issues
Deploy and configure new workstations, manage software and application installations, and administer company devices using Microsoft Intune
Oversee employee onboarding and offboarding, including IT orientations, account provisioning, and hardware setup
Troubleshoot and support widely used software platforms such as Microsoft 365, SharePoint, Bloomberg, Adobe, Zoom, and Microsoft Teams
Maintain detailed documentation of help desk tickets to support root cause analysis and ongoing issue resolution
Assist with research and initiatives related to information security, and support broader IT infrastructure and technology projects as needed
Qualifications:
Bachelor's degree in Information Technology, Computer Science, or a related field preferred
6+ years of experience in IT support or system administration within a fast-paced professional environment (Financial Services Preferred, but not required)
Proficiency in Windows 10/11, Windows Server (2016/2019/2022)
Familiarity with Microsoft Intune, Azure, and PowerShell strongly preferred
Solid understanding of networking concepts and information security best practices
Excellent problem-solving skills, strong communication abilities, and a collaborative, team-oriented mindset
Highly organized with strong attention to detail and a commitment to providing high-quality user support
Network Engineer
Santa Clara, CA jobs
The role will be responsible for designing, implementing and troubleshooting the expanded network infrastructure, resolving IP space conflicts with acquisitions and ensuring convergence with Cadence standards so that acquired companies are allowed to be integrated into Cadence network. Need to be able cover network performance improvements, some security aspects, and reliability. The role involves managing both hardware and software infrastructure and collaborating with other IT professionals to support integration needs and business continuity.
Key Responsibilities
· Design and Implementation: Design and deploy new network solutions (LAN/WAN, VPNs, wireless, cloud networking, SDWAN/MPLS) and/or improve the efficiency of existing networks. (including building of detailed/accurate bill of materials for design components).
· Configuration and Maintenance: Install, configure, and support network equipment, including routers, switches, firewalls, load balancers, proxy servers, and WAPs.
· Performance Monitoring and Troubleshooting: Monitor network performance, conduct data analysis, troubleshoot outages and complex connectivity issues, and schedule upgrades and patches to maximize uptime.
· Security Management: Some previous experience with network security measures, including firewalls, intrusion detection/prevention systems (IDS/IPS) and access controls, preferred.
· Documentation and Compliance: Create and maintain detailed documentation, diagrams, and configuration logs, and ensure all network operations comply with security standards and best practices.
· Collaboration and Support: Provide technical support to staff, liaise with vendors and service providers, and collaborate with other IT teams (security, systems, application) on various projects.
· Capacity Planning: Perform capacity management and planning to ensure the network infrastructure can scale with the organization's growth.
Requirements:
Required Qualifications
· Education: Bachelor's degree in Computer Science, Information Technology, Network Engineering, or a related field.
· Experience: Proven hands-on network engineering / administration experience, 5+ years
· Certifications (Desired):
o Cisco: CCNA, CCNP, or CCIE
o General: CompTIA Network+ or Security+
o Cloud: Cloud certifications beneficial (CCSK and/or an AWS certification)
Technical Skills
· Deep understanding of networking protocols (TCP/IP, BGP, OSPF, DNS, DHCP, MPLS, IPsec).
· Hands-on experience with enterprise-grade equipment from vendors like Cisco, Aruba, and Palo Alto.
· Proficiency with network monitoring and diagnostic tools (e.g., Wireshark, SolarWinds).
· Knowledge of cloud networking and virtualization technologies.
· Familiarity with scripting and automation tools/languages (e.g., Python, Bash) is increasingly beneficial.
· Ability to follow precise company standards in design and configuration of new networks.
Soft Skills
· Strong analytical and complex problem-solving abilities.
· Excellent written and verbal communication skills to explain technical issues to non-technical stakeholders and also to clearly communicate with people with varying skills in English.
· Time management and project management skills to prioritize tasks and meet deadlines.
· Ability to work independently and as part of a collaborative team.
· Excellent attention to small details, both technical and logistical and differences between all global locations.
· Ability to work globally, sensitively and across many cultures and countries.
Systems Engineer
New York, NY jobs
Sharp Decisions is looking for the following: Role: Systems Admin & Engineering - Vice President Role Description Install and configure servers, storage devices, network and telecommunications equipment. Perform upgrades and maintenance on all IT infrastructure hardware. Install and configure server operating systems, database software, file server structure and protocols, email servers, authentication servers, back-up systems and firewalls. Monitor system performance daily. Provide support on all IT infrastructure-related issues. Manage incident response for any major outages.
Role Objectives: Delivery
Install and configure servers, storage devices, network and telecommunications equipment as required by business need and outlined by the system architect's designs. Perform upgrades and maintenance on all IT infrastructure hardware. Install and configure server operating systems, database software, file server structure and protocols, email servers, authentication servers, back-up systems and firewalls. Configure domain and security policies and define access lists. Configure and deploy monitoring and reporting utilities, operations logs and access auditing tools. Monitor system performance daily and run reports on key metrics such as storage capacity, server resource utilization, connectivity and uptime, back-up performance and incident logs. Provide support on all IT infrastructure-related issues and escalation support for all other IT departments. Manage incident response for any major outages. Test disaster recovery systems and implement disaster response plans as needed.
Role Objectives: Interpersonal
Collaborate with IT systems architect to execute system designs. Provide reports and analysis on system performance and support planning of infrastructure improvements. Engage with other IT infrastructure teams to install hardware, configure devices and policies, and coordinate upgrades and maintenance. Coordinate incident response with all engineers and system owners during outages. Partner with application, web administration, database and other development focused teams to create infrastructure plans and review system performance. Work with disaster recovery, storage management and cyber security architects to implement systems, hardware and policy configurations to support their designs.
Role Objectives: Expertise
Demonstrate comprehensive understanding of IT infrastructure hardware, cloud service platforms, operating systems, virtual environments and configuration tools. Display expertise with application integration, update and change management, database design and structures, system deployments and automated reporting and monitoring tools. Exhibit knowledge of regulations regarding data security and retention, anti-virus tools and protection models, network security and access protocols, and firewall configurations. Show ability to manage and prioritize projects across multiple functions and divisions and manage incident response while providing clear communications to affected parties.
Qualifications and Skills
5+ years of experience in an infrastructure/end-user support role.
• Microsoft Active Directory (User, group and computer management)
• Microsoft Windows Desktop and Server Operating Systems - Windows registry, Group Policy, File/folder security concepts (NTFS/share permissions, etc.)
• Microsoft Office/SharePoint/Teams
• Microsoft SCCM
• Infoblox DNS/DHCP Management
• Performance Monitoring
• Enterprise Backups (Commvault/Rubrik)
• Enterprise storage (Pure)
• Citrix Workspace/XenDesktop Virtual Desktop
• VMware vSphere
• Core networking concepts (DNS, DHCP, etc.)
• Excellent customer service skills.
• Excellent verbal and written communication skills.
• High sense of urgency to support a trading floor.
• Able to follow directions, priorities, and guidance from management.
• Ability to multi-task and work on several projects at the same time.
• Strong ability to deliver on time.
• Ability to document process, requirements, and create test plans.
• Strong ability to translate business requirements into technical solutions.
• Strong team player.
Network Engineer
San Bernardino, CA jobs
Employment Type: Contract-to-hire
LHH Recruitment Solutions is seeking a Network Engineer to join a dynamic team supporting enterprise-level networking infrastructure. This role is ideal for a seasoned professional with deep technical expertise in network engineering, cybersecurity, and mission-critical communications systems. The Senior Network Engineer will play a key role in ensuring the availability, performance, and security of systems that support essential operations.
Position Overview
The Network Engineer will design, implement, and maintain Wide Area Network (WAN) and Local Area Network (LAN) environments across multiple sites. This position requires strong collaboration with internal teams, external partners, and vendors to deliver secure, scalable solutions. The role involves supporting critical infrastructure, including systems that underpin emergency and public safety communications.
Key Responsibilities
Lead multiple projects involving enterprise network technologies and infrastructure upgrades.
Design and implement networking solutions using industry best practices.
Support integration of hosted and cloud-based systems.
Develop operational plans for network support activities and ensure alignment with organizational goals.
Collaborate with stakeholders to gather technical requirements and assess security risks.
Architect scalable solutions for high-availability systems, ensuring compliance with cybersecurity and regulatory standards.
Maintain secure connectivity across data centers and cloud environments.
Participate in change management processes and ensure smooth implementation of infrastructure changes.
Provide on-call support and respond to critical incidents as needed.
Qualifications
Education:
Bachelor's degree in Information Technology, Computer Science, or related field.
Certifications (Preferred):
CCNA, CCNP, ITIL Foundations, CompTIA A+, or equivalent industry credentials.
Experience:
5+ years of progressive experience in network administration and security within enterprise-scale environments.
Expertise in LAN/WAN, voice, video, and data communication networks.
Hands-on experience with Cisco, Meraki, and Sophos hardware.
Technical Skills:
Networking protocols: TCP/IP, VPN, DNS, DHCP, IPsec, OSPF, BGP, EIGRP, MPLS, SD-WAN.
Firewall technologies and endpoint security platforms.
Network monitoring tools (e.g., SolarWinds, NinjaOne).
Backup solutions (Cohesity, Veeam).
Scripting/automation (Python, PowerShell).
Familiarity with IT governance and cybersecurity standards.
Desired:
Experience with Nutanix, Windows Server, and SQL Server.
Additional Requirements
Ability to work flexible schedules, including evenings, weekends, and holidays.
Participation in on-call rotation and emergency response.
Valid driver's license and ability to travel between sites as needed.
Compensation: $55-68/hr ($110-140k salary upon conversion)
Benefit Offerings:
Benefit offerings include medical, dental, vision, life insurance, short-term disability, additional voluntary benefits, EAP program, and 401K plan. Our program provides employees the flexibility to choose the type of coverage that meets their individual needs. Available paid leave may include Paid Sick Leave, where required by law; any other paid leave required by Federal, State, or local law; and Holiday pay upon meeting eligibility criteria.
Equal Opportunity Employer/Veterans/Disabled
To read our Candidate Privacy Information Statement, which explains how we will use your information, please navigate to *******************************************
The Company will consider qualified applicants with arrest and conviction records in accordance with federal, state, and local laws and/or security clearance requirements, including, as applicable:
The California Fair Chance Act
Los Angeles City Fair Chance Ordinance
Los Angeles County Fair Chance Ordinance for Employers
San Francisco Fair Chance Ordinance
Network Engineer
Fremont, CA jobs
(Onsite in Fremont, CA - local applications only.....thanks!)
Network Engineer | $120K + Bonus + Benefits | Fremont
Given their success and rapid growth, they are building out an IT Infrastructure team and are looking to add a Network Engineer to join their networking team. I have been working with hiring manager for months, joined an on onsite team meeting lunch last week and you would be joining a fun, collaborative team with a very friendly, supportive manager.
Key Skill Sets:
Experience w/ AWS and/or Azure public cloud platforms
Cisco, Meraki, Palo Alto Network and/or Fortinet
Wi-Fi Management Experience & Load Balancer Experience
CCNA (CNNP a plus)
(US Citizen or Green Card Only)
Location: Fremont, CA (onsite/flexible hours)
Compensation: $120K base salary + Bonus (based on company performance)
Benefits: Medical/Dental/Vision, Life/Disability Insurance, 401K (match), Flexible Spending Accounts, PTO, tuition reimbursement.
If interested in joining a fun, highly collaborative team and have a direct impact on how they build out the network infrastructure, please apply!
AV and Network Engineer
Tempe, AZ jobs
Our company is seeking a skilled AV and Network Engineer for an onsite, contract-to-hire opportunity in Tempe. This role centers on supporting and enhancing IT infrastructure across AV systems, Apple (MAC) hardware, and Meraki network devices. The ideal candidate will have hands-on experience managing audiovisual integrations, troubleshooting network issues, and providing expert support for MAC workstations and Meraki networking hardware.
Key Responsibilities:
Design, implement, and support AV setups for meeting rooms, event spaces, and collaboration environments.
Configure, troubleshoot, and maintain MAC desktops/laptops and associated peripherals.
Deploy, monitor, and manage Meraki switches, wireless access points, and network security appliances.
Serve as onsite technical point-of-contact for AV and networking issues, providing prompt remediation and end-user support.
Collaborate with IT leadership on infrastructure upgrades and network optimization projects.
Document processes, network layouts, AV setups, and support activities for future reference.
Ensure security, reliability, and performance across all AV and network systems.
Train staff on proper use of AV and MAC equipment.
Requirements:
Proven experience supporting commercial AV systems, including video conferencing and digital signage solutions.
Strong working knowledge of Apple MAC hardware and mac OS.
Hands-on expertise with Meraki networking products (switches, wireless, and security appliances).
Ability to diagnose issues across multiple platforms and deliver solutions in a fast-paced environment.
Excellent communication and customer service skills; comfortable providing onsite technical support.
Experience managing technology upgrades and AV installations preferred.
Relevant certifications (e.g., Cisco/Meraki, Apple Certified Support Professional) a plus.
Network Engineer
New York, NY jobs
Elite global boutique hedge fund seeks Network Engineer to join their growing team. You will be working in a team environment and interact with traders, mid-office, data team, admin team and outside brokers. The fund is seeking a dedicated Network Engineer to maintain and support the firm's network infrastructure, ensuring optimal performance and reliability in a Windows/Linux hedge fund environment. Candidates should be attentive to detail, possess strong problem-solving skills, and be motivated to rapidly learn and collaborate within a close-knit technical team.
Job Responsibilities
Perform all routine network administration tasks, including managing firewall rules, switch configuration changes, periodic device patching and maintenance, and troubleshooting complex network connectivity issues
Support WAN cross-connects and interconnect circuits with various counterparties like brokers, market data vendors, and cloud providers
Manage and fully support the firm's network environment of Arista switches and Fortinet firewalls, spanning one main office location, two colocation datacenters, and a variety of public cloud presences. Support other miscellaneous infrastructure like Meraki Wi-Fi access points and remote access solutions
Design, Implement, and optimize network and security services like Fortigate and Zscaler, in on-premises or cloud deployments
Complete scheduled operational tasks and respond to alerts or issues that arise from monitoring solutions like Solarwinds and SIEM
Monitor network performance and implement high availability solutions with redundancy and failover
Maintain comprehensive documentation of the firm's network such as diagrams of network topologies, standard configurations for network devices, and related operating procedures
Assist in any infrastructure projects or new network solution deployments as necessary
Requirements
4 year university degree (focus on technology is preferred)
Relevant Certification such as Network+, CCNA, Security+ or similar is a plus
3 - 5+ years of experience managing enterprise network infrastructure, ideally within the finance sector or other relevant industry
Detailed knowledge of the OSI network stack, with expertise in all layers of the stack
Expertise in WAN and routing topologies, datacenter switching, and traffic management strategies
Experience in designing and operating secure hybrid multi-cloud systems (GCP, Azure, AWS) including cloud connectivity and Infrastructure-as-code. Knowledge of cloud networking infrastructure like DNS, VPC, Firewalls, SGs, CASB, IDP, IAM
Demonstrated mastery of all core networking concepts, including switching and routing, subnetting and addressing
Advanced knowledge of networking protocols like Ethernet, LACP, STP variants, 802.1q, 802.1x, VLAN and technologies like OSPF, BGP, Multicast PIM, NAT, VRRP, MLAG, QoS, VXLAN, GRE, IPSEC, DHCP, and PBR
Broad understanding of enterprise technology: applications, desktops, servers, storage, and security, particularly as it pertains to network operations and connectivity
Proactive with strong organizational and interpersonal communication skills
Network Engineer
Chicago, IL jobs
Network Engineer (On-site, Chicago, IL)
Type: Full-time, Direct Hire
Compensation: $115,000 base salary + discretionary bonus (2-6%)
Benefits: Medical, Dental, Vision; HSA/FSA; 401(k) with 6% match; 2% profit sharing; Life & Disability insurance; Paid Time Off; Paid Holidays
This an exciting full time, permanent opportunity with tremendous stability and growth potential! Join an iconic U.S. manufacturer and help modernize mission-critical network infrastructure that powers production, distribution, and enterprise operations. As a Network Engineer, you'll design, build, secure, and optimize LAN/WAN environments, strengthen perimeter and endpoint defenses, and collaborate across IT and business teams to keep the organization fast, resilient, and safe.
What You'll Do
Design, implement, and support scalable LAN/WAN/intranet architectures across plants, offices, and cloud endpoints
Administer and harden network gear-firewalls, routers, switches, wireless APs, VPN-with defense-in-depth practices
Monitor performance & security, triage incidents, document fixes, and drive preventive improvements
Plan capacity & growth by analyzing traffic and forecasting future needs
Partner with cross-functional teams to architect network solutions for new apps, SaaS, and datacenter/cloud workloads
Stay current on emerging networking/cybersecurity tech and recommend pragmatic enhancements
What You'll Bring
Bachelor's in Computer Science, IT, or related field (Master's preferred)
Proven success designing and supporting enterprise network architectures
Hands-on mastery of TCP/IP, DNS, DHCP, VLANs, VPNs, and routing protocols
Strong understanding of network security (firewalls, IDS/IPS, encryption, zero-trust concepts)
Experience configuring/managing routers, switches, firewalls, VPNs, and voice
Problem-solving mindset with crisp documentation and communication
Experience leading upgrades/migrations and multi-stakeholder implementations
Pay Transparency (Illinois)
Base salary: up to $115,000
Discretionary bonus: 2-6% of base salary
Benefits: Medical, Dental, Vision; HSA/FSA; 401(k) with 6% match; 2% profit sharing; Life & Disability; PTO; Holidays
Equal Opportunity
We are committed to equal employment opportunity. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected characteristic.