Resumen del rol

Information Security Engineer, Network Security Engineering

Requisitos y responsabilidades

Contenido del rol extraído en secciones para revisar más rápido.

PRIMARY RESPONSIBILITIES

  • Serve as the primary subject matter expert for Palo Alto Networks technologies (NGFWs, Cloud NGFW, Panorama), Web Application Firewall, Content Delivery Network, API Security, IDS/IPS, and DDoS prevention

PRIMARY RESPONSIBILITIES

  • Own onboarding, policy tuning, and lifecycle management for WAF and CDN platforms; lead firewall ruleset optimization, IDS/IPS tuning, and DDoS protection configuration

PRIMARY RESPONSIBILITIES

  • Partner with internal teams to drive the global rollout, tuning, and operational management of URL filtering and TLS decryption across the network estate

PRIMARY RESPONSIBILITIES

  • Lead API security efforts — ensuring API traffic routes through security tooling, identifying vulnerabilities, and working with application teams on fixes

PRIMARY RESPONSIBILITIES

  • Lead troubleshooting of complex, multi-layer global network and application issues — from packet captures on inter-continental BGP topologies to WAF false-positive triage

PRIMARY RESPONSIBILITIES

  • Partner with business and application teams to produce clear, actionable security documentation, change proposals, and executive-ready findings

PRIMARY RESPONSIBILITIES

  • Analyze existing network security architectures, processes, and procedures to identify gaps and drive meaningful improvements

PRIMARY RESPONSIBILITIES

  • Configure and report on defensive measures against advanced threat actor tactics; maintain current awareness of the evolving threat landscape and the effectiveness of our defenses against them

PRIMARY RESPONSIBILITIES

  • Communicate complex technical problems and solutions clearly to both global engineering teams and C-suite stakeholders

PRIMARY RESPONSIBILITIES

  • Champion the broader Security team’s initiatives, not just Network Security Engineering

PRIMARY RESPONSIBILITIES

  • Participate in the maintenance and tuning of all network security technologies including WAFs, CDNs, VPNs, and application-aware firewalls

PRIMARY RESPONSIBILITIES

  • Leverage and contribute to automation pipelines for global firewall rule deployment and policy management across the network estate

PRIMARY RESPONSIBILITIES

  • Utilize security tooling telemetry and data collection automations to produce actionable reporting and metrics for internal teams and executive stakeholders

REQUIRED QUALIFICATIONS

  • 5+ years of hands-on network security engineering experience designing and implementing enterprise-scale security solutions

REQUIRED QUALIFICATIONS

  • Expert-level proficiency in Palo AltoNetworks — NGFWs, Panorama policy management, and PAN-OS; PCNSE or PCNSC certification strongly preferred

REQUIRED QUALIFICATIONS

  • Expert troubleshooting skills across network and application layers, including packet capture analysis on complex, dynamically routed architectures

REQUIRED QUALIFICATIONS

  • Deep understanding of layer 7 web application technologies and WAF/CDN platforms (e.g. Akamai, Cloudflare, Imperva, F5) — onboarding, policy tuning, break/fix troubleshooting, and operational management

REQUIRED QUALIFICATIONS

  • Solid grounding in API security — ensuring API traffic routes through security tooling, evaluating identified vulnerabilities, and partnering with application teams to drive remediation

REQUIRED QUALIFICATIONS

  • Strong HTTP/application security knowledge: TLS interception, SQL injection, XSS, CSRF, command injection, LFI/RFI, rate limiting, bot detection, geo-blocking, and sinkholing

REQUIRED QUALIFICATIONS

  • Intermediate to advanced network routing and switching knowledge with focus on DNS, TCP/IP, IPsec, TLS, GRE, OSPF, and BGP

REQUIRED QUALIFICATIONS

  • Proficiency in at least one scripting language (Python preferred) and familiarity with Linux/CLI tooling

REQUIRED QUALIFICATIONS

  • Working knowledge of public cloud environments (Azure, AWS, GCP)

REQUIRED QUALIFICATIONS

  • Experience with at least one SIEM platform for log analysis, behavioral analytics, and rule tuning

REQUIRED QUALIFICATIONS

  • Proven written and verbal communication skills, including presenting to both technical and non-technical audiences

REQUIRED QUALIFICATIONS

  • Proven track record of taking ownership in unstructured environments — cutting through ambiguity, making sound decisions with incomplete information, building stakeholder consensus, and delivering security improvements without waiting for top-down direction

PREFERRED QUALIFICATIONS

  • Industry certifications: PCNSE, PCNSC, CCNP/CCIE Security, GIAC (GWAPT, GPEN, or similar)

PREFERRED QUALIFICATIONS

  • Experience building metrics pipelines and KPI reporting for security operations

PREFERRED QUALIFICATIONS

  • Familiarity with interconnecting disparate security technologies to solve unique application and security challenges

Location:

  • 401(k) plan with matching company contributions
  • Comprehensive Medical, Dental & Vision Care
  • Paid parental leave at 100% of salary
  • Paid Time Off and Company Holidays
  • Early access to earned wages through Daily Pay
Roles similares

Mantén una lista de respaldo.

Ver stack
FocoNetwork Security EngineeringÁrea del rol
Señal de senioritySeniorNivel del candidato
StackAWS, Azure, GCPSkills principales
Ubicación1 país aceptadoElegibilidad

Stack

Usa estas tags para comparar roles remotos similares.

Elegibilidad de ubicación

Candidatos deberían aplicar solo cuando el país del perfil aparece aquí.

Tu perfilPaís no definidoInicia sesión para comparar tu país con este rol.

Flujo de contratación

WithMira muestra el rol y luego envía candidatos a la aplicación de la empresa.

1Revisa fit del rol, stack y elegibilidad de ubicación en WithMira.
2Abre la página de aplicación de la empresa desde el link rastreado.
3Guarda el rol o suscríbete a oportunidades similares antes de salir.