Role Overview
We are looking for a hands-on Network & Security Engineer to own the day-to-day operations and optimization of our enterprise network and security stack. The ideal candidate will manage on-premise Huawei & Cisco infrastructure, Palo Alto & Fortinet firewalls, and collaborate closely with MSSP/MSP partners and internal cloud, cyber-security, and IT support teams.
Key Responsibilities
AreaWhat You’ll Do
Network Operations• Administer, monitor, and troubleshoot Huawei & Cisco switches, routers, and WLAN
• Manage Palo Alto NGFWs (policy, upgrades, HA, SSL-decryption, GlobalProtect)
• Coordinate with MSPs/ISPs for capacity upgrades, new circuits, and fault resolution
Security Engineering• Liaise with Managed Security Service Providers on alerts, tuning, and playbooks
• Maintain and enhance NAC, PAM, secure web proxy, and other security projects
• Act as SOC IR point-of-contact: triage alerts, investigate in Microsoft 365 Defender / Sentinel, escalate to stakeholder teams
Collaboration & Projects• Work with Azure, M365, and Cyber-Security teams on hybrid/cloud integrations
• Support infrastructure changes (design reviews, change control, UAT)
• Provide L2/L3 guidance to L1 IT support for incident resolution
Governance & Documentation• Keep network/security diagrams, runbooks, and asset inventories current
• Contribute to DR/BCP planning and quarterly tabletop exercises
Continuous Improvement• Track emerging threats, recommend hardening and automation opportunities
• Drive firmware/OS upgrade cycles and lifecycle management
Onsite IT Support• Provide advanced support and troubleshooting assistance for critical onsite IT issues
• Help coordinate network and security tasks that require physical presence
Desired Skills & Experience
5+ years in enterprise network/security engineering or similar role
Strong hands-on experience with Huawei & Cisco routing/switching, VLANs, STP, BGP, OSPF
Proficiency with Palo Alto PAN-OS (policies, App-ID, URL-F, Threat Prevention)
Familiarity with NAC (e.g., Cisco ISE), PAM (e.g., CyberArk), and secure proxies
Working knowledge of Microsoft security stack (Defender, Sentinel) and Azure networking
Experience collaborating with MSSP/MSP/ISP partners and managing SLAs
Solid understanding of incident response, SIEM workflows, and MITRE ATT&CK
Scripting (PowerShell/Python) and automation mindset is a plus
Relevant certifications (e.g., CCNP/HCIP, PCNSE, Azure Network Engineer, Security+) are preferred
Education
Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience)