Network Security Architect @ NYC, NY - Day 1 Onsite with Hybrid - Need only locals

New York, NY, US • Posted 1 hour ago • Updated 1 hour ago
Contract Independent
Contract Corp To Corp
Contract W2
6 Months
No Travel Required
On-site
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Network Security
  • Azure

Summary

Job Title : Network Security Architect

Location: NYC, NY – Day 1 Onsite with Hybrid – Need only locals

Primary Skill : Network Security, MPLS, Azure

Experience : 15+ years

 

Job Description :

Job Requirements

Looking for only Local to NYC

  • Security Architecture & Strategy Design: Design and deliver comprehensive, secure network frameworks using trust domain segregation, Zero Trust Architecture (ZTA), and secure zoning principles.
  • Develop technical solutions and integration strategies across LANs, WANs, SD-WAN, MPLS, data centers, and multi-cloud environments.
  • Establish baseline configurations for network infrastructure, including Next-Generation Firewalls (NGFW), Intrusion Detection/Prevention Systems (IDS/IPS), and Network Access Control (NAC).
  • Risk Assessment & Vulnerability Management: Conduct routine gap analyses and security risk assessments against recognized frameworks like NIST, SANS, and CIS.
  • Evaluate proposed acquisitions and software interfaces to determine how they impact the organization's overarching network security posture.
  • Plan and oversee regular vulnerability scanning, penetration testing, and ethical hacking exercises.
  • 3. Access Control & Data Protection: Define and implement secure identity federation, Multi-Factor Authentication (MFA), Single Sign-On (SSO), and Public Key Infrastructure (PKI) systems.
  • Enforce Role-Based Access Control (RBAC) to limit network access strictly by corporate necessity and specific employee roles.
  • Architect data-in-transit encryption paths (IPsec/SSL VPNs) and Data Loss Prevention (DLP) parameters to mitigate data leakage.

Required Technical Skills & Knowledge

  • Proficient in IP routing, MPLS, BGP, SD-WAN, Wireless networks, and advanced data center architectures.
  • Security Hardware/Software: Extensive experience deploying Checkpoint, Palo Alto, or Cisco NGFWs, SIEM monitoring platforms, and Endpoint Detection and Response (EDR) solutions.
  • Cloud Architecture: Hands-on experience mapping secure network perimeters inside AWS, Azure, or Google Cloud Platform (Google Cloud Platform) environments.
  • Frameworks & Methodologies: Deep familiarity with SABSA, TOGAF, COBIT, ITIL, and DoDAF architecture frameworks
  • .Automation & Scripting: Capability to write code in Python or PowerShell to automate network provisioning and logging configurations..
  • Certifications (Highly Preferred): Certified Information Systems Security Professional (CISSP) or Information Systems Security Architecture Professional (CISSP-ISSAP).
  • Cisco Certified Internetwork Expert (CCIE) or Cisco Certified Design Professional (CCDP).
  • Certified Information Security Manager (CISM) or SABSA Chartered Security Architect
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10117326
  • Position Id: 33387-26195-1788386778
  • Posted 1 hour ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Livingston, New Jersey

Today

Easy Apply

Contract, Third Party

Depends on Experience

New York, New York

20d ago

Full-time

USD 120,000.00 per year

Hoboken, New Jersey

28d ago

Full-time

USD 200,000.00 - 275,000.00 per year

New York, New York

20d ago

Full-time

Search all similar jobs