Role Summary
The Network Security Engineering & Architecture Lead is responsible for designing, implementing, and supporting enterprise network security solutions that protect critical infrastructure, applications, and data. This role provides advanced engineering, architecture, and operational support across firewalls, network segmentation, DNS, DHCP, Infoblox, Akamai, access management, and related security technologies.
The individual will drive secure network design, security policy governance, technology modernization, regulatory compliance, and continuous improvement initiatives while ensuring the enterprise network remains resilient, scalable, and secure across on-premises, cloud, and hybrid environments.
Key Responsibilities
Network Security Architecture & Design
- Design and implement secure enterprise network architectures supporting business, cloud, and digital transformation initiatives.
- Develop network security standards, reference architectures, and governance frameworks.
- Lead security assessments and architecture reviews for new projects, applications, and infrastructure deployments.
- Architect segmentation strategies using firewalls, VRFs, VLANs, SDN, micro-segmentation, and zero-trust principles.
- Create scalable and resilient network designs supporting high availability, disaster recovery, and business continuity requirements.
- Collaborate with enterprise architecture, cloud, application, and cybersecurity teams to align security controls with business objectives.
Firewall Engineering & Security Policy Management
- Design, deploy, and support next-generation firewall solutions.
- Manage firewall policy lifecycle including:
- Rule creation
- Access reviews
- Policy optimization
- Risk assessment
- Compliance validation
- Implement and maintain security controls for:
- Data centers
- Cloud environments
- DMZ networks
- Internet-facing applications
- Conduct firewall health checks and security posture reviews.
- Review and implement network security changes while ensuring adherence to security standards and change management processes.
- Investigate and remediate firewall-related incidents, vulnerabilities, and audit findings.
Preferred Firewall Platforms
- Palo Alto Networks
- Check Point
- Cisco Firepower
- Fortinet
- Juniper SRX
- Azure Firewall
- AWS Network Firewall