We are seeking a highly skilled Network Engineer – Cybersecurity to design, implement, secure, and maintain enterprise-grade network infrastructures in a security-driven environment. This role plays a critical part in protecting organizational assets by ensuring the confidentiality, integrity, and availability of network systems.
The ideal candidate will have strong hands-on experience in network engineering combined with cybersecurity controls, supporting secure operations, incident response, compliance, and continuous improvement of the organization’s security posture.
Network Design & Implementation
- Design, deploy, configure, and maintain secure network infrastructure including LAN, WAN, WLAN, VPN, and DMZ environments
- Implement network segmentation, VLANs, routing, and switching aligned with security best practices
- Configure and manage enterprise-grade routers, switches, and network security appliances
- Ensure high availability, redundancy, and performance across all network systems
Network Security & Cyber Defense
- Implement, configure, and manage firewalls, IDS/IPS, VPN gateways, and network access control (NAC) solutions
- Apply defense-in-depth and zero-trust network architecture principles
- Conduct network hardening, access control enforcement, and secure configuration management
- Monitor network traffic for suspicious activity and support threat detection and mitigation
- Support vulnerability management activities, including remediation of network-related findings
- Collaborate with SOC teams during security incidents, investigations, and post-incident reviews.
Monitoring, Troubleshooting & Incident Response
- Monitor network health, performance, and security using monitoring and logging tools
- Troubleshoot complex network, connectivity, and security issues under tight SLAs
- Provide escalation-level support during incidents and outages
- Participate in incident response activities, root cause analysis, and corrective action implementation
Compliance, Documentation & Governance
- Ensure network configurations comply with organizational security policies, industry standards, and regulatory requirements
- Support audits and compliance efforts related to ISO 27001, NIST, CIS Controls, or similar frameworks
- Maintain accurate and up-to-date network documentation, diagrams, asset inventories, and SOPs
- Assist in developing and improving network security policies, standards, and procedures
Collaboration & Continuous Improvement
- Work closely with SOC, GRC, IT infrastructure, cloud, and application teams
- Support secure integration of on-premise and cloud environments
- Stay current with emerging network technologies, vulnerabilities, and cyber threats
- Proactively recommend improvements to enhance security, resilience, and operational efficiency
Required Qualifications
- Bachelor’s degree in Network Engineering, Cybersecurity, Computer Science, Information Technology, or a related field
- Proven hands-on experience as a Network Engineer in a cybersecurity-focused or security-sensitive environment
- Strong practical knowledge of:
- TCP/IP, DNS, DHCP, ARP, NAT
- Routing & Switching (OSPF, BGP, VLANs, STP)
- LAN/WAN/WLAN architectures
- Hands-on experience with firewalls such as Palo Alto, FortiGate, Cisco, Sophos, or equivalent
- Strong experience with VPN technologies (IPsec, SSL VPN, site-to-site, remote access)
- Familiarity with IDS/IPS, NAC, network monitoring, and traffic analysis tools
- Solid understanding of cybersecurity concepts including:
- Network security architecture
- Zero Trust
- Defense-in-depth
- Secure access controls
- Excellent troubleshooting, analytical, and problem-solving skills
- Ability to work independently in an on-site, fast-paced operational environment
Preferred / Advantageous Skills
- Experience working in SOC, MSSP, or regulated environments (healthcare, finance, government)
- Knowledge of cloud networking and security (AWS, Azure, or GCP)
- Familiarity with SIEM platforms and log analysis
- Experience with automation or scripting (Python, Bash, PowerShell)
- Exposure to penetration testing, red teaming, or post-remediation validation
- Experience supporting 24/7 operations or on-call rotations
Certifications (Strongly Preferred)
- CCNA / CCNP
- CompTIA Network+
- CompTIA Security+
- Fortinet NSE
- Palo Alto PCNSE
- Any recognized cybersecurity certification is an advantage