Network Security Engineer
Indexed description
Job Description
Network Security Engineer
Direct hire/ Perm
REMOTE but must live in St Louis area for occational onsite
10% Travel
Should be able to work permanently in the US
Responsibilities
- Design, implement, and support enterprise network services across LAN, WAN, SD-WAN, VPN, routing, switching, wireless, firewalls, and secure remote access.
- Provide senior hands-on engineering expertise across Fortinet, Palo Alto, Silver Peak, Cisco branch and data center networking, and zero trust controls, ensuring solutions are scalable, supportable, and aligned to enterprise standards.
- Translate platform standards and architectural direction into detailed designs, build configurations, and implementation plans.
- Deliver engineering outcomes across branch, campus, edge, cloud, and Azure networking, including integration with VMware-hosted workloads.
- Own key engineering activities including network lifecycle management, capacity and resilience planning, service optimization, and remediation.
- Lead complex changes, migrations, and deployments such as SD-WAN transformations, branch refresh programs, firewall and segmentation changes, and cloud connectivity enablement.
- Provide Level 4 escalation support for major incidents and complex technical issues, including deep troubleshooting, root cause analysis, recovery planning, and vendor engagement.
- Drive continuous improvement in network and security services through standardization, reliability improvements, documentation, and knowledge transfer.
- Work closely with security teams, operations teams, and managed service providers to ensure services are delivered securely, transitioned effectively, and operated to agreed standards.
- Travel to project sites, offices, data centers, and partner locations as required to support assessments, implementation activity, cutovers, stakeholder engagement, and critical go-live or remediation work.
General Network Operations & Engineering
- Support the design, planning, implementation, and continuous improvement of secure, scalable, and high-performing network services.
- Maintain global network performance, availability, integrity, and security to enterprise standards.
- Contribute to data center, cloud and core infrastructure networking, lifecycle planning, upgrade strategies, and service roadmaps.
- Contribute to, produce, and maintain processes, procedures, operational and architectural documentation, that meet CIO/CTO Standards.
- Participate in global engineering initiatives and cross-functional working groups.
Required Skills
- Deep hands-on experience with Cisco enterprise networking and wireless, including Cisco ISE as an authentication backend, and Fortinet firewall, switching, wireless, and SD-WAN, including design and support of corporate wireless environments.
- Strong expertise in Layer 2 / Layer 3 networking, including routing protocols such as BGP, OSPF, and EIGRP, plus high availability and segmentation design.
- Extensive experience with SD-WAN technologies, particularly Silver Peak and Fortinet SD-WAN, including design, migration, implementation, optimization, and support.
- Strong experience in network security and zero trust models, including firewall policy design, segmentation, secure access models, and Zscaler (ZIA, ZPA, ZDX) or equivalent SASE platforms.
- Experience with Azure networking, including hybrid connectivity, segmentation, and Virtual WAN Hub, alongside networking integration with VMware environments.
- Good knowledge of monitoring and observability platforms such as SolarWinds, and strong understanding of incident, problem, and change management in large enterprise environments.
- Experience with automation and infrastructure-as-code, using tools such as Python, Ansible, JSON, Jinga2 or YAML.
Additional Skills
- Strong troubleshooting and analytical capability across complex enterprise environments.
- Ability to manage multiple priorities in a fast-paced global setting.
- Clear communication, stakeholder engagement, and mentoring capability.
- Strong focus on delivery, ownership, and service reliability.
Technology Stack (Relevant Exposure)
- Cisco (routing, switching, wireless, Nexus, Meraki, ISE)
- Fortinet (firewalls, SD-WAN, switching, wireless)
- Zscaler (ZIA, ZPA, ZDX)
- Silver Peak SD-WAN
- Azure Networking and Virtual WAN Hub
- VMware, F5 (desirable), and SolarWinds or equivalent monitoring platforms
Person Specification
- 10+ years of experience in enterprise networking, SD-WAN, and network security engineering.
- Strong hands-on experience delivering complex network solutions in large enterprise environments.
- Proven ability to diagnose and resolve high-severity technical issues.
- Experience working in globally distributed teams.
- Willingness and ability to travel as needed for project delivery, site engagement, implementation support, and major change activity across regional and global locations.
Certifications (Preferred):
- Cisco CCNA / CCNP / CCIE
- Fortinet NSE (or equivalent)
- ITIL Foundation
Desirable:
- Advanced networking or security certifications
- Automation and scripting experience
- Knowledge of ISO27000 or similar security frameworks
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search