Sr. Network Security Engineer III (6563)

1 week, 1 day ago
Full-time
Lead
DevOps and Infrastructure
MetroStar

MetroStar

MetroStar builds innovative technology solutions designed to enhance and accelerate the missions of government agencies, leveraging a rich legacy of expertise in the digital age.

IT Services
251-1K
Founded 1999

Description

  • Design, implement, and manage firewalls, VPNs, intrusion prevention systems, and network access control solutions in mission-critical environments.
  • Secure network perimeters and internal network segments using defense-in-depth strategies.
  • Respond rapidly to security incidents, vulnerabilities, and operational needs.
  • Support continuous hardening and improvement of network infrastructure security.
  • Participate in Agile execution, technical planning, and security risk discussions.
  • Communicate security impacts, risks, and mitigation strategies to technical and non-technical stakeholders.
  • Recommend and implement security architecture and operational improvements.
  • Serve as a hands-on technical subject matter expert with minimal ramp-up.
  • Establish and maintain customer trust through reliable and secure delivery.
  • Apply engineering judgment to deliver practical, mission-focused security solutions.

Requirements

  • 10+ years of experience in network engineering with a primary focus on enterprise network security infrastructure.
  • Demonstrated expertise designing, implementing, and managing next-generation firewalls, VPN solutions, intrusion prevention systems, and network access control platforms.
  • Hands-on experience securing network perimeters and internal network segments, including policy design, segmentation, and threat mitigation.
  • Operational experience deploying and managing firewall rule sets, VPN tunnels, and security policies in mission-critical environments.
  • Hands-on experience with at least one enterprise security platform, such as Palo Alto Networks, Fortinet, or Cisco security technologies.
  • Hands-on experience with Cisco ISE and Cisco ASA environments.
  • Hands-on experience with IDS and IPS solutions and endpoint configuration hardening in secure environments.
  • Experience supporting Zero Trust architectures and identity-centric network security patterns.
  • Security+ and at least one platform-specific security certification, such as PCNSE, Fortinet NSE, or a Cisco security certification.
  • DoD 8140 certification aligned to the 441 Network Operations Specialist work role, such as Network+, Security+, Cloud+, SSCP, CASP+, CISSP, or CCNP Security.
  • Bachelor’s degree in a technical field preferred; relevant experience may substitute for education requirements.
  • Ability to contribute immediately with minimal ramp-up in a mission-critical operational environment.

Benefits

  • Salary range of $207,000 to $320,000.
  • Eligible for performance-based bonuses, company-paid training and/or certifications, and referral bonuses.
  • Health, dental, and vision insurance.
  • 401(k) retirement plan with company match.
  • Paid time off and holidays.
  • Parental leave and dependent care.
  • Flexible work arrangements.
  • Professional development opportunities, employee assistance, and wellness programs.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Staff Threat Research Engineer

Sumo Logic 251-1K Internet Software & Services

Sumo Logic’s Threat Labs is hiring a staff-level threat researcher to turn threat intelligence and original adversary research into high-quality detections for its SIEM platform.

AWS Azure Cybersecurity GCP Machine Learning PowerShell Python SIEM SOC
1 hour, 34 minutes ago

Manager, Engineering (Identity and Access Management)

Bugcrowd 1K-5K Internet Software & Services

Bugcrowd is hiring a Software Engineering Manager to lead its Identity and Access Management team in building secure, scalable authentication, authorization, and identity services across the company’s product ecosystem.

Agile AWS Azure Encryption GCP Go Java JWT Node.js OpenID Connect Ruby SAML Scrum
4 hours, 58 minutes ago

DevSecOps Engineer (TypeScript & Agentic AI)

Arize AI 51-250 IT Services

Arize AI is hiring a remote IT Support Specialist to support Mac-only endpoints, cloud systems, and compliance operations for a distributed team.

Confluence GitHub JIRA TypeScript
11 hours, 34 minutes ago

Senior Cloud Security Engineer (Kubernetes)

Form3 251-1K Diversified Financial Services

Form3 is hiring a defensive security engineer to build and operate security controls for highly available multi-cloud payment systems and advise engineering teams on managing platform risk.

AWS Azure CI/CD CockroachDB Flux GCP Go Helm Kubernetes Linux NATS Penetration Testing SIEM Terraform
12 hours, 7 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers