Senior Network Security Engineer

Rishabh RPO
Orange, CA

Job Title: Senior Network Security Engineer

Location: Orange, CT

Duration: 6 months

Description:

Duties: Job Summary

We are seeking a highly skilled Senior Network Security Engineer to join our team and play a key role in securing, optimizing, and transforming our enterprise network infrastructure. The ideal candidate will have deep expertise in firewall security, NAT, IPSEC, SD-WAN, routing protocols (EIGRP, BGP, OSPF), and cloud security solutions. This position will focus on managing and enhancing our security infrastructure, which includes:

Cisco ASA, Checkpoint, Fortinet FortiGate, Palo Alto Firewalls.

Radware for DDoS protection.

Zscaler ZIA/ZPA for cloud security.

SD-WAN for optimized global connectivity.

EIGRP, BGP, and OSPF-based network routing.

NAT policy design and implementation

A key initiative for this role is leading the migration from Checkpoint to Fortinet firewalls while ensuring seamless network security operations. Additionally, the engineer will support and enhance our SD-WAN deployment for optimized global connectivity and application performance.

Key Responsibilities

Lead the migration from Checkpoint to Fortinet, including policy conversion, rule optimization, and traffic validation.

Manage and maintain Cisco ASA, Palo Alto, Fortinet, and Checkpoint firewalls across corporate, cloud, and remote sites.

Design and optimize firewall rule sets for improved security, performance, and compliance.

Perform risk assessments and firewall audits to ensure network security best practices.

Manage and optimize SD-WAN architecture to improve application performance and reduce latency.

Implement policy-based traffic steering, failover mechanisms, and WAN optimization.

Troubleshoot SD-WAN performance issues, routing conflicts, and connectivity problems.

Work with network and security engineers to ensure secure connectivity between on-premises, branch locations, and cloud.

Design and implement NAT policies, including static NAT, dynamic NAT, and PAT (Port Address Translation).

Configure and troubleshoot EIGRP, BGP, and OSPF for enterprise and cloud routing.

Optimize routing policies to ensure high availability, redundancy, and performance.

Administer and optimize Zscaler ZIA/ZPA solutions for secure cloud access and web filtering.

Implement zero-trust security policies for cloud applications and remote users.

Troubleshoot Zscaler tunnels, proxy configurations, and application access issues.

Implement and maintain Radware DDoS protection to safeguard network infrastructure from volumetric and application-layer attacks.

Configure IPS/IDS solutions to detect and mitigate security threats.

Work with SOC teams to analyze and respond to security incidents.

Lead firewall, SD-WAN, NAT, and routing issue troubleshooting affecting business-critical applications.

Perform packet capture analysis and use security logs to diagnose network issues.

Work with vendors (Cisco, Fortinet, Palo Alto, Zscaler) to resolve complex technical issues.

Develop and enforce firewall and network security policies in compliance with NIST, CIS benchmarks, and ISO 27001 standards.

Develop scripts (Python, Bash, PowerShell) for automating firewall audits and SD-WAN policy updates.

Optimize firewall and SD-WAN policies to reduce latency and improve efficiency.

Implement network automation frameworks to streamline security operations

Skills: Required Skills & Experience

5-8 years of experience in network security engineering.

Expertise in Fortinet FortiGate, Checkpoint, Palo Alto, and Cisco ASA firewalls.

Strong knowledge of SD-WAN solutions (Fortinet SD-WAN, Cisco SD-WAN, Prisma Access).

Experience configuring and troubleshooting EIGRP, BGP, and OSPF routing protocols.

Hands-on experience managing Zscaler ZIA/ZPA for cloud security.

Proficiency in VPN technologies (IPSec, SSL, GRE, DMVPN, L2TP) and their security implications.

Strong skills in NAT, firewall rule optimization, and routing table analysis.

Experience with Radware DDoS protection, IPS/IDS, and threat mitigation.

Knowledge of zero-trust security architectures and secure SD-WAN implementation.

Strong analytical skills for troubleshooting network security issues, including packet captures and firewall logs.

Keywords:

Education: Preferred Qualifications

Certifications: Fortinet NSE 4/7, Checkpoint CCSA/CCSE, Palo Alto PCNSA/PCNSE, Cisco CCNP Security, Zscaler ZCCP, SD-WAN certifications.

Experience with AWS, Azure, and GCP cloud security best practices.

Familiarity with SIEM solutions for security event monitoring.

Experience automating security tasks using Python, Ansible, or Terraform.

Posted 2025-09-10

Recommended Jobs

Sales Associate-Heavy Duty Automotive

Dentoni's Welding Works Inc
San Leandro, CA

We are a leading company in the heavy-duty automotive industry, seeking a dedicated Sales Associate to join our team. In this role, you will be responsible for providing exceptional customer service …

View Details
Posted 2025-08-07

Design and Sustaining Engineering Manager

Eaton
Los Angeles, CA

Design and Sustaining Engineering Manager Location Los Angeles, CA (Atwater Village area) : Eaton's IS AER FMC division is currently seeking a Design and Sustaining Engineering Manager. The expected…

View Details
Posted 2025-09-11

IT Network Professional - 5 to 10 Years IT Experience Required

Coneth Solutions
Manteca, CA

Job Description Job Description Coneth Solutions, Inc. is a managed IT services and cybersecurity firm in the Central Valley. We provide automated services and support and IT consulting for sm…

View Details
Posted 2025-07-30

Compliance Administrator

firstsourc
Thousand Oaks, CA

Work location: 555 St. Charles Drive Suite 100 Thousand Oaks, CA About Firstsource  Firstsource is a specialized global business process management partner. We provide transformational solutio…

View Details
Posted 2025-08-22

Barback (Tipped)

Sodexo
San Jose, CA

Barback - TIPPED Location: JAY PAUL @ POPPY & CLARO, SAN JOSE - 77857001. Workdays/shifts : Monday to Friday, NO nights, NO weekends . (More details will be provided during the interview pr…

View Details
Posted 2025-09-08

Senior Manager of Research & Development

Sakata Seed America, Inc.
Woodland, CA

JOB SUMMARY: We are seeking a strategic and people-focused Senior Manager of Research and Development. This position will support the Director in managing the research department and leading operatio…

View Details
Posted 2025-09-10

Client Data Specialist

firstsourc
Thousand Oaks, CA

Work from Office location: 555 St.Charles Drive, Suite 100, Thousand Oaks, CA Pay Range: $21-$24/hour About Firstsource Firstsource is a leading provider of transformational outsourcing …

View Details
Posted 2025-09-03

Manager, IT Corporate Audit

Fox Corporation
Los Angeles, CA

OVERVIEW OF THE COMPANY Fox Corporation Under the FOX banner, we produce and distribute content through some of the world’s leading and most valued brands, including: FOX News Media, FOX Sports…

View Details
Posted 2025-09-01

Interactive Films - Production Manager

Snail Games USA
Beverly Hills, CA

Position Title: Production Manager   Company Overview: Snail, Inc. is the leading independent global developer and publisher of digital entertainment. Interactive Films is a dynamic and innova…

View Details
Posted 2025-08-07