Network Security Engineer; SASE/ZTNA
Listed on 2026-03-05
-
Engineering
Cybersecurity, Systems Engineer
Job Qualifications
- Netskope
- Netskope Security Cloud
- Zero Trust
Type of Requisition:
Regular
Clearance Level Must Currently Possess:
None
Clearance Level Must Be Able To Obtain:
None
Public Trust/Other
Required:
NACI (T1)
Job Family:
Cyber and IT Risk Management
Certifications:
None
Experience:
7+ years of related experience
US Citizenship
Required:
No
We are looking for a Network Security Engineer to support the advancement of our secure access infrastructure and play a key role in managing and modernizing our security operations. The individual will play a significant role in transitioning from a legacy Cisco Secure Client environment to a modern, cloud-native SASE (Secure Access Service Edge) architecture, with a strong focus on Zero Trust Network Access (ZTNA).
If you are a skilled network engineer with a passion for SASE, ZTNA, and automation, we encourage you to apply and help drive our organization’s secure and efficient future.
- Implementation & Maintenance:
- Assist in deploying and managing SASE/SSE components, including Secure Web Gateways (SWG), Cloud Access Security Brokers (CASB), Firewall-as-a-Service (FWaaS), SD-WAN, and Zero Trust Network Access (ZTNA).
- Modernizing Access:
- Support the migration from legacy Cisco Secure Client environments to identity‑centric Zero Trust models, ensuring a smooth transition and troubleshooting any challenges.
- Automation & Integration:
- Write and understand API scripts (e.g., Python, Power Shell, Bash) for automating manual tasks, pulling security telemetry, and integrating Netskope or other cloud‑native services.
- Advanced Network Troubleshooting:
- Routing & Proxy:
Diagnose and resolve traffic flow issues, PAC file misconfigurations, transparent proxies, and SSL inspection challenges. - Protocol Analysis:
Utilize Wireshark or tcpdump to troubleshoot complex network paths, including latency, packet loss, and SSL/TLS issues. - Connectivity:
Resolve issues involving VLANs, NAT, 802.1X supplicants, DNS, and SaaS/COTS applications. - SD‑WAN Integration:
Collaborate on integrating SD‑WAN with SASE platforms for secure traffic steering and optimal performance.
- Routing & Proxy:
- Infrastructure Monitoring & Health:
- Manage and monitor network health using SNMP, SIEM, Grafana, and syslog tools.
- Troubleshoot network connectivity issues within Docker/Linux environments.
- Cloud Security Support:
- Maintain firewall policies across AWS, Azure, and GCP while managing API‑based security integrations with products such as Netskope.
- 5+ years in Network/VPN Engineering.
- 2+ years hands‑on experience with SASE/ZTNA platforms and Cloud services.
- Strong critical thinking and problem‑solving skills.
- Effective communication and teamwork abilities.
- Fast learner with the ability to adapt to evolving technologies.
- Solid understanding of SD‑WAN integration with SSE/SASE frameworks.
- Deep understanding of Windows 10/11 network behaviors and troubleshooting on client‑side devices.
- Strong knowledge of routing protocols, PAC file configuration, and proxy architecture concepts.
- Hands‑on experience with Cisco Secure Client (Any Connect), firewalls, and 802.1X authentication protocols.
- Proficiency in tools such as SNMP, SIEM, Grafana, and Docker troubleshooting for monitoring operational health.
- Hands‑on expertise with solutions such as Netskope, Zscaler, or Palo Alto Networks Prisma Access.
- Strong experience with scripting and automation using Python, Power Shell, or Bash.
- Certifications such as CCNP Security, NSE4, Zscaler Certified Cloud Engineer, or equivalent.
- Familiarity with secure Dev Ops principles and CI/CD in cloud environments.
- Experience securing hybrid cloud workloads across AWS, Azure, and Google Cloud.
- Competitive compensation and benefits package.
- Opportunity to work on cutting‑edge SASE/ZTNA solutions and architectures.
- Collaborative environment fostering professional growth and innovation.
The likely salary range for this position is $81,600 - $110,400. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).