CrawlJobs Logo

Senior Information Security Engineer - Firewall Micro-segmentation

United States, Irving · Job Posted June 30, 2026
Apply Position
Job Link Share

Job Description

Wells Fargo is seeking a Micro-segmentation Senior Information Security Engineer. We are looking for a solid security engineer with a technical foundation in firewalls and traffic segmentation. Ideal candidates would have hands on segmentation experience with Illumio and at least one of: Guardicore (Akamai), VMware NSX-T, Cisco Secure Workload, or Kubernetes-native (Calico/Cilium, NetworkPolicies) including policy simulation/shadow testing and staged rollouts. Hands-on segmentation in hybrid environments (on‑prem + AWS/Azure/GCP), including Azure ASG/NSG or AWS SG patterns, and Kubernetes/Service Mesh (NetworkPolicies, mTLS, Istio/Envoy) for east‑west traffic would be highly desirable. Scripting is a talent of yours and you like the challenge of building reliable automations using Python/PowerShell, Terraform/Ansible, and ServiceNow IntegrationHub with OAuth2/OIDC-secured APIs, version control (Git/GitHub), CI/CD, and policy-as-code workflows (idempotent, retry-safe). Security is top of mind for you and you are able to implement identity- and risk-aware policies by integrating CMDB labels, workload identities, and EDR/PAM context to enforce Zero Trust segmentation

Job Responsibility

  • Design, document, test, maintain, and provide issue resolution recommendations for highly complex security solutions related to Micro-Segmentation
  • Implement requirements and engage teams to create automation / orchestration for the enterprise's Micro-Segmentation solution
  • Help identify new tools and/or features to strengthen enterprise Micro-Segmentation capabilities
  • Serve as a POC for enterprise Micro-Segmentation deployment
  • Implement security designs on large projects for internal clients to ensure conformity with corporate information, security policy, and standards
  • Utilize subject matter knowledge in industry leading security solutions and best practices to implement components of information security
  • Collaborate and provide influence with all members of the microsegmentation team
  • Define and coordinate automation strategies to integrate micro-segmentation with CMDB and user-facing portals, translating business and security requirements into actionable deliverables for development teams

Requirements

  • 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
  • Experience with Micro-Segmentation security solutions including policy management
  • Experience with scripting
  • Strong understanding of APIs and proficiency in working with JSON, including the ability to interpret, construct, and troubleshoot queries and payloads in support of automation and integration efforts
  • Experience with one or more: Guardicore (Akamai), VMware NSX T, Cisco Secure Workload, Calico/Cilium
  • Experience with Hybrid cloud segmentation in Azure/AWS/GCP (NSG/ASG, SG/NACL, tags/labels)
  • Experience with Service Mesh (Istio/Envoy), Kubernetes NetworkPolicies, OPA/Gatekeeper
  • Scripting skills such as Python/PowerShell, Terraform/Ansible, Git/GitHub, CI/CD
  • ServiceNow IntegrationHub
  • Telemetry (NetFlow/IPFIX/eBPF, VPC Flow Logs) and SIEM analytics (Splunk/Sentinel/Elastic
  • KQL/SPL)
  • Understanding of NIST 800 207 Zero Trust and mapping to NIST/CIS controls
  • Experience designing policy simulation/shadow testing and staged rollouts with measurable KPIs
  • Excellent technical documentation skills
  • Experience with Service Now, Jira or similar systems
  • Willingness and Ability to work off hours and occasional weekends to support change activities
  • Participation in on call shift

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Senior Information Security Engineer - Firewall Micro-segmentation

8 matching positions

Senior Network Security Engineer

We are seeking a Senior Network Security Engineer to design, implement, and supp...
Location
Location
United States , Alpharetta
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5–7+ years of experience designing, implementing, and supporting network infrastructure environments
  • Strong background in network security, firewall administration, routing, and switching technologies
  • Experience working in a Managed Service Provider (MSP) or multi-client environment supporting multiple networks
  • Advanced knowledge of networking protocols and technologies including TCP/IP, DNS, NAT/PAT, VLANs, QoS, routing, and switching concepts
  • Experience implementing secure network segmentation and layered security controls across network infrastructure
  • Hands-on experience with enterprise firewall platforms and network security policies
  • Strong troubleshooting and diagnostic skills across complex network environments
  • Ability to communicate effectively with both technical teams and client stakeholders
  • Experience with networking and wireless platforms from vendors such as Meraki, Fortinet, Ubiquiti, Ruckus, Aruba, Cisco, or similar technologies
  • Experience with firewall platforms such as Fortinet, Palo Alto, SonicWall, or comparable solutions
Job Responsibility
Job Responsibility
  • Design, deploy, and maintain network infrastructure including routers, switches, wireless networks, and firewalls across multiple client environments
  • Support enterprise LAN, WAN, and wireless connectivity systems to ensure high availability and performance
  • Implement and manage networking protocols such as TCP/IP, VLANs, QoS, RSTP, LACP/LAG, and multicast technologies
  • Implement and maintain network security controls across switching, wireless, and firewall platforms
  • Design secure network segmentation strategies including VLAN segmentation, micro-segmentation, and multi-tenant network architectures
  • Configure and manage firewall policies, NAT rules, and security filtering using least-privilege access principles
  • Implement secure wireless network authentication methods including WPA2/WPA3 enterprise authentication and RADIUS-based access controls
  • Design and maintain private wireless networks supporting role-based or device-based access policies
  • Support modern access control frameworks including Zero Trust Network Access (ZTNA) approaches
  • Implement network access controls such as 802.1X authentication, device profiling, and endpoint-based access policies
What we offer
What we offer
  • medical
  • vision
  • dental
  • life and disability insurance
  • company 401(k) plan
Read More
Arrow Right

Senior Network Security Engineer

Rackspace Technology is a leading provider of expertise and managed services acr...
Location
Location
Saudi Arabia , Riyadh
Salary
Salary:
Not provided
rackspace.com Logo
Rackspace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field
  • 8+ years of experience in network or security engineering roles
  • Minimum 5+ years of hands-on experience with enterprise firewall platforms (Palo Alto, Fortinet, Cisco, etc.)
  • Proven expertise with F5 BIG-IP platforms, including LTM and GTM modules
  • Extensive experience configuring and maintaining IPS/IDS systems (Cisco, Palo Alto, Snort, etc.)
  • Strong understanding of network protocols, OSI model, and TCP/IP stack
  • Experience with micro-segmentation technologies
  • In-depth knowledge of common attack vectors and mitigation techniques
  • Current industry certifications (CISSP, CCNP Security, F5 Certified, etc.)
  • Understanding of compliance frameworks (PCI DSS, HIPAA, SOX, ISO 27001, etc.)
Job Responsibility
Job Responsibility
  • Design, implement, and manage enterprise firewall infrastructure including next-generation firewalls (NGFWs), VPN concentrators, and web application firewalls
  • Configure, optimize, and maintain F5 application delivery controllers, including load balancing, SSL offloading, and application security modules
  • Deploy and manage intrusion prevention/detection systems (IPS/IDS), ensuring proper tuning to minimize false positives while detecting genuine threats
  • Develop and implement comprehensive network security architectures with defense-in-depth strategies
  • Create and maintain security policies, rulesets, and access control lists across all security platforms
  • Conduct regular security audits, vulnerability assessments, and penetration testing to identify and remediate security gaps
  • Monitor security events and logs to identify potential security incidents and respond appropriately
  • Lead security incident investigations and responses, including root cause analysis and remediation planning
  • Establish security monitoring solutions and develop custom alerting for critical security events
  • Implement automation and orchestration for security processes to improve efficiency and response times
  • Fulltime
Read More
Arrow Right

Global Senior Security Manager

We are seeking a seasoned security leader to partner with our CISO in protecting...
Location
Location
United States , New York
Salary
Salary:
150000.00 - 210000.00 USD / Year
alterdomus.com Logo
Alter Domus
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years in cybersecurity with at least 5 years in a leadership role managing global, cross-functional teams
  • Proven track record of representing security at C-suite and board level, translating complex risk into clear business narrative
  • Experience in financial services or a similarly regulated industry (FCA, PRA, DORA, SOX, PCI-DSS)
  • Familiarity with deploying AI security frameworks such as NIST AI RMF 1.0, MITRE ATLAS, and financial services AI governance standards
  • Practical knowledge of implementing AI-powered security tools to automate detection, response, and guardrail enforcement
  • Familiarity with AI model risk, LLM threat surfaces, data poisoning, prompt injection, and adversarial ML attack vectors
  • Familiarity with enterprise security tools
  • Broad exposure to endpoint protection, vulnerability management, CSPM, DLP, and email security platforms
  • CISSP, CISM, or CRISC — one or more preferred
  • CCSP or equivalent cloud security credential
Job Responsibility
Job Responsibility
  • Support CISO in key decision making and regulatory meetings — presenting risk posture, programme status, and strategic recommendations with clarity and confidence
  • Build, mentor, and manage high-performing, globally distributed security teams spanning multiple time zones and functions
  • Define and execute the enterprise security roadmap aligned with business strategy and applicable regulatory requirements (FCA, PRA, DORA, SOX, PCI-DSS)
  • Lead end-to-end transformation of Identity & Access Management (IAM) and Privileged Access Management (PAM), including strategy, tooling selection, and programme delivery
  • Drive implementation of an Identity Governance & Administration (IGA) framework — encompassing joiner/mover/leaver processes, role engineering, access certification, and policy enforcement
  • Oversee deployment and maturation of PAM controls, credential vaulting, just-in-time access, and session monitoring to eliminate over-privileged accounts across the enterprise
  • Establish access management metrics and KPIs reported to executive leadership and regulators
  • Lead the Zero Trust Architecture (ZTA) transformation programme — defining principles, technology roadmap, and phased rollout across on-premises, cloud, and hybrid environments
  • Drive AI-augmented network and security architecture, leveraging machine learning for anomaly detection, automated policy enforcement, and predictive threat modelling
  • Build and operationalise a Network Operations (NetOps) operating model — defining governance, runbooks, escalation paths, and SLA frameworks for a globally resilient network
What we offer
What we offer
  • Support for professional accreditations
  • Flexible arrangements, generous holidays, plus an additional day off for your birthday
  • Continuous mentoring along your career progression
  • Active sports, events and social committees across our offices
  • 24/7 support available from our Employee Assistance Program
  • The opportunity to invest in our growth and success through our Employee Share Plan
  • Plus additional local benefits depending on your location
  • Fulltime
Read More
Arrow Right
New

Cross Technology Managed Services Engineer (L3)

Make an impact with NTT DATA. Join a company that is pushing the boundaries of w...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or equivalent qualification in IT/Computing (or demonstrated equivalent work experience)
  • Certifications relevant to the services provided (certifications carry additional weightage on a candidate’s qualification for the role)
  • Expert-level management of Cisco or FortiGate
  • Zero Trust Architecture (ZTA) / SASE
  • Segmentation: Micro-segmentation and logical network segmentation (VLANs, VRFs)
  • Cloud Network Security: AWS/Azure/GCP network security controls (VPC, Security Groups, NSGs)
  • NAC: Cisco ISE or similar Network Access Control systems
  • IDS/IPS & WAF (Web Application Firewalls, e.g., F5, Cloudflare)
  • Automation: Basic scripting skills in Python and use of Ansible for security configuration
  • SIEM: Familiarity with Splunk or Microsoft Sentinel for log analysis
Job Responsibility
Job Responsibility
  • Define and Lead Network Security Strategy: Understand, architect, design, and champion the overall network security posture and roadmap for the entire organization (on-premise, cloud, hybrid)
  • L3/L4 Incident Management & Root Cause Analysis: Act as the highest-tier escalation point for complex and critical network security incidents and failures, driving resolution and preventative measures
  • Security Infrastructure Management: Design, deploy, and manage core network security components, including next-generation Firewalls (NGFW), IDS/IPS, Load Balancers, VPN concentrators, and network access control (NAC) systems
  • Policy Development and Review: Establish and enforce comprehensive security policies, standards, and baselines across all network devices and segmentation zones
  • Cloud Network Security Architecture: Design secure networking patterns for cloud environments (e.g., AWS VPCs, Azure VNet security groups, Transit Gateways) integrated with on-premise solutions
  • Disaster Recovery (DR) and Business Continuity: Develop and regularly test network security components of the DR and Business Continuity plans
  • Technology Evaluation: Evaluate and recommend new security technologies and tools (e.g., SASE, Zero Trust Network Architecture) to improve the organization's defensive capabilities
  • Mentorship and Documentation: Create high-quality documentation (HLD/LLD) and mentor junior engineers on security best practices and advanced troubleshooting techniques
  • Works independently, with general direction from the client, stakeholders, team lead, or senior manager, to perform operational tasks to resolve all escalated incidents/requests in a timely manner within the agreed SLA
  • Timely and consistent updates of tickets with resolution tasks performed
  • Fulltime
Read More
Arrow Right

Platform Manager - Network Security

4 Days in the office from any of our locations in RI, Iselin NJ, MA, Pittsburgh ...
Location
Location
United States , Johnston; Phoenix; Westwood; Iselin
Salary
Salary:
175000.00 - 224000.00 USD / Year
citizensbank.com Logo
Citizens Bank
Expiration Date
June 30, 2026
Flip Icon
Requirements
Requirements
  • Deep expertise with firewalls, load balancers, outbound proxies, and security automation frameworks
  • Hands-on proficiency with Palo Alto and F5 technologies, plus AWS/Azure native security and load balancing services
  • Strong experience with industry-leading tools such as ForcePoint, Netskope, Zscaler, and Illumio
  • In-depth knowledge of Zero Trust, micro-segmentation, and modern network security architectures
  • Proven leadership experience managing global engineering teams
  • Demonstrated experience leading audit, compliance, or regulatory engagements within a financial institution
  • Strong understanding of vulnerability management processes, tools, and risk reporting
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field preferred
  • Minimum 5+ years in network security, with at least 5+ years leading engineering or platform teams
  • Professional certifications (CISSP, CCNP Security, CISM, or equivalent) preferred
Job Responsibility
Job Responsibility
  • Lead, mentor, and develop a high-performing global team of security architects and network engineers, with staff located in the U.S. and India
  • Foster a culture of accountability, collaboration, continuous learning, and operational excellence
  • Set clear strategic direction for the product line, ensuring alignment with business goals and enterprise security standards
  • Champion the vision for automated network security and load balancing across Citizens Bank's enterprise infrastructure
  • Oversee the architecture, implementation, and lifecycle management of firewalls, outbound proxies, load balancers, and cloud-native security solutions
  • Drive automation of policy enforcement, including Port Open Request (POR) workflows and Load Balancer (LB) configuration orchestration
  • Implement and mature Zero Trust models and micro-segmentation strategies for both on-prem and cloud environments
  • Serve as SME for key technologies, including Palo Alto, F5, AWS/Azure networking constructs, ForcePoint, Netskope, Zscaler, and Illumio
  • Act as the central point of contact for all network-security-related audits and regulatory reviews — internal, external, PCI, GDPR, and OCC examinations
  • Lead the end-to-end process for responding to audit requests, supplying evidence, coordinating walkthroughs, and managing communication with auditors and banking regulators
What we offer
What we offer
  • competitive pay
  • comprehensive medical, dental and vision coverage
  • retirement benefits
  • maternity/paternity leave
  • flexible work arrangements
  • education reimbursement
  • wellness programs
  • Fulltime
Read More
Arrow Right

Senior Solutions Architect

As a Senior Solutions Architect at NTT DATA, you will play an essential role in ...
Location
Location
Slovakia
Salary
Salary:
3000.00 EUR / Month
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of professional experience in IT infrastructure and cybersecurity
  • Proven experience designing security architectures for large or multinational organizations
  • Experience working in complex enterprise or managed services environments
  • Strong background in consulting and client engagement
  • Experience in agile and transformation-driven environments is advantageous
  • Strong experience designing enterprise-level security architectures across IT infrastructure
  • Deep understanding of layered security models and defense-in-depth strategies
  • Experience with reference architectures and security design frameworks
  • Advanced hands-on experience with SIEM platforms
  • Understanding of log management, correlation rules, threat intelligence integration, and use case development
Job Responsibility
Job Responsibility
  • Design and lead end-to-end cybersecurity architectures for large organizations, covering enterprise IT infrastructure, hybrid environments, and operational technology (OT/ICS)
  • Architect and oversee Security Information and Event Management (SIEM) and security monitoring solutions to support threat detection, incident response, and continuous security improvement
  • Design secure network architectures including: Firewalls and next-generation firewalls (e.g., Fortinet or equivalent technologies), Network segmentation and micro-segmentation, Secure site-to-site and hybrid connectivity, Zero Trust principles
  • Develop integrated security ecosystems by connecting multiple security technologies (SIEM, EDR, NDR, IAM, SOAR, vulnerability management, etc.) into a cohesive, interoperable architecture
  • Design and secure hybrid and cloud environments (public, private, multi-cloud), ensuring secure integration with on-premises infrastructure
  • Provide architectural leadership in the protection of industrial control systems (ICS) and operational technology (OT) environments, particularly in manufacturing or critical infrastructure sectors
  • Ensure solutions align with relevant security standards, frameworks, and regulatory requirements (e.g., ISO 27001, NIS2, IEC 62443, NIST, GDPR, etc.)
  • Conduct architecture assessments, identify risks, and propose remediation strategies
  • Create architecture documentation, roadmaps, and proof of concepts (POCs)
  • Act as a trusted advisor to clients, translating business risks into technical security solutions
What we offer
What we offer
  • Company car/car allowance
  • Flexible working hours
  • Hybrid work / Home Office: Possibility to work from home by mutual agreement
  • Sick Days: 3 fully paid sick days provided by the company
  • Annual bonus: Performance-based bonus linked to company and individual goals
  • Referral program: Financial reward for referring a successful new colleague
  • Meal allowance
  • Office refreshments: Free coffee, tea, and mineral water available at the workplace
  • Team-building events
  • Fulltime
Read More
Arrow Right

Senior Solutions Architect

The Senior Solutions Architect will design and lead cybersecurity architectures ...
Location
Location
Slovakia
Salary
Salary:
3000.00 EUR / Month
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of professional experience in IT infrastructure and cybersecurity
  • Proven experience designing security architectures for large or multinational organizations
  • Experience working in complex enterprise or managed services environments
  • Strong background in consulting and client engagement
  • Experience in agile and transformation-driven environments is advantageous
  • Bachelor’s degree (or equivalent) in Computer Science, Engineering, Cybersecurity, or related field
  • Relevant certifications are highly desirable, such as: CISSP, CISM, or equivalent
  • TOGAF or other Enterprise Architecture certification
  • Vendor certifications (e.g., Fortinet NSE, cloud security certifications)
  • IEC 62443 or industrial cybersecurity certifications (advantage)
Job Responsibility
Job Responsibility
  • Design and lead end-to-end cybersecurity architectures for large organizations, covering enterprise IT infrastructure, hybrid environments, and operational technology (OT/ICS)
  • Architect and oversee Security Information and Event Management (SIEM) and security monitoring solutions to support threat detection, incident response, and continuous security improvement
  • Design secure network architectures including: Firewalls and next-generation firewalls (e.g., Fortinet or equivalent technologies)
  • Network segmentation and micro-segmentation
  • Secure site-to-site and hybrid connectivity
  • Zero Trust principles
  • Develop integrated security ecosystems by connecting multiple security technologies (SIEM, EDR, NDR, IAM, SOAR, vulnerability management, etc.) into a cohesive, interoperable architecture
  • Design and secure hybrid and cloud environments (public, private, multi-cloud), ensuring secure integration with on-premises infrastructure
  • Provide architectural leadership in the protection of industrial control systems (ICS) and operational technology (OT) environments, particularly in manufacturing or critical infrastructure sectors
  • Ensure solutions align with relevant security standards, frameworks, and regulatory requirements (e.g., ISO 27001, NIS2, IEC 62443, NIST, GDPR, etc.)
What we offer
What we offer
  • Company car/car allowance
  • Work-Life Balance & Flexibility
  • Flexible working hours: We focus on results and meeting deadlines
  • Hybrid work / Home Office: Possibility to work from home by mutual agreement
  • Sick Days: 3 fully paid sick days provided by the company
  • Annual bonus: Performance-based bonus linked to company and individual goals
  • Referral program: Financial reward for referring a successful new colleague
  • Meal allowance
  • Office refreshments: Free coffee, tea, and mineral water available at the workplace
  • Team-building events
  • Fulltime
Read More
Arrow Right
New

Pharmacy Technician

We’re building a world of health around every individual — shaping a more connec...
Location
Location
United States , West Newton
Salary
Salary:
17.00 - 27.00 USD / Hour
https://www.cvshealth.com/ Logo
CVS Health
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Must be at least 16 years of age
  • Licensure requirements vary by state
  • Attention and Focus
  • Customer Service Orientation
  • Communication Skills
  • Mathematical Reasoning
  • Problem Resolution
  • Physical demands including standing, walking, lifting up to 30 lbs
Job Responsibility
Job Responsibility
  • Manage all assigned pharmacy workstations and tasks to support the team’s ability to promptly, safely and accurately fill patient prescriptions
  • Provide caring service that exceeds customer expectations
  • Ensure all medication needs and regulatory compliance standards are met for patients
  • Demonstrate ethical conduct and maintain patient confidentiality at all times
What we offer
What we offer
  • Medical, dental, and vision coverage
  • Paid time off
  • Retirement savings options
  • Wellness programs
  • Fulltime
Read More
Arrow Right