Sr. Network Security Engineer
Job Summary
Job Title: Sr. Network Security Engineer
Job Location: Montreal QC (3days onsite in a week)
Job Duration: Long Term
Job Description:
We are seeking a hands-on Network Security Engineer with 5 10 years of experience to implement and support network security controls across on-premises and cloud environments. This role focuses on day-to-day security operations policy enforcement tuning documentation and ongoing improvement of network security capabilities.
The ideal candidate will have strong experience with next-generation firewalls microsegmentation AWS network security and automation and will work closely with Security Cloud Infrastructure and DevOps teams.
Responsibilities:
- Configure and maintain network security controls across on-prem and cloud environments
- Manage NGFW policies including VPNs NAT TLS/SSL inspection and related features
- Implement and maintain microsegmentation controls using Guardicore Centra
- Support AWS network security including Security Groups NACLs and VPC configurations
- Monitor and tune controls to improve effectiveness and reduce false positives
- Document configurations changes runbooks and network diagrams
- Collaborate with DevOps and Security teams to automate routine tasks using Terraform CloudFormation Ansible or scripting tools
- Support operational and project-based security initiatives.
Requirements:
- 5 10 years of experience in network security engineering or a related role
- Hands-on experience with enterprise next-generation firewall platforms such as Palo Alto Fortinet Check Point or Cisco Firepower
- Experience with firewall policy implementation VPNs NAT and TLS/SSL inspection
- Experience with Guardicore Centra or similar segmentation technologies
- Familiarity with AWS networking security including VPCs Security Groups and NACLs
- Scripting experience in Python PowerShell or Bash
- Familiarity with Terraform CloudFormation or Ansible
- Strong communication collaboration and documentation skills
- Bachelors degree in a related field or equivalent practical experience.
- Experience with Splunk Elastic or CloudWatch
- Familiarity with GuardDuty and Security Hub
- Experience in regulated environments
- Knowledge of CI/CD security and compliance frameworks such as NIST CIS HIPAA or PCI-DSS
- Relevant certifications such as CISSP CISM CCNP Security or AWS Security Specialty