Security Engineer and Network Engineer
About the Role
You will design and implement a state-of-the-art, highly secure enterprise network using a combination of hardware and software. You will architect and deploy scalable VPN solutions, evaluate and select VPN protocols, and integrate them with firewalls, routers, and IDS/IPS. You will implement strong authentication and encryption, enforce access controls, and perform risk assessments and compliance checks. You will monitor network performance, optimize bandwidth and availability with load balancing and failover, and maintain firmware, software, and security patches. You will document architectures and SOPs, develop incident response procedures, and provide training and guidance to IT staff.
Requirements
- 5+ years of experience in network engineering and cybersecurity
- Deep understanding of routing, switching, DNS, and BGP
- Expertise with VPN protocols and tools such as OpenVPN, IPsec, SSL/TLS, and WireGuard
- Proficiency with firewalls, IDS/IPS, and SIEM solutions
- Hands-on experience with cloud platforms including AWS, Azure, and Google Cloud in hybrid environments
- Experience implementing MFA and certificate-based authentication
- Experience with encryption standards (AES-256) and key exchange protocols (Diffie-Hellman, IKEv2)
- Familiarity with compliance frameworks such as GDPR, HIPAA, and ISO 27001
- Familiarity with scripting for automation (Python, Bash) and CI/CD deployment methods
- Preferred: professional certifications such as CISSP, CCNP Security, or CEH
- Preferred: knowledge of zero-trust architectures and Software-Defined Perimeter frameworks
Responsibilities
- Design scalable, high-performance VPN architectures for hybrid cloud and on-premises environments
- Evaluate and select VPN protocols and encryption methodologies
- Integrate VPNs with firewalls, routers, and IDS/IPS
- Implement multi-factor authentication and certificate-based access
- Apply advanced encryption standards and key exchange protocols
- Develop and enforce access control and user permission policies
- Conduct network analysis to minimize latency and maximize uptime
- Implement load balancing and failover mechanisms for high availability
- Optimize bandwidth utilization and troubleshoot connectivity issues
- Perform risk assessments and implement vulnerability mitigations
- Ensure VPN and network compliance with applicable regulations
- Deploy monitoring tools to detect anomalies and unauthorized access
- Maintain firmware, software, and security patches for network components
- Develop incident response plans for VPN and network security events
- Document architectures, configurations, and standard operating procedures
- Provide training and guidance to IT staff on VPN and network best practices
Skills
MfaZero-TrustVpnIpsecTlsNetwork AnalysisMulti-Factor AuthenticationRoutingSwitchingHybrid CloudCehBgpSslNetwork ArchitectureWireguardAes-256Diffie-HellmanIkev2Bandwidth OptimizationSdpSsl/TlsFailoverIncident ResponseOpenvpnGoogle CloudLoad BalancingAuthenticationBashDnsFirewallMonitoringAwsCi/CdAzureSoftware-Defined Perimeter
