Vice President, Cloud Network Security Engineer
BlackRockAbout the role
About this role
About the Role:
The Cloud Network Security Engineer is responsible for automating, designing, implementing, and maintaining secure networking environments across public, private, and hybrid cloud platforms. This role ensures confidentiality, integrity, and availability of data and services by applying advanced security principles, and compliance standards.
Key Responsibilities
Architecture & Design
Develop secure network architectures for hybrid & multi cloud environments (AWS, Azure, GCP).
Architect robust security solutions for containerized applications.
Implement network segmentation, micro-segmentation, and zero-trust principles.
Design end-to-end encrypted connectivity patterns.
Design secure network architectures for containerized environments i.e. Open Container Initiative (OCI) container packaging and runtime
Design scalable / dynamic security patterns, leveraging tag & identity-based attributes.
Security Implementation
Configure and manage cloud-native firewalls, security groups, network ACLs and network security appliances.
Deploy intrusion detection/prevention systems and threat monitoring tools.
Operations & Monitoring
Monitor cloud network traffic for anomalies and potential breaches.
Remediate vulnerability assessments and penetration testing on cloud networks.
Respond to and investigate cloud security incidents.
Automation & Optimization
Strong understanding of Infrastructure as Code (IaC) tools and CI/CD pipelines for secure deployments.
Automate security policy enforcement and configuration management.
Proficient in scripting with Python to automate network tasks, build integrations, and manage workflows.
Required Skills & Qualifications
Excellent collaboration skills to work effectively across teams, along with strong verbal and written communication abilities.
Expertise in network security protocols (IPSec, TLS, MacSec, etc.) and encryption standards.
Experience with cloud networking services: VPC, VNets, Subnets, Load Balancers.
Proficiency with IaC Tools and Frameworks: Comfortable working with tools such as Terraform, Ansible to automate infrastructure provisioning and security configuration
Proficient in AI tooling & innovation
Preferred Tools & Technologies
Infrastructure as Code (IaC) tools for provisioning cloud resources., Automation tools for configuration management and deployment, Python scripting.
Git/GitHub/GitLab for version control.
SIEM tools (Splunk) for monitoring.
Ensure compliance with regulatory frameworks (ISO 27001, SOC2, GDPR).
Cloud-Native distributed containerized microservice orchestration Network Policies, Istio, Calico.
Strong knowledge of networking protocols (BGP, OSPF).
Understanding of Docker/Netconf-yang/Linux/ API programming /JSON /XML /GitHub.
Certifications preferred: AWS Certified Security Specialty, Azure Security Engineer Associate, Certified Kubernetes Security Specialist (CKS), CISSP or CCSP.
Experience
5+ years in cloud network engineering and security.
Hands-on experience with hybrid cloud connectivity and secure design patterns.
Strong analytical and problem-solving abilities.
Excellent communication and documentation skills.
Recommendation is to move it in Preferred skills
Work closely with DevOps, Cloud Engineering, and Security Operations teams to deliver key projects.
Provide technical guidance and documentation for security best practices.
Excellent collaboration skills to work effectively across teams, along with strong verbal and written communication abilities.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s