Lead Network Security Engineer- Multiple Firewall Technologies
Lumen TechnologiesAbout the role
About Lumen
Lumen connects the world. We are igniting business growth by connecting people, data and applications – quickly, securely, and effortlessly. Together, we are building a culture and company from the people up – committed to teamwork, trust and transparency. People power progress.
We’re looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future.
The Role
The Network Security Engineer will be providing network security support to a large dedicated federal agency. They will support the network security architecture to include support of Cisco Identity Services Engine (ISE), Cisco Firepower NGFW firewalls, Cisco RAS AnyConnect, Cisco Secure Firewall Management Center, Juniper SRX, CheckPoint NGFW, Palo Alto Panorama, Palo Alto NGFW, Fortinet Firewall Product and Virtual Azure and AWS Firewalls. AAA, 802.1x, various VPN deployments, STIG implementation and verification and other security requirements as needed.
The Security Engineer may be required to assist with additional network/security engineering tasks, development of architectural and technical briefs or documents on the design, capabilities, and functional operation of security technologies and projects.
The Main Responsibilities
- Strong high end customer facing experience as an Engineer of last resort.
- Interfacing with vendor on production bug discovery, fixes, and testing.
- Prepare Methods of Procedures (MOP) document for change management.
- Lead a team of Sr. Engineers during preparation and execution of maintenance windows.
- Prepare and present Root Cause Analysis for customer and internal stakeholders.
- Foundation: Strong experience in monitoring, maintaining, troubleshooting, and configuring BGP routing.
- Expert Combination of two or Three Firewall Technologies from the Five Major Firewall Vendors:
- Cisco ASA and/or FirePOWER NGFW firewalls, Cisco RAS, Cisco Secure Firewall Management Center, Cisco Identity Services Engine (ISE)
- Fortinet Fortigate, FortiManager, FortiAnalyser.Strong experience with.
- CheckPoint Firewalls, CheckPoint Management Domain System.
- Juniper SRX
- Palo Alto Prisma, Panorama, Palo Alto NGFW.
- Strong ability to troubleshoot network issues at the protocol/packet level using sniffers, protocol analyzers, netflow, logging, etc.
- Strong technical network troubleshooting leadership and critical thinking skills with the ability to troubleshoot technical issues within multiple systems.
- Knowledge of Cisco Internetworking including IPV4 and IPV6 addressing (subnets, CIDR), switching (VLANs, 802.1q, IGMP, etc..) and routing (OSPF, EIGRP, BGP, PIM, multicast, etc.) and Cisco IOS.
- Strong knowledge of IP networking fundamentals including OSI model, frame and packet structure, (OSI, frames, packets etc.).
- Experience with network and performance monitoring tools (Cisco IP SLA, SolarWinds, HP NA, NetFlow & Splunk).
- Experience in network security, tools, and technologies including firewalls, VRF, VDOM, 802,1x, and port-security.
- Proven ability to work in a dynamic team environment with changing requirements and competing priorities.
What We Look For in a Candidate
- Typically 8+ years of IT Security experience with Bachelor’s Degree, or equivalent education and experience; 6+ year of IT Security experience with Master’s Degree.
- Must be able to participate in an on-call rotation and lead frequent work off hours for network maintenance and changes.
- Must be able to pass Government Security Suitability.
- Must have 2 of the following: Expert level Cisco Firewalls, Experience Expert level with Fortigates, Expert level with Palo Alto, Expert level with Juniper SRX, Expert level with CheckPoint.
- Certifications: CCSP, CCIE Security, PCNSE, CCSE, JNCIE-Sec.
Compensation
This information reflects the anticipated base salary range for this position based on current national data. MiApply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s