Jobs and Careers
AM

Sr Network Security Engineer

Americold
United Statesfull_timeVerifiedPosted 23 May 2025

About the role

What you’ll Do

  • Design, implement, and manage Palo Alto Networks security solutions (Prisma Access, Next Generation FWs, Strata Cloud, GlobalProtect, Cortex XDR) to protect hybrid and cloud environments.
  • Develop and enforce network segmentation policies, implementing role-based access control (RBAC) and least privilege across on-prem and cloud infrastructure.
  • Configure and optimize GlobalProtect for secure, scalable remote access, ensuring compliance with security best practices and user accessibility requirements.
  • Leverage Cortex XDR for advanced threat detection, incident response, and endpoint protection across the organization’s IT assets.
  • Implement security controls in public cloud environments (AWS, Azure, OCI), including network security groups, identity and access management (IAM), encryption, and multi-factor authentication (MFA).
  • Ensure compliance with security frameworks (e.g., NIST, CIS, ISO 27001) through the implementation of appropriate cloud security policies and procedures.
  • Collaborate with cloud architects and DevOps teams to integrate security controls into cloud-native applications and services, ensuring secure CI/CD pipelines.
  • Monitor and manage security incidents and vulnerabilities within both on-prem and cloud environments, using Palo Alto’s suite of tools and cloud-native monitoring services.
  • Perform security risk assessments and audits of cloud and network infrastructures, providing recommendations for continuous improvement.
  • Document security architectures, policies, and procedures, ensuring they align with industry best practices and regulatory requirements.
  • Mentor and guide junior security engineers in Palo Alto Networks and cloud security technologies.
  • Knowledge of variety of routing protocols
  • Utilizes Subject Matter Expert knowledge in leading daily management and administration of network security controls such as firewalls, web application firewalls, DNS, routers, switches, VPN appliances, and load balancers
  • Utilizes an advanced and broad range of skills to identify and troubleshoot different technical platforms including firewalls, servers, networks, Internet and Cloud
  • Creates and maintains knowledge base to aid troubleshooting used by support teams
  • Evaluates existing processes and policies and recommends enhancements to protect data and information from unauthorized access
  • Build and assist with daily requests of changes to firewall policies

 

 

What Experience and Education You Need

 

  • Bachelor’s degree in information security, Computer Science, or a related field. 
  • Industry certifications such as PCNSE, PCNSA, PCCSE, CISSP, AWS Certified Security, or Azure Security Engineer are highly desirable.
  • Applicable industry certifications include those from Cisco, Palo Alto Networks, AWS, GIAC, etc.
  • 5-7 years of experience in security engineering, with hands-on expertise in Palo Alto Networks platforms (Prisma Access, Strata Cloud, GlobalProtect, Cortex XDR).
  • Proven experience implementing network segmentation and security principles like least privilege in complex enterprise environments.
  • Significant experience securing public cloud environments (AWS, Azure, OCI) with practical knowledge of cloud security controls, IAM policies, and network security configurations.
  • Hands-on experience managing next-generation firewalls, VPNs, and cloud security configurations.
  • Demonstrated ability to design and implement secure cloud architectures in alignment with industry standards and regulatory frameworks.
  • Experience designing and administering an enterprise network that supports multiple physical and cloud data centers

 

 

What Could Set You Apart

 

  • Expertise in Palo Alto Networks technologies, including cloud-delivered security services and endpoint protection.
  • Strong understanding of cloud security controls such as network security groups, IAM, VPCs, security auditing, encryption, and logging in AWS, Azure, GCP and OCI.
  • In-depth knowledge of network protocols, routing, switching, and firewall configuration.
  • Proficiency in security frameworks (e.g., NIST, CIS, ISO 27001) and their application to both on-prem and cloud environments.
  • Experience with automation and security integration into DevOps workflows and CI/CD pipelines.
  • Strong analytical and problem-solving skills, with a proactive approach to identifying and addressing security risks.
  • Excellent communication and collaboration skills, capable of working with technical and non-technical teams.
  • Detail-oriented with a focus on designing and enforcing robust security architectures that meet business needs an

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Americold

View company profile →