Job Description
Network Security Engineer
Location: Irving, TX/Charlotte, NC (Hybrid)
Duration: 18 Month Contract
Pay: $55-60/hr W2
W2 ONLY, NO C2C
About this role:
We are looking for a skilled and driven Senior Information Security Engineer (Network Security) to join our team and contribute to the design, deployment, and ongoing support of secure, scalable network infrastructures. This role is ideal for professionals with a strong foundation in enterprise firewall technologies, particularly Palo Alto Networks, Fortinet, and Check Point, along with working knowledge of Cisco and Arista infrastructure products.
You will be responsible for implementing and maintaining advanced security solutions, leading firewall migrations, and ensuring the integrity and performance of network security systems. A key part of this role involves using industry-standard migration tools to transition legacy systems to modern platforms with minimal disruption.
The ideal candidate brings a proactive approach to problem-solving, a deep understanding of network security principles, and the ability to work across teams to align security strategies with business goals. Experience in multi-vendor environments and a willingness to adapt to evolving technologies will be highly valued.
Key Responsibilities:
- Design, implement, and maintain secure network infrastructures using Palo Alto Networks, Fortinet, Check Point, and Cisco infrastructure security products.
- Lead and support firewall migration projects, including policy analysis, configuration translation, and deployment using tools such as Expedition, FortiConverter, SmartMove, and other vendor utilities.
- Build and deploy new network security infrastructures, including greenfield implementations and expansion of existing environments.
- Perform security policy reviews, rulebase optimization, and threat prevention tuning to align with best practices and compliance requirements.
- Troubleshoot and resolve complex network security issues across multi-vendor environments, ensuring minimal downtime and optimal performance.
- Collaborate with cross-functional teams (network, cloud, infrastructure, and application teams) to integrate security controls into enterprise architecture.
- Maintain accurate and up-to-date documentation, including network diagrams, configuration standards, and operational procedures.
- Monitor and respond to security events, alerts, and incidents, escalating as necessary and contributing to root cause analysis and remediation.
- Participate in a rotational on-call schedule to provide after-hours support for critical network security incidents and maintenance activities.
- Stay current with emerging threats, vulnerabilities, and technologies to continuously improve the organization s security posture.
- Required Qualifications:
- 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- 4+ years of hands-on experience in network security engineering, with a strong focus on enterprise-grade firewall platforms and secure network architecture.
- 4+ years of experience configuring, managing, and troubleshooting firewalls and security management systems across Palo Alto Networks, Fortinet, and Check Point environments.
- 4+ years of experience in security policy design, rulebase optimization, and hardening of multi-vendor firewall environments to meet organizational and compliance standards.
- 2+ years of practical experience using firewall migration tools such as Expedition, FortiConverter, SmartMove.
Desired Qualifications:
- Proficiency in troubleshooting complex network and security issues across multi-vendor environments, including deep packet inspection, log analysis, and root cause identification.
- Strong understanding of network protocols, routing and switching, VPN technologies, NAT, and intrusion prevention systems.
- Familiarity with incident response, log analysis, and security monitoring tools
- Familiarity with automation and scripting for network security tasks using tools like Python, Ansible, or Terraform.
- Familiarity with cloud security architectures and controls in AWS, Azure, or Google Cloud Platform.
- Exposure to SIEM platforms, log management, and threat intelligence tools.
- Ability to manage and prioritize multiple projects in a fast-paced, dynamic environment.
- Strong interpersonal skills and the ability to communicate technical concepts to non-technical stakeholders.
- Ability to participate in a rotational on-call schedule and respond to after-hours incidents or maintenance tasks.
- Strong documentation skills and attention to detail
- Industry certifications such as Palo Alto Networks Certified Network Security Administrator (PCNSA), Palo Alto Networks Certified Network Security Engineer (PCNSE), Fortinet Network Security Expert 4 or 5 (NSE4/5), Check Point Certified Security Administrator (CCSA) or Check Point Certified Security Expert (CCSE).
Job Expectations:
- Willingness to work on-site at stated location on the job opening
- This position offers a hybrid work schedule
- This position is not eligible for Visa sponsorship
- Relocation assistance is not available for this position
- Flexibility to work in a on call 24/7 environment.