- Company Name
- Beem Credit Union
- Job Title
- Network Security Specialist
- Job Description
-
Job title: Network Security Specialist
Role Summary:
Design, deploy, and manage secure network controls across hybrid and cloud environments, primarily Azure. Lead Zero Trust and SASE architecture implementation, protect critical services with DDoS, WAF, and firewall solutions, and collaborate with infrastructure, security operations, and IT teams to reduce attack surface, enhance visibility, and support incident response.
Expectations:
- 3–5 years of hands‑on network security experience focused on cloud environments, preferably Azure.
- Demonstrated expertise in SASE, Zero Trust, and enterprise firewall platforms.
- Strong analytical skills for threat detection, incident response, and performance optimization.
Key Responsibilities:
- Design, configure, and provision a Secure Access Service Edge (SASE) framework, integrating SWG, cloud firewall, and other network security services.
- Implement Zero Trust principles across on‑prem and cloud resources, ensuring continuous authentication, authorization, and validation.
- Deploy and tune DDoS protection from vendors such as Imperva, Akamai, Cloudflare, and monitor for resilience.
- Configure, maintain, and update cloud‑based Web Application Firewalls (WAF) to mitigate web‑based threats while preserving performance.
- Develop and enforce network security policies, standards, and guardrails for secure connectivity in hybrid environments.
- Monitor and analyze network security alerts; coordinate rapid response and mitigation efforts with security operations and IT teams.
- Optimize network performance, apply segmentation, and maintain network topology integrity.
- Evaluate emerging SASE, Zero Trust, and cloud security technologies; conduct proof‑of‑concept tests and recommend improvements.
- Produce and maintain configuration documentation, runbooks, and standard operating procedures.
- Participate in on‑call rotation to support security services and incident response.
Required Skills:
- SASE and Zero Trust architecture design and implementation.
- Azure networking and security services: NSGs, UDRs, Azure DNS, Private Endpoints, Service Endpoints, routing.
- Enterprise firewall and security platform management (Fortinet FortiGate/Manager/Analyzer, Palo Alto NGFW/ Panorama, Imperva/Cloudflare/Akamai, Azure Firewall).
- WAF and DDoS protection deployment and tuning.
- Network segmentation, routing, and performance optimization.
- Incident response, root‑cause analysis, and threat detection.
- Strong documentation, scripting, and monitoring skills.
Required Education & Certifications:
- Bachelor of Science in Computer Science, Information Security, or related field.
- Preferred certifications: Microsoft Certified: Azure Security Engineer Associate, CISSP, GSEC, or equivalent.