Network Security Engineer - Field & Cloud Infrastructure

NOV Inc
  • Cedar Park, TX
    6 days ago

    Job Description

    Network Security Engineer - Field and Cloud Infrastructure

    The Network Security Engineer - Field and Cloud Infrastructure will be responsible for understanding the company's existing field, network, and remote connectivity landscape, identifying potential security gaps, and helping design and implement practical solutions to improve the security, reliability, and maintainability of deployed systems.

    This role requires a practical, operations-focused approach to network security. Most deployments are remote sites where uptime is critical, and ease of use is a top priority. The candidate must be able to identify security gaps while also understanding that improvements must be practical, deployable, supportable, and minimally disruptive to site operations.

    Responsibilities include but are not limited to the following:

    • Work closely with existing network, support, and engineering teams to evaluate current configurations, document risks, recommend improvements, and support implementation of security controls across field-hosted, cloud-connected, and enterprise network environments.
    • Define realistic mitigation paths that balance security, usability, field deployment simplicity, customer needs, and maximum system availability.
    • Develop containment strategies & recovery plans to minimize operational disruptions.
    • Shadow field and support personnel on occasional field visits to understand the procedural, environmental, and operational constraints.
    • Design secure industrial network architectures following Purdue Model principles.
    • Participate and Support OT cybersecurity incident response and forensic investigations.
    • Troubleshoot and resolve real-world issues using tools such as Python, PowerShell, Bash, Ansible, Terraform, or similar technologies.
    • Identify risks and translate findings into actionable remediation plans
    • Support risk assessments aligned with international (IEC 62443, ISO 27001, NIST CSF 2.0), regional (NOG-104, CIS), and internal standards.
    • Identify creative methods to support customer requirements like data sovereignty while maintaining remote patching of international systems.
    • Configure deployment and support technologies (Fortinet, Starlink, BeyondTrust) to maintain global standardization.
    • Leverage centralized tools (NinjaOne, Zabbix, SentinelOne) and collaborate with Systems Engineers to quantify risks and track adoption of improvements.
    • Contribute to cybersecurity documentation, SOPs, and standards
    • Support workflow and ticketing integration using tools such as Jira
    • Act as a bridge between cybersecurity and operational execution, translating security requirements into practical, scalable solutions

    Required Qualifications

    • Bachelor's degree in computer science, information technology, cybersecurity, network engineering, engineering, or a related technical field; equivalent experience may be considered.
    • 5-10 years in cybersecurity, systems engineering, network engineering, or related roles
    • Strong understanding of networking fundamentals, including TCP/IP, routing, switching, DNS, DHCP, NAT, VLANs, firewalls, VPNs, and remote access technologies.
    • Experience deploying and maintaining vulnerability management, security monitoring, SIEM, centralized logging, configuration compliance, and alerting solutions within IT/OT environments to enhance security visibility, operational resilience, and risk reduction.
    • Experience with local and remote support of industrial OT networks, firewall policy management, segmentation, secure remote access, and troubleshooting.
    • Ability to evaluate technical environments, identify security gaps, and recommend practical remediation steps.
    • Experience with cybersecurity risk assessments for industrial systems.
    • Experience supporting products deployed in customer OT environments.
    • Experience writing scripts or automation using tools such as Python, PowerShell, Bash, Ansible, Terraform, or similar technologies.
    • Ability to communicate technical risks and recommendations clearly to both technical and non-technical stakeholders.
    • Strong documentation skills, including network diagrams, configuration standards, implementation procedures, and technical notes.
    • Ability to collaborate effectively with network, field support, cybersecurity, infrastructure, cloud, and application teams.
    • Experience with standards or frameworks such as NIST CSF 2.0, CIS Controls, ISO 27001, IEC 62443, or other cybersecurity best practices.

    Preferred Qualifications

    • Experience supporting remote field networks, industrial environments, customer-connected systems, or distributed infrastructure.
    • Experience supporting offshore, drilling, marine, energy, or critical infrastructure environments.
    • Experience with cloud networking and security concepts in platforms such as Azure, AWS, or Google Cloud.
    • Familiarity with zero trust concepts, identity-based access, certificate-based authentication, privileged access management, and least-privilege design.
    • Relevant certifications such as CCNA, CCNP, Security+, CySA+, CISSP, GICSP, PCNSA, Fortinet NSE, or equivalent.
    • Experience working with

    Every day, the oil and gas industry's best minds put more than 150 years of experience to work to help our customers achieve lasting success.

    We Power the Industry that Powers the World

    Throughout every region in the world and across every area of drilling and production, our family of companies has provided the technical expertise, advanced equipment, and operational support necessary for success-now and in the future.

    Global Family

    We are a global family of thousands of individuals, working as one team to create a lasting impact for ourselves, our customers, and the communities where we live and work.

    Purposeful Innovation

    Through purposeful business innovation, product creation, and service delivery, we are driven to power the industry that powers the world better.

    Service Above All

    This drives us to anticipate our customers' needs and work with them to deliver the finest products and services on time and on budget.

    Required Qualifications

    • Bachelor's degree in computer science, information technology, cybersecurity, network engineering, engineering, or a related technical field; equivalent experience may be considered.
    • 5-10 years in cybersecurity, systems engineering, network engineering, or related roles
    • Strong understanding of networking fundamentals, including TCP/IP, routing, switching, DNS, DHCP, NAT, VLANs, firewalls, VPNs, and remote access technologies.
    • Experience deploying and maintaining vulnerability management, security monitoring, SIEM, centralized logging, configuration compliance, and alerting solutions within IT/OT environments to enhance security visibility, operational resilience, and risk reduction.
    • Experience with local and remote support of industrial OT networks, firewall policy management, segmentation, secure remote access, and troubleshooting.
    • Ability to evaluate technical environments, identify security gaps, and recommend practical remediation steps.
    • Experience with cybersecurity risk assessments for industrial systems.
    • Experience supporting products deployed in customer OT environments.
    • Experience writing scripts or automation using tools such as Python, PowerShell, Bash, Ansible, Terraform, or similar technologies.
    • Ability to communicate technical risks and recommendations clearly to both technical and non-technical stakeholders.
    • Strong documentation skills, including network diagrams, configuration standards, implementation procedures, and technical notes.
    • Ability to collaborate effectively with network, field support, cybersecurity, infrastructure, cloud, and application teams.
    • Experience with standards or frameworks such as NIST CSF 2.0, CIS Controls, ISO 27001, IEC 62443, or other cybersecurity best practices.

    Preferred Qualifications

    • Experience supporting remote field networks, industrial environments, customer-connected systems, or distributed infrastructure.
    • Experience supporting offshore, drilling, marine, energy, or critical infrastructure environments.
    • Experience with cloud networking and security concepts in platforms such as Azure, AWS, or Google Cloud.
    • Familiarity with zero trust concepts, identity-based access, certificate-based authentication, privileged access management, and least-privilege design.
    • Relevant certifications such as CCNA, CCNP, Security+, CySA+, CISSP, GICSP, PCNSA, Fortinet NSE, or equivalent.
    • Experience working with

    Network Security Engineer - Field and Cloud Infrastructure

    The Network Security Engineer - Field and Cloud Infrastructure will be responsible for understanding the company's existing field, network, and remote connectivity landscape, identifying potential security gaps, and helping design and implement practical solutions to improve the security, reliability, and maintainability of deployed systems.

    This role requires a practical, operations-focused approach to network security. Most deployments are remote sites where uptime is critical, and ease of use is a top priority. The candidate must be able to identify security gaps while also understanding that improvements must be practical, deployable, supportable, and minimally disruptive to site operations.

    Responsibilities include but are not limited to the following:

    • Work closely with existing network, support, and engineering teams to evaluate current configurations, document risks, recommend improvements, and support implementation of security controls across field-hosted, cloud-connected, and enterprise network environments.
    • Define realistic mitigation paths that balance security, usability, field deployment simplicity, customer needs, and maximum system availability.
    • Develop containment strategies & recovery plans to minimize operational disruptions.
    • Shadow field and support personnel on occasional field visits to understand the procedural, environmental, and operational constraints.
    • Design secure industrial network architectures following Purdue Model principles.
    • Participate and Support OT cybersecurity incident response and forensic investigations.
    • Troubleshoot and resolve real-world issues using tools such as Python, PowerShell, Bash, Ansible, Terraform, or similar technologies.
    • Identify risks and translate findings into actionable remediation plans
    • Support risk assessments aligned with international (IEC 62443, ISO 27001, NIST CSF 2.0), regional (NOG-104, CIS), and internal standards.
    • Identify creative methods to support customer requirements like data sovereignty while maintaining remote patching of international systems.
    • Configure deployment and support technologies (Fortinet, Starlink, BeyondTrust) to maintain global standardization.
    • Leverage centralized tools (NinjaOne, Zabbix, SentinelOne) and collaborate with Systems Engineers to quantify risks and track adoption of improvements.
    • Contribute to cybersecurity documentation, SOPs, and standards
    • Support workflow and ticketing integration using tools such as Jira
    • Act as a bridge between cybersecurity and operational execution, translating security requirements into practical, scalable solutions

    Network Security Engineer - Field and Cloud Infrastructure

    The Network Security Engineer - Field and Cloud Infrastructure will be responsible for understanding the company's existing field, network, and remote connectivity landscape, identifying potential security gaps, and helping design and implement practical solutions to improve the security, reliability, and maintainability of deployed systems.

    This role requires a practical, operations-focused approach to network security. Most deployments are remote sites where uptime is critical, and ease of use is a top priority. The candidate must be able to identify security gaps while also understanding that improvements must be practical, deployable, supportable, and minimally disruptive to site operations.

    Responsibilities include but are not limited to the following:

    • Work closely with existing network, support, and engineering teams to evaluate current configurations, document risks, recommend improvements, and support implementation of security controls across field-hosted, cloud-connected, and enterprise network environments.
    • Define realistic mitigation paths that balance security, usability, field deployment simplicity, customer needs, and maximum system availability.
    • Develop containment strategies & recovery plans to minimize operational disruptions.
    • Shadow field and support personnel on occasional field visits to understand the procedural, environmental, and operational constraints.
    • Design secure industrial network architectures following Purdue Model principles.
    • Participate and Support OT cybersecurity incident response and forensic investigations.
    • Troubleshoot and resolve real-world issues using tools such as Python, PowerShell, Bash, Ansible, Terraform, or similar technologies.
    • Identify risks and translate findings into actionable remediation plans
    • Support risk assessments aligned with international (IEC 62443, ISO 27001, NIST CSF 2.0), regional (NOG-104, CIS), and internal standards.
    • Identify creative methods to support customer requirements like data sovereignty while maintaining remote patching of international systems.
    • Configure deployment and support technologies (Fortinet, Starlink, BeyondTrust) to maintain global standardization.
    • Leverage centralized tools (NinjaOne, Zabbix, SentinelOne) and collaborate with Systems Engineers to quantify risks and track adoption of improvements.
    • Contribute to cybersecurity documentation, SOPs, and standards
    • Support workflow and ticketing integration using tools such as Jira
    • Act as a bridge between cybersecurity and operational execution, translating security requirements into practical, scalable solutions

    Numbers & Facts

    LocationCedar Park, TX

    Skills

    • Amazon Web Services (AWS)unmatched
    • Ansibleunmatched
    • Atlassian JIRAunmatched
    • Authenticationunmatched
    • Bash Scriptingunmatched
    • Best Practicesunmatched
    • Budget Managementunmatched
    • CCNA - Cisco Certified Network Associateunmatched
    • CCNP - Cisco Certified Network Professionalunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cloud Applicationsunmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • CompTIA Security+unmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Customer Support/Serviceunmatched
    • DHCP (Dynamic Host Configuration Protocol)unmatched
    • DNS (Domain Name System)unmatched
    • Documentationunmatched
    • Drillingunmatched
    • Firewallsunmatched
    • IP (Internet Protocol) Routingunmatched
    • ISO (International Organization for Standardization)unmatched
    • Identify Issuesunmatched
    • Incident Responseunmatched
    • Industrial Designunmatched
    • Information Technology & Information Systemsunmatched
    • International Electro-Technical Commission (IEC)unmatched
    • Internet Securityunmatched
    • Microsoft Windows Azureunmatched
    • NAT (Network Address Translation)unmatched
    • Network Administration/Managementunmatched
    • Network Architecture/Engineeringunmatched
    • Network Configuration Managementunmatched
    • Network Connectivityunmatched
    • Network Designunmatched
    • Network Routingunmatched
    • Network Securityunmatched
    • Network Supportunmatched
    • Network Switchingunmatched
    • Offshore Drillingunmatched
    • Oil and Gasunmatched
    • On Site Supportunmatched
    • Operational Supportunmatched
    • Operations Planningunmatched
    • Procedure Implementationunmatched
    • Product Supportunmatched
    • Python Programming/Scripting Languageunmatched
    • Remote Accessunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Scripting (Scripting Languages)unmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Infrastructureunmatched
    • Security Monitoringunmatched
    • Service Deliveryunmatched
    • Software Engineeringunmatched
    • Software Patchesunmatched
    • Standard Operating Procedures (SOP)unmatched
    • Strategic Planningunmatched
    • Systems Analysisunmatched
    • Systems Engineeringunmatched
    • Systems Maintainabilityunmatched
    • TCP/IP (Transmission Control Protocol/Internet Protocol)unmatched
    • Team Playerunmatched
    • Technical Analysisunmatched
    • Technical Supportunmatched
    • Time Managementunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Usability Engineeringunmatched
    • VLAN (Virtual Local Area Network)unmatched
    • VPN (Virtual Private Network)unmatched
    • Windows PowerShellunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder