Senior Network Security Engineer

YOCHANA IT SOLUTIONS, INC.
  • CA
    2 days ago

    Job Description

    Senior Network Security Engineer

    Client is an innovative, dynamic company with a rich past and a

    promising future. Originally Client has continuously reinvented

    itself. Today, Client is one of the world's leading technology companies and provides wired

    and wireless networking, servers, storage, IT and Cloud services, and software solutions for

    the next generation of IT infrastructure.

    ____

    Key Responsibilities

    • Translate high-level business strategic objectives and goals into Enterprise IT

    requirements and conceptual designs.

    • Develop and support comprehensive solutions that meet requirements and align

    with Client global network security and strategy using Juniper SRX platforms.

    • Develop and maintain a multi-year strategic network and security architecture

    roadmap, incorporating Zero Trust and firewall-based segmentation models.

    • Lead end-to-end network and security architecture across global platforms

    ensuring secure, high-performing, fault-tolerant, and resilient environments.

    Segmentation & Zero Trust Responsibilities (Juniper SRX Focus)

    • Architect and implement network segmentation strategies using Juniper SRX

    firewalls across data center, campus, and cloud environments to limit lateral

    movement and enforce least-privilege access.

    • Design and operationalize Zero Trust Architecture (ZTA) principles, integrating

    identity, application, and network-based policy enforcement using firewall controls.

    • Collaborate with application owners to discover, validate, and map application

    dependencies to enable policy-driven segmentation via firewall rules and

    security zones.

    • Define and enforce granular security policies using zone-based segmentation,

    VRFs, and SRX policy constructs across hybrid environments.

    • Integrate segmentation with firewalls, SIEM, IAM, EDR/XDR, and cloud-native

    controls for unified policy enforcement.

    • Lead adoption and standardization of Juniper SRX as the primary segmentation

    enforcement platform across enterprise environments.

    • Develop segmentation governance models, policy lifecycle management, and

    compliance alignment (CIS/NIST/Zero Trust frameworks).

    ____

    Core Network Security Responsibilities

    • Participate in network security design reviews and ensure all implementations meet

    enterprise security standards.

    • Analyze business requirements to design and implement security across data

    centers, campus networks, and hybrid environments.

    • Provide ongoing risk metrics, control effectiveness tracking, and security posture

    reporting.

    • Conduct and support internal and external security audits and compliance

    assessments.

    • Maintain awareness of emerging threats and update policies accordingly.
    • Develop and manage policies, processes, and procedures ensuring reliability,

    availability, and security of network systems.

    • Manage and optimize Security Information and Event Management (SIEM) systems.
    • Collaborate with Cyber Security, infrastructure, and application teams toward

    compliance and operational excellence.

    ____

    Technical Qualifications

    • Strong hands-on experience in designing and implementing network segmentation

    using enterprise firewalls (Juniper SRX preferred) in complex environments.

    • Proven capability to build application-aware firewall policies based on traffic

    flow analysis.

    • Experience with policy design, enforcement, monitoring, and optimization in

    firewall-based segmentation environments.

    • Strong understanding of east-west traffic inspection, security zoning, and

    firewall-enforced segmentation.

    • Familiarity with Zero Trust Network Access (ZTNA) and identity-driven access

    models.

    ____

    Network Security & Infrastructure

    • Strong experience managing LAN/WAN security technologies, including firewalls,

    IDS/IPS, SIEM, VPN, and NAC.

    • Expertise in firewall architecture and design with strong hands-on experience in

    Juniper SRX (primary), along with Fortinet and Palo Alto.

    • Deep expertise in:

    o Security zones, policies, NAT, routing

    o Application control and threat prevention

    o High-availability clustering and scale design

    • Experience securing public and private cloud (AWS, Azure, GCP) environments.
    • Design and implementation of Web Application and API Protection (WAAP)

    solutions.

    • Strong experience in proxy (forward/reverse), load balancing, and application

    security integration.

    • Experience with SDN and SD-WAN architectures, including segmentation use

    cases.

    ____

    Networking & Protocol Expertise

    • Strong knowledge of Juniper:

    Numbers & Facts

    LocationCA

    Skills

    • Application Programming Interface (API)unmatched
    • Applications Securityunmatched
    • Business Analysisunmatched
    • Business Strategyunmatched
    • Cloud Computingunmatched
    • Clustering Softwareunmatched
    • Enterprise Protectionunmatched
    • External Auditunmatched
    • Firewallsunmatched
    • High Availabilityunmatched
    • Information Technology & Information Systemsunmatched
    • Internal Auditunmatched
    • Internet Applicationunmatched
    • Internet Securityunmatched
    • Intrusion Detection Systemsunmatched
    • Intrusion Prevention Systemsunmatched
    • Juniper Networks Product Familyunmatched
    • Metricsunmatched
    • Multiplatform/Cross-Platformunmatched
    • Network Access Control (NAC)unmatched
    • Network Administration/Managementunmatched
    • Network Architecture/Engineeringunmatched
    • Network Designunmatched
    • Network Operations Centerunmatched
    • Network Securityunmatched
    • Network Security Designunmatched
    • Policy Developmentunmatched
    • Process Managementunmatched
    • Requirements Managementunmatched
    • Risk Managementunmatched
    • Security Architectureunmatched
    • Security Auditingunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Infrastructureunmatched
    • Security Monitoringunmatched
    • Software as a Service (SaaS)unmatched
    • Technical Leadershipunmatched
    • Technical Supportunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • VPN (Virtual Private Network)unmatched
    • Web Infrastructureunmatched
    • Wide Area Network (WAN)unmatched
    • Wireless Communicationsunmatched
    • Zoningunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder