$92,178 - $112,662


What you'll do...

Position: Network Engineer, Cybersecurity

Job Location: 850 Cherry Avenue, San Bruno, CA 94066

Duties: Configure and implement access control lists on the firewalls (e.g., Palo Alto, Fortinet, and Cisco Firewalls). Write security rules on the firewalls and maintain the configurations defined by the best industry security practices. Execute vulnerability remediations on network security equipment via patching and Operating System (OS) upgrades. Monitor the health of the firewalls on monitoring tools such as PRTG, Skybox, and HPNA and through the command line of the firewalls (CLI). Check for behavior that deviates from standards and remediate any issues. Check on various parameters of the firewalls such as CPU (Central Processing Unit), different sensors, interfaces, sessions on the firewall, and bandwidth. Set up packet captures on the firewall and work with cross functional support teams to troubleshoot network anomalies. Run packet captures on the firewalls to sniff data packets flowing across the firewalls. Analyze captured packets on networking tools like Wireshark and follow the traffic stream from the source machine to the destination machine. Work on various projects, set up firewalls from scratch in an existing networking environment, and migrate the policies of the firewalls from old end of life hardware to Next Generation firewall platforms and latest technologies. Work within the deadlines set for quarterly goals for various projects. Deploy and support firewall infrastructure, IPS (Intrusion Prevention System), and ISE (Identity Service Engine) configurations. Customize and tune network devices and Network Access Controls in Wired and Wireless Environments. Help with network management and securing VPN for inter-sites and remote infrastructure. Be part of On Call rotation for a week and be the primary point of contact for any network escalations.


Minimum education and experience required: Master’s degree or the equivalent in Information Technology, Computer Science, Engineering (any), or related field. Position does not require specific years of experience but requires listed skills.

Skills required: Experience with UNIX, TCP/IP, and the OSI Model (Open Systems Interconnection Model). Demonstrated knowledge of network fundamentals: Ethernet, VLANs, and TCP Handshake. Experience with networking mapping tools: Wireshark, GNS3, and Packet Tracer. Experience setting up and troubleshooting DNS servers and NTP servers. Demonstrated knowledge of network protocols: SPF, BGP, EIGRP, and STP. Experience integrating new software systems and software applications with existing environments. Experience assisting with the decommission or migration of existing environments. Experience assisting with vulnerability mitigations. Demonstrated knowledge of 802.11 a/b/g/n/ac/ax protocols. Experience configuring and supporting secure wireless networks with WPA. Employer will accept any amount of graduate coursework, graduate research experience or professional experience with the required skills.

