
Network Security Architect
- Atlanta, GA
- $105,280-195,520 per year
- Permanent
- Full-time
- Conduct regular security audits against the organization’s global network infrastructure for signs of vulnerabilities, intrusions, and ensure the efficacy of security measures in place.
- Implement security controls, firewalls, intrusion detection systems, and other network security measures.
- Work with network administrators and other IT stakeholders to ensure network security designs meet established standards.
- Develop automated reporting on network security posture for presentation to executive management and stakeholders.
- Collaborate with internal security architects to evaluate new technologies, services, and applications before deployment.
- Lead security and vulnerability assessments on new, existing, and affiliated network configurations.
- Review and approve security configurations for routers, switches, firewalls, VPN gateways, load balancers, etc.
- Develop, review, and update network security policies, procedures, standards, and guidelines.
- Collaborate with our corporate functions including Internal Audit, Legal and Compliance, Privacy, and Sourcing to ensure that WBD maintains a strong cybersecurity posture.
- Develop custom scripts to pull real-time telemetry from network devices, facilitating immediate analysis and action.
- Utilize APIs and scripting to integrate network security tools with other systems for comprehensive threat detection and analysis.
- Maintain documentation for all automation tools and scripts, ensuring they meet internal standards and are easily understandable for IT staff.
- Understand technical security issues and the implications to WBD businesses and be able to communicate them to management and other business leaders.
- Understand emerging security technologies and determine the appropriate use within business applications.
- Validate reference architectures for security best practices and recommend changes to enhance security and reduce risk, where applicable.
- Bachelor’s Degree in Computer Science, Engineering, or other related discipline or 5+ years of previous network security experience.
- Security certifications are a plus. (CISSP, CCIE, PCNSE, CISA, SANS, Security+, etc.)
- Must be proficient in networking protocols including TCP/IP, UDP, HTTP/HTTPS, FTP/SFTP, DNS, SNMP, SMTP/POP3/IMAP, and LDAP, along with their associated security measures and vulnerabilities.
- Exceptional verbal and written communication skills, specifically the ability to communicate within the context of the intended audience, whether that be senior executives or highly technical engineering resources.
- Detailed understanding of the threats faced by direct to consumer and digital platform organizations.
- Working knowledge of at least one programming language (Python, Go etc.)
- Hands on experience securing hybrid and cloud native infrastructure is highly preferred
- Proven hands on experience hardening network and security appliances
- Detailed technical experience supporting and implementing SIEM & logging tools (Splunk, Kibana, etc.) and the ability to extract actionable intelligence from large volume aggregated log storage.
- Thorough understanding of Network and enterprise IT infrastructure and, specifically the security aspects thereof.
- Thorough understanding of compliance and regulatory frameworks and how they affect architecture designs and reviews.