Senior Network Engineer
STIGroup, Ltd.
- Glen Rock, NJ
- $140,000-160,000 per year
- Permanent
- Full-time
- Network Design & Implementation: Architect, deploy, and maintain secure, scalable network solutions across on-prem, cloud (AWS, Azure), and hybrid environments.
- Firewall & Security Operations: Configure, manage, and optimize Palo Alto and Fortinet firewalls, including policy management, threat prevention, VPNs, and SD-WAN.
- Cloud Networking: Design and support cloud-based network security solutions, including Azure Virtual WAN, AWS Transit Gateway, VPNs, and Zero Trust architectures.
- Network Troubleshooting & Optimization: Diagnose complex network issues and ensure high availability, performance, and security of network infrastructure.
- Incident Response & Security Compliance: Collaborate with SOC teams to analyze security events, apply firewall rule updates, and enforce NIST, CIS, and compliance frameworks (SOC 2, HIPAA, etc.).
- Automation & Scripting: Utilize automation tools (Terraform, Ansible) to improve network efficiency, enforce security policies, and manage firewall configurations.
- Network Monitoring & Reporting: Implement monitoring tools (e.g., Panorama, FortiManager, Auvik) for proactive issue resolution and security event visibility.
- Collaboration & Mentorship: Work closely with MSSP, security analysts, DevOps, and IT teams to align security policies with business objectives.
- 10+ years of experience in enterprise networking and network security infrastructure.
- Expert-level experience with Palo Alto Networks (Panorama, NGFW, Prisma Access) and Fortinet (FortiGate, FortiManager, FortiAnalyzer) firewalls.
- Strong hands-on knowledge of routing and switching protocols (BGP, OSPF, EIGRP, MPLS, VXLAN, SD-WAN).
- Experience with cloud networking in AWS, Azure, and/or GCP.
- Knowledge of Zero Trust security frameworks and best practices.
- Proficiency in VPN, remote access solutions, segmentation, and NAC (802.1X, Cisco ISE, FortiNAC, etc.).
- Scripting experience (Python, Bash, Ansible) for network automation is a plus.
- Familiarity with SIEM tools, IDS/IPS, and logging platforms for security monitoring.
- Strong analytical and troubleshooting skills in high-pressure environments.
- Excellent communication skills with experience in customer-facing network engineering roles.
- Must be eligible to work in the United States.
- Palo Alto Networks PCNSE (Highly Preferred)
- Fortinet NSE 4, 5, or 7 (Highly Preferred)
- AWS or Azure Networking Specialty
- CCNP Security or CCIE Security
- CISSP, CISM, or GIAC (GSEC, GCIA, GCIH) - Optional but Beneficial
- Flexible remote work environment.
- Opportunities for professional development and certifications.
- Comprehensive health, dental, and vision insurance.
- Generous paid time off and holidays.
- Retirement savings plan with company matching.
- Collaborative and supportive team culture.
- Work on cutting-edge cloud and security projects for enterprise customers.
- Opportunity to lead large-scale network security transformations.
- Competitive salary, benefits, and professional development opportunities.
- Hybrid flexibility (based on role and project needs).