
Senior IT Security and Network Engineer
- Denver, CO
- $108,000-135,000 per year
- Permanent
- Full-time
- Architect and maintain scalable, secure network infrastructure across corporate offices and property sites (LAN/WAN/VPN/cloud).
- Lead network upgrades, migrations, and performance optimization initiatives.
- Manage and configure routers, switches, firewalls, load balancers and wireless access points across multiple locations
- Ensure high availability and disaster recovery readiness across network systems.
- Develop and enforce security policies for both enterprise and property-level systems.
- Monitor, identify and respond to security incidents, vulnerabilities, and threats.
- Manage security tools including firewalls, IDS/IPS, endpoint protection, and SIEM platforms.
- Conduct regular risk assessments, penetration testing, compliance audits, validate scan results for accuracy and completeness and ensure compliance with industry standards and regulations.
- Demonstrate application security scanning subject matter expertise across system, application, container, and cloud workloads.
- Maintain and update application security processes and procedures.
- Collaborate with internal teams to ensure secure application and system deployments.
- Administer and maintain physical and virtual servers supporting enterprise operations.
- Ensure server performance, patching, backups, and availability.
- Support Windows and Linux server environments, including Active Directory, DNS, DHCP, and file services.
- Manage core infrastructure components such as identity services, storage systems, virtualization platforms, and backup solutions.
- Implement server hardening and security best practices.
- Manage and enhance infrastructure monitoring tools to ensure system health and performance.
- Monitor network, server, and application metrics to proactively identify and resolve issues.
- Collaborate with vendors and internal teams to optimize monitoring strategies.
- Preferred experience with Arctic Wolf or similar managed detection and response (MDR) platforms
- Coach less experienced engineers and contribute to team development.
- Advise leadership on emerging threats and technology trends.
- Lead cross-functional initiatives to enhance network and security posture.
- Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.
- 7+ years of experience in network engineering and cybersecurity.
- Expertise in TCP/IP, DNS, BGP, OSPF, VLANs, and VPN technologies.
- Hands-on experience with Cisco Meraki, Palo Alto, Fortinet, or similar platforms.
- Proficiency with SIEM tools (e.g., Sentinel, QRadar), and endpoint protection.
- Strong understanding of NIST, ISO 27001, and other security frameworks.
- Certifications such as CISSP, CCNP Security, CISM, or CEH preferred
- Experience with cloud networking and security (Azure, AWS, GCP).
- MCP/MCSA/MCSE or AZ-104/AZ-305/AZ-500 certifications.
- Experience with PBX/VoIP
- Scripting and automation (Python, PowerShell, Bash).
- Familiarity with Zero Trust architecture and identity management solutions.
- Expected pay range of $108,000 - $135,000 base salary plus annual target bonus. You will be provided a pay rate that is in line with your skills and experience as they relate to the requirements of the job.
- 25% Rent Discount at any AIR community (a rental application is required, and certain exclusions apply).
- Medical, dental, vision, and life insurance options, HSA/FSA plans, short and long-term disability paid by the company.
- 401(k) plan with employer contribution.
- Paid time off including vacation, sick time, and 11 holidays.
- Paid parental leave of up to 16 weeks.
- Tuition assistance program and up to 100% reimbursement for job-related certifications and licenses.
- 15 hours of paid time annually for community service.
- Commuter benefits and pet insurance.
- Consumer discounts on various products and services.
- Opportunities for ongoing professional development, leadership training, and career growth.