Network Security Segmentation - Senior Consultant
Network Security Architect with expertise in modern network security technologies including ZTNA, SASE, SSE, NAC and Secure SD-WAN.
Job Description:
We are seeking a Network Segmentation Engineer to join our team as a Senior Consultant. The ideal candidate will have strong experience in firewall-based segmentation, micro-segmentation, and Zero Trust-based network design. This role focuses on designing, implementing, and optimizing segmentation controls to reduce attack surface, prevent lateral movement, and strengthen enterprise security posture across on-premises and cloud environments. The position requires solid knowledge of enterprise network security, policy enforcement, segmentation architecture, and traffic flow analysis.
Number of Openings: 2
Key Responsibilities
-
Design and implement firewall-based segmentation and micro-segmentation solutions in enterprise environments
-
Support Zero Trust network architecture initiatives and segmentation strategy development
-
Analyze traffic flows and design policy enforcement controls to minimize lateral movement
-
Configure and optimize ACLs, VLANs, routing, switching, NAT, and firewall policies for effective segmentation
-
Collaborate with infrastructure and security teams to implement segmentation across hybrid and cloud environments
-
Provide technical guidance on segmentation best practices and solution design based on client requirements
-
Support the deployment of network security controls in on-premises, hybrid, and cloud infrastructures
Required Qualifications
-
5-8 years of experience in network security, firewall engineering, or segmentation domains, demonstrating technical growth and increasing responsibility
-
3+ years of hands-on experience designing and implementing firewall-based segmentation in enterprise environments
-
2+ years of experience with micro-segmentation and Zero Trust-based network design
-
3+ years of experience with ACLs, VLANs, routing, switching, NAT, and firewall policy management
-
2+ years of experience in segmentation architecture, policy enforcement, and traffic flow analysis
-
3+ years of experience designing and implementing enterprise network security solutions including VPNs, load balancers, subnetting, next-generation firewalls, and secure segmentation
-
2+ years of experience supporting security controls across on-premises, hybrid, and cloud environments
-
1+ years of experience with cloud network security controls in one or more major cloud service providers (AWS, Azure, or GCP)
-
Experience working in large, complex enterprise environments using network security platforms and security toolsets
-
Ability to communicate technical concepts and provide solution recommendations based on client use cases and security objectives
Education:
- Bachelor’s or Master’s degree in Cybersecurity, Information Technology, Engineering, or a related field.
Technical Expertise:
-
Strong understanding of firewall-based segmentation, micro-segmentation, Zero Trust principles, ACLs, VLANs, routing, switching, NAT, and firewall policy management
-
Hands-on experience with leading firewall and segmentation platforms such as Palo Alto, Check Point, Cisco, Fortinet, Illumio, Guardicore/Akamai, VMware NSX, or similar solutions
-
Working knowledge of network security architecture and segmentation design principles