Senior Network Security Engineer

Google Fiber
Summary
Join GFiber's security engineering team as a Senior Network Security Engineer to design, implement, and maintain robust security controls within our network infrastructure. You will be a core contributor to defining and enforcing network security policies, identifying and mitigating vulnerabilities, and responding to security incidents. This role requires deep expertise in network protocols, security technologies, and automation, with a strong focus on protecting critical infrastructure and ensuring compliance. You will serve as a subject matter expert, providing security guidance and collaborating with cross-functional teams. The position offers a competitive salary range of $157,000-$230,000 plus bonus and benefits. The application window is open until at least June 27, 2025, but may close earlier based on business needs.
Requirements
- Bachelor's Degree in Computer Science, Electrical Engineering, Cybersecurity, or a related technical field, or equivalent practical experience
- 7 years of experience in network security engineering, specifically in designing, implementing, and operating security controls for large-scale production networks
- Proficient with network protocols (TCP/IP, routing, switching) and their security implications, alongside hands-on experience with leading firewall technologies (Palo Alto, Juniper, Cisco)
- Proven experience with intrusion detection/prevention systems (IDS/IPS), various VPN solutions (IPsec, SSL VPN), and DDoS mitigation techniques
- Experience with at least one scripting or automation language (e.g., Python, Ansible, Bash) for network security automation, configuration management, and data analysis
Responsibilities
- Design, implement, and maintain network security across various network types, including deploying and managing firewalls, IDS/IPS, VPNs, and DDoS mitigation platforms
- Develop and enforce network security policies, conducting security assessments, vulnerability scans, and penetration tests, and leading remediation efforts
- Secure and optimize routing and switching protocols (e.g., BGP, MPLS, VXLAN) and have driven network security automation using scripting languages like Python, Ansible, and Bash
- Perform network security troubleshooting, incident response, and forensic analysis
- Collaborate with various teams (engineering, operations, cloud security) to integrate security from the start and create comprehensive network security documentation
Preferred Qualifications
- Professional security certifications (e.g., CISSP, SANS GIAC certifications like GSEC, GCIA, GCIH; CCNP Security, JNCIP-SEC)
- Experience with security in an ISP or telecommunications environment
- Familiarity with cloud networking concepts and securing network architectures
- Experience with network access control (NAC) solutions
- Knowledge of compliance frameworks (e.g., NIST, ISO 27001, CIS) and experience in implementing controls to meet these requirements
- Proven ability to lead complex technical security projects and drive cross-functional initiatives
Benefits
The US base salary range for this full-time position is between $157,000 - $230,000 + bonus + cash award + benefits