Job Description/ Responsibilities: Required Skills & Attributes • 8+ years of experience in enterprise network security architecture, network security engineering, infrastructure security design, or related disciplines. • 5+ years of hands-on experience designing and implementing network security controls across cloud, hybrid, and on-premises environments. • Demonstrated experience reviewing, validating, and approving firewall requests, firewall rule patterns, and network connectivity requirements against enterprise security standards. • Strong expertise in network segmentation, Zero Trust Network Access (ZTNA), network access control lists (ACLs), trust-boundary design, and hub-and-spoke or regional network architectures. • Proven experience designing and implementing secure routing, load balancing, Web Application Firewall (WAF), proxy architectures, DDoS protection, and network dependency mapping. • Experience developing and governing enterprise network security architecture patterns across trusted, federated, untrusted, hybrid, cloud, and on-premises environments. • Ability to evaluate architecture tradeoffs while maintaining compliance with enterprise security standards and strategic architecture direction. • Experience supporting network security requirements for acquisitions, mergers, or complex integration initiatives. • Strong collaboration, communication, and stakeholder management skills with the ability to work across security, infrastructure, engineering, application, and program management teams. • Experience using enterprise-approved automation platforms, AI-assisted technologies, and workflow optimization tools to improve productivity and decision-making. • Bachelor's degree in Information Systems, Computer Science, Cybersecurity, or related technical field; or 4+ years of equivalent network security experience in lieu of degree.
Preferred Skills & Attributes • Experience designing network security architecture within healthcare, highly regulated, or large enterprise environments. • Strong understanding of: o Firewall governance and approval processes o Cloud network security controls o Acquired entity (AE) integration and onboarding patterns o Audit evidence collection and control validation requirements • Experience documenting complex architecture decisions and presenting recommendations to executive leadership, engineering teams, security teams, and compliance stakeholders. • Experience leveraging AI productivity tools and network automation capabilities to accelerate architecture reviews, documentation, and operational workflows. • Knowledge of enterprise security domains including: o IDS/IPS o Data Loss Prevention (DLP) o DNS security o Secure proxy architectures o Private connectivity solutions o Logging and monitoring architectures • Industry certifications preferred: o CISSP o CCSP o CCNP Security o Palo Alto Networks Certified Network Security Engineer (PCNSE) o Cloud security and networking certifications (AWS, Azure, GCP, etc.)
Primary Responsibilities • Define, govern, and accelerate repeatable network security architecture patterns supporting acquired entity integrations across cloud, hybrid, and on-premises environments. • Review, validate, and approve firewall requests and network connectivity requirements to ensure alignment with enterprise security standards and operational requirements. • Provide architecture guidance and decision support to engineering and delivery teams by translating enterprise security standards into practical, repeatable implementation patterns. • Design and oversee complex network security solutions, including segmentation strategies, trust boundaries, ingress/egress controls, routing, DNS, proxy services, IDS/IPS, DLP, and logging architectures. • Partner cross-functionally with Security Architecture, Cloud Security Engineering, Cyber Defense, Data Security, Infrastructure, and Acquisition Integration teams to remove deployment blockers and accelerate secure onboarding of acquired environments.
Preferred Prior Experience, Industry Background, or Domain Expertise The ideal candidate will possess deep expertise in enterprise network security architecture within large, complex organizations. Experience in healthcare, insurance, financial services, or other highly regulated industries is strongly preferred. Candidates should have a demonstrated track record designing secure network architectures across cloud, hybrid, and on-premises environments, ideally including acquisition integrations, large-scale transformations, or enterprise network modernization initiatives. Experience working with enterprise firewall governance, segmentation programs, Zero Trust initiatives, cloud networking, and security architecture review boards is highly desirable. Exposure to mergers and acquisitions, transitional architecture design, and large-scale enterprise security programs is a significant advantage.
AI Skills All contractor resources are expected to demonstrate baseline proficiency in enterprise-approved AI tools as part of their day-to-day responsibilities. · Consistent Use: Maintain a minimum of 90% weekly usage of AI tools such as GitHub Copilot, Microsoft 365 Copilot, and other enterprise-approved GenAI platforms. · Applied Productivity: Leverage AI tools to improve architecture development, network security reviews, documentation creation, data analysis, decision support, and workflow automation. · Continuous Learning: Stay current on emerging AI capabilities and enterprise-approved features, applying them to improve delivery quality, operational efficiency, and time-to-value. · Responsible Use: Apply AI solutions in accordance with enterprise governance, security, privacy, and compliance requirements. · AI-Assisted Documentation: Utilize AI tools to accelerate architecture diagrams, design reviews, security assessments, technical documentation, and executive communications.
Years of Experience: 14.00 Years of Experience
Applicant Notices & Disclaimers
For information on benefits, equal opportunity employment, and location-specific applicant notices, click here
At SPECTRAFORCE, we are committed to maintaining a workplace that ensures fair compensation and wage transparency in adherence with all applicable state and local laws.This position's pay range is $45.00/hr - $50.00/hr.