CrowdStrike - Montpelier, VT

posted 4 months ago

Full-time - Senior
Remote - Montpelier, VT
Professional, Scientific, and Technical Services

About the position

CrowdStrike is seeking a Senior Network Security Engineer II with a proven track record in building and operating hyper-scale hybrid cloud networks. This role involves developing and deploying the overall network security posture for the network edge, backbone, and data centers. The successful candidate will enhance management, visibility, and automation of network security practices and changes. Collaboration with other leads is essential to own and drive security-related major initiatives, guiding strategy from concept through funding, implementation, and support. Additionally, the candidate will be required to undergo and pass background and fingerprint checks consistent with government customer requirements.

Responsibilities

  • Be the hands-on subject matter expert for Audit Compliance, DDoS, VPNs, network segmentation spanning network infrastructure, hosts, and services, and all things related to network security best practices.
  • Provide technical security direction and insight for projects, discovery, and problem management.
  • Create network segmentation through various technologies such as routing, virtual networking, Software-Defined Networking (SDN), and host/service level controls.
  • Provide operational security support for multi-vendor, multi-region production network at scale.
  • Manage Network Security protocols and concepts, access management (AAA), and network ACLs/Firewalls.
  • Identify, test, and integrate new network security products, operating systems, and feature sets.
  • Manage documentation and frameworks relative to network security practices.
  • Perform vulnerability scanning and create remediation plans.
  • Participate in 24x7 on-call rotation.

Requirements

  • Proven track record in leading security initiatives independently with minimal supervision.
  • 7+ years of experience in network security engineering.
  • Strong understanding of network protocols such as TCP/IP, BGP, OSPF, IPsec.
  • Deep knowledge of network DDoS and mitigation techniques.
  • An in-depth understanding of encryption and how it translates to network traffic (HTTPS, IPSec).
  • Understand compliance requirements to perform and manage periodic audits.
  • Experience with security management and orchestration tools such as Tufin, Firemon, or AlgoSec.
  • Experience with load balancing, anycast, and DNS.
  • Experience with developing security automation tools/scripts used to manage or interact with network infrastructure such as Ansible, NETCONF, or YANG.
  • Experience with cloud service providers such as AWS and GCP.

Nice-to-haves

  • Work experience in data center, telecom, SaaS, or cloud operations companies.
  • Ability to communicate technical detail into succinct and fact-based business terminology, both verbally and in writing.
  • Customer-focused mindset, with demonstrated skill in managing expectations, providing proactive status updates.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service