Senior Cloud Network Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Aspira · 1 month ago

Senior Cloud Network Security Engineer

Aspira is a market-leading provider of software and services that support public agencies in protecting natural and cultural resources. The Senior Cloud Network Security Engineer is responsible for implementing secure hybrid-cloud network infrastructures and executing Aspira’s security strategy by delivering compliant cloud networking solutions while providing technical support to security and operations teams.

CommunitiesGovernmentHospitalityInformation TechnologyInternetInternet of ThingsLeisureTourismTravel
check
H1B Sponsor Likelynote

Responsibilities

Design and implement secure connectivity across AWS VPCs, Transit Gateway, ExpressRoute, and Direct Connect, in alignment with policies and standards defined by the Director of Information Security
Support hybrid integration of Dallas and China office networks with AWS workloads through site-to-site VPNs, IPSec tunnels, and Direct Connect
Enforce segmentation strategies (subnets, VLANs, security groups, NACLs) using AWS Network Firewall for cloud workloads and Palo Alto/Cisco ASA for on-prem environments, aligned with zero-trust principles
Configure and manage next-gen firewalls (Palo Alto Panorama, Cisco ASA/Meraki, Fortinet) across cloud and on-prem environments
Deploy and operate AWS-native firewall/security controls (AWS Network Firewall, WAF, Shield)
Implement and tune intrusion detection, DDoS mitigation, and endpoint-aware access policies under guidance from the Director
Ensure all logs, flows, and firewall telemetry are ingested into SIEM platforms (Rapid7, LogRhythm, Splunk) as required by security governance
Utilize AWS CloudWatch, CloudTrail, GuardDuty, and Security Hub for visibility and detection
Tune and maintain security alerts for anomalies, IAM misconfigurations, and suspicious traffic
Act as Tier 3 escalation point for complex network/security incidents, reporting incident summaries and remediation outcomes back to the Director of Information Security
Provide technical evidence and reporting to support audits, insurer requirements, and customer security reviews
Support compliance frameworks (NIST, PCI, SOC 2, CIS benchmarks) with security controls and operational evidence
Contribute to security KPIs, including SIEM coverage across assets, MTTR for incidents, and SLA compliance for patching
Build and manage Infrastructure as Code (Terraform, Ansible, CloudFormation) for secure, repeatable deployments
Embed automated security controls into CI/CD pipelines under direction of the Director’s security roadmap
Continuously optimize cost and performance of cloud networking through automated enforcement of routing, peering, and inspection policies
Partner with DevOps, IT Ops, and AppSec teams to integrate secure networking into projects and migrations
Mentor junior engineers and analysts, aligning daily practices with security policies and standards
Provide architecture recommendations to the Director of Information Security and contribute input during design reviews

Qualification

AWSNetwork SecurityPalo AltoInfrastructure as CodeAutomation/ScriptingCompliance StandardsRoutingMentoringCollaboration

Required

7-10 years in network engineering, with at least 4+ years in cloud networking/security
Deep technical knowledge of AWS (VPC, Transit Gateway, Direct Connect, GuardDuty, Security Hub)
Hands-on experience with Palo Alto (Panorama), Cisco ASA/Meraki, and Fortinet firewalls
Strong understanding of routing (BGP, OSPF), load balancing, and hybrid troubleshooting
Proficiency in automation/scripting (Terraform, Ansible, Python, Bash, CloudFormation)
Familiarity with compliance standards (NIST 800-53, PCI DSS, SOC2, CIS)

Preferred

AWS Security Specialty
AWS Advanced Networking Specialty
PCNSE
CCNP Security

Company

Aspira

twittertwittertwitter
company-logo
Aspira's technology helps you manage campground reservations, hunting/fishing licenses, and more.

H1B Sponsorship

Aspira has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2021 (1)
2020 (2)

Funding

Current Stage
Late Stage
Total Funding
unknown
2021-04-23Acquired

Leadership Team

leader-logo
Glenn Wilson
Chief Technology Officer
linkedin
leader-logo
Dan McGrew
CFO
linkedin
Company data provided by crunchbase