Summary
✨ AI‑Generated
A network security engineering role focused on protecting critical infrastructure through security controls, automation, monitoring, and compliance improvements.
Highlights
Design and improve security infrastructure while leading automation and compliance initiatives.
Description
Role Overview:
We are looking for a Network Security Engineer to be responsible for the design, implementation, maintenance, and continuous improvement of network security solutions.
You will lead network security posture management, system operations, perimeter defense controls, compliance activities, and automation initiatives to protect critical infrastructure.
To be successful in this role, you should have solid experience in information security and network infrastructure, with a strong understanding of security protocols, firewalls, VPNs, and risk management.
You should also possess strong interpersonal and communication skills and be able to collaborate effectively with a wide variety of stakeholders.
Primary Responsibilities:
Network Security Posture & Firmware Patching
Lead monthly patching cycles for network security devices and firmwareAutomate patch deployment where possible (e.g., via Ansible or vendor tools)Perform configuration hardening audits and remediate posture driftsReport posture metrics and status to leadership
Management and Maintenance of Network Security Systems
Monitor system health and performance of network security platformsPerform regular backups and disaster recovery testingManage device groups, templates, and stacksPush policy changes safely and tune logging and reportingAutomate repetitive operational tasks
Perimeter Defense & Network Security Controls Implementation
Design and configure firewalls, VPNs, Network Access Control (NAC), and segmentation policiesConduct pre- and post-implementation testingIntegrate security controls with monitoring and SIEM tools
Compliance, Auditing & Security Hardening
Achieve and maintain compliance with relevant standards (e.g., ISO 27001, NIST, PCI-DSS network controls) during annual and internal auditsRemediate all audit findings within defined SLAsEnsure ≥95% of network devices meet baseline hardening standards
Knowledge Sharing, Automation & Professional Development
Automate repetitive tasks using Python, Ansible, Panorama API, or other toolsPursue relevant professional certifications and stay current with emerging threats and technologiesShare threat intelligence, findings, and best practices with the broader security team
Requirements:
A bachelor’s or associate’s degree in IT, Computer Science, or a related fieldMinimum 5 years’ experience in information security and IT risk management, with a strong focus on network securityOpen to relocate to Singapore.IT security or risk assessment certifications are advantageous (e.g., CISSP, CCNP Security, PCNSA/PCNSE, or equivalent)Hands-on experience managing firewalls, VPNs, and network security appliancesAdvanced understanding of security protocols, cryptography, network segmentation, and security architecturesStrong working knowledge of IT risks, security implementations, and common operating systemsExperience with automation tools such as Ansible, Python scripting, and vendor APIs is highly desirableExcellent problem-solving, communication, teaching, and interpersonal skills