Network Security Engineer

Nebius — Netherlands · Posted ~1 hour ago

Mid Full-time Visa History ✓

Skills

Network engineering Cybersecurity Network security architecture Enterprise security Cloud infrastructure Network security

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

Join a network engineering team as a Network Security Engineer and help design and implement end-to-end security architectures for large-scale cloud infrastructure. You will combine deep networking expertise with cybersecurity practices to protect enterprise systems and support modern compute and data workloads.

Highlights

Work at the intersection of network engineering and cybersecurity within a rapidly growing cloud infrastructure environment. The role provides exposure to large-scale infrastructure, advanced computing systems, and end-to-end network security architecture.

Description

About Nebius: Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in-house AI/ML infrastructure. Built by engineers, for engineers. From large-scale GPU orchestration to inference optimization, we own the hard problems across compute, storage, networking and applied AI. Listed on Nasdaq (NBIS) and headquartered in Amsterdam, we have a global footprint with R&D hubs across Europe, the UK, North America and Israel. Our team of 1,500+ includes hundreds of engineers with deep expertise across hardware, software and AI R&D.Role SummaryWe are looking for a Network Security Engineer to join our Network team. This role combines deep expertise in network engineering and cybersecurity. You will help implement end-to-end network security architectures for enterprise and data center backbone/fabric environments, work with network architects and the management team to guide these designs through review and approval with the Security team, and operate and maintain the implemented solutions day-to-day.You are expected to be hands-on with leading firewall platforms (Palo Alto, Check Point, etc.), understand complex routing and switching designs, and be comfortable implementing and troubleshooting these networks.Responsibilities Implement and maintain Zero Trust-aligned security architectures for both enterprise and data center networks. Configure Layer 3/4 & Multi-VRF Segmentation, Security Policies, Secure Remote access. Implement and test large hyper scale DC Security solutions : IPS/NDR solutions , AntiDDOS solutions. Integrate NGFW platforms with modern identity providers such as Microsoft Entra ID and Okta, maintain NGFW management, automation, and logging capabilities required by the Security team. Implement and maintain Security Capabilities, including Layer 7 application inspection, IPS, user identification, ZTNA, and SASE integrations. Integrate and operate monitoring tools such as Zabbix, Grafana, and Akvorado. Regularly perform security hardening, vulnerability management, and patching and upgrades on network and infrastructure devices, and verify the effectiveness of these procedures. Required Qualifications Experience in networking and security protocols (TCP/IP, HTTP(S), DNS, TLS, IPsec, Routing protocols) Experience and Knowledge of Backbone & Datacenter technologies (EVPN, L3VPN MPLS, MPBGP, L2VPN..) Hands-on experience with next-generation firewalls (Palo Alto Networks, Check Point, or similar). Experience with automation using Python, Go, or equivalent. Proficiency in Unix/Linux and experience with major network vendors (Cisco, Juniper, Aruba, etc.). Experience configuring and troubleshooting NGFW capabilities and integrations, including IPS, User-ID, Microsoft Entra ID, and ZTNA. Preferred Qualifications Good knowledge of IPv6. Experience with automation tools (Ansible, Terraform, NetBox, SaltStack, etc.). Experience with large-scale, highly available distributed systems. Knowledge of Zero Trust principles and micro-segmentation approaches. Relevant certifications (CCNP/CCIE, PCNSE, NSE 4/7) and professional working proficiency in English. Familiarity with commercial or open-source monitoring, logging, and security analytics solutions such as Splunk; EDR/XDR platforms such as CrowdStrike; and centralized NGFW management platforms such as Panorama, Strata Cloud Manager, and FortiManager. Bonus: Exposure to DevSecOps practices (SAST/DAST), CSPM/CWPP platforms such as Wiz, EDR, offensive security (OSCP/CPTS, red teaming), or security frameworks, standards, and regulations such as ISO/IEC 27001, NIST CSF, and GDPR. Benefits & Perks: Competitive compensation Career growth and learning opportunities Flexibility and ownership Collaborative and innovative culture Opportunity to work on impactful AI projects International environment and talented teams What's it like to work at Nebius: Fast moving - Bold thinking - Constant growth - Meaningful impact - Trust and real ownership - Opportunity to shape the future of AI Equal Opportunity Statement: Nebius is an equal opportunity employer. We are committed to fostering an inclusive and diverse workplace and to providing equal employment opportunities in all aspects of employment. We do not discriminate on the basis of race, color, religion, sex (including pregnancy), national origin, ancestry, age, disability, genetic information, marital status, veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by applicable law. Applicants must be authorized to work in the country in which they apply and will be required to provide proof of employment eligibility as a condition of hire. If you need accommodations during the application process, please let us know.