We are seeking a motivated and passionate Staff Network Security Engineer interested in joining our global network infrastructure support team responsible for designing, implementing, and maintaining a highly redundant and scalable secure network. You will also be part of a dynamic network engineering team that is responsible for designing and supporting all global network services including LAN, WAN, Data Center, remote access, wireless, and firewall security. We support a global data center footprint of over 10 megawatt of power, 12 Colo data centers, 10 on-Prem data centers and over 50K servers.
You will primarily be focused on improving the network security posture through new vendor solutions, implementing Zero Trust Architecture and best security standard practices. Synopsys is a growing global company that values Integrity, Execution Excellence, Leadership, and Passion. We are looking for candidates that embrace these same values and are interested in growing and learning with us.
What You'll Be Doing
Design, configure, deploy, monitor, and troubleshoot production network infrastructure and associated services
Develop and implement network security policies and procedures
Design and implement campus and datacenter macro & micro-segmentation policies
Utilize automation tools and scripts to standardize deployment configurations and environments
Monitor and analyze networks for potential security threats and vulnerabilities
Manage network security infrastructure including SASE, firewalls, VPNs, and ZTA solutions
Help maintain and advance Zero Trust Architecture adoption
Develop and enforce best practice security standards, compliance, and governance
Conduct external and internal security audits and assessments to identify potential risk and vulnerabilities in the network infrastructure adhering to industry standard cybersecurity frameworks
Stay up to date on emerging network security threats and proof of concepts
Identify and solve problems related to overall security infrastructure performance, efficiency, and availability in a timely manner
Create and maintain documentation of network security designs, processes, and procedures
Regularly review firewall, VPN, and web content filtering configuration and rules to ensure optimal efficiency and adherence information security standards.
Actively participate with internal and external auditors during examinations, providing support and assistance in addressing audit recommendations.
Contribute in network and security support ticketing and provide timely resolution for end user issues
Participate in an on-call rotation
Key Skills:
4 + years of experience working on current bleeding edge technology Gartner leaders
Bachelor’s degree or equivalent work experience
Proficient in network configuration management and automation tools (Python, Ansible)
Familiar with RestAPI automation and configuration management secure coding
Strong attention to details: Keen eye for detail and be able to identify potential vulnerabilities and threats
Strong analytical and problem-solving skills
Experience with MFA, SSO, SAML deployment
Certifications such as PCNSE, ZIA/ZPA, CCNP, CCDP, CCIE, CISSP, CCDE, CEH, CISSP, Security+ or equivalent work experience is a big plus
Familiar with Cisco ACI and application service chaining
Familiar with Clearpass NAC
Deep understanding of network security systems and protocols such as IPSec, IKE, GRE, TACACS, RADIUS, 802.1x, OSPF, DMVPN, BGP, SD-WAN
Experience with configuring and troubleshooting Cisco, Ivanti, Versa, and Aruba devices
Experience with configuring Palo Alto, Zscaler and SASE solutions
Ability to analyze network packet captures
Ability to work after hours to support projects and maintenance activities.
Well-versed with automation and scripting tools such as Python and Ansible
Ability to create best practice secure environment diagrams and documentation
Ability to quickly learn new or unfamiliar technology and products using documentation and internet resources.
Strong verbal, written interpersonal and communication skills.
Must be fluent in English
Strong organizational skills with the ability to work on multiple projects and tasks
Bonus Qualifications
Experience troubleshooting networking in Linux (RHEL, CentOS or Ubuntu)
Cloud experience in GCP, Azure and AWS
Experience with working in a global team environment and solving problems independently.
Master’s degrees in Network or Computer Engineering, Computer Science, Cybersecurity
At Synopsys, we’re at the heart of the innovations that change the way we work and play. Self-driving cars. Artificial Intelligence. The cloud. 5G. The Internet of Things. These breakthroughs are ushering in the Era of Smart Everything. And we’re powering it all with the world’s most advanced technologies for chip design and software security. If you share our passion for innovation, we want to meet you.
Inclusion and Diversity are important to us. Synopsys considers all applicants for employment without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, military veteran status, or disability