Jobs · Engineering · Oregon

Senior Network Security Engineer

Ledgent Technology · Portland, OR · 3 wk ago
On-siteEngineeringFull-time

Location: Oregon City, OR - 100% onsite | Direct Hire, Full Time

About the Role

A Ledgent Technology client is seeking a Senior Network Security Engineer to strengthen and modernize our enterprise security environment. This highly technical role is for a security practitioner with a strong networking foundation who understands how enterprise environments function and can effectively balance security, performance, and operational continuity. The successful candidate will partner closely with infrastructure, architecture, and IT operations teams to improve security controls, enhance visibility, reduce risk, and implement long-term security initiatives.

Responsibilities

  • Security Engineering & Architecture
    • Design, implement, and maintain enterprise security controls, standards, and hardening practices.
    • Participate in infrastructure, cloud, and application architecture reviews to ensure security requirements are incorporated early in the design process.
    • Evaluate and deploy security technologies that enhance protection without negatively impacting business operations.
    • Review existing security configurations, firewall rules, and access controls to identify opportunities for improvement and risk reduction.
    • Develop and implement security guardrails that support a "do no harm" approach to business operations.
  • Threat Detection & Vulnerability Management
    • Manage and optimize centralized logging, monitoring, and security analytics platforms.
    • Conduct proactive threat hunting and security investigations across systems and networks.
    • Perform vulnerability assessments, prioritize findings, and coordinate remediation efforts with technical teams.
    • Develop, tune, and improve detection rules, alerts, and security monitoring capabilities.
    • Analyze security trends and recommend improvements to organizational security posture.
  • Incident Response & Security Operations
    • Lead security incident investigations through detection, containment, eradication, recovery, and post-incident review.
    • Develop and maintain incident response playbooks, operational procedures, and runbooks.
    • Support endpoint security technologies including EDR, antivirus, and endpoint hardening initiatives.
    • Collaborate with infrastructure teams to address and remediate security threats and vulnerabilities.
  • Network Security
    • Monitor and assess newly discovered devices and network activity.
    • Investigate anomalous communications and coordinate mitigation efforts.
    • Design and support network segmentation strategies, including VLAN implementation and access controls.
    • Review and optimize firewall policies to reduce risk while maintaining business functionality.
    • Provide technical guidance on enterprise network security architecture.
    • Support implementation and maintenance of network security standards and best practices.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or equivalent professional experience.
  • 5+ years of experience in cybersecurity, network security engineering, infrastructure security, or a related field.
  • Strong understanding of enterprise networking concepts including routing, switching, TCP/IP, network protocols, VLANs, segmentation, and firewall administration.
  • Experience with identity and access management technologies, including Active Directory, Microsoft Entra ID, MFA, and identity lifecycle management.
  • Hands-on experience with endpoint security tools, EDR platforms, vulnerability scanners, antivirus solutions, and security monitoring technologies.
  • Experience with SIEM platforms, centralized logging, and security operations workflows.
  • Ability to evaluate security controls, identify gaps, and recommend practical remediation strategies.
  • Experience conducting security investigations, audits, and remediation planning.
  • Strong troubleshooting, analytical, and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Ability to work effectively across infrastructure, architecture, and support teams.

Preferred Qualifications

  • Experience supporting large-scale enterprise security environments.
  • Experience with enterprise network security platforms, next-generation firewalls, and centralized security management tools.
  • Expertise in threat hunting, detection engineering, and SIEM rule development.
  • Experience implementing network segmentation and VLAN strategies.
  • Experience with Data Loss Prevention (DLP) technologies and data protection controls.
  • Experience with modern identity and access management platforms, including single sign-on and identity governance solutions.
  • Experience with email security, collaboration platform security, and information governance technologies.
  • Experience with Privileged Access Management (PAM) solutions.
  • Industry certifications such as CISSP, GSEC, CEH, Security+, GIAC, or equivalent.

Technical Environment

Technologies and platforms may include:

  • Enterprise firewall and network security solutions
  • Endpoint Detection & Response (EDR)
  • Security Information and Event Management (SIEM)
  • Centralized logging and monitoring tools
  • Vulnerability management platforms
  • Active Directory and cloud identity services
  • Multi-factor authentication solutions
  • Data Loss Prevention (DLP)
  • Network segmentation and access control technologies
  • Endpoint and server security tools
  • Security analytics and threat detection platforms

Ideal Candidate Profile

The ideal candidate:

  • Has deep expertise in enterprise networking and security architecture.
  • Understands how security controls impact business operations and applies a practical, risk-based approach.
  • Enjoys building and improving security capabilities rather than simply responding to alerts.
  • Proactively identifies security gaps and recommends long-term solutions.
  • Can confidently assess and optimize existing firewall policies, security rules, and network controls.
  • Is equally comfortable investigating threats, implementing technical controls, and partnering with infrastructure teams on strategic security initiatives.

Pay

Annual compensation range: $120,000–$150,000, depending on experience.

Similar jobs