Weekday AI (YC W21)
Network Security
Weekday AI (YC W21)India3 days ago
Full-timeOther
This role is for one of the Weekday's clients

Min Experience: 5 years

JobType: full-time

We are seeking an experienced Network Security Engineer to provide Level 2/3 engineering support across a wide range of network security platforms. This role focuses on advanced firewall management, microsegmentation, Zero Trust architecture, cloud security integration, and regulatory compliance in highly regulated environments.

Requirements

Key Responsibilities

  • Provide L2/L3 engineering support for network security solutions including firewalls, VPNs, SASE, WAF, NAC, NDR, and microsegmentation platforms.
  • Manage and optimize advanced firewall configurations across global environments, including SASE-based deployments.
  • Configure, manage, and maintain network security platforms such as firewalls, IDS/IPS, WAF, and VPN solutions in line with industry best practices.
  • Design, implement, and maintain Zero Trust and microsegmentation strategies to reduce attack surface and lateral movement.
  • Collaborate with cloud and infrastructure teams to ensure secure integration of services across AWS, Azure, and GCP, including network segmentation, access controls, and encryption.
  • Perform network security risk assessments, vulnerability analysis, and support penetration testing activities with actionable remediation plans.
  • Support vulnerability management programs and continuous security improvement initiatives.
  • Develop and deliver training materials and awareness sessions on network security policies and best practices.
  • Ensure compliance with regulatory and security standards such as PCI DSS, HIPAA, and GDPR through policy enforcement, audits, and documentation.

Required Skills & Experience

  • 5-7 years of hands-on experience in network security engineering, preferably within financial services or other regulated environments.
  • Strong expertise in firewall technologies, particularly Palo Alto Networks (User-ID, App-ID, IDS/IPS), along with WAF, DDoS protection, and NAC solutions.
  • Deep understanding of network segmentation and Zero Trust architectures, including experience with microsegmentation tools such as Illumio, Guardicore, VMware NSX/NSX-T, Cisco ACI, ShieldX, vArmour, Zero Networks, or similar.
  • Experience with SASE and CASB architectures using platforms such as Prisma Access, Zscaler, or Netskope.
  • Hands-on experience with cloud networking and security across AWS, Azure, and/or GCP.
  • Familiarity with Network Detection & Response (NDR) platforms such as Darktrace, ExtraHop, or Vectra.
  • Strong analytical, troubleshooting, and communication skills, with the ability to clearly explain complex security concepts to non-technical stakeholders.
  • Proven ability to collaborate across engineering, infrastructure, and application teams to align security requirements and influence technical decisions.
  • High ethical standards and a strong sense of ownership in securing enterprise environments.

Certifications (Preferred)

  • CISSP
  • CCNA / CCNP (Routing & Switching or Security)
  • Palo Alto Networks certifications (e.g., PCSNE)
  • CompTIA Security+

Skills

Network Security

  • Firewalls
  • Microsegmentation
  • Zero Trust
  • Palo Alto Networks
  • Illumio
  • Guardicore
  • NSX / NSX-T
  • SASE
  • Cloud Security
  • NDR

Key Skills

Ranked by relevance