- Company Name
- Vienna Consultancy
- Job Title
- Lead Network Security Engineer
- Job Description
-
**Job Title:** Lead Network Security Engineer
**Role Summary:** Senior technical leader responsible for designing, implementing, and managing enterprise network security solutions, with a primary focus on Network Access Control (NAC) and firewall architectures. Drives security strategy, ensures compliance, and mentors junior staff across a hybrid Chicago‑based environment.
**Expectations:**
- 15+ years of progressive experience in network security engineering.
- Proven expertise in NAC design and deployment.
- Ability to lead complex security projects end‑to‑end.
- Strong communication skills for stakeholder interaction and team mentorship.
**Key Responsibilities:**
- Design, configure, and maintain NAC solutions using Forescout (FSCA/FSCE) and Cisco ISE.
- Deploy, manage, and troubleshoot Checkpoint and Palo Alto firewalls.
- Integrate authentication mechanisms (802.1x, RADIUS, TACACS+) with PKI (Venafi).
- Develop and enforce network security policies, standards, and procedures.
- Conduct security assessments, vulnerability analyses, and remediation planning.
- Provide technical leadership, guidance, and training to engineering teams.
- Collaborate with architecture, operations, and compliance groups to align security controls with business objectives.
- Produce documentation, reports, and metrics for senior management.
**Required Skills:**
- Deep knowledge of TCP/IP, routing, switching, and network administration.
- Expertise in 802.1x, RADIUS, TACACS+, and PKI management.
- Hands‑on experience with Forescout, Cisco ISE, Checkpoint, and Palo Alto firewalls.
- Strong analytical, troubleshooting, and incident response capabilities.
- Familiarity with security frameworks (e.g., NIST, ISO 27001).
- Ability to script/automate tasks (e.g., Python, PowerShell) is a plus.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or a related field.
- CCNP Security or CCNP Enterprise.
- CISSP (or equivalent).
- FSCA – Forescout Certified Administrator.