Job Description
Company: UKG
Architect and operate defense-in-depth network security controls across cloud and on-prem environments Continuously tune IPS, WAF, and DDoS protections against real-world attack patterns Implement and enforce ZTNA and DLP strategies that hold up under pressure—not just in audits Actively hunt for weaknesses in network design, segmentation, and traffic flows Lead response to high-severity incidents and drive root cause remediation—not just containment Partner with engineering to embed network security into systems before they ship—not after they fail Challenge assumptions, test controls, and eliminate blind spots Perform implementations and configuration of network security technologies Apply Zero Trust principles to control network access to resources Recommend, create, and maintain security configuration baselines to be used to harden systems Ensure all systems security operations and maintenance activities are properly documented and updated Automate manual tasks for improved efficiencies (eg.. infrastructure as code) Support Enterprise Risk with audits and compliance initiatives Participate in an on-call rotation as required 5+ years of experience in a Network Security Engineering role working with enterprise class Firewalls, DDOS/WAF, IPS and ZTNA Ability to assess network security architectures, document findings and recommendations based on industry best practices Solid understanding of network protocols, including TCP/IP, DNS, DHCP, and routing protocols Knowledge of security frameworks including NIST, ISO, CIS, OWASP 10, etc Experience with firewall administration, VPN configuration, and network intrusion detection/prevention systems Ability to define and review security policies to control access to systems Experience with Public Cloud provider infrastructure, system deployments and product release operations (AWS Preferred) Hands on experience leveraging AI-driven tools and techniques to enhance network threat detection and automate network security operations Bachelor’s or Master’s degree in Information Systems, Information Security, or related fields Relevant certifications such as CISSP, CISA, CISM, or CCNP Security Working knowledge with PowerShell, Ansible, Terraform, RegEx, Chef or Puppet Results oriented, high energy, self-motivated
Source: Careers At UKG