Senior Network Engineer
The Planet Group · New York, New York, US ·
- Seniority
- Senior
- Category
- Network engineering
Job Title: Senior Network Engineer
Location: Remote
Duration: 10 months
Schedule: 40 hrs/week
Pay Rate: $70/hr to $77.46/hr, DOE
Job Overview:
We are seeking a detail-oriented Network Security Engineer to lead the hardening and modernization of our enterprise network infrastructure. This role focuses on "cleaning the house"--systematically auditing legacy configurations, enforcing strict network segmentation, and transitioning our environment toward a Zero-Trust architecture. You will be responsible for the lifecycle of firewall governance, the decommissioning of technical debt, and ensuring that our global network remains compliant with institutional security mandates.
Key Responsibilities:
- Firewall and ACL Governance
- Audit & Rationalization: Systematically review and audit existing firewall rule sets and Access Control Lists (ACLs) across the global enterprise to eliminate redundant, outdated, or overly permissive entries.
- Policy Management: Assist in developing and enforcing standardized management procedures for all firewall and ACL modifications, ensuring every change aligns with established security policies and compliance frameworks.
- Network Segmentation & Isolation
- Architectural Review: Evaluate and enhance network segmentation strategies--including micro-segmentation--to minimize the attack surface and prevent lateral movement by malicious actors.
- Trust Zone Enforcement: Design and implement new VLANs and routing policies to ensure rigorous logical separation between diverse trust zones, including Student, Faculty, Research, IoT, and Administrative networks.
- Legacy Infrastructure Decommissioning
- Cleanup Operations: Identify and execute the orderly decommissioning of legacy network segments, unused VLANs, and obsolete hardware configurations.
- Infrastructure Migration: Lead the remediation and consolidation of specialized networks, specifically focusing on the phase-out and migration of the OpNet infrastructure to modern, standardized platforms.
- Documentation & Compliance
- Topology Management: Maintain accurate, high-fidelity network topology diagrams and documentation for all security-related changes and segmentation schemes.
- Regulatory Alignment: Validate that all network cleanup and security activities adhere strictly to internal GOIS (Global Office of Information Security) mandates and external regulatory standards.