Rackspace Technology is a leading provider of expertise and managed services across all major public and private cloud technologies. We’ve evolved Fanatical Support to encompass the entire customer journey — providing Fanatical Experience™ from first consultation to daily operations. Our passionate experts combine the power of proactive, always-on service and expertise with best-in-class tools and automation to deliver technology when and how our customers need it.
We are seeking a highly skilled Senior Network Security Engineer with specialized expertise in firewall technologies, F5 application delivery controllers, and intrusion prevention/detection systems (IPS/IDS). In this role, you will be responsible for designing, implementing, and maintaining enterprise and cloud network security infrastructure to protect against evolving cyber threats. The ideal candidate will bring deep technical knowledge across multiple security platforms, strong incident response capabilities, and the ability to lead the operation of critical environments to ensure network resiliency, compliance, and security.
Responsibilities:
- Design, implement, and manage enterprise firewall infrastructure including next-generation firewalls (NGFWs), VPN concentrators, and web application firewalls.
- Configure, optimize, and maintain F5 application delivery controllers, including load balancing, SSL offloading, and application security modules.
- Deploy and manage intrusion prevention/detection systems (IPS/IDS), ensuring proper tuning to minimize false positives while detecting genuine threats.
- Develop and implement comprehensive network security architectures with defense-in-depth strategies.
- Create and maintain security policies, rulesets, and access control lists across all security platforms.
- Conduct regular security audits, vulnerability assessments, and penetration testing to identify and remediate security gaps.
- Monitor security events and logs to identify potential security incidents and respond appropriately.
- Lead security incident investigations and responses, including root cause analysis and remediation planning.
- Establish security monitoring solutions and develop custom alerting for critical security events.
- Implement automation and orchestration for security processes to improve efficiency and response times.
- Design and implement secure network segmentation strategies to contain potential breaches.
- Collaborate with compliance teams to ensure network security controls meet regulatory requirements.
- Evaluate emerging security technologies and recommend solutions to address evolving threats.
- Provide technical mentorship to junior security engineers and network administrators.
- Participate in after-hours on-call rotation for critical security incidents.
Requirements:
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field.
- 8+ years of experience in network or security engineering roles.
- Minimum 5+ years of hands-on experience with enterprise firewall platforms (Palo Alto, Fortinet, Cisco, etc.).
- Proven expertise with F5 BIG-IP platforms, including LTM and GTM modules.
- Extensive experience configuring and maintaining IPS/IDS systems (Cisco, Palo Alto, Snort, etc.).
- Strong understanding of network protocols, OSI model, and TCP/IP stack.
- Experience with micro-segmentation technologies.
- In-depth knowledge of common attack vectors and mitigation techniques.
- Current industry certifications (CISSP, CCNP Security, F5 Certified, etc.).
- Understanding of compliance frameworks (PCI DSS, HIPAA, SOX, ISO 27001, etc.).
- Experience with security in cloud environments.
- Strong analytical and problem-solving abilities.
- Excellent communication skills and ability to explain technical concepts to non-technical stakeholders.
- Ability to work effectively under pressure during security incidents.
Additional Skills (Good To Have):
- Experience with zero trust network architecture and implementation.
- Proficiency in scripting and automation for security operations (Python, Bash, etc.).
- Knowledge of SOAR (Security Orchestration, Automation and Response) platforms.
- Familiarity with container security and Kubernetes environments.
- Experience with secure SD-WAN implementations.
- Background in DevSecOps practices and tools.
- Knowledge of threat intelligence platforms and integration.
- Experience with DDoS mitigation techniques and services.
- Familiarity with NAC (Network Access Control) solutions.
- Understanding of PKI infrastructure and certificate management.
- Background in security architecture and framework development.
This job posting represents an exciting opportunity for qualified candidates to further their careers in network security engineering.