Cybersecurity Network Engineer (f/m/x)
⚲ Kraków, Poznań, Warszawa, Toruń, Wrocław, Rzeszów, Bydgoszcz, Łódź, Białystok, Piła, Lublin, Katowice, Gdańsk, Szczecin
23 100 - 27 300 PLN (B2B)
Wymagania
- Cisco
- IaC (Infrastructure as Code)
- Python
- Palo Alto Networks
- Cisco ISE
- Terraform
- GitHub
- CI/CD
- Enterprise Networking
Opis stanowiska
O projekcie:
We are looking for a Senior Cybersecurity Engineer to join our Network Security Product team, where you will act as the primary Subject Matter Expert for Secure Access Network Services. In this role, you will lead the evolution of Network Access Control, identity-driven security, segmentation, and authentication services across global enterprise. Your mission will be to ensure that network remains resilient and compliant through the continuous evolution of our 'Defense in Depth' strategy.
Wymagania:
- Minimum 5 years of experience in cybersecurity engineering with a focus on network security- Deep expertise in Cisco technologies, particularly Cisco ISE, including hands-on experience with TrustSec and Dot1x- Proven experience deploying and maintaining Palo Alto Next-Generation Firewalls, including SSL decryption and threat prevention- Strong command of Infrastructure as Code (IaC) principles, with proficiency in Terraform and GitHub- Practical experience in using Python for automation and managing network security infrastructure at scale- Solid understanding of enterprise networking, including advanced knowledge of routing protocols and switching- Advanced level of English and Polish
Codzienne zadania:
- Driving the long-term technical roadmap for network access, ensuring alignment with Roche's Zero Trust security architecture and strategy
- Partnering with business units to translate high-level security requirements into actionable, scalable technical initiatives and functional policies
- Providing mentorship and technical leadership to junior engineers, fostering a culture of continuous learning and operational excellence within the team
- Designing, deploying, and maintaining robust authentication solutions utilizing protocols such as 802.1X, EAP-TLS, RADIUS, and MFA
- Integrating disparate security platforms with enterprise Identity Providers to ensure seamless and secure authentication flows
- Leading the lifecycle management of Cisco ISE deployments, including software upgrades and platform optimization
- Developing and maintaining observability, monitoring, and reporting dashboards to track platform health and security compliance
- Advocating for and implementing Infrastructure-as-Code principles to improve deployment speed and consistency
We are looking for a Senior Cybersecurity Engineer to join our Network Security Product team, where you will act as the primary Subject Matter Expert for Secure Access Network Services. In this role, you will lead the evolution of Network Access Control, identity-driven security, segmentation, and authentication services across global enterprise. Your mission will be to ensure that network remains resilient and compliant through the continuous evolution of our 'Defense in Depth' strategy.
Wymagania:
- Minimum 5 years of experience in cybersecurity engineering with a focus on network security- Deep expertise in Cisco technologies, particularly Cisco ISE, including hands-on experience with TrustSec and Dot1x- Proven experience deploying and maintaining Palo Alto Next-Generation Firewalls, including SSL decryption and threat prevention- Strong command of Infrastructure as Code (IaC) principles, with proficiency in Terraform and GitHub- Practical experience in using Python for automation and managing network security infrastructure at scale- Solid understanding of enterprise networking, including advanced knowledge of routing protocols and switching- Advanced level of English and Polish
Codzienne zadania:
- Driving the long-term technical roadmap for network access, ensuring alignment with Roche's Zero Trust security architecture and strategy
- Partnering with business units to translate high-level security requirements into actionable, scalable technical initiatives and functional policies
- Providing mentorship and technical leadership to junior engineers, fostering a culture of continuous learning and operational excellence within the team
- Designing, deploying, and maintaining robust authentication solutions utilizing protocols such as 802.1X, EAP-TLS, RADIUS, and MFA
- Integrating disparate security platforms with enterprise Identity Providers to ensure seamless and secure authentication flows
- Leading the lifecycle management of Cisco ISE deployments, including software upgrades and platform optimization
- Developing and maintaining observability, monitoring, and reporting dashboards to track platform health and security compliance
- Advocating for and implementing Infrastructure-as-Code principles to improve deployment speed and consistency
🔍 Dekoder Ogłoszenia
🔴
primary Subject Matter Expert for Secure Access Network Services
Będziesz jedyną osobą odpowiedzialną za kluczowy obszar, co może oznaczać dużą presję i brak wsparcia.
🔴
lead the evolution of Network Access Control, identity-driven security, segmentation, and authentication services
Oczekuje się od Ciebie proaktywnego kształtowania przyszłości tych technologii, co może wiązać się z niepewnością i koniecznością samodzielnego definiowania kierunków.
🔴
ensure that network remains resilient and compliant through the continuous evolution of our 'Defense in Depth' strategy
Będziesz musiał stale dostosowywać i ulepszać istniejące strategie bezpieczeństwa, co może oznaczać niekończące się zmiany i presję na innowacje.
🔴
Driving the long-term technical roadmap
Masz być architektem przyszłości, co może oznaczać, że obecne rozwiązania nie są wystarczające i wymagają gruntownych zmian.
🔴
Partnering with business units to translate high-level security requirements into actionable, scalable technical initiatives
Może to oznaczać konieczność negocjowania i przekonywania innych działów, które mogą mieć inne priorytety niż bezpieczeństwo.