Cloud Network Security Architect

Há 5 dias

Brasil GeorgiaTEK Systems Inc. Tempo integral R$ 180.000 - R$ 300.000 Contrato

Cloud Network Security Architect / Engineer

Job Description

We are seeking an experienced Cloud Network Security Architect / Engineer to design, implement, and secure enterprise AWS cloud network environments.

The ideal candidate will have strong hands-on experience with cloud network security, next-generation firewalls, AWS Gateway Load Balancer, Zero Trust architecture, traffic inspection, ingress/egress controls, and network security automation.

Key Responsibilities

  • Design and implement secure AWS cloud network security architectures.
  • Develop security solutions using Palo Alto Networks and/or FortiGate firewalls.
  • Design and implement AWS Gateway Load Balancer (GWLB) architectures for centralized traffic inspection.
  • Design secure ingress and egress traffic flows across AWS environments.
  • Implement network segmentation based on Zero Trust security principles.
  • Design and enforce security controls for north-south and east-west traffic.
  • Develop secure VPC, subnet, routing, firewall, and inspection architectures.
  • Implement threat inspection and traffic filtering across cloud environments.
  • Integrate cloud network security controls with enterprise security architecture.
  • Design highly available and resilient security infrastructure.
  • Automate security and network configuration using Terraform, Python, Ansible, or similar technologies.
  • Collaborate with cloud, network, cybersecurity, DevOps, and application teams.
  • Troubleshoot complex network security, routing, and connectivity issues.
  • Develop security architecture documentation, diagrams, standards, and operational procedures.
  • Support security assessments, vulnerability remediation, and compliance requirements.

Required Skills

  • Strong experience with AWS cloud networking and security.
  • Hands-on experience with Palo Alto Networks and/or FortiGate firewalls.
  • Strong knowledge of AWS Gateway Load Balancer (GWLB).
  • Experience designing Zero Trust network security and segmentation.
  • Strong understanding of ingress/egress traffic controls and security inspection.
  • Knowledge of AWS VPC, Transit Gateway, routing, Security Groups, NACLs, and load balancing.
  • Strong understanding of TCP/IP, DNS, routing, VPN, and network security concepts.
  • Experience with Infrastructure-as-Code and automation.
  • Strong troubleshooting and analytical skills.
  • Ability to develop enterprise-level security architecture and technical documentation.

Preferred Qualifications

  • AWS security or networking certification.
  • Palo Alto PCNSE or equivalent firewall certification.
  • Fortinet certification or equivalent experience.
  • Experience with AWS Network Firewall and other cloud-native security services.
  • Experience implementing cloud-based Zero Trust architectures.
  • Strong Terraform, Python, or Ansible experience.
  • Experience integrating cloud security with SIEM, SOC, and security monitoring platforms.
  • Experience working in large enterprise or multi-cloud environments.