Unlock Full Resume Report

New offer - be the first one to apply!

September 4, 2026

Network Security Specialist (regular/senior) (She/He/They)

Mid • Remote

Warsaw, Poland

The Work

  • Design and implement Zero Trust architectures across enterprise environments, including identity-centric access models, micro-segmentation strategies, and least-privilege network controls.
  • Assess and transform network security posture by evaluating existing architectures against threat models and regulatory requirements, identifying gaps, and defining prioritized modernization roadmaps.
  • Design secure hybrid and multi-cloud network architectures across Azure, AWS, and GCP, including network segmentation, secure connectivity, cloud-native security controls, and on-premises integration.
  • Lead firewall policy rationalization and automation, including removing or redesigning legacy rules and automating policy management.
  • Embed network security controls into DevSecOps and platform engineering practices, including CI/CD pipelines, Infrastructure as Code, and cloud-native platforms.
  • Advise on security for AI-enabled infrastructure, including secure data flows, model access controls, inference API exposure, and AI workload isolation.
  • Act as a trusted advisor on network security strategy and architecture, translating complex infrastructure security topics into actionable recommendations for technical and senior stakeholders.

Working Arrangement

The role may combine remote work, client-site work, and office work depending on project requirements. Some in-person time is expected for collaboration, learning, and relationship building.

Qualifications

  • Several years of hands-on experience in network security, network engineering, or a closely related discipline, with knowledge of routing, switching, firewall policy management, and network security architecture.
  • Understanding of routing and switching technologies (BGP, OSPF, MPLS), TCP/IP protocols, LAN/WAN architectures, and their security failure modes.
  • Familiarity with firewall policy management technologies such as Palo Alto, Checkpoint, Cisco, or F5.
  • Working knowledge of Zero Trust principles, including identity-centric access models, micro-segmentation, least-privilege network design, and their practical architectural application.
  • Hands-on experience with at least one public cloud platform—Azure, AWS, or GCP—and knowledge of cloud network architecture and secure hybrid or multi-cloud connectivity.
  • Ability to assess network-security architectures, identify and prioritize risk-based gaps, and clearly communicate findings to technical teams and senior stakeholders.
  • Interest in at least one adjacent domain: application security, identity and access management, DevSecOps, or AI and infrastructure security.
  • Professional proficiency in English and Polish. English is required for client-facing findings, workshops, and senior-stakeholder presentations; Polish is used in daily team operations.
  • Strong communication skills, a proactive advisory mindset, adaptability, and interest in expanding beyond traditional network security.

Seniority

Regular (approximately 3–5 years of relevant experience)

  • Deliver defined workstreams, including network-security assessments and support for Zero Trust and cloud architecture reviews.
  • Communicate findings to client technical teams.
  • Demonstrate a solid network-security foundation and active development toward cloud security, Zero Trust, and security advisory.

Senior (approximately 5+ years of relevant experience)

  • Lead workstreams, provide technical direction, and mentor junior colleagues.
  • Demonstrate depth in network-security architecture and breadth in at least one adjacent domain: cloud security, Zero Trust, identity, or application security.
  • Present and defend positions to senior client stakeholders, including CISO-level audiences.

Years of experience are guidance rather than strict eligibility criteria. Candidates transitioning from network engineering, infrastructure, or in-house security roles are encouraged to apply if they can demonstrate relevant skills and a clear development direction. Seniority is assessed during the interview process based on demonstrated capability.

Bonus Points

  • Experience with network-security policy management platforms such as Algosec AFA/Fireflow, Tufin SecureTrack/SecureChange, or equivalent, including firewall rule rationalization and automation.
  • Experience with Software Defined Networking, including Arista SDN, Cisco ACI, or equivalent, and understanding of SDN security implications.
  • Zero Trust architecture design or implementation experience across identity, device, network, application, and data pillars; familiarity with NIST SP 800-207 or the CISA Zero Trust Maturity Model.
  • Practical cloud network security experience, including VPC/VNet design, cloud-native firewall and WAF services, VPN, ExpressRoute, Direct Connect, and network security posture management in Azure, AWS, or GCP.
  • Knowledge of IAM concepts, including SAML, OAuth 2.0, OpenID Connect, SSO, and PAM, and their integration with network-security controls.
  • Network-security automation using Python, Ansible, Terraform, or similar tools for policy management, configuration validation, or security monitoring.
  • Application-security awareness, including OWASP Top 10 and API security.
  • Experience with or interest in AI and infrastructure security, including securing AI data flows, isolating AI workloads, and managing LLM inference API access.
  • Vulnerability assessment and security review of routing, switching, or firewall configurations, with actionable remediation guidance.
  • Exposure to ISO 27001, NIST CSF, NIS2, or relevant sector-specific compliance requirements.
  • Prior security or infrastructure consulting/client-facing advisory experience.
  • Security or cloud certifications such as CCNP Security, CISSP, or AWS/Azure/GCP Security certifications.

What We Offer

  • Permanent employment contract.
  • Individual support from a People Lead, a defined professional-development path, and access to coaching.
  • Training package covering soft, technical, and language training; e-learning platforms; GenAI training; and co-financing for courses and certifications.
  • Employee Assistance Program with legal, financial, and psychological consultations.
  • Employee share purchase plan with quarterly dividends for eligible share owners.
  • Paid employee referral program.
  • Private medical care and life insurance.
  • Access to the Worksmile platform, including a range of products and services such as the Multisport card.

Similar jobs you might like