Unlock Full Resume Report
ATS Pass
Missing keywords
Tailored AI suggestions
Job match analysis
Interview-focused insights
New offer - be the first one to apply!
September 6, 2026
Senior Cybersecurity Engineer (Network Security)
Senior • Remote
Warsaw, MA, Poland
Apply now
As a Senior Cybersecurity Engineer (Network Security), you will act as the primary Subject Matter Expert (SME) for Secure Access Network Services, leading the evolution of Network Access Control, identity-driven security, segmentation, and authentication services across a global enterprise. Your mission is to ensure the network remains resilient and compliant through the continuous evolution of a Defense in Depth strategy.
Product Ownership and Technical Leadership
- Act as the primary SME for Secure Access technologies, providing deep technical expertise in the evaluation and selection of emerging security tools.
- Drive the long-term technical roadmap for network access, ensuring all initiatives align with Zero Trust security architecture and strategy.
- Partner with business units to translate high-level security requirements into actionable, scalable technical initiatives and functional policies.
- Provide mentorship and technical leadership to junior engineers, fostering continuous learning and operational excellence.
Identity-Based Access and Authentication
- Design, deploy, and maintain robust authentication solutions using 802.1X, EAP-TLS, EAP-TEAP, RADIUS, TACACS+, SAML, and MFA.
- Integrate disparate security platforms with enterprise Identity Providers (IdPs) to ensure seamless, secure authentication across the environment.
- Architect and manage highly available authentication services supporting the global workforce and critical business operations.
Network Access Control (NAC) and Segmentation
- Lead end-to-end lifecycle management of Cisco ISE deployments, including software upgrades, capacity planning, and platform optimization.
- Develop and refine endpoint profiling techniques to identify and secure corporate, medical, and IoT devices.
- Implement advanced access controls, including Dot1x, MAC Authentication Bypass (MAB), Guest Access, and posture-based authorization.
- Design and oversee Cisco TrustSec and Scalable Group Tag (SGT)-based micro-segmentation to reduce the network attack surface.
Operational Excellence and Automation
- Serve as a senior escalation point for complex technical incidents and perform deep root-cause analysis to prevent recurrence.
- Develop and maintain observability, monitoring, and reporting dashboards for platform health and security compliance.
- Advocate for and implement Infrastructure-as-Code (IaC) principles and security automation to improve deployment speed and consistency.
- Build and optimize API-driven integrations and self-service capabilities for other IT teams while maintaining security standards.
Global Operations
- Ensure secure, reliable connectivity for tens of thousands of endpoints across diverse global regions.
- Collaborate with globally distributed product squads and stakeholders to deliver integrated security solutions.
Education / Experience
- Bachelor’s degree in Computer Science, Software Engineering, Information Security, or a related technical field.
- 5+ years of hands-on experience designing, implementing, and managing enterprise-grade NAC solutions, specifically Cisco ISE.
- Proven experience deploying, configuring, and maintaining Palo Alto Next-Generation Firewalls (NGFW), including SSL decryption and threat prevention.
- Proven experience using Ansible, Terraform, and Python to manage network security infrastructure at scale.
- Experience managing security controls in complex global environments involving thousands of diverse device profiles, including IoT, medical, and corporate devices.
- Experience in highly regulated industries, such as pharmaceuticals, healthcare, or finance, is a significant plus.
Technical Skills
- Expert-level Cisco ISE knowledge, including TrustSec, Dot1x, MAB, profiling, guest portals, REST APIs, complex enterprise policies, EAP-TLS, and EAP-TEAP.
- Strong understanding of RADIUS, TACACS+, identity-based access control, enterprise PKI, and certificate lifecycle management.
- Proficiency in security-focused network virtualization and segmentation technologies, including TrustSec, SGTs, and VRFs.
- Proven experience deploying and troubleshooting Palo Alto Firewalls in complex Active/Active and Active/Passive HA environments.
- Ability to design Defense in Depth flows connecting device identity to granular network permissions.
Preferred Skills
- Terraform and GitHub for reproducible, version-controlled network security configurations and API-based automation.
- CI/CD pipelines with GitLab or GitHub and automated workflows for cross-platform security operations.
- Python, PowerShell, or Bash scripting for self-service tools and custom API integrations between security platforms.
- Enterprise L2/L3 networking, including BGP, OSPF, VLANs, and VXLAN.
Leadership Skills
- Excellent communication and stakeholder management skills, including the ability to explain complex security policies to non-technical stakeholders.
- Passion for researching emerging network security trends and automated enforcement techniques.
- Ability to navigate global complexity and translate high-level security requirements into functional network policies.
- Ability to manage technical workstreams from concept to production with minimal supervision and own the NAC product lifecycle.
- Experience mentoring junior cybersecurity engineers in network security analysis and identity-driven security best practices.
Additional Qualifications
- Ability to mentor less-experienced colleagues and guide cybersecurity best practices and analysis techniques.
- Strong facilitation, communication, and conflict-resolution skills across multiple product squads and stakeholder networks.
- Demonstrated interpersonal, collaboration, and operational excellence skills.
We Offer
- Participation in interesting and demanding projects.
- Flexible working hours.
- A non-corporate atmosphere.
- Remote or hybrid work, with 2 days per week from the office for hybrid work.
- Development and promotion opportunities.
- Attractive benefits package.
Only selected candidates will be contacted.
Similar jobs you might like

Senior Network Security Engineer – Cloud and On-Premises Expertise
ITDS
Senior
Technology
Krakow, MA, Poland · On-site
30K zł - 36K zł/yr
2 days ago

Senior Network Security Engineer
emagine Polska
Senior
Technology
Brussels, Belgium · On-site
N/A
1h ago

Network Security Engineer
Link Group
Senior
Technology
Warsaw, MZ, Poland · On-site
0K zł - 0K zł/yr
4 days ago

Senior Network Security Consultant – Cybersecurity Specialization
ITDS
Senior
Technology
Krakow, MA, Poland · On-site
19K zł - 25K zł/yr
3 days ago
Network Security Engineer
Transition Technologies MS
Senior
Technology
Warsaw, Poland · Remote
N/A
1 days ago

Senior Detection Engineer (AI-Augumented)
Procter & Gamble
Senior
Technology
Warsaw, MZ, Poland · On-site
N/A
3 days ago
Network Security Systems Engineer
ITCARD S.A.
Senior
Technology
Warsaw, Poland · On-site
N/A
1h ago

Senior Network Engineer - Campus WiFi (Cisco)
emagine Polska
Senior
Technology
Warsaw, Poland · Remote
N/A
1 days ago
Senior Network Operations Engineer- night shift
Akamai Technologies
Senior
Technology
Krakow, MA, Poland · Remote
N/A
5 days ago
Senior Network Engineer
ISS World Services A/S
Senior
Technology
Warsaw, Poland · On-site
N/A
2 days ago