Unlock Full Resume Report

New offer - be the first one to apply!

September 6, 2026

Senior Cybersecurity Engineer (Network Security)

Senior • Remote

Warsaw, MA, Poland

As a Senior Cybersecurity Engineer (Network Security), you will act as the primary Subject Matter Expert (SME) for Secure Access Network Services, leading the evolution of Network Access Control, identity-driven security, segmentation, and authentication services across a global enterprise. Your mission is to ensure the network remains resilient and compliant through the continuous evolution of a Defense in Depth strategy.

Product Ownership and Technical Leadership

  • Act as the primary SME for Secure Access technologies, providing deep technical expertise in the evaluation and selection of emerging security tools.
  • Drive the long-term technical roadmap for network access, ensuring all initiatives align with Zero Trust security architecture and strategy.
  • Partner with business units to translate high-level security requirements into actionable, scalable technical initiatives and functional policies.
  • Provide mentorship and technical leadership to junior engineers, fostering continuous learning and operational excellence.

Identity-Based Access and Authentication

  • Design, deploy, and maintain robust authentication solutions using 802.1X, EAP-TLS, EAP-TEAP, RADIUS, TACACS+, SAML, and MFA.
  • Integrate disparate security platforms with enterprise Identity Providers (IdPs) to ensure seamless, secure authentication across the environment.
  • Architect and manage highly available authentication services supporting the global workforce and critical business operations.

Network Access Control (NAC) and Segmentation

  • Lead end-to-end lifecycle management of Cisco ISE deployments, including software upgrades, capacity planning, and platform optimization.
  • Develop and refine endpoint profiling techniques to identify and secure corporate, medical, and IoT devices.
  • Implement advanced access controls, including Dot1x, MAC Authentication Bypass (MAB), Guest Access, and posture-based authorization.
  • Design and oversee Cisco TrustSec and Scalable Group Tag (SGT)-based micro-segmentation to reduce the network attack surface.

Operational Excellence and Automation

  • Serve as a senior escalation point for complex technical incidents and perform deep root-cause analysis to prevent recurrence.
  • Develop and maintain observability, monitoring, and reporting dashboards for platform health and security compliance.
  • Advocate for and implement Infrastructure-as-Code (IaC) principles and security automation to improve deployment speed and consistency.
  • Build and optimize API-driven integrations and self-service capabilities for other IT teams while maintaining security standards.

Global Operations

  • Ensure secure, reliable connectivity for tens of thousands of endpoints across diverse global regions.
  • Collaborate with globally distributed product squads and stakeholders to deliver integrated security solutions.

Education / Experience

  • Bachelor’s degree in Computer Science, Software Engineering, Information Security, or a related technical field.
  • 5+ years of hands-on experience designing, implementing, and managing enterprise-grade NAC solutions, specifically Cisco ISE.
  • Proven experience deploying, configuring, and maintaining Palo Alto Next-Generation Firewalls (NGFW), including SSL decryption and threat prevention.
  • Proven experience using Ansible, Terraform, and Python to manage network security infrastructure at scale.
  • Experience managing security controls in complex global environments involving thousands of diverse device profiles, including IoT, medical, and corporate devices.
  • Experience in highly regulated industries, such as pharmaceuticals, healthcare, or finance, is a significant plus.

Technical Skills

  • Expert-level Cisco ISE knowledge, including TrustSec, Dot1x, MAB, profiling, guest portals, REST APIs, complex enterprise policies, EAP-TLS, and EAP-TEAP.
  • Strong understanding of RADIUS, TACACS+, identity-based access control, enterprise PKI, and certificate lifecycle management.
  • Proficiency in security-focused network virtualization and segmentation technologies, including TrustSec, SGTs, and VRFs.
  • Proven experience deploying and troubleshooting Palo Alto Firewalls in complex Active/Active and Active/Passive HA environments.
  • Ability to design Defense in Depth flows connecting device identity to granular network permissions.

Preferred Skills

  • Terraform and GitHub for reproducible, version-controlled network security configurations and API-based automation.
  • CI/CD pipelines with GitLab or GitHub and automated workflows for cross-platform security operations.
  • Python, PowerShell, or Bash scripting for self-service tools and custom API integrations between security platforms.
  • Enterprise L2/L3 networking, including BGP, OSPF, VLANs, and VXLAN.

Leadership Skills

  • Excellent communication and stakeholder management skills, including the ability to explain complex security policies to non-technical stakeholders.
  • Passion for researching emerging network security trends and automated enforcement techniques.
  • Ability to navigate global complexity and translate high-level security requirements into functional network policies.
  • Ability to manage technical workstreams from concept to production with minimal supervision and own the NAC product lifecycle.
  • Experience mentoring junior cybersecurity engineers in network security analysis and identity-driven security best practices.

Additional Qualifications

  • Ability to mentor less-experienced colleagues and guide cybersecurity best practices and analysis techniques.
  • Strong facilitation, communication, and conflict-resolution skills across multiple product squads and stakeholder networks.
  • Demonstrated interpersonal, collaboration, and operational excellence skills.

We Offer

  • Participation in interesting and demanding projects.
  • Flexible working hours.
  • A non-corporate atmosphere.
  • Remote or hybrid work, with 2 days per week from the office for hybrid work.
  • Development and promotion opportunities.
  • Attractive benefits package.

Only selected candidates will be contacted.

Similar jobs you might like