Network Security Staff Engineer (hybrid)

GEICO GEICO · Insurance · Bethesda, MD +3

GEICO is seeking an experienced Staff Engineer to solve complex Network Security-related challenges, focusing on Identity, Access Management, and Governance strategies. The role involves innovating and enhancing systems, leading a technical roadmap, and ensuring secure authentication, connectivity, and communication.

What you'd actually do

  1. Collaborate with product managers, team members, customers, and other engineering teams to solve our toughest problems
  2. Review, develop and execute technical Network Security strategies across all network access-related services and systems, balancing security with performance and efficiency
  3. Own accountability for the quality, usability, and performance of the solutions
  4. Consistently share best practices and improve processes within and across teams
  5. Take on-call and operational support responsibilities as needed and assigned.

Skills

Required

  • Network Security
  • Identity and Access Management
  • MFA
  • Kerberos
  • Proxy
  • VPN clients
  • Firewall ACL configuration
  • ZTNA technologies (Zscaler, Palo Alto, Cisco, Cloudfare)
  • Web access firewall
  • Network proxy solutions
  • Least privilege principles
  • Linux
  • Mac
  • Windows
  • MITRE
  • CIS
  • NIST
  • Python
  • Go
  • Cryptographic protocols
  • Digital certificates
  • Encryption standards (X.509, TLS, AES)
  • AWS
  • GCP
  • Azure

Nice to have

  • open-source frameworks

What the JD emphasized

  • Extensive experience in security access services, products and protocols such as MFA and Kerberos, as well as Proxy and VPN clients.
  • Extensive experience in designing and optimizing complex firewall ACL configurations.
  • Experience in ZTNA technologies from companies such as Zscaler, Palo Alto, Cisco, Cloudfare, etc.
  • Experience in implementing a remote access solution leveraging least privilege principles, providing access based upon a person's role in the organization.
  • Strong knowledge of industry-standard security tools, frameworks, and best practices including MITRE, CIS and NIST.
  • Experience working with auditors and demonstrating security controls.