Sr. Network Security Engineer (remote)

CrowdStrike CrowdStrike · Enterprise · United States · Remote

CrowdStrike is seeking a Senior Network Security Engineer to build and operate hyper-scale hybrid cloud networks, focusing on network edge, backbone, and data center security, including DDoS defense and internet edge protection. The role involves improving network security management, visibility, and automation, and driving security initiatives from concept to implementation. This position requires a strong understanding of network protocols, DDoS mitigation, encryption, and security management tools, with experience in cloud providers and automation scripting.

What you'd actually do

  1. Be the hands-on subject matter expert for Audit/Compliance, DDoS, VPNs, network segmentation spanning network infrastructure, hosts and services, and all things related to network security best practices
  2. Provide technical security direction and insight for projects, discovery, and problem management
  3. Operate and improve DDoS detection, mitigation, and response capabilities across scrubbing services, flow-based analysis, and edge traffic engineering
  4. Create network segmentation through various technologies such as routing, virtual networking, Software-Defined Networking(SDN), and host/service level controls
  5. Provide operational security support for multi-vendor, multi-region production network at-scale

Skills

Required

  • 7+ years of experience in network security engineering
  • Strong understanding of network protocols such as TCP/IP, BGP, OSPF, IPsec.
  • Deep knowledge of DDoS attack vectors and mitigation strategies including scrubbing services and flow telemetry analysis (sFlow, NetFlow, IPFIX, BGP Flowspec, etc.)
  • An in depth understanding of encryption and how it translates to network traffic (HTTPS, IPSec)
  • Understand compliance requirements to perform and manage periodic audits
  • Experience with security management and orchestration tools such as Tufin, Firemon, or AlgoSec
  • Experience with load balancing, anycast and DNS.
  • Experience with developing security automation tools/scripts used to manage, or interact with network infrastructure such as Ansible, NETCONG, or YANG
  • Experience with cloud service providers such as AWS and GCP

Nice to have

  • Work experience in data center, telecom, SaaS, or cloud operations companies.
  • Ability to communicate technical detail into succinct and fact-based business terminology, both verbally and in writing.
  • Customer-focused mindset, with demonstrated skill in managing expectations, providing proactive status updates, and producing high-quality work products.
  • Ability to use independent judgment to make sound, justifiable decisions and take action to solve problems.
  • Ability to plan, organize and prioritize work independently and meet deadlines.
  • Ability to work collaboratively with a distributed team in multiple time zones

What the JD emphasized

  • government customer requirements