Network Security Assessment Engineer

TEKsystemsRemote, OR
$90 - $105Hybrid

About The Position

We are seeking a Network Security Assessment Engineer to support large-scale enterprise security initiatives. This role focuses on hands-on assessment, vulnerability identification, and threat hunting across a complex hybrid infrastructure environment. The ideal candidate is highly technical, detail-oriented, and capable of executing deep-dive assessments across multiple network security domains while supporting remediation efforts. This position plays a critical role in helping to strengthen its security posture by identifying risks, validating controls, and partnering with engineering teams to improve resilience across infrastructure platforms.

Requirements

  • Minimum 7 years of enterprise network security engineering experience with demonstrated assessment and/or threat hunting expertise
  • Must hold at least two of: CCIE (Security or Enterprise), CCNP Security, Check Point CCSE, F5 301B, AWS Advanced Networking Specialty
  • At least one designated team member must hold a recognized threat hunting or threat intelligence credential (GCIA, GCIH, GCFE, GCTI, or equivalent)
  • Experience conducting or supporting formal security assessments, red team remediation engagements and/or remediation required.
  • Firewall, network segmentation, and infrastructure security (Cisco ACI, FTD, Check Point)
  • Routing/switching security (BGP, OSPF, AWS networking)
  • Threat hunting, CVE analysis, and vulnerability assessment
  • Security tool experience (F5, Blue Coat, Gigamon, ExtraHop, DNS/IPAM)
  • Identity/access controls (Cisco ISE) and network-level security governance
  • Strong documentation and remediation reporting skills

Nice To Haves

  • Experience in regulated or financial services environments is strongly preferred.

Responsibilities

  • Provide expert-level network security engineering services to review, assess, hunt for known flaws and threat indicators, and document findings identified through red team testing and accelerated resolution of Security Operational Readiness Tests across the enterprise network infrastructure.
  • Conduct systematic security assessment of current configurations, threat hunting against known vulnerabilities and adversary TTPs, identification of security gaps, and actionable findings aligned to operational standards and risk tolerance.
  • Perform Cisco ACI fabric policy model assessment, EPG/contract review, and micro segmentation gap analysis.
  • Assess Cisco Firepower Threat Defense (FTD) configurations, policies, rules, and platform hardening.
  • Assess Check Point firewall policies, IPS modules, and signatures.
  • Assess Cisco routers and switches security configurations, control plane protection, and routing protocol security.
  • Assess virtualized Cisco routers in AWS, including cloud-native security controls, security group alignment, and route table integrity.
  • Assess Cisco ISE policy sets, profiling, MAB/802.1X configurations, and guest/BYOD segmentation.
  • Assess Broadcom/Symantec Blue Coat web proxy policies, SSL inspection, and category/exception hygiene.
  • Assess BlueCat DNS/IPAM zone security, DNSSEC validation, rogue record identification, and IPAM access control.
  • Assess F5 BIG-IQ, LTM, and AFM configurations, including iRules, AFM policies, SSL profiles, and BIG-IQ RBAC.
  • Assess Gigamon traffic intelligence fabric, filtering maps, and out-of-band tap integrity.
  • Review ExtraHop detection rules, threat coverage, and SIEM/SOAR integration.
  • Assess NTP appliance configurations, authentication, ACL restrictions, and source validation.
  • Cross-reference all in-scope platforms against current NVD/CVE databases, CISA Known Exploited Vulnerabilities (KEV) catalog, and vendor security advisories.
  • Identify unpatched or unmitigated CVEs present in the environment and assess exploitability.
  • Document all findings with CVE identifiers, CVSS scores, affected assets, and recommended remediation priority.
  • Conduct or support formal security assessments, red team remediation engagements and/or remediation.

Benefits

  • Medical, dental & vision
  • Critical Illness, Accident, and Hospital
  • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
  • Life Insurance (Voluntary Life & AD&D for the employee and dependents)
  • Short and long-term disability
  • Health Spending Account (HSA)
  • Transportation benefits
  • Employee Assistance Program
  • Time Off/Leave (PTO, Vacation or Sick Leave)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service