Hampton Roads Transit-posted about 2 months ago
Full-time
Norfolk, VA
251-500 employees
Transit and Ground Passenger Transportation

This position opportunity is located in the Hampton Roads, VA offices and requires on-site presence. All applicants must be legally authorized to work in the United States without current or future company sponsorship. Hampton Roads Transit is looking for dynamic, customer service oriented, and energetic people to become part of a committed team providing excellent and effective public transportation to the Hampton Roads region. In addition to rewarding careers and professional development opportunities, we offer unmatched benefits and competitive wages in a stimulating environment that will provide you with the flexibility and training tools to grow. The Network Security Engineer brings strong virtual and physical network security expertise to enterprise security architecture and team-oriented security operations. Taking the lead as subject matter expert for network security investigations, training, and team designed network architecture the Network Security Engineer performs network level incident response while maturing HRT's network security design. Using traditional security tools, and providing support for systems level investigations, and vulnerability management the Network Security Engineer supports device and system communications security across security boundaries. The Network Security Engineer utilizes a range of security tools, supports intricate system-level investigations, and plays a vital role in our vulnerability management program. This position's expertise will be crucial in ensuring seamless and secure communication across all our systems. By performing configuration audits and implementing strategic security measures, this position will directly improve HRT's incident investigation processes and strengthen HRT's overall IT network risk management through intelligent network access management principles.

  • Assists IT security management in promoting security culture, policies, and standards excellence.
  • Serves as an example of IT security stewardship and practices excellence.
  • Serves as a trainer of IT security principles, threats, and standards to HRT employees, and technical staff.
  • Collaborates with management, cross-discipline engineer, technician, and non-IT staff for evaluation and implementation projects.
  • Follows formal and informal management established processes including change management, configuration management, and other organizational structures.
  • Develops and maintains system design documentation, tailored procedure documents, and training and socialization materials as required.
  • Fosters and maintains a safe and team uplifting collaborative working environment.
  • Communicates effectively orally and in writing.
  • Maintains a high level of professionalism and discretion handling sensitive data and security topics.
  • Demonstrates an excellent work ethic in support of IT security initiatives to support agency initiatives and the maturity of its IT security Program.
  • Demonstrates ability to multitask and prioritize to achieve on-time delivery of expected work product.
  • Takes a lead role in staying up to date on network and cloud infrastructure level threat intelligence and global security event impacts to agency.
  • Assist and serves as top escalation point and vendor liaison for technically complex issues related to security alerts for AV and EDR platforms.
  • Develops and maintains system documentation including inventory, system design documents, as-builts, system security/disaster recovery plans, and incident response plans.
  • Provides recommendations and implements mitigations for network level threats as SME.
  • Deploys, assists and serves as top escalation point and vendor liaison for technically complex issues related to network security appliances and physical and virtual node architecture.
  • Develops and communicates awareness of network security threats.
  • Reviews, designs, and implements network firewall security configuration changes, as well as network architecture modifications.
  • Performs direct network implementations operations as need to support security implementations.
  • Performs network infrastructure security analysis and configuration for all IT and OT networks including switching, routing, and firewalls.
  • Assesses and performs vulnerability management activities for systems that may impact network security.
  • Monitors, audits, and recommends security implementations for network hardware and specialized software dedicated to the operation of ICS systems.
  • Installs physical security network nodes including syslog collectors, network taps, port mirrors, and network sensors along the Light Rail alignment.
  • Performs preventative maintenance in accordance with HRT's established state of good repair guidelines.
  • Provide structured or ad hoc user training as required to help customers effectively utilize HRT computerized systems.
  • Monitors CISA and industry resources to identify and track Zero Day announcements, providing applicability assessments for HRT systems, as well as to develop and test mitigations for effectiveness.
  • Participate in Incident Response activities as per established HRT guidelines and as needed to support IT Security.
  • Coordinate network security activity with team members. Maintain cyber security awareness, support Endpoint Protection, respond to cyber security incidents in accordance with established policies and procedures.
  • Ensure adherence to HRT minimum hardware/software requirements; participate in cyber security reviews, assessments, and audits.
  • Performs other duties as assigned.
  • Associates or bachelor's degree in Computer Sciences, Information Technology, IT Security, IT Systems Engineering, or related field or relevant combination of experience.
  • 5+ years of experience engineering system/network security solutions in Windows environments.
  • 3+ Years working in Azure cloud environments.
  • 5+ Years working engineering solutions using cisco/palo alto network systems.
  • 3+ Years working in as network engineer or network security role engineering network security solutions, developing policies, integrating software APIs, and devices.
  • 5+ years working hands on providing unassisted in-depth Network support (switching, routing, firewall, IPS)
  • 3 years working to provide Incident Response investigative, containment, remediation, and recovery network services.
  • Heavy experience using Wireshark, Sys Internals, and other opensource tools.
  • Possess a valid Driver's License. Acquire a Virginia Driver's License within 60 days after the date of hire.
  • At least one of Security+, SSCP, or CASP+ Certifications (Or Higher).
  • At least one of Network+, CCNP, Cisco Certified CyberSecurity Professional (Or Higher).
  • Palo Alto PCNSE or similar certifications.
  • CISSP.
  • Microsoft Azure Security Engineer.
  • Competitive wages.
  • Professional development opportunities.
  • Flexible working environment.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service