Senior Network Security Architect

QnityElsmere, DE
Hybrid

About The Position

At Qnity, we’re more than a global leader in materials and solutions for advanced electronics and high-tech industries – we’re a tight-knit team that is motivated by new possibilities, and always up for a challenge. All our dedicated teams contribute to making cutting-edge technology possible. We value forward-thinking challengers, boundary-pushers, and diverse perspectives across all our departments, because we know we play a critical role in the world enabling faster progress for all. Learn how you can start or jumpstart your career with us. Qnity is seeking a Senior Network Security Architect to define secure, practical network patterns across our global enterprise, cloud, manufacturing, and remote-access environments. This role will partner closely with Network Engineering, Cloud, Infrastructure, Manufacturing IT, Cybersecurity Operations, and project teams. The architect will develop reference architectures and standards, review designs, and provide flexible implementation options that balance security, reliability, cost, and delivery timelines. This is a hands-on architecture role. The successful candidate must be comfortable moving between strategic design and detailed discussions involving routing, firewall policy, DNS, TLS, remote access, cloud connectivity, segmentation, and application data flows.

Requirements

  • Significant experience in network security architecture or engineering within a complex enterprise.
  • Strong knowledge of the Palo Alto Networks platform, including NGFW, Prisma Access, GlobalProtect, and centralized management.
  • Strong understanding of enterprise networking, including routing, DNS, NAT, VPNs, proxies, TLS, segmentation, and high availability.
  • Experience designing security across both cloud and on-premises environments.
  • Strong knowledge of Microsoft Azure networking and familiarity with Microsoft security technologies.
  • Experience integrating network controls with SIEM, identity, endpoint, vulnerability-management, and IT service-management platforms.
  • Ability to translate application and business requirements into secure, supportable network designs.
  • Experience developing reference architectures, engineering standards, and reusable design patterns.
  • Strong written, verbal, and diagramming skills.
  • Demonstrated judgment in balancing security requirements with operational and project constraints.

Nice To Haves

  • Experience in a global manufacturing or industrial environment.
  • Familiarity with Purdue-model segmentation and operational technology.
  • Experience with Microsoft Sentinel, Defender, Entra ID, Intune, ServiceNow, FireMon, or similar platforms.
  • Experience with Azure Virtual WAN, ExpressRoute, Windows 365, Azure Virtual Desktop, and hybrid connectivity.
  • Relevant certifications such as PCNSE, CCNP Security, Microsoft Azure, or CISSP.

Responsibilities

  • Develop network security reference architectures, standards, and approved design patterns.
  • Define secure patterns for enterprise, Azure, manufacturing, remote access, partner connectivity, internet egress, and application publishing.
  • Serve as the security architecture lead for the Palo Alto Networks portfolio, including NGFW, Panorama or Strata Cloud Manager, Prisma Access, GlobalProtect, and related security services.
  • Review firewall, segmentation, remote-access, cloud, and third-party connectivity designs.
  • Provide practical implementation options rather than a single rigid solution.
  • Identify architectural requirements, preferred approaches, and acceptable alternatives.
  • Integrate network security with Microsoft Entra ID, Defender, Sentinel, Intune, Azure, PKI, vulnerability management, identity, endpoint security, and incident response.
  • Support hybrid cloud and on-premises designs, including Azure routing, private endpoints, cloud egress, DNS, and secure connectivity.
  • Develop segmentation and remote-support patterns for manufacturing and operational technology environments.
  • Partner with project teams to resolve network security issues early in the design process.
  • Define requirements for logging, monitoring, policy ownership, firewall-rule lifecycle management, and security telemetry.
  • Maintain clear, usable architecture documentation, diagrams, and technical decision records.

Benefits

  • comprehensive pay and benefits package
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service