Senior Network, Security & AWS Cloud Engineer

SUMITOMO MITSUI TRUST BANK, LIMITEDNew York, NY
$160,000 - $200,000Hybrid

About The Position

This role is responsible for the day-to-day operations of enterprise network, cybersecurity, and AWS cloud environments. The engineer will resolve complex issues, act as a subject matter expert, and focus on hands-on operational execution while contributing to strategic planning and new project implementation. The position may involve managing or mentoring junior staff and collaborating with operations and security teams.

Requirements

  • 7+ years of experience in network engineering and cybersecurity.
  • Strong expertise in Fortinet firewalls and Cisco networking technologies.
  • Advanced knowledge of routing protocols (BGP, OSPF, EIGRP, MPLS).
  • Hands-on experience with AWS networking and cloud security services.
  • Deep understanding of network security principles, Zero Trust architecture, and compliance frameworks (NIST, CIS Benchmarks).
  • Experience with Cisco ISE and CyberArk PAM solutions.
  • Strong knowledge of NAT, VPNs, WAN technologies, and high availability design.
  • Advanced troubleshooting skills using packet capture tools and log analysis.
  • Experience with automation scripting (Python, Bash, PowerShell).
  • Working knowledge of Microsoft Windows Server (2016–2025) and Active Directory.
  • Familiarity with VMware ESXi / vSphere 8.x or higher, and Storage technology.
  • Experience with data center infrastructure, hybrid cloud environments, and disaster recovery planning.
  • Strong organizational, analytical, and multitasking capabilities.
  • Proven project management and execution skills.

Nice To Haves

  • Support infrastructure technologies such as VMware vSphere, Windows Server, Active Directory, and enterprise storage (NetApp, Pure).

Responsibilities

  • Manages and maintains Fortinet firewalls and Cisco switches across corporate offices and data centers, including firewall policy conversion, rule optimization, and traffic validation.
  • Designs, optimizes, and audits firewall rule sets aligned with NIST, CIS Benchmarks, and internal security standards.
  • Performs cybersecurity audits, identifies security gaps, and leads remediation efforts to meet regulatory and organizational requirements.
  • Designs and optimizes network architectures to improve performance, reduce latency, and ensure scalability and resiliency.
  • Configures and troubleshoots routing protocols including MPLS, EIGRP, BGP, and OSPF across enterprise and cloud environments.
  • Administers and supports Cisco ISE for network access control and policy enforcement.
  • Designs, implements, and troubleshoots NAT configurations (Static NAT, Dynamic NAT, PAT).
  • Implements and supports WAN solutions, including policy-based traffic steering, failover mechanisms, and performance troubleshooting.
  • Administers cloud security and Zero Trust architecture, including secure web access, proxy configurations, and remote user access controls.
  • Manages AWS networking and security services, including VPC design, security groups, NACLs, VPNs, and monitoring/logging integrations.
  • Implements and maintains threat protection controls, including DDoS mitigation, IDS/IPS, and collaborates with SOC teams for incident response.
  • Leads advanced troubleshooting efforts using packet captures, log analysis, and performance diagnostics.
  • Collaborates with vendors such as Cisco, Fortinet, KEMP, and AWS to resolve complex networking and security issues.
  • Administers CyberArk Privileged Access Management (PAM), including credential vaulting, access policies, and compliance enforcement.
  • Develops and maintains technical documentation, including firewall rules, network diagrams, and audit evidence.
  • Creates automation scripts using Python, Bash, or PowerShell to improve operational efficiency and streamline audits.
  • Works closely with IT Operation teams, providing technical guidance while remaining hands-on in engineering and troubleshooting.
  • Supports infrastructure technologies such as VMware vSphere, Windows Server, Active Directory, and enterprise storage (NetApp, Pure) (preferred).
  • Engineers and implements new infrastructure and security solutions.
  • Performs system upgrades, patching, and routine maintenance activities.
  • Updates procedures and documentation in response to system and environmental changes.
  • Assists in planning and executing disaster recovery (DR) tests.
  • Performs additional duties as assigned by management.

Benefits

  • PAID TIME OFF
  • MEDICAL
  • HSA
  • VISION
  • DENTAL
  • FSA
  • 401(K)
  • PROFIT SHARING
  • LEGAL PLAN
  • CANCER INDEMNITY PLAN
  • DISABILITY INSURANCE
  • LIFE INSURANCE
  • EMPLOYEE ASSISTANCE PROGRAM
  • COMMUTER BENEFITS
  • BUSINESS TRAVEL ACCIDENT
  • PAID VOLUNTEER DAY
  • PAID MEMBERSHIPS
  • PAID SEMINARS
  • TUITION ASSISTANCE
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service