Logo for Invicta Solutions Group

Senior Network Security Consultant

Role overview

Qualifications

  • 10+ years of enterprise networking experience.
  • 7+ years designing and implementing enterprise network security solutions.
  • Extensive experience with Cisco, Palo Alto Networks, Fortinet, and Brocade platforms.
  • Experience supporting enterprise environments with multiple data centers and cloud connectivity.

Responsibilities

  • Design, implement, and support enterprise network security architectures across campus, data center, branch, and cloud environments.
  • Develop and implement Zero Trust network architectures aligned with NIST SP 800-207 principles.
  • Conduct network security assessments, architecture reviews, and risk analyses.
  • Collaborate with cybersecurity, cloud, infrastructure, and application teams to integrate secure networking solutions.

About the company

Invicta Solutions Group logo

Invicta Solutions Group

IT Services & IT Consulting

We are the tool chest for working CISO’s. Process, platforms, and people that simplify business technology security.Challenges with cyber security operations, cloud security, resource management, or technology selection are resolved with our mix of uniquely qualified staff or through our formal partner network.Our ISO 9001 certified, SDVOSB, HUBZone organization offers strategic and tactical solutions to both commercial enterprises and federal contractors. Invicta Solutions Group provides resource expertise in cloud security, cybersecurity, and emerging technologies. With a mature business model, past performance, and technical certifications we help Prime Contractors achieve small business goals while delivering projects on time and on budget.

Company details

Company typeScaleup
IndustryIT Services & IT Consulting
Company size11 - 50

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

This is a remote position.

Position Summary

We are seeking a Senior Network Security Architect & Engineer to lead the design, implementation, modernization, and optimization of enterprise network security infrastructures. The ideal candidate possesses deep expertise across Cisco, Palo Alto Networks, Fortinet, and Brocade technologies, with extensive experience designing Zero Trust network architectures for large enterprise environments. This role requires a hands-on technical leader who can architect secure network solutions while partnering with stakeholders to drive strategic security initiatives.

Cloud networking experience in Microsoft Azure, AWS, or Google Cloud Platform is highly desirable.

Primary Responsibilities

  • Design, implement, and support enterprise network security architectures across campus, data center, branch, and cloud environments.
  • Develop and implement Zero Trust network architectures aligned with NIST SP 800-207 principles.
  • Design secure segmentation strategies using traditional and software-defined networking technologies.
  • Architect and deploy next-generation firewall (NGFW) solutions, VPNs, secure remote access, and microsegmentation.
  • Lead network modernization initiatives, including hardware refreshes, network consolidation, and migration projects.
  • Design highly available and resilient network infrastructures supporting business-critical applications.
  • Configure and optimize routing, switching, wireless, and security platforms.
  • Conduct network security assessments, architecture reviews, and risk analyses.
  • Develop network security standards, reference architectures, and technical documentation.
  • Collaborate with cybersecurity, cloud, infrastructure, and application teams to integrate secure networking solutions.
  • Troubleshoot complex network and security issues across hybrid environments.
  • Provide technical leadership, mentoring, and knowledge transfer to engineering teams.

 

 

 

 

Required Technical Skills

Cisco Technologies

  • Cisco Catalyst Switching
  • Cisco Nexus Data Center Switching
  • Cisco ISR / ASR Routers
  • Cisco ACI
  • Cisco Firepower
  • Cisco Secure Firewall
  • Cisco Identity Services Engine (ISE)
  • Cisco Secure Access (preferred)
  • Cisco DNA Center
  • Cisco SD-WAN
  • Cisco Wireless LAN Controllers
  • Cisco ThousandEyes (preferred)

Palo Alto Networks

  • Palo Alto Next-Generation Firewalls
  • Panorama
  • GlobalProtect
  • Prisma Access
  • Prisma SD-WAN (preferred)
  • App-ID
  • User-ID
  • Device-ID
  • Threat Prevention
  • URL Filtering
  • WildFire
  • DNS Security

Fortinet

  • FortiGate
  • FortiManager
  • FortiAnalyzer
  • FortiAuthenticator
  • FortiNAC
  • FortiSwitch
  • FortiClient
  • FortiWeb (preferred)

Brocade

  • Brocade Fibre Channel Switching
  • Brocade SAN Infrastructure
  • Brocade IP Networking
  • SAN Fabric Management

Networking Expertise

  • Enterprise Routing & Switching
  • BGP
  • OSPF
  • EIGRP
  • VXLAN
  • EVPN
  • MPLS
  • SD-WAN
  • Software Defined Networking (SDN)
  • High Availability
  • Network Load Balancing
  • QoS
  • Network Performance Optimization
  • IPv4 / IPv6
  • Multicast


Network Security Expertise

  • Zero Trust Architecture
  • Microsegmentation
  • East-West Traffic Protection
  • Network Access Control (NAC)
  • Identity-Based Networking
  • Network Detection & Response (NDR)
  • IDS / IPS
  • Secure Remote Access
  • Site-to-Site VPN
  • Remote Access VPN
  • SSL Inspection
  • Network Threat Hunting
  • DDoS Mitigation
  • Secure DNS
  • PKI
  • Network Encryption

Required Experience

  • 10+ years of enterprise networking experience.
  • 7+ years designing and implementing enterprise network security solutions.
  • Experience leading large-scale network modernization or transformation projects.
  • Extensive experience with Cisco, Palo Alto Networks, Fortinet, and Brocade platforms.
  • Experience designing highly available enterprise network architectures.
  • Experience implementing Zero Trust network strategies.
  • Experience supporting enterprise environments with multiple data centers and cloud connectivity.
  • Strong troubleshooting skills across complex hybrid infrastructures.

Desired Knowledge

  • SASE (Prisma Access, Cisco Secure Access, FortiSASE, Netskope, or Zscaler)
  • SSE (Security Service Edge)
  • Network automation using Python, Ansible, or Terraform
  • Infrastructure as Code (IaC)
  • Kubernetes networking
  • Service mesh technologies
  • Network observability platforms (ThousandEyes, Kentik, LogicMonitor, SolarWinds)
  • OT/ICS network security
  • AI-assisted network operations (AIOps)

Ideal Candidate Profile

The ideal candidate is a seasoned network security architect who combines deep hands-on engineering expertise with strategic architectural vision. They have successfully designed and deployed large-scale Cisco, Palo Alto, Fortinet, and Brocade environments, understand how to implement Zero Trust principles across enterprise networks, and can guide organizations through modernization initiatives spanning on-premises, hybrid, and cloud environments. They are equally comfortable developing long-term network strategies, leading complex implementations, and serving as a trusted technical advisor to executive and engineering stakeholders.



Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Cybersecurity Consultant Related jobs

Other jobs at Invicta Solutions Group

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.