Logo for Nebius

Network Security Engineer

Role overview

Qualifications

  • Experience in networking and security protocols (TCP/IP, HTTP(S), DNS, TLS, IPsec, Routing protocols)
  • Experience and Knowledge of Backbone Datacenter technologies (EVPN, L3VPN MPLS, MPBGP, L2VPN..)
  • Hands-on experience with next-generation firewalls (Palo Alto Networks, Check Point, or similar)
  • Experience with automation using Python, Go, or equivalent

Responsibilities

  • Implement and maintain Zero Trust-aligned security architectures for both enterprise and data center networks
  • Configure Layer 3/4 Multi-VRF Segmentation, Security Policies, Secure Remote access
  • Implement and test large hyper scale DC Security solutions: IPS/NDR solutions, AntiDDOS solutions
  • Integrate NGFW platforms with modern identity providers such as Microsoft Entra ID and Okta

Key facts

Hard skills

Other skills

  • Collaboration
  • Problem Solving
  • Detail Oriented
  • Communication

About the company

Nebius logo

Nebius

Artificial Intelligence & Machine Learning Services

We have a big ambition: to create a world-class ecosystem of full-fledged cloud and AI-driven solutions for the B2B market. Platform that empowers market leaders to create their own local cloud platforms. ML-centric cloud that provides developers with the environment for AI projects of any scale and complexity.

Company details

Company typeScaleup
IndustryArtificial Intelligence & Machine Learning Services
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

About Nebius:

Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in-house AI/ML infrastructure.

Built by engineers, for engineers. From large-scale GPU orchestration to inference optimization, we own the hard problems across compute, storage, networking and applied AI.

Listed on Nasdaq (NBIS) and headquartered in Amsterdam, we have a global footprint with R&D hubs across Europe, the UK, North America and Israel. Our team of 1,500+ includes hundreds of engineers with deep expertise across hardware, software and AI R&D.

Role Summary

We are looking for a Network Security Engineer to join our Network team. This role combines deep expertise in network engineering and cybersecurity. You will help implement end-to-end network security architectures for enterprise and data center backbone/fabric environments, work with network architects and the management team to guide these designs through review and approval with the Security team, and operate and maintain the implemented solutions day-to-day.
You are expected to be hands-on with leading firewall platforms (Palo Alto, Check Point, etc.), understand complex routing and switching designs, and be comfortable implementing and troubleshooting these networks.

Responsibilities
  • Implement and maintain Zero Trust-aligned security architectures for both enterprise and data center networks.
  • Configure Layer 3/4 & Multi-VRF Segmentation, Security Policies, Secure Remote access.
  • Implement and test large hyper scale DC Security solutions :  IPS/NDR solutions ,  AntiDDOS solutions.
  • Integrate NGFW platforms with modern identity providers such as Microsoft Entra ID and Okta, maintain NGFW management, automation, and logging capabilities required by the Security team.
  • Implement and maintain Security Capabilities, including Layer 7 application inspection, IPS, user identification, ZTNA, and SASE integrations.
  • Integrate and operate monitoring tools such as Zabbix, Grafana, and Akvorado.
  • Regularly perform security hardening, vulnerability management, and patching and upgrades on network and infrastructure devices, and verify the effectiveness of these procedures.
Required Qualifications
  • Experience in networking and security protocols (TCP/IP, HTTP(S), DNS, TLS, IPsec, Routing protocols)
  • Experience and Knowledge of  Backbone & Datacenter technologies (EVPN, L3VPN MPLS, MPBGP, L2VPN..)
  • Hands-on experience with next-generation firewalls (Palo Alto Networks, Check Point, or similar).
  • Experience with automation using Python, Go, or equivalent.
  • Proficiency in Unix/Linux and experience with major network vendors (Cisco, Juniper, Aruba, etc.).
  • Experience configuring and troubleshooting NGFW capabilities and integrations, including IPS, User-ID, Microsoft Entra ID, and ZTNA.
Preferred Qualifications
  • Good knowledge of IPv6.
  • Experience with automation tools (Ansible, Terraform, NetBox, SaltStack, etc.).
  • Experience with large-scale, highly available distributed systems.
  • Knowledge of Zero Trust principles and micro-segmentation approaches.
  • Relevant certifications (CCNP/CCIE, PCNSE, NSE 4/7) and professional working proficiency in English.
  • Familiarity with commercial or open-source monitoring, logging, and security analytics solutions such as Splunk; EDR/XDR platforms such as CrowdStrike; and centralized NGFW management platforms such as Panorama, Strata Cloud Manager, and FortiManager.
  • Bonus: Exposure to DevSecOps practices (SAST/DAST), CSPM/CWPP platforms such as Wiz, EDR, offensive security (OSCP/CPTS, red teaming), or security frameworks, standards, and regulations such as ISO/IEC 27001, NIST CSF, and GDPR.

Benefits & Perks:

  • Competitive compensation
  • Career growth and learning opportunities
  • Flexibility and ownership
  • Collaborative and innovative culture
  • Opportunity to work on impactful AI projects
  • International environment and talented teams

What's it like to work at Nebius:

Fast moving - Bold thinking - Constant growth - Meaningful impact - Trust and real ownership - Opportunity to shape the future of AI 

Equal Opportunity Statement:

Nebius is an equal opportunity employer. We are committed to fostering an inclusive and diverse workplace and to providing equal employment opportunities in all aspects of employment. We do not discriminate on the basis of race, color, religion, sex (including pregnancy), national origin, ancestry, age, disability, genetic information, marital status, veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by applicable law.

Applicants must be authorized to work in the country in which they apply and will be required to provide proof of employment eligibility as a condition of hire. 

If you need accommodations during the application process, please let us know.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Network Security Engineer Related jobs

Other jobs at Nebius

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.