COUNTRY Financial®

Senior Cloud Network Security Engineer

COUNTRY Financial®

full-time

Posted on:

Origin:  • 🇺🇸 United States • Illinois

Visit company website
AI Apply
Manual Apply

Salary

💰 $112,800 - $155,100 per year

Job Level

Senior

Tech Stack

CloudDNSFirewallsPythonTerraform

About the role

  • Country Financial is seeking a self-driven Cloud Network Security Engineer to lead the operation and hardening of technologies such as ZTNA, cloud-native firewalls, microsegmentation, DDoS protection, and on-premise firewalls, including B2B integrations.\n
  • This role will champion the implementation of security guardrails across cloud networking and SD-WAN/firewall environments, while progressively introducing platform-as-code practices.\n
  • You’ll drive real-world improvements in resilience, failover capabilities, and policy hygiene.\n
  • Design, build, implement, and support COUNTRY’s IT solutions.\n
  • Ensure IT solutions meet requirements for security, availability, capacity, resiliency, and performance in a way that is efficient and supportable, reducing overall support costs.\n
  • Understand industry leading solutions and trends for assigned technologies and applying those as appropriate for COUNTRY.\n
  • Understand business needs and partnering with appropriate IT counterparts to recommend technology solutions.\n
  • Establish and maintain an IT multi-year strategy with a focus on continuous improvement.\n
  • Create and maintain solutions architecture artifacts and other strategy and system documentation.

Requirements

  • Typically requires 10+ years of relevant experience or a combination of related experience, education and training.\n
  • Real-world, best-practice configuration experience with multiple of the following: ZTNA, cloud-native firewalls, microsegmentation, DDoS protection, and on-premise firewalls, including B2B integrations.\n
  • Deep networking expertise: IPv4/IPv6, BGP/OSPF, IPsec, TLS/PKI, DNS, NAT, routing/UDR, HA patterns, and troubleshooting across layers 3–7.\n
  • Proven troubleshooting: packet capture/analysis, SSL/TLS inspection issues, name resolution, routing/overlapping CIDR, identity/policy evaluation.\n
  • Self-starter with a track record of driving improvements without a formal mandate; can influence cross-functionally and land pragmatic guardrails.\n
  • Working automation skills: PowerShell or Python and familiarity with Terraform/Bicep and Git workflows (ability to build small, safe automations beyond theoretical knowledge)\n
  • Clear, concise communication.\n
  • Transparent change planning and status reporting; translates risk into actionable, well-architected designs.