Network Administrator (Cybersecurity-Focused)
Computer Network Defense
Cyber Security
Cybersecurity Operations
Cybersecurity Tools
Engineer
Engineering
Ids/ips
Incident Response
Information Security
Information Technology (IT)
InfoSec
Log Management
Network Administration
Network Engineering
Network Security
Network Security Analysis
Network Security Monitoring
Network Security Tools
Network Support
Security
Security Engineering
Security Information And Event Management
Security Monitoring
Security Operations
Zero Trust
Zero Trust Architecture
Job Description
EPIC Health System LLC is seeking a Network Administrator with a cybersecurity-focused mindset to help design, secure, and support its enterprise network infrastructure. This is a hands-on engineering role that combines day-to-day networking with threat detection and investigation, including Rapid7 (InsightIDR) support.
Based in Southfield, MI, this position is full-time and on-site. The team is currently not considering applications outside of Michigan, and the minimum experience requirement is 3 years.
Role focus
- Design, deploy, monitor, and maintain LAN, WAN, VPN, wireless, and cloud-connected networks
- Ensure performance, scalability, uptime, and security across the environment
- Troubleshoot complex network and network security issues and lead root-cause analysis
- Operate as a frontline defender against cyber threats by implementing and supporting security controls
Security and detection responsibilities
- Implement security controls including IDS/IPS, segmentation, and zero-trust
- Investigate threats using logs from firewalls, endpoints, and SIEM tools
- Identify and remediate issues such as brute force attacks, VPN abuse, and DNS anomalies
- Investigate alerts and help tune detections within InsightIDR
- Maintain log ingestion from AD, servers, firewalls, and endpoints to support monitoring and investigations
Network engineering responsibilities
- Own firewall architecture and policy design
- Configure and manage WatchGuard firewalls
- Troubleshoot site-to-site VPN issues (for example, Phase 1 up / Phase 2 down)
- Deploy and manage the Rapid7 Insight Agent using GPO, scripts, or RMM
Required experience and qualifications
- 3β5+ years of hands-on network and security experience
- Strong experience with firewalls, VPNs, and real-time troubleshooting
- Solid knowledge of TCP/IP, DNS, DHCP, VLANs, routing, and VPNs
- Experience with SIEM tools, with Rapid7 preferred
- Familiarity with Active Directory and endpoint security
- WatchGuard experience strongly preferred, with certification a plus
- Preferred certifications: Security+, Network+, CCNA, or similar
- Strong problem-solving and analytical skills
- Ability to work independently in high-pressure environments
- Detail-oriented approach with a security-first mindset
- Clear communication and cross-team collaboration
Technology stack
- Rapid7 (InsightIDR), Rapid7 Insight Agent
- GPO, RMM
- WatchGuard, IDS/IPS, SIEM
- Active Directory, TCP/IP, DNS, DHCP, VLANs, VPN, zero-trust
Background checks are required for this role.