Network Security Engineer
Cisco
Cloud Security
Cloud Security Architecture
Engineer
Firewall
Firewall Management
Fortinet Firewall
Information Security
InfoSec
Network Routing
Network Security
Network Security Tools
Next Generation Firewall
Palo Alto Networks
Sase/ztna
Sd Wan
Security
Security Engineering
Solution Architecture
Job Description
WCC Technologies Group is seeking a Network Security Engineer with strong, hands-on enterprise network security experience to support both pre-sales and post-sales consulting engagements. This onsite role is focused on advising customers and delivering advanced firewall, SD-WAN, and SASE solutions, spanning design through deployment, validation, and troubleshooting. You will also provide customer-facing escalation support for complex incidents and contribute to technical documentation and automation efforts.
Key responsibilities
- Assist the sales team during pre-sales consulting by advising customers on security requirements, recommending best-fit technologies, and designing firewall, SD-WAN, and SASE solutions.
- Design, configure, and deploy next-generation firewalls and secure network architectures using Palo Alto Networks (PAN-OS, Panorama), Fortinet (FortiGate, FortiManager), Cisco, and other leading platforms.
- Architect and implement SD-WAN and SASE solutions, including ZTNA, SWG, CASB, and cloud-delivered security services such as Prisma Access, Cisco Umbrella, and Fortinet SASE.
- Join customer discovery calls, support RFP reviews, gather requirements, and help create Bills of Materials (BoMs) for firewall, SD-WAN, and SASE projects.
- Configure and troubleshoot advanced routing and switching environments, including BGP, OSPF, VLANs, and enterprise WAN/LAN architectures.
- Implement site-to-site and remote access VPNs, including IPsec and GRE tunnels, and apply Zero Trust access policies across hybrid and multi-cloud environments.
- Conduct security policy audits, optimize firewall rules, and help remediate vulnerabilities to strengthen customer security postures.
- Support post-sales delivery, including staging, configuration, validation, on-site installation, and assistance during network cutovers.
- Produce and maintain customer-facing technical documentation such as network diagrams, firewall rule sets, configuration standards, and implementation runbooks.
- Act as a client-facing technical resource, mentor junior engineers, and escalate or resolve complex customer security incidents as needed.
- Build and maintain network automation workflows and monitoring integrations using Ansible, n8n, Python, and tools like Zabbix or PRTG to improve visibility and reduce manual work.
What you bring
- 5-10 years of hands-on experience in enterprise network security engineering, ideally within a consulting or MSP environment.
- Relevant certifications strongly preferred: PCNSE, Fortinet NSE 4-7, CCNP (Enterprise or Security), or CCIE.
- Working knowledge of cloud networking constructs across AWS, Azure, or GCP (for example, VPC/VNet peering, Transit Gateway, ExpressRoute).
- Comfort working with IPAM/DCIM tools such as NetBox and ITSM/ticketing platforms like ServiceNow and Jira.
- Strong communication and presentation skills for explaining technical concepts to both technical and executive stakeholders.
- Ability to manage multiple concurrent client engagements and shifting priorities in a fast-paced consulting environment.
- Bachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent practical experience.
Technologies you may work with
- Palo Alto Networks (PAN-OS, Panorama), Fortinet (FortiGate, FortiManager), Cisco
- SD-WAN, SASE, ZTNA, SWG, CASB; Prisma Access, Cisco Umbrella, Fortinet SASE
- BGP, OSPF, VLANs, IPsec, GRE, Zero Trust
- Ansible, n8n, Python, Zabbix, PRTG
- NetBox, ServiceNow, Jira
- AWS, Azure, GCP; VPC/VNet peering, Transit Gateway, ExpressRoute
Location: Chino, CA (onsite)
Compensation: $65.00 - $80.00 per hour
Experience: 5-10 years hands-on