Security Engineer, Network Security

Saronic Technologies

2h ago 0 views 0 applications
Full-time On-site
Austin, TX
Competitive
Full-time
Security Engineer Network Security

Job Description

Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms.Job OverviewSecurity at Saronic is a force multiplier, not a blocker. We’re looking for a Security Engineer to own network security end to end, including the corporate enterprise, our on-prem and production environments, our AWS cloud, and the communications and cryptography that keep autonomous vessels connected in contested, bandwidth-limited environments. Today this work is handled part-time by engineers with other primary duties; you will own it.You’ll partner with Information Technology, Enterprise Technology, Internal Apps, Infrastructure, Software, Mission Operations, Forward Deployed Engineers, Cloud Security, Product Security, and Security Operations and the teams building our vessels and their communications to secure every path from the operator to the vessel.This is an opportunity to design network security across a uniquely broad surface (enterprise, on-prem, cloud, and vessel comms), solve genuinely hard problems in securing constrained maritime links, and build the automation that keeps segmentation enforced as the footprint scales.ResponsibilitiesEnterprise & On-Prem Network Security: Own firewalls, segmentation and microsegmentation, wireless, DNS, VPN/ZTNA, and device hardening across a growing multi-site footprint, including corporate offices, data centers, and on-prem and production environments (i.e., Palo Alto, Cisco, Aruba; GlobalProtect, Tailscale/WireGuard, IPsec). Move the enterprise toward zero-trust access and retire flat-network and legacy-VPN patterns.Cloud Network Security: Design secure network architecture in AWS (commercial and GovCloud): VPC segmentation, private connectivity, and egress control.Vessel Communications & Cryptography: Secure all vessel networking and communications, including cellular (LTE/5G), RF and radio links, SATCOM, mesh networking, and line-of-sight and beyond-line-of-sight connectivity, along with the command-and-control paths to and from vessels and platforms such as Echelon. Own cryptography and key management for platform communications, protect data in transit and at rest, and design resilient, secure links over intermittent, contested, low-bandwidth, and high-latency conditions.Network Observability & NOC: Increase network visibility and observability (flow logs, telemetry, and monitoring) across enterprise, on-prem, and cloud, and partner with Information Technology to support the build-out of the Network Operations Center (NOC).Automation & Monitoring: Automate network security (segmentation-as-code, configuration validation) and support network-basedQualifications5+ years of hands-on enterprise network security experience, or an equivalent combination of experience and demonstrated abilityDesigned and operated firewalls, segmentation, VPN, and wireless in production (i.e., Palo Alto, Cisco, Aruba; GlobalProtect, WireGuard/IPsec)Strong L3-L7 fundamentals: routing/BGP, TCP/UDP, TLS/PKI, and DNSCloud network security experience (AWS VPC design and controls)Ability to obtain and maintain a U.S. security clearancePreferred QualificationsZero Trust / SASE / ZTNA architectureNetwork observability and visibility tooling, and experience standing up or supporting a Network Operations Center (NOC)Secure design of SATCOM, RF, cellular, or mesh links; software-defined radio and spectrum awareness; COMSEC and cryptographic key managementNetwork automation at scale through scripting and Infrastructure-as-CodeExperience in defense, maritime, aerospace, or other high-assurance environmentsPhysical DemandsProlonged periods of sitting at a desk and working on a computerOccasional standing and walking within the officeManual dexterity to operate a computer keyboard, mouse, and other office equipmentVisual acuity to read screens, documents, and reportsOccasional reaching, bending, or stooping to access file drawers, cabinets, or office suppliesLifting and carrying items up to 20 pounds occasionally (e.g., office supplies, packages)BenefitsMedical Insurance: Comprehensive health insurance plans covering a range of servicesSaronic pays 100% of the premium for employees and 80% for dependentsDental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision careSaronic pays 100% of the premium under the basic plan for employees and 80% for dependentsTime Off: Generous PTO and HolidaysParental Leave: Paid maternity and paternity leave to support new parentsCompetitive Salary: Industry-standard salaries with opportunities for performance-based bonusesRetirement Plan: 401(k) plan with company matchStock Options: Equity options to give employees a stake in the company’s successLife and Disability Insurance: Basic life insurance and short- and long-term disability coveragePet Insurance: Discounted pet insurance options including 24/7 Telehealth helplineAdditional Perks: Free lunch benefit and unlimited free drinks and snacks in the officeSaronic CCPA Notice for Candidates and California EmployeesIf this role is based in the United States, it requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in 8 U.S.C. 1324b(a)(3).Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits. We are also committed to providing reasonable accommodations for qualified individuals with disabilities.