Skip to main content
Gruve logo

Network Security Engineer

Gruve
Full Timemid
Edison, New Jersey, United StatesPosted 18 days ago

Job Description

<div class="content-intro"><p><strong>About Gruve</strong></p> <p>Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.</p></div><p><strong>About the Role</strong></p> <p><span class="TextRun SCXW42867881 BCX8" lang="EN-US" data-contrast="auto"><span class="NormalTextRun SCXW42867881 BCX8">The Network Security Engineer will join the US Solutions Delivery team, implementing and supporting enterprise firewall and network security solutions across customer environments. This is a hands-on, delivery-focused role centered on Cisco ASA and FTD platforms, and NGFW deployments. The engineer owns assigned workstreams end-to-end&nbsp;</span><span class="NormalTextRun SCXW42867881 BCX8">-&nbsp;</span><span class="NormalTextRun SCXW42867881 BCX8">from lab validation through production cutover — and works closely with architects, project managers, and customer stakeholders.&nbsp;</span><span class="NormalTextRun SCXW42867881 BCX8">The engineer should be&nbsp;</span><span class="NormalTextRun SCXW42867881 BCX8">US Citizen</span><span class="NormalTextRun SCXW42867881 BCX8">&nbsp;and willingness to travel&nbsp;</span><span class="NormalTextRun SCXW42867881 BCX8">is</span><span class="NormalTextRun SCXW42867881 BCX8">&nbsp;required.</span></span><span class="EOP SCXW42867881 BCX8" data-ccp-props="{&quot;335559739&quot;:120}">&nbsp;</span></p> <p><strong>Key Responsibilities</strong></p> <p><strong><span data-contrast="auto">Firewall Deployment &amp; Operations</span></strong><span data-ccp-props="{&quot;335559738&quot;:100,&quot;335559739&quot;:60}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Implement and configure enterprise firewall and network security solutions (NGFW/FTD, VPNs, NAT, NAC/ISE, SASE) in alignment with approved designs</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Manage and maintain firewall policies, including access rules, NAT, objects, zones, and security profiles following best practices</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Perform testing and validation of firewall rules and security configurations in lab or staging environments before production deployment</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> </ul> <p><strong><span data-contrast="auto">Migration &amp; Troubleshooting</span></strong><span data-ccp-props="{&quot;335559738&quot;:100,&quot;335559739&quot;:60}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Support firewall migrations from Cisco ASA and third-party platforms to Cisco FTD</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Troubleshoot and resolve firewall and network security issues, including traffic drops, NAT issues, VPN failures, and routing/DNS/DHCP dependencies</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Identify and implement opportunities for optimization and automation, such as rule cleanup, standardization, and workflow improvements</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> </ul> <p><strong><span data-contrast="auto">Execution &amp; Coordination</span></strong><span data-ccp-props="{&quot;335559738&quot;:100,&quot;335559739&quot;:60}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Collaborate with architects, senior engineers, and project managers to ensure accurate and timely solution delivery</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Participate in project sync-ups and technical discussions to understand requirements, scope, and deployment sequencing</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Take ownership of assigned tasks end-to-end, including escalation, root cause analysis (RCA), and issue resolution</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> </ul> <p><strong><span data-contrast="auto">Documentation &amp; Continuous Improvement</span></strong><span data-ccp-props="{&quot;335559738&quot;:100,&quot;335559739&quot;:60}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Create and maintain comprehensive documentation, including firewall rules, network diagrams, VPN inventories, and operational runbooks</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Stay current on firewall platforms, SASE, Zero Trust, and network security practices, applying new learnings to day-to-day delivery work</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> </ul> <p><strong>Basic Qualifications</strong></p> <ul> <li><span data-contrast="auto">Candidate&nbsp;should be a US citizen.</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Bachelor’s degree in computer science, Information Technology, Cybersecurity, or related field</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">5-7 years of experience in cybersecurity, with a strong focus on firewall&nbsp;design and implementation</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">4+ years of hands-on experience designing and implementing Cisco ASA and Cisco FTD firewall environments&nbsp;or any&nbsp;third-party&nbsp;firewalls such as Palo Alto/Fortinet/Checkpoint experience&nbsp;with limited Cisco Firewall experience.</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Proven expertise in troubleshooting firewall and VPN connectivity issues, including NAT, routing, and policy-related problems</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Good understanding of NGFW features such as malware protection, threat detection, URL filtering, SSL decryption, and Intrusion Prevention Systems (IPS); hands-on experience preferred</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Experience working with multi-instance firewall environments</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Strong understanding of core networking concepts: TCP/IP, DNS, DHCP, subnetting, NAT, VPNs, and routing/switching fundamentals</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Willingness to travel across the U.S. to support customer deployments and firewall rollouts.&nbsp;</span></li> </ul> <p><strong>Preferred Qualifications</strong></p> <ul> <li><span data-contrast="auto">CCNP Security certification or equivalent demonstrated expertise</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Experience with Cisco Secure Access, Umbrella, or XDR platforms.</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Knowledge of Zero trust/SASE implementations.</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Knowledge of Cisco ISE for NAC/802.1X integration alongside firewall deployments</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Experience with security automation and scripting (Python, Ansible, APIs)</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">CISSP, GIAC, or other industry-recognized security certifications</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Familiarity with compliance frameworks (PCI-DSS, HIPAA, SOC 2, NIST)</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> <li><span data-contrast="auto">Prior experience in a consulting, professional services, or partner-led delivery model</span><span data-ccp-props="{&quot;335559739&quot;:60}">&nbsp;</span></li> </ul> <p><strong><span data-ccp-props="{&quot;335559739&quot;:60}">Salary Range&nbsp;</span></strong></p> <p><span data-ccp-props="{&quot;335559739&quot;:60}">$90,000 - $140,000 USD + Benefits&nbsp;</span></p> <p><span data-ccp-props="{&quot;335559739&quot;:60}"><em><strong>This is a full-time role with Gruve. Please note that Gruve does not provide visa sponsorship for this position; candidates must be U.S. citizens to apply. This is an on-site role based in Edison, New Jersey.&nbsp;</strong></em></span></p> <p>&nbsp;</p> <p>&nbsp;</p> <p>‍</p><div class="content-conclusion"><p><strong>Why Gruve</strong></p> <p>At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.</p> <p>Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will be contacted.</p></div>

About Gruve

Gruve logo

Gruve

gruve.ai

SecurityOn-site

Want AI-powered job matching?

Upload your resume and get every job scored, your resume tailored, and hiring manager emails found - automatically.

Get Started Free