Network Security Engineer
Job Description
WCC Technologies Group is seeking a Network Security Engineer with 5 to 10 years of hands-on experience to support security initiatives across both pre-sales and post-sales consulting engagements. This onsite role in Chino, CA focuses on advising customers and delivering advanced firewall, SD-WAN, and SASE solutions, with responsibility for design, deployment, troubleshooting, and customer-facing incident escalation.
What you’ll do
- Assist the sales team during pre-sales engagements by advising customers on security requirements, recommending best-fit technologies, and designing firewall, SD-WAN, and SASE solutions.
- Design, configure, and deploy next-generation firewalls and secure network architectures using Palo Alto Networks (PAN-OS, Panorama), Fortinet (FortiGate, FortiManager), Cisco, and other leading platforms.
- Architect and implement SD-WAN and SASE capabilities, including ZTNA, SWG, CASB, and cloud-delivered security services such as Prisma Access, Cisco Umbrella, and Fortinet SASE.
- Join customer discovery calls and RFP reviews to support requirements gathering, and help build Bills of Materials (BoMs) for firewall, SD-WAN, and SASE projects.
- Configure and troubleshoot advanced routing and switching environments, including BGP, OSPF, VLANs, and enterprise WAN/LAN architectures.
- Implement site-to-site and remote access VPNs, including IPsec/GRE tunnels, and support Zero Trust access policies across hybrid and multi-cloud environments.
- Conduct security policy audits, optimize firewall rules, and support vulnerability remediation to strengthen customer security postures.
- Support post-sales delivery through staging, configuration, validation, on-site installation, and assistance during network cutovers.
- Produce and maintain customer-facing technical documentation, including network diagrams, firewall rule sets, configuration standards, and implementation runbooks.
- Act as a client-facing technical resource, mentor junior engineers, and escalate or resolve complex customer security incidents when required.
- Build and maintain network automation workflows and monitoring integrations using Ansible, n8n, Python, and platforms such as Zabbix or PRTG to improve visibility and reduce manual effort.
Requirements
- 5-10 years of hands-on experience in enterprise network security engineering, ideally in a consulting or MSP environment.
- Relevant certifications strongly preferred: PCNSE, Fortinet NSE 4-7, CCNP (Enterprise or Security), or CCIE.
- Working knowledge of cloud networking constructs across AWS, Azure, or GCP (for example: VPC/VNet peering, Transit Gateway, ExpressRoute).
- Comfort working with IPAM/DCIM tools (for example: NetBox) and ITSM/ticketing platforms (for example: ServiceNow, Jira).
- Strong communication and presentation skills, including the ability to explain technical concepts to technical and executive stakeholders.
- Ability to handle multiple concurrent client engagements and shifting priorities in a fast-paced consulting environment.
- Bachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent practical experience.
Technologies
- Palo Alto Networks (PAN-OS, Panorama), Fortinet (FortiGate, FortiManager), Cisco
- SD-WAN, SASE, ZTNA, SWG, CASB (Prisma Access, Cisco Umbrella, Fortinet SASE)
- BGP, OSPF, VLANs
- IPsec, GRE, Zero Trust
- Ansible, n8n, Python
- Zabbix, PRTG, NetBox
- ServiceNow, Jira
- AWS, Azure, GCP, VPC/VNet peering, Transit Gateway, ExpressRoute
- IPAM, DCIM, ITSM
Pay and location
- Location: Chino, CA (onsite, in person)
- Pay: USD 65.00 - 80.00 per hour