Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
C
Confidential
Network & Security Engineer
Career Insights for Cyber Security Engineer
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Washington data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Engineer designs systems that protect the security of large databases, including databases with customer information and patient files. Examines client computer systems, identifies weak points in security, develops and implements new systems, monitors and responds to security issues.
$132,088 / year median in Washington
+3% projected growth
Job Description
Please read the Job Description thoroughly as unsuitable candidates will not be contacted. Please answer all screening questions as you may be automatically disqualified from the process for not doing so. Job Overview Cybertools is expanding our engineering team to keep pace with growing project demand across our customer base, and this Network & Security Engineer role plays a key part in that growth. While project delivery is the primary focus, we value engineers who can flex where needed — supporting other engineering priorities or client needs as they arise. The role is built around project delivery — designing, deploying, and hardening infrastructure across a wide variety of active engagements throughout our customer base, with that focus taking priority over day-to-day helpdesk work, unless otherwise directed. It is centered on network architecture, security hardening, and IT governance work, reporting to the IT SDM, who owns overall project coordination and client relationships. Key Responsibilities Network Architecture & Segmentation Design and implement VLAN segmentation, managed switching, and guest/IoT network isolation across multiple client sites. Segment camera (CCTV) systems, irrigation/sprinkler controls, and other specialty devices onto isolated network segments, coordinating with third-party vendors as needed. Redesign wireless network architecture, including migrations from legacy or locally-managed platforms to centrally-managed solutions. Support enterprise VPN connectivity, including SSL VPN, client-to-site, site-to-site, and SaaS-based secure remote access solutions. Internet Resiliency & Routing Design and configure secondary/backup internet connections and automatic failover routing. Evaluate and implement WAN failover strategies, including hands-on testing to validate actual failover performance and business continuity. Design, deploy, and manage enterprise SD-WAN and routed networks (static and dynamic routing) across multi-client sites, utilizing diverse connection types including DIA, broadband, cellular, satellite, and microwave. Security Hardening & Firewall Management Deploy, configure, and replace enterprise firewalls, including auditing, cleaning up, and re-documenting legacy policies to enforce least-privilege access. Support VAPT (vulnerability assessment and penetration testing) and cyber insurance readiness assessments by evaluating current controls against typical underwriting requirements. Deploy, harden, and maintain enterprise MFA platforms (e.g., Duo) and enterprise Privileged Access Management (PAM) solutions. Identity, Device & Endpoint Management Design and deploy Mobile Device Management (MDM/MAM) programs, including compliance policies and encryption enforcement. Leverage EDR/AV platforms for proactive threat isolation, threat hunting, and automated endpoint remediation. Map threat intelligence, security alerts, and adversarial behaviors to the