Senior Network Security Engineer
Lacework
Office based in our Sophia Antipolis (Valbonne, France) office 4 days per week or Kelsterbach (Frankfurt Germany)
Senior Network Security Engineer
About the Role
We're seeking an experienced network security engineer to build, operate, and scale our SASE architecture, encompassing both logical and physical infrastructure managed through Infrastructure as Code leveraging both Fortinet products and Linux (OpenStack) systems. You'll work across network architecture, security operations, and automation-designing solutions, driving incident resolution, and implementing systemic improvements to prevent recurrence.
This role includes participation in a 24x7 NOC on-call rotation and requires some staffed weekend coverage.
What You'll Do
- Maintain network architectures across datacenter environments (logical & physical)
- Build and optimize network monitoring and observability systems
- Develop automation to detect, mitigate, and remediate network events and solve problems
- Perform root cause analysis and drive issues to resolution
- Maintain documentation and operational consistency across the infrastructure
- Contribute to technical discussions and long-range capacity planning
- Provide support to internal teams as a top-tier escalation point for all production issues
What You Bring
Networking (8+ years)
- Expert-level hands-on experience with L2 switching, IP routing, and protocols (BGP, OSPF, MPLS, VRRP, STP, GRE, IPsec, SNMP)
- Large-scale BGP experience: public ASNs, peering, route arbitration, IRRs
Network Security (8+ years)
- Access control, threat management (vulnerabilities, malware, APTs, botnets)
- SSL inspection, content categorization, security/risk frameworks
- Fortinet product experience strongly preferred
Linux & Infrastructure (5+ years)
- Administration of RHEL/CentOS, Ubuntu
- Web servers, SQL databases, LDAP, etc.
- OpenStack experience a plus (RHOSP/RHOSO preferred)
General
- Strong troubleshooting instincts and documentation habits
- Comfortable working independently in a ticket queue environment
- Clear communicator who can context-switch between deep technical work and stakeholder updates
Nice to Have
- Cloud experience (AWS, GCP, Azure)
- Infrastructure-as-code tools (Terraform, Ansible)
- Load balancing and DDoS mitigation at scale
- Certifications: NSE7/8, CCIE R&S, RHCSA/RHCE
Fluency in English essential + business level of local language highly desirable
#LI-NC1
We're seeking an experienced network security engineer to build, operate, and scale our SASE architecture, encompassing both logical and physical infrastructure managed through Infrastructure as Code leveraging both Fortinet products and Linux (OpenStack) systems. You'll work across network architecture, security operations, and automation-designing solutions, driving incident resolution, and implementing systemic improvements to prevent recurrence. This role includes participation in a 24x7 NOC on-call rotation and requires some staffed weekend coverage.