Connecting...

Location
Sydney
Salary
$170000 - $180000 per annum
Job Type
Permanent
Ref
BH-184538
Contact
Gemma Fernie
Contact email
Email Gemma
Posted
about 4 hours ago
Senior Network Engineer | Security | DDoS | BGP | 

Salary: Up to $180,000 + super + bonus
Location: Sydney – Hybrid (2 days office / 3 days WFH)
Offices: Kogarah (Wednesday) + either Parramatta or Sydney CBD (1 other day)

The Opportunity A fantastic opportunity has opened up for a Senior Network Security Engineer to join a highly skilled Security & Infrastructure team. This role will see you take ownership of complex edge and perimeter network-security engineering, with a particular focus on DDoS mitigation and L3/L4 security controls.

You’ll be involved in designing, deploying, and optimising critical security infrastructure across cloud and on-premises environments, ensuring traffic flows securely and efficiently through technologies such as BGP, firewalls, and data scrubbing platforms.

Key Responsibilities
  • Design & Deploy: Build and manage high-performance, scalable edge/perimeter network-security solutions using Infrastructure-as-Code.
  • DDoS Defence: Tune and operate L3/L4 DDoS mitigation platforms (e.g., Akamai, Cloudflare, FortiDDoS, Arbor, Radware), overseeing policy baselines, readiness and incident response.
  • Traffic Flow Management: Engineer and optimise secure traffic flows, leveraging routing protocols (BGP), firewalls, and advanced network-security techniques.
  • Incident Response: Lead complex Level 3 incident investigations, ensuring proactive mitigation and operational excellence.
  • Automation & IaC: Drive automation with tools such as Terraform, Ansible, Git and Python, embedding IaC into delivery pipelines.
  • Continuous Improvement: Enhance telemetry, monitoring, and alerting to strengthen operational resilience and incident prevention.
What You’ll Bring
  • Strong background in network security engineering within large-scale, complex environments.
  • Expertise in DDoS mitigation at Layers 3/4, including deployment, tuning, and policy management.
  • Deep knowledge of TCP/IP, BGP, DNS, VPNs, firewalls, and perimeter architectures.
  • Hands-on experience with automation & provisioning (Terraform, Ansible, Python, Git).
  • Exposure to Akamai or equivalent platforms highly regarded.
  • Relevant certifications (CCNP, CCIE, JNCIP, NSE) strongly desirable.
  • Experience in financial services or other highly regulated industries advantageous.
Why Apply?
  • Join a high-performing, security-focused engineering team.
  • Work across cutting-edge network security & DDoS mitigation projects
  • Flexible hybrid model (Sydney-based).