Network Security Engineer
- AI
- Large Language Models
- Network Security
- Cisco
- NAT
- ISE
- DNS
- DHCP
- Zero Trust
- Fortinet
- SSL
- TCP/IP
- CCNP
- Python
- Ansible
- CISSP
- PCI DSS
- HIPAA
- SOC2
- NIST
About Gruve
Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.
About the Role
The Network Security Engineer will join the US Solutions Delivery team, implementing and supporting enterprise firewall and network security solutions across customer environments. This is a hands-on, delivery-focused role centered on Cisco ASA and FTD platforms, and NGFW deployments. The engineer owns assigned workstreams end-to-end - from lab validation through production cutover — and works closely with architects, project managers, and customer stakeholders. The engineer should be US Citizen and willingness to travel is required.Â
Key Responsibilities
Firewall Deployment & OperationsÂ
- Implement and configure enterprise firewall and network security solutions (NGFW/FTD, VPNs, NAT, NAC/ISE, SASE) in alignment with approved designsÂ
- Manage and maintain firewall policies, including access rules, NAT, objects, zones, and security profiles following best practicesÂ
- Perform testing and validation of firewall rules and security configurations in lab or staging environments before production deploymentÂ
Migration & TroubleshootingÂ
- Support firewall migrations from Cisco ASA and third-party platforms to Cisco FTDÂ
- Troubleshoot and resolve firewall and network security issues, including traffic drops, NAT issues, VPN failures, and routing/DNS/DHCP dependenciesÂ
- Identify and implement opportunities for optimization and automation, such as rule cleanup, standardization, and workflow improvementsÂ
Execution & CoordinationÂ
- Collaborate with architects, senior engineers, and project managers to ensure accurate and timely solution deliveryÂ
- Participate in project sync-ups and technical discussions to understand requirements, scope, and deployment sequencingÂ
- Take ownership of assigned tasks end-to-end, including escalation, root cause analysis (RCA), and issue resolutionÂ
Documentation & Continuous ImprovementÂ
- Create and maintain comprehensive documentation, including firewall rules, network diagrams, VPN inventories, and operational runbooksÂ
- Stay current on firewall platforms, SASE, Zero Trust, and network security practices, applying new learnings to day-to-day delivery workÂ
Basic Qualifications
- Candidate should be a US citizen.Â
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or related fieldÂ
- 4-7 years of experience in cybersecurity, with a strong focus on firewall design and implementationÂ
- 3+ years of hands-on experience designing and implementing Cisco ASA and Cisco FTD firewall environments or any third-party firewalls such as Palo Alto/Fortinet/Checkpoint experience with limited Cisco Firewall experience.Â
- Proven expertise in troubleshooting firewall and VPN connectivity issues, including NAT, routing, and policy-related problemsÂ
- Good understanding of NGFW features such as malware protection, threat detection, URL filtering, SSL decryption, and Intrusion Prevention Systems (IPS); hands-on experience preferredÂ
- Experience working with multi-instance firewall environmentsÂ
- Strong understanding of core networking concepts: TCP/IP, DNS, DHCP, subnetting, NAT, VPNs, and routing/switching fundamentalsÂ
- Willingness to travel across the U.S. to support customer deployments and firewall rollouts.Â
Preferred Qualifications
- CCNP Security certification or equivalent demonstrated expertiseÂ
- Experience with Cisco Secure Access, Umbrella, or XDR platforms.Â
- Knowledge of Zero trust/SASE implementations.Â
- Knowledge of Cisco ISE for NAC/802.1X integration alongside firewall deploymentsÂ
- Experience with security automation and scripting (Python, Ansible, APIs)Â
- CISSP, GIAC, or other industry-recognized security certificationsÂ
- Familiarity with compliance frameworks (PCI-DSS, HIPAA, SOC 2, NIST)Â
- Prior experience in a consulting, professional services, or partner-led delivery modelÂ
Salary RangeÂ
$80,000 - $120,000 USD + BenefitsÂ
This is a full-time role with Gruve. Please note that Gruve does not provide visa sponsorship for this position; candidates must be U.S. citizens to apply. This is an on-site role based in Edison, New Jersey.Â
Â
Â
‍
Why Gruve
At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.
Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will be contacted.
Network Security Engineer · Gruve