Senior Level Network Security Engineer Jobs
Senior level network security engineer jobs place experienced engineers in charge of enterprise security architecture, threat response programs, and the cross-functional teams that execute them. Roles are concentrated across Technology & Software, Electronics & Hardware, and Banking & Financial Services, with a mix of on-site, remote, and hybrid settings, and employers like Apple, The Depository Trust & Clearing Corporation (DTCC), and HP hiring at this level now.
Find JobsOverview
Showing 5 of 21+ Senior Level Network Security Engineer jobs











Title: Network Security Analyst 2
The primary work location(s) will be at Austin, TX 78751. The working position is On Site.
Job Summary
The Network Security Analyst II performs advanced cybersecurity and network security analysis work in support of HHSC’s enterprise security operations. This role is responsible for monitoring, detecting, investigating, and responding to security events across on-premises, cloud, and endpoint environments. The ideal candidate is a hands-on security operations professional with strong experience across SIEM, SOAR, EDR, network detection, and incident response platforms. This role requires sound judgment, technical depth, attention to detail, and a strong commitment to protecting HHSC systems, data, and services that support the health and well-being of Texans.
Essential Job Functions
- Monitor security alerts, logs, network events, endpoint telemetry, and threat intelligence feeds.
- Analyze suspicious activity, anomalous network behavior, malware indicators, endpoint detections, and SIEM correlation events to determine scope, impact, and required response actions.
- Perform incident triage, investigation, escalation, containment coordination, and documentation in alignment with HHSC security operations procedures.
- Develop, tune, and maintain detection rules, dashboards, alerts, playbooks, and queries to improve visibility across network, endpoint, identity, and cloud environments.
- Support threat hunting activities using KQL, SPL, packet/session analysis, endpoint telemetry, and other investigative techniques.
- Assist with vulnerability, risk, and control assessments for network security infrastructure and enterprise information systems.
- Document findings, prepare incident reports, track corrective actions, and communicate technical information to security leadership and business stakeholders.
- Collaborate with network, infrastructure, cloud, endpoint, and application teams to validate security events and implement risk mitigation measures.
- Maintain awareness of emerging cyber threats, attack techniques, indicators of compromise, and security best practices relevant to healthcare and public-sector environments.
- Support compliance, audit, and reporting activities by providing evidence, metrics, and security operations documentation as requested.
Required Qualifications
- Minimum of seven years of experience in cybersecurity, network security, security operations, incident response, or a closely related information security role.
- Hands-on experience with Microsoft Sentinel, including incident management, analytics rules, workbooks, automation, data connectors, and Kusto Query Language.
- Experience using SIEM for log analysis, alert investigation, dashboarding, correlation searches, and security monitoring.
- Experience with NDR for network traffic analysis, packet/session investigation, threat detection, and incident support.
- Experience with EDR tools, including endpoint alert triage, device investigation, advanced hunting, and response actions.
- Working knowledge of network security concepts, including firewalls, IDS/IPS, proxy logs, DNS, VPN, TCP/IP, segmentation, and secure network architecture.
- Ability to analyze complex security events, correlate data across multiple sources, and produce clear written documentation and recommendations.
- Knowledge of security frameworks, standards, and regulatory considerations such as NIST, CIS Controls, HIPAA, and state information security requirements.
- Strong communication, collaboration, problem-solving, and analytical skills.
Preferred Education and Certifications
- Bachelor’s degree in cybersecurity, computer science, information systems, information technology, or a related field. Relevant experience may be considered in place of education where applicable.
- Microsoft security certifications are strongly preferred, such as Microsoft Certified: Security Operations Analyst Associate, Microsoft Certified: Cybersecurity Architect Expert, Microsoft Certified: Azure Security Engineer Associate, or Microsoft 365 Defender-related certifications.
- Additional preferred certifications include CompTIA Security+, CySA+, GIAC security certifications, CISSP, CISM, CISA, Splunk Core Certified Power User, Splunk Enterprise Security Certified Admin, or SentinelOne product certifications.
Knowledge, Skills, and Abilities
- Knowledge of SIEM, SOAR, EDR, XDR, network detection and response, log management, and threat intelligence concepts.
- Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting.
- Skill in identifying indicators of compromise, attacker tactics, suspicious network patterns, and endpoint-based threats.
- Ability to prioritize alerts, document investigative steps, and escalate incidents based on severity and business impact.
- Ability to work independently and collaboratively in a security operations environment with shifting priorities and time-sensitive incidents.
- Ability to communicate cybersecurity risks, findings, and recommended actions to both technical and non-technical audiences.
Work Expectations
- Participate in incident response, escalation, and after-action review activities as needed.
- Support enterprise security monitoring for systems that process, store, or transmit sensitive information.
- Follow HHSC policies, procedures, standards, and applicable state and federal security requirements.
- Maintain accurate operational documentation, investigation notes, metrics, and leadership-ready summaries.
- May be required to provide support outside normal business hours during high-priority security incidents or planned maintenance activities.
Minimum Requirements:
Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity.
Years Required/Preferred Experience
- 7 Required Knowledge of SIEM, SOAR, EDR, XDR, NDR
- 7 Required Experience with security log collection and management
- 7 Required Experience with threat intelligence concepts
- 7 Required Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting
- 7 Required Experience in SIEM platform/architecture support
- 7 Required Experience in detection engineering methodology and implementation
- 10 Preferred Knowledge of SIEM, SOAR, EDR, XDR, NDR
- 10 Preferred Experience with security log collection and management
- 10 Preferred Experience with threat intelligence concepts
- 10 Preferred Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting
- 10 Preferred Experience in SIEM platform/architecture support
- 10 Preferred Experience in detection engineering methodology and implementation
See All 21 Senior Level Network Security Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsSenior Level Network Security Engineer Job Market
Who's Hiring



Top Industries Hiring
- Technology & Software
- Electronics & Hardware
- Banking & Financial Services
- Investment & Asset Management
- Retail
Senior Level Network Security Engineer Jobs: Frequently Asked Questions
How do I get a senior level network security engineer job?
Employers hiring at this level look for engineers who have owned security architecture decisions end to end, not just implemented them. Hands-on depth with frameworks like NIST, MITRE ATT&CK, or Zero Trust, combined with a record of leading incident response or security program buildouts, sets candidates apart. Certifications such as CISSP or CCIE Security signal readiness for the scope these roles carry.
Which companies hire senior level network security engineers?
Companies hiring senior level network security engineers right now include Apple, The Depository Trust & Clearing Corporation (DTCC), and HP, based on current listings on Migrate Mate as of September 2026. Hiring at this level tends to come from large enterprises, defense contractors, financial institutions, and cloud-scale technology companies that run complex, high-stakes network environments requiring experienced security ownership.
Are there remote senior level network security engineer jobs?
Yes, though availability varies by employer and security clearance requirements. About 57% of senior level network security engineer openings are remote or hybrid as of September 2026, reflecting strong demand for distributed security talent. Roles involving classified infrastructure or sensitive government networks are more likely to require on-site presence.
What makes a network security engineer role senior level?
Senior level roles are defined by scope and ownership rather than task execution. Engineers at this level design security architecture for entire networks or business units, lead incident response efforts, set policy and standards, and mentor junior engineers. They are expected to drive security strategy, not just follow it, and to influence decisions across engineering, IT, and leadership stakeholders.
Which industries hire the most senior level network security engineers?
Senior Level network security engineer roles concentrate in Technology & Software, Electronics & Hardware, and Banking & Financial Services, based on current listings on Migrate Mate as of September 2026. These sectors drive hiring at this level because they operate large, regulated, or high-value network environments where experienced engineers are needed to own risk management, compliance requirements, and proactive threat defense at scale.