Job Description
The Network Security Specialist is a senior-level position that plays a critical role within the Information Security Engineering organization. This role leads a team of network security engineers and technical experts responsible for protecting enterprise network and infrastructure environments. It focuses on implementing and managing network security tools, developing secure reference architectures, and enhancing detection capabilities across on-premise, cloud, and hybrid platforms.The successful candidate will work proactively to evaluate emerging technologies, research next-generation network security solutions, and develop business use cases and proof-of-concept implementations. Reporting directly to the Information Security Engineering Systems Manager, this position requires both technical depth and effective leadership. The ideal candidate brings strong expertise in network defense, sharp analytical skills, and a collaborative mindset to drive operational excellence in a dynamic, customer-focused environment.
Responsibilities
Core Responsibilities
- Lead, mentor, and guide cybersecurity and network security teams.
- Design and maintain secure network architectures across on-premise, cloud, and hybrid environments.
- Manage and configure network security appliances and infrastructure across datacenters.
- Review and approve new technologies from a security perspective.
- Implement segmentation and isolation strategies to reduce lateral movement risks.
- Identify and remediate vulnerabilities across enterprise systems.
- Develop and maintain incident response plans and playbooks.
- Manage DLP, browser isolation, and other web security solutions.
- Define and enforce cybersecurity policies, standards, and procedures.
- Administer and optimize Cisco ISE, SIEM, IDS / IPS, NDR, and related systems.
- Collaborate across IT and operations teams on secure implementations and incident escalations.
- Research emerging threats and technologies to continually strengthen enterprise defenses.
Qualifications
Required Education / Experience
Master's Degree and with 3 years of relevant experience IT or Information security orBachelor's Degree and with 5 years of relevant experience IT or Information security orAssociate's Degree and with 6 years of relevant experience IT or Information security orHigh School Diploma / GED and with 8 years of relevant experience IT or Information security.Preferred Education / Experience
Master's Degree Cybersecurity, Computer Engineering, Computer Science, Information Systems Security, Information Technology and 3 years in Information security or Network Security in a lead or senior technical role and experience in CIRT, SOC, or Incident Management and hands-on experience with SIEM, IDS / IPS, NDR, and firewall technologies. Someone with knowledge of network architecture, microsegmentation, and vulnerability remediation. Familiarity with cloud security and OT systems (SCADA, PLC) preferred.Bachelor's Degree Cybersecurity, Computer Engineering, Computer Science, Information Systems Security, Information Technology and 5 years in Information security or Network Security in a lead or senior technical role and experience in CIRT, SOC, or Incident Management and hands-on experience with SIEM, IDS / IPS, NDR, and firewall technologies. Someone with knowledge of network architecture, microsegmentation, and vulnerability remediation. Familiarity with cloud security and OT systems (SCADA, PLC) preferred.Relevant Work Experience
Designing and implementing secure network architectures, required.Expertise with VLANs, NAT, subnetting, routing, and firewall management, required.Handson experience deploying and maintaining physical and virtual network devices in data centers, required.Hands-on work with IDS / IPS, next-generation firewalls, NDR systems, and SIEM tools (Splunk),required.Experience developing and executing incident response procedures, required.Cloud networking and hybrid environment security experience, required.Collaborating across IT, operations, and engineering teams to ensure secure architectures, required.Strong background in SSL / TLS certificate lifecycle management, decryption, and inspection, required.Practical experience managing proxies, packet brokers, and traffic aggregation networks (SPAN / TAP), required.Hands-on experience implementing and supporting UTM platforms and deep URL inspection technologies, required.Experience with hybrid infrastructures including data centers, cloud, and remote access environments, required.Experience with Conducting forensic analysis and incident response using PCAP and log data, required.3+ years in cybersecurity or network architecture roles, required.Experience with network segmentation, zero-trust architecture, and visibility platforms, preferred.Familiarity with OT systems (SCADA, PLCs) and industrial protocols (DNP3, Modbus), preferred.Advanced implementations of web DLP, browser isolation, and browser security, preferred.Experience leading enterprise-scale security transformation projects, preferred.Proficiency with Zeek, Suricata, SNORT, YARA, and STIX / TAXII, preferred.Experience with proxy, SASE, Cisco ISE, and SSL / TLS inspection, preferred.Strong background in technology evaluation and risk assessments, preferred.Managing technical cybersecurity and network security teams, preferred.Managing vulnerability remediation and control verification, preferred.Skills and Abilities
Effective leadership skillsDemonstrated problem solving skillsStrong written and verbal communication skillsEffective conflict management skillsProactively approaches responsibilitiesLicenses and Certifications
Driver's License RequiredOther : CISSP, CCNP Security, GSEC, GCIH, CEH, or equivalent certifications. PreferredPhysical Demands
Ability to push, pull, and lift up to 25 poundsSit or stand to use a keyboard, mouse, and computer for the duration of the workdayAdditional Physical Demands
The selected candidate will be assigned a System Emergency Assignment (i.e., an emergency response role) and will be expected to work non-business hours during emergencies, which may include nights, weekends, and holidays.The selected candidate will be assigned a System Emergency Assignment (i.e., an emergency response role) and will be expected to work non-business hours during emergencies, which may include nights, weekends, and holidays.About Us
Mission Statement :
Consolidated Edison Company of New York, Inc. (Con Edison), Orange & Rockland Utilities (O&R), and Consolidated Edison Transmission (CET) employees are required to follow health, safety, and environmental policies, EEO, Standards of Business Conduct, and all other applicable company policy and procedures. We all share a responsibility to advance the company's mission by excelling at our three corporate priorities - safety of our people and the public, operational excellence in all that we do, and ensuring the best possible customer experience.
Benefits :
We are dedicated to supporting the physical, mental, and financial health of our employees and their families. This commitment extends beyond the workplace to foster personal growth and holistic wellbeing. Our life-changing rewards package includes :
Rich medical & pharmacy benefits, including vision benefitsDental benefitsHealth Savings AccountsHealth Care and Dependent Care Flexible Spending Accounts401(k) with robust matchingEmployer paid Pension PlanEmployee Stock Purchase Plan with a generous matching contributionState of the art Employee Assistance ProgramPaid Parental LeaveGenerous paid time off plus paid holidaysFamily support : emergency backup child, & elder care assistanceSocial responsibility and volunteer opportunitiesEmployee discount programCommuter BenefitsCulture of growth and learning : career development; tuition reimbursement; recognition programLife and Long-Term Disability BenefitsPlease be aware that some benefits may not apply to provisional or part-time job titles.About the Team
EEO Statement :
Consolidated Edison Company of New York, Inc. (Con Edison), Orange & Rockland Utilities (O&R), and Consolidated Edison Transmission (CET) are equal opportunity employers. All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of the individual's actual or perceived disability, protected veteran status, race, color, creed, religion, sex, age, national origin, gender, gender identity, gender expression, genetic information, marital status, sexual orientation, citizenship, domestic violence victim status, or any other actual or perceived status protected by law.
Technical Difficulty Statement :
For technical issues, please contact us at careerconnect@coned.com