Crum & Forster, through its subsidiary Travel Insured International, is a leading travel insurance provider. They are seeking a Sr. Network Engineer/Security Engineer responsible for designing, implementing, securing, and maintaining enterprise network infrastructure while ensuring high availability and security of systems.
Responsibilities:
- Design, deploy, and maintain enterprise network infrastructure (LAN, WAN, SD‑WAN, VPN, Wi‑Fi, load balancers)
- Configure and support firewalls, secure web gateways, and network segmentation
- Implement resilient topologies ensuring redundancy, failover, and high availability
- Engineer network solutions that comply with regulatory and internal security policies
- Deploy and manage enterprise security controls:
- Firewalls (e.g., Fortinet, Check Point, Palo Alto)
- Switches & Wireless (HP/ Aruba)
- Network intrusion detection/prevention systems (IDS/IPS)
- Secure Access Service Edge (SASE) / Zero Trust network tools
- Identity‑centric access controls
- Conduct security hardening, continuous monitoring, and vulnerability remediation
- Partner with Cybersecurity teams on incident response, threat analysis, and post‑incident improvements
- Support connectivity into cloud environments (Azure, AWS) including VNETs, routing, ExpressRoute/VPN gateways, NSGs, and firewalls
- Ensure secure connectivity patterns for microservices, APIs, and distributed architectures
- Collaborate with Cloud Engineering to enforce guardrails and landing zone standards
- Own monitoring, observability, and alerting for network and security-related systems
- Troubleshoot complex network issues across multiple platforms
- Participate in on-call rotation for critical infrastructure and security events
- Maintain documentation, runbooks, diagrams, and architecture artifacts
- Stay updated with emerging technologies, identify opportunities for system improvements and recommend appropriate upgrades
- Other duties as assigned
Requirements:
- Bachelor's degree from accredited institution
- 5+ years of experience in enterprise network engineering
- Strong expertise in: Routing & switching (BGP, OSPF, EIGRP, VLANs)
- Strong expertise in: Firewalls and network security controls
- Strong expertise in: VPN technologies (site-to-site, remote access)
- Strong expertise in: Secure network architectures and zero‑trust principles
- Strong expertise in: Experience with cloud networking (Azure preferred)
- Strong expertise in: Proficiency with network monitoring and SIEM/SOC workflows
- Deep understanding of Agile and Scrum methodologies
- Knowledge of product ownership best practices
- Exceptional troubleshooting and analytical skills with attention to detail
- Excellent communication skills, including the ability to translate technical details for leadership
- Team player capable of mentoring others
- Ability to effectively manage multiple projects simultaneously, drive results and prioritize tasks
- Exceptional collaboration ability, including collaborative partnership with Cybersecurity, Cloud, and Architecture teams
- Proactive problem solver with a security first mindset
- Able to thrive in fast paced, high growth, and transformation-oriented environments
- Experience in regulated industries (insurance, financial services, healthcare)
- Hands-on experience with: Fortinet or equivalent firewall platforms
- Hands-on experience with: SASE solutions (e.g., Netskope, Zscaler, Cloudflare One)
- Hands-on experience with: SD‑WAN
- Familiarity with DevSecOps, automation, and Infrastructure-as-Code (IaC)
- Certifications (preferred but not required): CCNP, CCSP
- Certifications (preferred but not required): Azure Network Engineer Associate
- Certifications (preferred but not required): Security+ / CISSP
- Certifications (preferred but not required): Fortinet NSE series