Network Security Engineer - Nashville, 37201 Job at Universal Music Group, Nashville, TN

QmE5RTVZUnB6bjI3SXI1dnNOODFNV1NHamc9PQ==
  • Universal Music Group
  • Nashville, TN

Job Description

Network Security Engineer - Nashville, 37201, United States of America

Important Eligibility Requirements – Please Read Before Applying

To be considered for this position, candidates must meet the following requirements:

  • Work Authorization: Applicants must be currently authorized to work in the United States on a permanent, unrestricted basis . This role does not offer visa sponsorship now or in the future , and UMG will not provide employment-based immigration sponsorship for this position.

  • Work Location: This role is not remote . The position requires working onsite in the office three (3) days per week in accordance with UMG’s hybrid work policy. Candidates must be able to reliably commute to the designated office location.

  • Eligibility: Candidates must meet the above requirements at the time of application and throughout employment.

Applications that do not meet these requirements will not be considered.

 

The Role

UMG is seeking an experienced Network Security Engineer (Firewall & NAC) to join our Global Network Infrastructure team. This role plays a critical part in UMG’s Global Security and Cybersecurity strategy by designing, standardizing, and operating enterprise firewall and perimeter security platforms.

The ideal candidate will have deep hands-on experience with next-generation firewall technologies, a strong focus on security standardization, and the ability to partner closely with Cybersecurity and Infrastructure teams in a global enterprise environment.

Key Responsibilities

  • Design, deploy, and support enterprise firewall and perimeter security solutions
  • Build, implement and maintain security controls aligned with Zero Trust and least-privilege principles
  • Lead standardization efforts across firewall platforms and configurations
  • Define and maintain Network Access Control (NAC) strategy, standards, and architectures (Cisco ISE) to support secure enterprise access.
  • Design, implement, and operationalize NAC policy including authentication/authorization, device profiling, and identity-based segmentation enforcement.
  • Own network security logging and telemetry strategy for firewall and NAC controls, including log scope, retention, access controls, and audit readiness.
  • Design and implement logging methods and systems (e.g., syslog, API-based ingestion, cloud-native logging) to onboard network security events into the enterprise SIEM for monitoring and incident response.
  • Partner with the SOC to define alerts, dashboards, and investigation workflows based on firewall and NAC security logs.
  • Perform security assessments and contribute to risk reduction initiatives
  • Serve as an escalation point for complex firewall and network security issues
  • Maintain network security standards documentation, configuration standards, and operational runbooks
  • Participate in technology evaluations and security architecture reviews
  • Ensure adherence to change, incident, and problem management processes

Qualifications

Required:

  • 5+ years of overall IT experience
  • 3+ years in firewall or network security engineering roles
  • Experience with firewall concepts and implementations, preferably Palo Alto Networks firewalls.
  • Experience with Network Access Control (NAC) concepts and implementations, preferably Cisco Identity Services Engine (ISE).
  • Working knowledge of AAA and secure access methods including 802.1X and RADIUS/EAP; familiarity with certificate-based authentication and PKI dependencies.
  • Experience designing and operating security logging for network security controls, including log source onboarding, normalization, retention, and integration with SIEM platforms.
  • Solid understanding of IP networking, routing, and security fundamentals
  • Experience working in large, global, or regulated environments
  • Strong communication and documentation skills

Preferred:

  • Security certifications such as CCNP Security, PCNSE, or equivalent
  • Familiarity with Zero Trust, network segmentation, and security governance frameworks
  • Experience supporting audits, compliance, or regulatory requirements

Job Tags

Permanent employment, Work at office, 3 days per week

Similar Jobs

Cote Korean Steakhouse - Flatiron

Sommelier Job at Cote Korean Steakhouse - Flatiron

 ...YORK CITY'S first Korean Steakhouse. At COTE, we follow a simple mantra: &##129385; + &##128293; + &##127864; = &##128522; Sommeliers are dynamic hospitality professionals responsible for wine list oversight, providing wine and beverage recommendations to customers... 

Blue Ridge Haulers

CDL-A Regional Driver 0.90 CPM Weekly Home Time Job at Blue Ridge Haulers

 ...Monday through Friday operation, weekly home time, and modern automatic equipment. WHAT YOU EARN ~ Weekly Gross: $1,700 to $1,800~ CPM: $0.90 per mile approximately 1,000 miles per week = $900 mileage base ~3 loads per week $240 unload pay per load = $720 weekly... 

Ballast Security

Naples Armed Security Guard Job at Ballast Security

 ...Urgent Opportunity: Armed Security Guard Naples, FL (Ballast Security) Do you thrive in a fast-paced, secure working environment? Are...  ...Investigations (dba Idolon Intel), a security firm that specializes in Private Investigations and Security Services. Ballast Security and... 

Leonardo Worldwide Corporation

Model Based Engineering Job at Leonardo Worldwide Corporation

 ...in un contesto internazionale e tecnologicamente avanzato. Allinterno dellArea Digital Engineering , stiamo ricercando un/a Model Based Engineer per la nostra sede di Milano - Nerviano . La persona si occuper delle seguenti attivit : Definizione dei... 

QuickNode ⚡

Senior Salesforce Administrator Job at QuickNode ⚡

 ...Role At QuickNode, were scaling fast and that means our systems need to scale even faster. Were looking for a Senior Salesforce Administrator whos not just technically excellent, but who thinks like a Revenue Operator: proactive, strategic, and obsessed with...