Job Description
Note: The job is a remote job and is open to candidates in USA. Gotham Technology Group is seeking a Senior Network Security Consultant to lead a comprehensive technical review and cryptographic modernization of Client and Extranet IPSec VPN tunnels. The role requires deep expertise in enterprise VPN infrastructure, network traffic analysis, and security policy validation, ensuring effective documentation and stakeholder coordination throughout the process. Responsibilities β’ Enumerate and document all Site-to-Site Client and Extranet VPN tunnels across US and International GCIS networks β’ For each tunnel, capture and validate: β’ Client details: company name, address, business and technical contacts β’ Client gateway IP and BR gateway IP β’ Client remote networks and ACLs; BR local networks and ACLs β’ Route exchange configuration and distribution lists β’ IPSec protocols in use and proposed upgrades, PFS settings, cipher strength, and key details β’ Group policy and security policy assignments β’ Determine tunnel activity status through VPN status checks and NetFlow analysis β’ Identify applications in use per tunnel via source/destination/service mapping β’ Leverage Infoblox and CMDB to map tunnels back to SRE and Application owners β’ Compile and deliver findings to BISG to support audit remediation activities (separate scope) β’ Coordinate technical validation and change activities with internal network teams and client technical contacts β’ Provide clear, structured documentation suitable for audit and remediation workflows Skills β’ 7+ years of hands-on experience in network security engineering, with a focus on IPSec VPN infrastructure β’ Deep knowledge of Site-to-Site VPN design, troubleshooting, and cryptographic standards (IKEv1/v2, AES, SHA, PFS, DH groups) β’ Proficiency with traffic analysis and monitoring tools: Niksun, NetScout, Wireshark β’ NetFlow / Cisco StealthWatch β’ Experience with Infoblox and enterprise CMDB platforms for asset and ownership mapping β’ Strong understanding of ACL design, route distribution, and security policy frameworks β’ Ability to work independently in a fully remote, fast-paced environment with immediate availability β’ Prior experience in large-scale VPN audit or cryptographic modernization programs β’ Familiarity with GCIS network environments (EDG/CLF/COL/POK/International) β’ Experience interfacing with audit and compliance teams (e.g., BISG) β’ Relevant certifications: CCIE Security, CISSP, or equivalent Company Overview β’ Gotham Technology Group is a provider of guidance and direction to IT professionals. It was founded in 2001, and is headquartered in Montvale, New Jersey, USA, with a workforce of 51-200 employees. Its website is Apply tot his job
Apply tot his job
Apply To this Job