Network Security Ops Engineer in Boston

Network Security Ops Engineer in Boston

Boston Full-Time 79500 - 118700 £ / year (est.) Home office (partial)
U

At a Glance

  • Tasks: Safeguard UMass Boston's network infrastructure and respond to security incidents.
  • Company: Join a leading university with a commitment to cybersecurity excellence.
  • Benefits: Competitive salary, professional development, and a supportive work environment.
  • Other info: Opportunities for career growth and collaboration with diverse teams.
  • Why this job: Make a real impact in network security while working with cutting-edge technology.
  • Qualifications: Master’s degree in Cybersecurity and 5 years of NSOC experience required.

The predicted salary is between 79500 - 118700 £ per year.

  • Join to apply for the
  • Network Security Ops Engineer role at
  • UMass Boston
  • Join to apply for the
  • Network Security Ops Engineer role at
  • UMass Boston

Get AI-powered advice on this job and more exclusive features.

General Summary

Reporting to the Director of Network Services, the Network Security Operations Engineer (NSOE) is a vital hybrid role that combines advanced technical skills with operational management to safeguard the university’s on-premises and cloud (Azure) network infrastructure, fulfilling comprehensive network security visibility requirements at the campus Network and Security Operations Center (NSOC).

As a key liaison between Network Services, Cloud Operations, and the Information Security Office (ISO), the NSOE oversees hybrid (on-prem/Azure) network security operations, improves workflows, and manages the entire lifecycle of security incidents, service requests, and NSOC tasks—ensuring alignment with zero-trust principles and cybersecurity best practices.

The NSOE proactively monitors, investigates, and responds to threats using Azure-native and integrated security tools, including SIEM (Sentinel), CASB, Solar Winds Observability Platform, Azure Firewall, Network Security Groups for micro-segmentation, VPN gateways, Global Protect, Infoblox, and Aruba Net Edit.

The role also involves optimizing configurations for firewalls, edge switches, DMZs, and secure network segmentation.

Responsibilities include conducting root cause analyses, vulnerability assessments, and risk mitigation, as well as coordinating with the ISO team to contain breaches and improve detection through AI/ML/DL network behavioral analytics.

Additionally, the NSOE will assist in network design, performance testing, capacity planning, and policy development to ensure compliance with industry standards.

Beyond technical tasks, the NSOE plays a managerial role by aligning network security with the NSOC, refining incident response protocols, and fostering collaboration between network and security teams.

This position bridges the cloud and on-premises security gaps, maintaining a unified defense posture across the university’s expanding hybrid ecosystem.

It ensures that the organization maintains a single source of truth for network infrastructure, enabling efficient troubleshooting, risk assessment, and strategic planning.

The role may require after-hours support for emergencies, network upgrades, and critical security events.

The ideal candidate will have strong expertise in SOC/NOC environments, network security administration, and multi-vendor device management, as well as the ability to drive continuous improvement in both security posture and operational efficiency.

General Summary

Reporting to the Director of Network Services, the Network Security Operations Engineer (NSOE) is a vital hybrid role that combines advanced technical skills with operational management to safeguard the university’s on-premises and cloud (Azure) network infrastructure, fulfilling comprehensive network security visibility requirements at the campus Network and Security Operations Center (NSOC).

As a key liaison between Network Services, Cloud Operations, and the Information Security Office (ISO), the NSOE oversees hybrid (on-prem/Azure) network security operations, improves workflows, and manages the entire lifecycle of security incidents, service requests, and NSOC tasks—ensuring alignment with zero-trust principles and cybersecurity best practices.

The NSOE proactively monitors, investigates, and responds to threats using Azure-native and integrated security tools, including SIEM (Sentinel), CASB, Solar Winds Observability Platform, Azure Firewall, Network Security Groups for micro-segmentation, VPN gateways, Global Protect, Infoblox, and Aruba Net Edit.

The role also involves optimizing configurations for firewalls, edge switches, DMZs, and secure network segmentation.

Responsibilities include conducting root cause analyses, vulnerability assessments, and risk mitigation, as well as coordinating with the ISO team to contain breaches and improve detection through AI/ML/DL network behavioral analytics.

Additionally, the NSOE will assist in network design, performance testing, capacity planning, and policy development to ensure compliance with industry standards.

Beyond technical tasks, the NSOE plays a managerial role by aligning network security with the NSOC, refining incident response protocols, and fostering collaboration between network and security teams.

This position bridges the cloud and on-premises security gaps, maintaining a unified defense posture across the university’s expanding hybrid ecosystem.

It ensures that the organization maintains a single source of truth for network infrastructure, enabling efficient troubleshooting, risk assessment, and strategic planning.

The role may require after-hours support for emergencies, network upgrades, and critical security events.

The ideal candidate will have strong expertise in SOC/NOC environments, network security administration, and multi-vendor device management, as well as the ability to drive continuous improvement in both security posture and operational efficiency.

Examples of Duties

  • Serve as the primary network security incident coordinator at the Network and Security Operations Center (NSOC), overseeing security, event monitoring, investigation, and response in alignment with enterprise incident response protocols.
  • Design and refine detection rules, alerts, and signatures based on threat intelligence, behavioral analytics (AI/ML), and attack trends.
  • Conduct proactive threat hunting using SIEM analytics, endpoint telemetry (EDR/XDR), and network forensics (e. g., PCAP analysis) to identify advanced threats and stealthy attack patterns.
  • Monitor and secure cloud/hybrid environments (e. g., Azure NSGs, Saa S applications) to ensure consistent visibility and policy enforcement across on-premises and cloud assets.
  • Implement and enforce Zero Trust Network Access (ZTNA) policies, including micro-segmentation, identity-aware proxies, and device posture checks (e. g., via Aruba Clear Pass).
  • Perform malware traffic analysis using sandboxing tools (e. g., Cuckoo, Virus Total) and correlate findings with network IDS/IPS alerts.
  • Act as a liaison between Network Services, ISO, and Desktop Support to ensure security compliance across IT environments.
  • Develop and report KPIs to measure security control effectiveness.
  • Proactively monitor, analyze, and respond to threats using various tools, including SIEM (Microsoft Sentinel), Solar Winds, Infoblox, Aruba Net Edit, and other security tools, to ensure the rapid containment of breaches and vulnerabilities.
  • Create, update, and maintain detailed internal network topology diagrams to ensure precise documentation and accurate planning.
  • Proactively secure and maintain all network infrastructure devices (routers, switches, firewalls, wireless controllers) through systematic hardening of configurations, timely patching of vulnerabilities, and continuous monitoring of access controls.
  • Conduct regular vulnerability assessments of network infrastructure using automated scanning tools and manual verification techniques to identify and remediate security gaps in compliance with the CIS framework control 12.
  • Develop, maintain, and version-control comprehensive network architecture diagrams (including logical/physical topologies, data flows, and security zones) using industry-standard tools (e. g., Visio).
  • Collaborate with network engineering and security teams to validate diagrams against real-time configurations, ensuring alignment with actual deployments and minimizing discrepancies.
  • Document and audit network configurations, capturing IP/MAC addresses, VLAN assignments, and ARP tables.
  • Align documentation with NIST SP 800-53 (CM-2, CM-6) and CIS Controls for audit readiness and risk management.
  • Support disaster recovery and business continuity planning by ensuring network documentation reflects failover paths, redundant systems, and critical dependencies.
  • Integrate diagrams with Sentinel to support real-time impact analysis during incidents and facilitate cross- team validation sessions with Security, Networks, and Operations teams to ensure accuracy and compliance.
  • Operate and optimize SIEM (e. g., Microsoft Sentinel) to centralize security event alerting (CIS Safeguard 13.1), correlating logs from network devices, endpoints, and cloud services.

Tune alert thresholds (CIS Safeguard 13.11) to reduce false positives and prioritize critical threats.

  • Deploy and manage network/host-based IDS/IPS solutions (CIS Safeguards 13.2, 13.3, 13.7, 13.8), including NIDS, EDR, and CSP-native tools (e. g., Azure Network Watcher), to detect and block malicious activity across enterprise assets.
  • Enforce traffic filtering between network segments (CIS Safeguard 13.4) and port-level access controls (802.1X/Certificates) (CIS Safeguard 13.9).

Implement application-layer filtering (CIS Safeguard 13.10) via proxies/firewalls to mitigate lateral threats.

  • Govern remote access security (CIS Safeguard 13.5) through Zero Trust policies (e. g., conditional access, endpoint compliance).

Collect and analyze network flow logs (CIS Safeguard 13.6) to identify anomalies and support forensic investigations.

  • Develop and execute an audit framework to inventory all network assets, including switches, routers, wireless controllers, and security appliances, while capturing:
  • IP/MAC address bindings with device ownership details
  • VLAN assignments and segmentation schemas
  • ARP tables and Layer 2/Layer 3 topology mappings
  • Firewall rulesets and access control lists (ACLs)
  • Device configurations (running/startup configs)
  • Implement automated discovery tools (such as Aruba Net Edit, Solar Winds, or custom scripts) to:
  • Continuously monitor network state
  • Detect configuration drift
  • Identify shadow IT devices
  • Validate compliance with security baselines
  • Produce yearly gap analysis reports to highlight risks in current network architecture, identify opportunities for optimization during the Aruba transition and document technical debt requiring remediation within the yearly Plan of Action and Milestones (POAM) in a Network Security Improvement Project.
  • Produce comprehensive yearly gap analysis reports to assess risks within the current network architecture, identify optimization opportunities, and document technical debt requiring remediation as part of the annual POAM within the Network Security Improvement Project.

These reports will serve as a critical tool for guiding strategic decisions, ensuring network security enhancements, and driving continuous improvement across the infrastructure.

  • Collaborate cross-functionally with various teams to ensure alignment and successful execution of key initiatives, including working with the Information Security Office to support Zero Trust initiatives, partnering with Network Engineering teams to validate migration plans, and coordinating with the Service Desk to update knowledge base articles.
  • Drive efforts to minimize mean time to repair (MTTR), strengthen the organization’s security posture, and maintain seamless business continuity during the network modernization initiative led by the Director of Network Services; success will be measured by the timely delivery of thorough configuration documentation, the discovery and remediation of unidentified network assets, and a smooth migration to the new Aruba environment—ensuring enhanced operational efficiency and network reliability.
  • Manage and troubleshoot network devices using Secure CRT for secure CLI access, real-time monitoring, and diagnostics—resolving misconfigurations, performance issues, and connectivity problems to minimize downtime.
  • Automate and standardize network operations by developing Secure CRT scripts (VBScript/Python/Expect) and configuration templates, ensuring consistency, security compliance, and efficiency in upgrades, migrations, and capacity planning.
  • Lead and coordinate incident response efforts, collaborating with cross-functional teams (Network Services, ISO, IT, IT Partners, and other stakeholders) to mitigate security incidents efficiently.
  • Conduct post-incident reviews to identify gaps, refine security controls, and minimize future risks.
  • Assist in network design, capacity planning, and performance testing, ensuring alignment with security best practices and industry standards.
  • Partner with Network Services and ISO to develop and deliver clear, timely communications regarding network security initiatives, outages, and critical updates to stakeholders.
  • Translate complex network security concepts into accessible messaging for non-technical audiences, ensuring campus-wide awareness of cybersecurity risks and best practices.
  • Assist in the creation of network status dashboards, outage notifications, and service bulletins to keep the community informed of operational changes.
  • Assist with risk assessments, security audits, and penetration testing to identify and mitigate weaknesses.
  • Stay informed about emerging cyber threats, attacker tactics, and industry trends to refine defensive strategies.
  • Perform after-hours support for critical security incidents, network upgrades, and emergency response.
  • Participate in the training and supervision of student employees, supporting their professional development.
  • Deliver high-quality customer service, including awareness training and coaching.
  • Perform other duties as assigned.

Qualifications: Required Qualifications (non-negotiable)

  • Master’s degree in Cybersecurity, Information Technology, or a related field and coursework.
  • Minimum five (5) years of hands-on cumulative experience in a Network and Security Operations Center (NSOC) environment, with higher education experience preferred.
  • CISSP (Certified Information Systems Security Professional) certification or eligibility to be earned within 6 months of hire.
  • Experience with security frameworks (NIST, CIS, ISO 27001) and compliance standards.
  • Proven ability to diagnose and resolve complex network security issues in enterprise environments.
  • Strong technical skills across Microsoft Windows and Macintosh Operating System platforms, common applications (Excel), and utilities required.
  • Demonstrated proficiency with enterprise security and network tools, including but not limited to:
  • SIEM, IDS/IPS, EDR/XDR, firewall platforms, behavioral analytics, and
  • Solar Winds for network monitoring.
  • Network access control (NAC) implementations (Aruba Clear Pass).
  • Network forensic tools (i. e., Wireshark).
  • Vulnerability management platforms (Nessus, Tenable One, Rapid7).
  • Cloud security tools (Azure Security Center)
  • Net Edit for Aruba switch and config management.
  • Secure CRT and Putty for SSH and console to equipment.
  • Co Pilot AI for packet trace analysis for threat hunting.
  • Wireshark for packet analysis.
  • Airwave wireless monitoring.
  • Aruba Wireless controllers and conductors.
  • Integrated Clear Pass for 802.1x and RADIUS.
  • Access Points dedicated to RF and IDS analysis.
  • XMC (e Xtreme Management Center) for e Xtreme switch and config management.
  • UXI (User Experience Sensor) monitoring.
  • Visio and Draw. io.
  • Excel Spreadsheets.
  • Hands-on experience configuring, monitoring, and troubleshooting security and network technologies in production environments
  • Working knowledge of industry-standard network and security platforms and their implementation best practices.

Application Instructions

Please apply online with your resume, cover letter and list of three professional references.

Review of candidates will begin following the application closing date.

Only Internal candidates in the Professional Staff Bargaining Unit will be considered during the first 10 business days of the posting.

All other candidates will be considered after that period.

  • Salary Ranges for the appropriate Pay Grade can be found at the following link:
  • Grade: 35
  • Salary Ranges

This is an exempt union position.

All official salary offers must be approved by Human Resources.

UMass Boston is committed to the full inclusion of all qualified individuals.

As part of this commitment, we will ensure that persons with disabilities are provided reasonable accommodations for the hiring process.

If reasonable accommodation is needed, please contact HRDirect@umb. edu or 617-287-5150.

  • Departments: None
  • Seniority level
  • Seniority level
    Mid-Senior level
  • Employment type
  • Employment type
    Full-time
  • Job function
  • Job function
    Information Technology
  • Industries
    Higher Education
  • Referrals increase your chances of interviewing at UMass Boston by 2x
  • Get notified about new Network Operations Engineer jobs in

Greater Boston .

  • Manchester, NH $110.00-$115.00 7 hours ago
  • Boston, MA $79,538.68-$118,661.11 2 months ago
  • West Greenwich, RI $55,631.00-$98,467.00 1 day ago
  • West Greenwich, RI $44,500.00-$103,002.00 2 days ago
  • Concord, MA $135,000.00-$145,000.00 1 week ago
  • Boston, MA $150,000.00-$180,000.00 1 month ago
  • Systems Network Administrator -- Part Time
  • Boston, MA $148,512.00-$214,517.00 1 month ago
  • Boston, MA $80,000.00-$200,000.00 1 month ago
  • Waltham, MA $140,000.00-$170,000.00 3 weeks ago
  • Peabody, MA $150,000.00-$175,000.00 3 days ago
  • Peabody, MA $150,000.00-$175,000.00 3 days ago
  • New Bedford, MA $71,884.80-$115,440.00 2 months ago
  • Senior Network and Systems Administrator
  • Cambridge, MA $90,000.00-$182,000.00 5 days ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr

Network Security Ops Engineer in Boston employer: UMass Boston

UMass Boston is an exceptional employer that fosters a collaborative and inclusive work culture, providing employees with opportunities for professional growth and development in the dynamic field of cybersecurity. Located in the vibrant city of Boston, the university offers competitive benefits, a commitment to diversity, and a supportive environment where innovation thrives, making it an ideal place for those seeking meaningful and rewarding careers in higher education.

U

Contact Details:

UMass Boston Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Network Security Ops Engineer in Boston

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including UMass Boston, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through UMass Boston

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at UMass Boston. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Network Security Ops Engineer in Boston

Network Security Operations
Azure Cloud Security
SIEM (Microsoft Sentinel)
Incident Response Coordination
Threat Hunting
Vulnerability Assessments
Zero Trust Network Access (ZTNA)

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at UMass Boston insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to UMass Boston that you’re committed to staying ahead in the game.

How to prepare for a job interview at UMass Boston

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at UMass Boston to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at UMass Boston.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.