Cyber Engineer III

Posted 8 Hours Ago
Be an Early Applicant
Headquarters, AZ, USA
In-Office
Senior level
Food • Gaming • Travel • Hospitality
The Role
Deploy, operate, and automate enterprise network security controls across on-premises and cloud (Azure primary) environments. Tune SASE, perimeter defenses, NDR, WAF, and zero-trust segmentation; build telemetry pipelines, detections, SOAR playbooks, and AI/LLM-driven analysis; perform incident triage and collaborate with architecture, SOC, and infrastructure teams. Participate in on-call rotation and continuous improvement.
Summary Generated by Built In

Our team members are the key to our company’s success, and their health and well-being, as well as that of their families, is very important to us. We offer a comprehensive benefits package that allows our team members stay healthy, plan for their future and maintain a healthy work-life balance. Benefits may vary with employment status.  To see our fill list of Team Member Benefits please visit our career site: www.gotoworkhappy.com/benefits

Job Description:

Overview

At Seminole Hard Rock Support Services, we are on a mission to protect our guests, team members, and enterprise assets through world-class cybersecurity practices. As the Cybersecurity Network Engineer, you will implement, operate, and continuously improve the network security controls that defend traffic in, out, and across the enterprise — from the campus and data center edge to SASE, cloud networks, and the applications they carry — turning architecture and policy into running, automated, measurable defenses.

Reporting to the Manager of Cybersecurity Engineering, this role requires a hands-on, security-minded engineer who bridges the worlds of network engineering, cloud operations, and cybersecurity. You will configure and tune the enterprise network security stack — secure access service edge, perimeter and edge defenses, network detection and response, and zero-trust segmentation — and build the integrations and automations that connect it together across on-premises environments and Microsoft Azure (primary), Amazon Web Services, and Google Cloud.

This is a builder’s role, not an architecture role. You do not define standards from the sidelines; you take reference architectures and network security requirements and make them real: deploying and tuning controls, writing production-grade automation, and instrumenting the telemetry that turns raw network events into actionable insight. Your networking depth lets you treat traffic as evidence, and your fluency with AI and large language models lets you accelerate detection, triage, and analysis of network data far beyond manual effort.

You will work across campus, data center, edge, remote access, and cloud network domains, partnering with architecture, IAM, infrastructure, application, and SOC teams to ensure network controls are deployed consistently, operate reliably, and improve continuously across all Seminole Hard Rock business units. You measure your impact in risks reduced, incidents prevented, and manual effort eliminated through automation.

Responsibilities

Secure Access & Edge (SASE)

  • Deploy, configure, and tune secure-access service edge controls — secure web gateway, cloud firewall, CASB, and DLP policy — keeping coverage complete and policies current (Zscaler ZIA/ZPA)
  • Operate zero-trust network access for workforce and third parties, replacing legacy VPN patterns with identity-aware, least-privilege application access (Zscaler ZPA, GlobalProtect)
  • Operate the enterprise browser to enforce least-privilege, isolated access to sensitive applications from managed and unmanaged endpoints (Island)
  • Tune SSL/TLS inspection, tenant restrictions, and egress policy to balance security, privacy, and application compatibility — including protocols sensitive to interception such as NTLM, Kerberos, and certificate-pinned traffic
  • Manage traffic steering, forwarding, and PAC configurations so users land on the right control path from any location worldwide

Perimeter, WAF & Application Edge

  • Manage edge and perimeter defenses: web application firewall rules, DDoS mitigation, bot management, CDN and DNS policy for internet-facing properties (Cloudflare)
  • Operate API security posture and runtime protection, discovering shadow APIs and closing authentication and data-exposure gaps (Salt)
  • Administer next-generation firewall policy, NAT, and rule lifecycle across data center and property perimeters, driving rule hygiene and least-privilege access (Palo Alto Networks)
  • Harden DNS, certificate, and TLS posture at the edge in partnership with the PKI and infrastructure teams (Cloudflare, DigiCert, Keyfactor)
  • Coordinate perimeter changes with franchise, property, and vendor networks so remote sites integrate securely without breaking authentication or application flows

Network Detection, Response & Visibility

  • Deploy and tune network detection and response, triaging anomalous east-west and north-south activity and feeding high-fidelity findings to the SOC (Vectra)
  • Engineer network telemetry pipelines — flow data, DNS logs, proxy logs, firewall logs, packet metadata — that route, shape, and enrich data for cost-effective analysis (Cribl)
  • Develop and tune network-focused detections and SIEM content, mapping coverage to attacker techniques (Trellix Helix, Rapid7)
  • Investigate network-layer incidents end-to-end — from packet capture and flow analysis to proxy and firewall log correlation — isolating root cause under time pressure
  • Maintain authoritative visibility of network assets and attack surface, continuously reconciling what is connected against what is inventoried

Segmentation, Zero Trust & Cloud Networking

  • Apply zero-trust segmentation and least-privilege access principles consistently across campus, data center, gaming, and hospitality network estates
  • Design and enforce microsegmentation and network policy for sensitive zones — payment, gaming, surveillance, and OT/IoT environments — in partnership with infrastructure and compliance teams
  • Implement cloud network security guardrails across Azure (primary), AWS, and Google Cloud: virtual network design, firewalling, private connectivity, and logging baselines (Azure Firewall, NSGs, Private Link)
  • Remediate cloud network misconfigurations and exposure paths surfaced by posture management, preventing drift over time (Wiz, Microsoft Defender for Cloud)
  • Integrate network security checks into infrastructure-as-code and deployment workflows so network changes are secure by default

Network Automation, AI & Detection Engineering

  • Build and maintain network security automations, integrations, and response playbooks across the stack using APIs and SOAR (Torq)
  • Leverage AI/ML and large language models to analyze large volumes of network telemetry, accelerate alert triage and enrichment, surface anomalies, and automate reporting and documentation
  • Develop and maintain production-grade scripts, services, and tooling (e.g., Python, PowerShell, Go) that operationalize network controls and eliminate repetitive manual work
  • Automate firewall rule reviews, policy validation, and configuration compliance checks so drift is caught by pipelines, not people
  • Instrument metrics and dashboards that make network control coverage, detection efficacy, and remediation timeliness measurable

Collaboration & Continuous Improvement

  • Partner with Cybersecurity Architecture, IAM, infrastructure, application, and SOC/MSSP teams to deploy network controls consistently and resolve issues quickly
  • Support Cybersecurity Strategy & Governance, audit, and privacy programs by automating evidence collection and continuous control monitoring for network controls (Onspring, TrustArc, Microsoft Purview)
  • Document standards, runbooks, integration designs, and operating procedures so network controls are repeatable and supportable
  • Research, prototype, and pilot emerging network security tools and AI-driven capabilities that improve detection, automation, and analyst efficiency
  • Participate in an on-call rotation and incident response for a 24/7 gaming and hospitality environment

Qualifications & Experience

  • 4–7+ years of combined experience in network engineering, network security engineering, or cloud networking, with at least 3+ years focused on hands-on network security engineering in enterprise environments
  • Deep network engineering expertise, with hands-on experience designing, operating, and troubleshooting enterprise networks: routing and switching, firewalls, proxies, VPN/ZTNA, load balancing, DNS, and TLS/PKI
  • Strong automation and software proficiency, with hands-on experience in Python, PowerShell, Go, or similar languages, and the ability to build custom network security tooling, integrations, and automation from scratch
  • Practical experience applying AI/ML or large language models to network data analysis, detection, triage, or automation
  • Strong working knowledge of SASE / SSE platforms (secure web gateway, ZTNA, CASB, DLP), WAF and DDoS mitigation, NDR, and API security
  • Hands-on experience securing cloud networks on Microsoft Azure (required), with working experience in AWS and/or Google Cloud: virtual network design, cloud firewalls, private connectivity, and network security posture management
  • Deep networking fundamentals: TCP/IP, BGP/OSPF, DNS, DHCP, TLS/PKI, NAT, IPv6, packet analysis, segmentation, and zero-trust access models
  • Experience integrating network security tools and data sources via API, with familiarity in SOAR playbook development and SIEM content engineering
  • Familiarity with regulatory and compliance frameworks relevant to gaming and hospitality (PCI-DSS, SOX, tribal gaming regulations, GLBA), preferred but not required
  • Relevant certifications preferred: Cisco CCNP Security, Palo Alto PCNSE, Zscaler certifications (ZDTA/ZCCP), Microsoft AZ-700 or AZ-500, AWS Advanced Networking Specialty, GIAC (GCIA, GDSA, GCLD), or equivalent; CISSP a plus

Professional Skills

  • Translate network security requirements and architecture into deployed, automated controls that operate reliably and integrate cleanly into existing networks and workflows, without creating friction
  • Operate as a hands-on engineer who personally builds, configures, tests, and ships high-quality automation and integrations, measuring success in problems solved, not tickets closed
  • Troubleshoot methodically across physical, virtual, and cloud network layers — from packet captures to policy engines — isolating root cause under time pressure during incidents
  • Collaborate effectively across cross-functional teams: cybersecurity, network and infrastructure engineering, cloud, IAM, compliance, and the SOC
  • Communicate technical findings and recommendations clearly to both technical peers and non-technical stakeholders, including property and franchise contacts
  • Thrive in an Agile, fast-paced environment that values automation, rapid iteration, and measurable security outcomes over manual process
  • Demonstrate a builder’s mindset and a passion for using engineering and AI to make network security faster, more consistent, and more scalable

Skills Required

  • 4-7+ years combined experience in network engineering, network security engineering, or cloud networking
  • At least 3 years hands-on network security engineering in enterprise environments
  • Hands-on experience securing cloud networks on Microsoft Azure
  • Working experience in AWS and/or Google Cloud
  • Deep network engineering expertise (routing, switching, BGP/OSPF, TCP/IP, DNS, DHCP, NAT, IPv6, packet analysis)
  • Hands-on experience with SASE / SSE platforms, ZTNA, CASB, DLP, WAF, DDoS mitigation, and NDR
  • Strong automation and software proficiency with Python, PowerShell, Go, or similar
  • Practical experience applying AI/ML or large language models to network telemetry, detection, or triage
  • Experience integrating network security tools and data sources via APIs, and familiarity with SOAR playbook development and SIEM content engineering
  • Experience engineering network telemetry pipelines (flow, DNS, proxy, firewall logs) and producing SIEM/detection content
  • Ability to build and maintain production-grade automation, scripts, and tooling for network security
  • Participate in on-call rotation and incident response for a 24/7 gaming and hospitality environment
  • Familiarity with regulatory and compliance frameworks relevant to gaming and hospitality (PCI-DSS, SOX, tribal gaming regulations, GLBA)
  • Relevant certifications (Cisco CCNP Security, Palo Alto PCNSE, Zscaler ZDTA/ZCCP, Microsoft AZ-700/AZ-500, AWS Advanced Networking, GIAC, CISSP)

Seminole Hard Rock Entertainment, Inc. Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Seminole Hard Rock Entertainment, Inc. and has not been reviewed or approved by Seminole Hard Rock Entertainment, Inc..

  • Pay Growth & Progression The company implemented substantial wage increases across many job classifications and highlights periodic raises tied to evaluations. Feedback suggests these structural pay actions have lifted base rates for a broad segment of roles.
  • Healthcare Strength Competitive medical, dental, and vision coverage is paired with wellness programs and tax-advantaged accounts to support team members and their families. These offerings indicate a focus on health and wellbeing beyond basic coverage.
  • Wellbeing & Lifestyle Benefits Free shift meals, broad brand discounts, tuition reimbursement, and development programs expand total rewards beyond base pay. Weekly pay, recognition efforts, and commuter assistance at many sites further bolster everyday value.

Seminole Hard Rock Entertainment, Inc. Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
20,000 Employees
Year Founded: 2004

What We Do

Seminole Hard Rock Entertainment, Inc. is a global leader in the gaming and hospitality industry, owning and operating a portfolio of luxury casino hotels and entertainment venues. The company provides a wide array of services, including world-class gambling, upscale lodging, fine dining, and premier convention spaces, focusing on delivering extraordinary guest experiences through its diverse locations and the iconic Hard Rock brand.

Similar Jobs

The Aerospace Corporation Logo The Aerospace Corporation

Development Engineer

Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Remote or Hybrid
4 Locations
4600 Employees
96K-120K Annually

The Aerospace Corporation Logo The Aerospace Corporation

Engineering Manager

Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Hybrid
Phoenix, AZ, USA
4600 Employees

The Aerospace Corporation Logo The Aerospace Corporation

Administrative Assistant

Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Hybrid
Phoenix, AZ, USA
4600 Employees

Toast Logo Toast

Bilingual Hybrid Development Representative - Mandarin

Cloud • Fintech • Food • Information Technology • Software • Hospitality
Remote or Hybrid
United States
5000 Employees
75K-120K Annually

Similar Companies Hiring

PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees
Fairly Even Thumbnail
Hardware • Robotics • Sales • Software • Hospitality
New York, NY
30 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account