
Senior Principal Security Engineer - East Coast or Midwest
MKS Inc. · United States
- Hybrid
- Full-time
- $180,000 / year
- United States
Tailored resume — keyword-matched to this role.
Hiring manager — we find who's hiring.
Intro email — drafted to reach them directly.
Job highlights
- Drive security architecture roadmap with Zero Trust and SASE.
- Design and implement secure networks in cloud/hybrid environments.
- Define and enforce network segmentation strategies.
- Act as SME for network security best practices.
- Manage and improve enterprise network security designs.
About the role
About the Role
As a Sr. Principal Security Engineer at MKS Inc., you will partner with Engineering Teams, Operations Teams, Business Units, Field Services, and Vendors to perform engineering design and implementation of the company’s internal network and data communications systems, with a strong focus on overall network security protocols. In this role, you will report to the Director of IT Connectivity.
Key Responsibilities
- Own and drive the enterprise Zero Trust and SASE security architecture roadmap, ensuring alignment with business and regulatory requirements.
- Design, implement, and evolve secure data communications networks, including on-prem, cloud, and hybrid environments with AWS and Microsoft Azure.
- Define and enforce network segmentation strategies across IT and OT environments to reduce risk and support operational resiliency.
- Own the enterprise network security architecture and continuously improve designs based on industry standards, emerging threats, and organizational needs.
- Serve as the primary Subject Matter Expert (SME) for network security best practices, standards, and procedures.
- Act as a technical escalation point for complex network security issues across engineering, operations, and partner teams.
- Define, implement, and govern network security standards and best practices across the enterprise infrastructure.
Travel Requirements
Up to 0-5% travel is required.
Skills You Bring
- Bachelor's Degree or Trade Certification in Computer-related fields preferred, or equivalent work experience.
- Minimum 12+ years of experience in Security and Networking technology environments.
- Industry certifications such as PCNSA/PCNSE, CCNP, or CISSP or equivalent (preferred).
- Experience with network and security platforms including ClearPass, Solar Winds, Cisco Umbrella, Infoblox, Cisco Thousand Eyes, and Prisma.
- Strong hands-on experience in establishing security policy governance and designing, deploying, and managing firewall solutions using Fortinet and Palo Alto firewalls.
Preferred Skills
- Remote access technologies (SSL, IPSec) and site-to-site VPN.
- Network Skills: TCP/IP, routing protocols (EIGRP, BGP, MPLS, IPSec VPN), Layer 2/3 switching and VLAN configuration, Firewall security policy.
- Familiar with authentication services: Radius, TACACS/TACACS+, 802.1x.
Supervisory Scope
- No direct management responsibilities, but as a Sr. Principal Engineer, projecting a leadership presence to the rest of the team as a technology owner is required.
- Works with management to align work to budget requirements.
Physical Demands and Working Conditions
- US requirement due to Americans with Disabilities Act (ADA).
- Experience maintaining and supporting network infrastructure in a 24/7, On-Call model.
- Must be able to communicate information and ideas so others will understand.
- Must be able to exchange accurate information.
- Operates in a professional office environment.
- Constantly operates a computer and other office productivity machinery.
- Trustworthiness, reliability, and good judgment are material job duties.
Compensation and Benefits
- Salary Pay Range: $135,000.00 - $225,000.00 per year.
- Eligible for a discretionary annual bonus.
- Comprehensive benefits package including health insurance, 401(k) with company match, life and disability insurance, 12 paid holidays, sick time, 15 paid vacation days, 6 weeks fully paid parental leave, adoption assistance, and tuition reimbursement.
Key Skills/Competency
- Network Security Architecture
- Zero Trust
- SASE
- Firewall Management (Fortinet, Palo Alto)
- Cloud Security (AWS, Azure)
- Network Segmentation
- Subject Matter Expert (SME)
- Security Policy Governance
- TCP/IP
- VPN Technologies
Skills & topics
- Security Engineer
- Network Security
- Zero Trust
- SASE
- Firewall
- Cloud Security
- AWS
- Azure
- Cybersecurity
- IT Infrastructure
How to get hired
- Tailor your resume: Highlight your 12+ years of security and networking experience, emphasizing Zero Trust, SASE, firewall management (Fortinet, Palo Alto), and cloud security (AWS, Azure).
- Showcase certifications: Clearly list relevant certifications like PCNSA/PCNSE, CCNP, or CISSP to demonstrate expertise.
- Quantify achievements: Provide examples of your impact on network security architecture, segmentation, and policy governance, using data where possible.
- Prepare for technical deep dives: Be ready to discuss specific network protocols, firewall configurations, and cloud security implementations in detail during interviews.
- Demonstrate leadership: Highlight instances where you've acted as a technical escalation point or technology owner, influencing team direction.
Technical preparation
Master Zero Trust and SASE architecture principles.,Deep dive into Fortinet/Palo Alto firewall configurations.,Review AWS/Azure network security best practices.,Practice network segmentation strategy design.
Behavioral questions
Describe a complex network security issue you resolved.,How do you influence technical direction as an SME?,Explain your approach to defining security standards.,How do you collaborate with diverse engineering teams?
Frequently asked questions
- What is the salary range for the Senior Principal Security Engineer role at MKS Inc.?
- The salary range for the Senior Principal Security Engineer position at MKS Inc. is between $135,000.00 and $225,000.00 per year. This range is a good faith estimate and can depend on factors like qualifications, experience, and operational needs.
- What are the required minimum years of experience for the Senior Principal Security Engineer role at MKS Inc.?
- MKS Inc. requires a minimum of 12 years of experience in Security and Networking technology environments for the Senior Principal Security Engineer position.
- Does MKS Inc. offer remote work for the Senior Principal Security Engineer position?
- While the job description mentions East Coast or Midwest locations and requires some travel, the specifics of remote work arrangements for this role are not explicitly detailed. It's advisable to clarify this during the application or interview process.
- What kind of benefits does MKS Inc. offer to its employees?
- MKS Inc. offers a comprehensive benefits package that includes health insurance (medical, dental, vision), a 401(k) with company match, life and disability insurance, 12 paid holidays, sick time, 15 paid vacation days, 6 weeks of fully paid parental leave, adoption assistance, and tuition reimbursement.
- What certifications are preferred for the Senior Principal Security Engineer role at MKS Inc.?
- Preferred certifications for the Senior Principal Security Engineer role at MKS Inc. include PCNSA/PCNSE, CCNP, or CISSP, or equivalent industry certifications.
- What specific network and security platforms does MKS Inc. use?
- MKS Inc. utilizes network and security platforms such as ClearPass, Solar Winds, Cisco Umbrella, Infoblox, Cisco Thousand Eyes, and Prisma. They also use Fortinet and Palo Alto firewalls.
- Is there a bonus structure for the Senior Principal Security Engineer at MKS Inc.?
- Yes, this position is eligible for a discretionary annual bonus, the amount of which will be determined by MKS.
- What is the travel expectation for this Senior Principal Security Engineer role?
- The travel requirement for the Senior Principal Security Engineer role at MKS Inc. is up to 0-5%.
Similar roles
Open positions we recommend based on this role.