Tech Team Lead, Network Security

Point72
New York, NY$225k – $275kPosted 24 February 2026

Job Description

<p>A Career with Point72’s Technology team <br> <br>As Point72 reimagines the future of investing, our Technology team is constantly improving our company’s IT infrastructure, positioning us at the forefront of a rapidly evolving technology landscape. We’re a team of experts experimenting, discovering new ways to harness the power of open-source solutions, and embracing enterprise agile methodology. We encourage professional development to ensure you bring innovative ideas to our products while satisfying your own intellectual curiosity. <br> <br>What you’ll do<br>· Manage a small team of talented network security engineers , providing strategic guidance and mentorship throughout all aspects of protecting the firm’s data through network security best practices with a focus on data driven results.<br>· Act as the lead engineer and architect of network security solutions, including network and micro-segmentation, firewalls, VPN/SASE technologies, web application protection, network detection and response, network access control, browser isolation, and centralized security policy management, leveraging industry‑leading platforms<br>· Manage advanced security configurations for next‑generation firewalls, locally and globally <br>· Ensure network security compliance with regulatory standards such as PCI DSS, HIPAA, and GDPR by implementing policies and procedures and performing regular audits<br>· Configure and manage all deployed network security platforms such as firewalls, IDS, and IPS, ensuring they are up-to-date and configured according to industry best practices<br>· Collaborate with other IT teams to ensure secure integration of cloud services such as AWS, Azure, and GCP, including implementing security controls such as access controls, encryption, and network segmentation<br>· Develop and maintain network segmentation policies and practices, including implementing zero trust architecture and micro segmentation to reduce the risk of lateral movement by attackers<br>· Conduct risk assessments to identify vulnerabilities, perform penetration testing, and recommend remediation plans, including vulnerability management programs <br>· Develop training materials and conduct regular training sessions for users on network security best practices and policies</p> <p>What’s Required<br> <br>· Bachelor's degree in computer science, information security, or related field<br>· 5- 7 years of experience in network security within a highly regulated environment <br>· Previous team lead management experience with a passion for mentorship and leadership<br>· Industry certifications such as CISSP, CCNA/CCNP Routing Switching, Palo Alto Networks Security certifications (PCSNE), Security+, and/or CCNA Security.<br>· Demonstrated experience with networking, firewalling (Palo Alto Networks, including User-ID, App-ID, IDS/IPS) WAF, DDoS, NAC, and other related network security related tools and technologies<br>· In-depth knowledge of network segmentation, including micro segmentation and zero trust architecture leveraging tools such as Illumio, Guardicore, VMware NSX (NSX-T), vArmour, Cisco ACI, ShieldX, Unisys Stealth, and/or Zero Networks.<br>· Experience with Secure Access Service Edge (SASE) and Cloud Access Security Broker (CASB) architectures leveraging tools such as Prisma Access, zScaler, and/or NetSkope.<br>· Knowledge of cloud networking with cloud providers such as AWS, Azure, or GCP.<br>· Configuration and management experience in network detection and response (NDR) platforms such as Darktrace, ExtraHop, or Vectra.<br>· Excellent analytical and communication skills, with the ability to explain technical concepts to non-technical audiences<br>· Commitment to the highest ethical standards<br> <br>We take care of our people <br> <br>We invest in our people, their careers, their health, and their well-being. When you work here, we provide:<br> <br>· Fully-paid health care benefits<br>· Generous parental and family leave policies<br>· Volu ... (truncated, view full listing at source)