Post job

Network security consultant jobs near me

- 1,851 jobs
jobs
Let us run your job search
Sit back and relax while we apply to 100s of jobs for you - $25
  • Network Security Engineer

    NRI North America 4.5company rating

    Network security consultant job in Herndon, VA

    Through NRI (formally Core BTS) Resource Management Services (RMS), we offer custom talent solutions to help our clients meet their evolving technology and business needs. We help effectively match the right technology professional to their organization, recruiting for contract, contract-to-hire, and direct roles. Our client within the financial industry is in need of a Network Security Engineer to join their team. Qualified candidates MUST be US Citizens with the ability to obtain a US Government issued security clearance. Overview The Network Security Engineer is primarily responsible for configuring, deploying and maintaining secure network infrastructures to protect organizational data and resources from internal and external threats. This role involves monitoring networks for security vulnerabilities, investigating incidents, and deploying security solutions to mitigate attacks. This role also includes ensuring the high availability of networking security infrastructure and developing processes and procedures for ongoing management of the network environment. The ideal candidate possesses a strong technical background, analytical skills, and a proactive approach to network defense. Responsibilities Design, configure, and manage secure network architectures, including firewalls, VPNs, IDS/IPS, and other security appliances Maintain Next Generation firewalls and monitor/manage consoles or systems Manage all firewalls at our client, including firewall rules to ensure alignment with IT Security Policies Interact and negotiate with vendors, outsourcers, and contractors to secure network products and services Support the deployment of workstations, network devices, servers, printers, scanners, firewalls, encryption systems, and all host security systems Monitor network traffic and system logs to identify suspicious activities and potential threats Respond to and investigate security incidents, performing root cause analysis and implementing corrective actions Enforce network security policies, procedures, and best practices Manage and update network access controls, including user authentication and authorization mechanisms Collaborate with IT teams to ensure secure integration of new technologies and systems Maintain up-to-date knowledge of the latest cybersecurity trends, threats, and technologies Create and/or maintain network design diagrams and documentation Create and/or maintain network service monitoring, alerting, and responding to incidents Coach and guide team members with less experience Maintain excellent communication with internal and external parties Participate in rotational “on‐call” schedules Remain cognizant of and adheres to our client's policies, procedures, and regulations pertaining to the Bank Secrecy Act (BSA) Qualifications Required Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent experience) Minimum 5 years proven experience in configuring and administering on-premises and cloud based Next Generation Firewalls (NGFW) and IDS/IPS systems such as; Cisco Firepower, Fortinet FortiGate, and Microsoft Azure Minimum 5 years proven experience in network security engineering or a related IT security role Strong understanding of networking protocols, network routing, operating systems, and security technologies (e.g., firewalls, proxies, SIEM, IDS/IPS) Understanding of network security applications and systems such as e-mail gateway, web gateway, firewalls, and proxies The ability to assist in authoring and reviewing security policy, standards, and procedures Excellent problem-solving, analytical, and communication skills Ability to work independently and collaboratively in a fast-paced, dynamic environment Strong attention to detail and commitment to maintaining confidentiality and integrity of sensitive information Effective oral and written communication skills Ability to interact effectively with all levels of the organization and/or with vendors Ability to obtain and maintain a secret level security clearance A standard 8-hour shift between the core hours of 7:00 AM and 5:00 PM is required to support our client's operations Occasional after-hours or on-call work may be required to respond to security incidents or perform system upgrades. Ability to work effectively on-site in our Herndon, VA headquarters and equally effectively remotely Network Security Engineers typically work in hybrid work environment consisting of three days on site at our client's Corporate Headquarters in Herndon, VA, and 2 days remote. Hybrid work is at management discretion and typically granted after an initial onboarding period Preferred Professional certifications such as CCNA, CISM, CCNP Security, or similar
    $77k-107k yearly est. 5d ago
  • Senior Network Engineer

    Apex Systems 4.6company rating

    Network security consultant job in Reston, VA

    Apex Systems is currently hiring for a Sr. Network Engineer supporting a federal government agency! Project Details / Mission Supported: Perform network design and engineering support services for the SAP Program IT architecture. Solve complex Network issues. Engineer, design, implement LANs/WANs/Site-to-site VPNs/Point-to-point/point to multipoint. Serve as network systems engineer overseeing servers, storage and backup systems. Troubleshoot port security issues, VLAN issues and network outages. Control network management activities, data flows and firewall rules. Build network topologies to deliver content from specific providers to users Provide engineering designs, and plans for installation, integration, testing, upgrade, analysis, and maintenance/expansion of the network environment. Prepare network engineering documentation ranging from requirements, conceptual planning, research and development efforts, complete system construction, to customization of existing network configurations and assist in communicating current operational status of networks. Qualified candidates will have the following experience and skills: Bachelor's Degree in related field CCNA OR CCNP certification CompTIA Security+ 7+ years of experience with installation, configuration, and maintenance of Firewalls. Experience keying and upgrading software on Taclane Crypto devices Understand the operation of network protocols and Firewall packet and proxy filters Location: Reston, VA Onsite expectation: Fully Onsite Clearance Level: Candidates must be US citizens able to obtain and/or maintain a Department of Defense TS/SCI CI Poly security clearance as a condition and continuation of employment Salary/Pay range: $90-110/HR If you are interested, please apply here or email an updated copy of your resume to Kristin Catterton at ************************** Apex Systems Military & Veteran Programs At Apex Systems, we are proud to support those who serve. Our commitment to the military community is reflected in our robust veteran hiring initiatives, military-friendly workplace policies, and nationally recognized programs. We value the leadership, discipline, and mission-first mindset that military professionals bring to our team. Join us in continuing your mission. Why Apex is a Top Choice for Veterans and Military Talent: Military-Friendly Employer: Recognized as a Military Friendly Employer for multiple consecutive years. Transition Programs: DoD Skill Bridge program with multiple pathway options. Veteran Hiring Commitment: We actively partner with multiple veteran and military organizations that specialize in IT upskilling and certification training, helping service members and veterans transition into high-demand tech careers Apex Military Network: Internal employee resource group supporting veterans, Guard/Reserve members, and their families. Apex Benefits Overview Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our ‘Welcome Packet' as well, which an Apex team member can provide. EEO Employer Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation in using our website for a search or application, please contact our Employee Services Department at ******************************** or ************. Apex Systems is a world-class IT services company that serves thousands of clients across the globe. When you join Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRated's Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico.
    $90-110 hourly 2d ago
  • Network Operations Center Engineer

    Encore Talent Solutions

    Network security consultant job in Ashburn, VA

    About you: The ideal candidate will have a minimum of 3+ years of Network Operations Center or comparable technology experience, preferably with a Bachelor's or Master's degree in a related field. Vendor certifications and/or experience may be considered as an alternative to the degrees. This position is on-site at our Ashburn, Virginia location and cannot be done remotely. The successful candidate will also have: Cisco Certified Network Associate (Compulsory), CCNP, CCIE etc. Hands on configuring and troubleshooting experience on router, switches / firewalls / multiplexer/ networking devices A solid understanding of the OSI or TCP/IP model A good understanding of, and experience with, most of the following network technologies: 802.1q, HSRP, OSPF, BGP, NAT, ACLs, IPSEC, and SNMP. Knowledge of MPLS, LDP, and VRFs strongly desired Excellent cross-team collaboration, technical skills, and clear communications are required Experience / knowledge on monitoring tools like SolarWinds, WhatsUp Gold etc. Good knowledge on SolarWinds tools NCM and NPM is a plus Flexibility to work on 24*7 environment The primary roles and responsibilities you'll have in this position: Maximize network performance by monitoring performance, troubleshooting network problems and outages, scheduling upgrades and coordination with partners on network optimization. Undertake data network fault investigations in network environments using information from multiple sources. Secure network systems by establishing and enforcing policies, defining and monitoring access To handle activation/installation/upgrade calls Provide remote troubleshooting and fault finding assistance and guidance if issues occur upon initial installation. Coordinate with vendors and update customer regarding network maintenances. Speak to customers via email and phone for requirements capture/update. Properly update notes to customer within given timeline. Proper coordination with vendors to resolve the issue, also, to initiate escalations as per the published Vendor SLAs and internal policies. Coordinate with vendor Service Managers proactively to maintain the network stability. The successful candidate will be able to understand and drive solid requirements and then use those to deploy, configure, test, and activate networks. Monitor customer network and coordinate proactively with customer and vendor to troubleshoot the issue(s). To prepare reports daily / monthly / quarterly and otherwise as required. Monitor video circuits on Nimbra Vision monitoring tool.
    $81k-116k yearly est. 1d ago
  • Senior Network Engineer

    Lumark Technologies, Inc.

    Network security consultant job in Washington, DC

    Lumark Technologies, Inc. (**************** founded in 1999, is a mature small business that provides services to Defense, Federal and Commercial clients. Lumark has an exciting opportunity for a Senior Network Engineer to join our team in support of the U.S. Navy onsite at a government site in Washington, D.C. Duties Develop and implement security policies and standards that align with industry regulations and compliance frameworks. Analyze security requirements and establish protocols to fulfill them. Prepare and document SOPs and protocols for cybersecurity operations. Respond to and mitigate incidents and security threats. Provide technical advice and support to mitigate potential security risks and implement prevention strategies. Conduct penetration testing and vulnerability assessments. Coordinate with teams to ensure software, hardware, and network security. Participate in security architecture reviews for new and existing IT projects. Develop and maintain security documentation, including system configurations, network diagrams, and incident response playbooks. Qualifications U.S. Citizenship Bachelor's degree in computer science. Currently hold or have recently held at minimum a DoD Secret Clearance. Must currently reside in or near Washington, D.C. and be able to commute to the work location. Must possess experience with hands-on implementation of security controls on government IT systems. At least 10 years of relevant industry experience. What we offer: Comprehensive benefits package including health, dental, and vision insurance. Annual paid leave to include vacation, sick and holidays. Retirement 401k. Compensation Range: $110,000 - $135,000 Salary Physical Requirements Must have sufficient mobility, including but not limited to bending, walking, lifting, reaching, and kneeling to complete daily duties in a timely and efficient manner. We thank you for your consideration of the job and wish you the best. JobID: 0081
    $110k-135k yearly 1d ago
  • SASE Security Engineer

    Covenant HR

    Network security consultant job in Tysons Corner, VA

    Company - Our client is a nationally recognized cybersecurity solutions provider partnering with some of the most prestigious names in financial services and beyond. They deliver cutting-edge cloud and network security transformations with a proven track record of large-scale deployments across Fortune 500 enterprises. This opportunity supports one of the largest and most security-conscious financial organizations in the U.S. Job Title - SASE Security Engineer (Netskope Focus) Location - Tysons, Virginia (Hybrid - onsite 3 days per week) Role Type - 6-Month Contract (1,040 hours) Must Have Skills: 5+ years of hands-on experience in security engineering roles, with at least 3+ years specifically focused on enterprise-scale SASE/SSE deployments Deep expertise in Netskope Security Cloud (SWG, CASB, ZTNA) or similar SASE platforms such as Zscaler or Prisma Access Proven success in migrating from legacy firewalls (Check Point, Cisco, etc.) to Zero Trust, cloud-delivered SASE architectures Strong grasp of networking principles across OSI layers 1-7, SD-WAN, and NGFW policy optimization Experience integrating Netskope with IdP platforms (Ping/Azure AD) and EDR tools to enable contextual access control Responsibilities and Job Details: Own the design, deployment, and operationalization of the global SASE environment using Netskope as the core SSE solution Define and engineer Zero Trust Network Access (ZTNA) policies tailored by user group and application sensitivity Lead legacy policy migration, replacing traditional firewall rules with a tag-oriented unified security policy aligned with Zero Trust principles Optimize SSL inspection by minimizing unnecessary exclusions and improving visibility into encrypted traffic Clean up and harden legacy firewall rule sets, eliminating redundancies and reducing overly permissive access Oversee full lifecycle deployment of Netskope modules including SWG, CASB, ZTNA, RBI, and DLP Ensure seamless integration with enterprise IdPs and EDR solutions to support adaptive, real-time access decisions Serve as Tier 3 technical escalation for Netskope-related issues across Windows and mac OS endpoints Lead Zero Trust transformation efforts across the enterprise security stack Document architecture, design decisions, and configuration standards to support long-term maintainability Work onsite in Tysons, VA three days per week Must commit to this engagement exclusively with no overlapping contracts
    $81k-112k yearly est. 2d ago
  • OT Security Engineer

    Corsha

    Network security consultant job in Tysons Corner, VA

    Come Forge the Future of Machine Identity Security for Operational Technology & Industrial Control Systems Where: Tysons, VA (Hybrid) Supporting: Our CTO At Corsha we're not just selling software; we're fundamentally reshaping how the most critical industrial and operational technology (OT) systems are secured. We're a cyber startup in the DC area, driven by a mission to bring trust, resilience, and identity to the operational systems that power our world - from factories to power grids. We're building the future of machine identity security, and we need a dynamic technical evangelist to join our front lines. Tired of the Status Quo? Ready to Secure the Unseen? Here's your Opportunity: If you're an engineer who thrives on solving hard problems, isn't afraid to get your hands dirty with industrial control systems and sees the immense potential of cybersecurity in unconventional environments, then read on. We move fast, we build for impact, and we need a security visionary to help us secure the machines that matter most. Your Mission: Secure the Industrial Edge We're looking for an OT Security Engineer to be a foundational engineer for our Machine Identity Platform (mIDP), specifically tailored for the unique and challenging landscape of OT systems. Your mission: implement, integrate, and defend the security infrastructure that underpins our cutting-edge solutions, with a heavy emphasis on industrial control systems and OT networks. This isn't just about keeping the lights on. It's about building security architectures that are inherently secure, highly available, and resilient against the most sophisticated threats, often in environments where traditional IT paradigms simply don't apply. You'll be bridging the gap between cutting-edge cybersecurity technologies and the operational realities of factories, power plants, and critical infrastructure. What You'll Be Forging: Architect and Implement OT Security Solutions: Design, deploy, and manage secure architectures for our mIDP, specifically tailored for OT environments. This includes network segmentation, routing, switching, firewall configurations, and intrusion detection systems. ICS/OT System Integration: Be the subject matter expert for integrating our mIDP with industrial control systems. This involves understanding and working with common industrial protocols (Modbus, OPC UA) and architectures (e.g., Purdue Model). Machine Identity Integration: Collaborate closely with our product and engineering teams to integrate security configurations with our mIDP, ensuring seamless and secure authentication and authorization for OT devices and applications. OT Network Hardening: Implement and enforce robust security best practices, including vulnerability management and access control for OT networks. Troubleshooting and Optimization: Proactively monitor, troubleshoot, and resolve complex security issues across ICS and OT environments. Identify and implement optimizations to enhance system performance, reliability, and security. Automation and Tooling: Develop and implement automation scripts and tools (e.g., Python, Ansible) to streamline provisioning, configuration management, and operational tasks. Documentation and Knowledge Sharing: Create comprehensive documentation, runbooks, and contribute to internal knowledge sharing to ensure maintainability and scalability of our infrastructure. Stay Ahead of the Curve: Continuously research and evaluate new cybersecurity technologies, security trends, and best practices, particularly as they relate to OT and industrial control systems. Collaborate and Mentor: Work closely with cross-functional teams (software engineers, security analysts, product managers) and provide mentorship to junior team members. What You'll Bring: 5+ years of intense experience in OT security or a related role, with a proven track record in complex, high-performance, and high-stakes environments. Deep, demonstrable expertise in industrial control systems and OT environments. You've implemented security products and solutions in real-world ICS/OT environments. Strong proficiency in network security principles: Firewalls, VPNs, intrusion detection/prevention systems (IDS/IPS), network access control (NAC), and secure communication protocols. Extensive hands-on experience with OT network architectures and protocols. You're comfortable with physical hardware and understand the nuances of industrial networks. Rock solid understanding of cybersecurity principles: vulnerability management, threat modeling, and incident response. Empathy for OT/ICS environments: You totally get the unique security challenges of Operational Technology, and understand common industrial protocols (Modbus, OPC UA) and architectures (e.g., Purdue Model). This isn't just a "nice-to-have"; it's critical. Proficiency in scripting and automation: Python, Ansible, or similar languages for automating security provisioning and operations. A relentless problem-solver: You thrive on diagnosing and resolving intricate security issues under pressure, with an unwavering focus on root cause analysis. Exceptional communication and collaboration skills: You can articulate complex technical concepts clearly and work seamlessly with cross-functional teams. Bachelor's degree in Computer Science, Engineering, or a related technical field, or equivalent practical experience. Self-starter with an insatiable curiosity: You're eager to learn, adapt, and drive solutions in a rapidly evolving, high-impact startup environment. Bonus Points For: Experience with specific machine identity solutions (PKI, certificates, secrets management). Hands-on experience with Kubernetes Knowledge of software-defined networking (SDN) solutions. Relevant industry certifications (e.g., CISSP, GICSP, CISM). Experience in a fast-paced startup environment. Why Forge your Path with Corsha? Real-World Impact: Your work won't just sit on a server; it will actively defend the critical operational systems that underpin our society. This is an opportunity to make a tangible, immediate difference. Bleeding Edge: Be at the forefront of securing the intersection of cybersecurity, machine identity, and OT. We're defining the future, not just following trends. Growth & Ownership: This is a startup - your contributions will directly shape our product, our culture, and our success. You'll work with incredible people that care and have impact. Culture of Innovation: Join a team of brilliant, passionate engineers dedicated to solving the hardest problems. We foster a collaborative, intellectually stimulating, and supportive environment. Competitive Compensation & Benefits: Wellness days, Generous PTO, Company-covered healthcare, 401k matching, paid parental leave, and of course snacks, lunches, and sustenance. Ready to step up and secure the critical future of identity? Join Our Mission Today. Reach out to us with your resume and why you think you'd make a stellar Corshian to *****************. We are an Equal Opportunity Employer and reasonable accommodations may be made to enable individuals with disabilities.
    $81k-112k yearly est. 4d ago
  • Senior Network Engineer

    Clearancejobs

    Network security consultant job in Washington, DC

    Cleared Senior Network Engineer Full-time, Onsite (JBAB D.C.) An active TS/SCI security clearance is a must to apply! We're looking for a strategic-minded, exceptional IT professional with the depth and breadth to help define an organization's future arc of technological solutions. Company POC is a senior-level technologist with direct experience in the environment. This perspective along with the long-term thinking at the company drives focus on the best all-around match for the customer, team member, and company. Responsibilities: Ensure the overall health and security posture of complex network architectures Collaborate with technical and nontechnical stakeholders on organization-wide IT strategies Lead and coordinate the creation and/or evolution of the enterprise architecture function or program Support all phases of design, implementation, proactive monitoring, troubleshooting of the networks and related technologies Analyze network-related security posture - firewalls, Intrusion Detection Systems (IDS), Virtual Private Networks (VPNs), security controls and policies Develop system specifications, architecture designs, integration, and test plans, and all relevant documentation as required by the organization Develop security assessment and mitigation strategies, maintain compliance with DoD Information Assurance requirements as well as ensure service performance indicators are met Design and manage network infrastructure which includes routers, switches, load balancers, WAN optimizers, firewalls, wireless controllers, wireless access points, Identity Services Engine (ISE), and IDS/Intrusion Prevention Systems (IPS) devices. Work closely with Network Engineers and Network Operations to support continual improvement of the IT environment Assist in the design and implementation to scale network automation and manage complex deployment via automation. Requirements: 8 years of relevant experience CCIE Enterprise Infrastructure, Datacenter, or Security Comprehensive knowledge of technical and architectural aspects of enterprise-wide IT
    $96k-129k yearly est. 5d ago
  • Cyber Security Analyst

    AGR, LLC 4.3company rating

    Network security consultant job in Washington, DC

    We are seeking multiple mid-level (5 years minimum) Cyber Defense Incident Responders that are available to work the midnight shift (11pm-7:30am) in a Security Operations Center. Clearance Requirements: Top Secret w/SCI Location: Washington, D.C. Job Description: Coordinate incident response functions. Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. Perform cyber defense trend analysis and reporting. Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. Track and document cyber defense incidents from initial detection through final resolution. Employ approved defense-in-depth principles and practices (e.g., defense-in-multiple places, layered defenses, security robustness). Collect intrusion artifacts (e.g., source code, malware, Trojans) and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise. Coordinate with intelligence analysts to correlate threat assessment data. Monitor external data sources (e.g., cyber defense vendor sites, Computer Emergency Response Teams, Security Focus) to maintain currency of cyber defense threat condition and determine which security issues may have an impact on the enterprise. Basic Qualifications- To be considered for this position, you must minimally meet the knowledge, skills, and abilities listed below: Bachelor's degree or higher 5+ years' experience in Malware analysis, digital forensics, data/network analysis, penetration testing, information assurance, leading incident handling Must have,one of the following certifications: CERT Certified Computer Security Incident Handler (CSIH), ECC Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), GIAC Information Security Fundamentals (GISF), or ISC2 Certified Information System Security Professional (CISSP). Strong written and verbal communication skills. Knowledge of cyber attackers (e.g., script kiddies, insider threat, non-nation state sponsored, and nation sponsored). Knowledge of system administration, network, and operating system hardening techniques. Knowledge of cyber attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks). Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies. Demonstrated ability to interact effectively with senior management and leadership. Ability to design incident response for cloud service models. Knowledge of incident categories, incident responses, and timelines for responses. Knowledge of incident response and handling methodologies. Knowledge of the common networking and routing protocols (e.g. TCP/IP), services (e.g., web, mail, DNS), and how they interact to provide network communications. Knowledge of Application Security Risks (e.g. Open Web Application Security Project Top 10 list) Desired Skills Experience identifying, capturing, containing, and reporting malware. Skill in preserving evidence integrity according to standard operating procedures or national standards. Strong securing network communications experience. Recognizing and categorizing types of vulnerabilities and associated attacks. Skill in protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters). Experience performing damage assessments. Skill in using security event correlation tools and design incident response for cloud service models.
    $82k-108k yearly est. 1d ago
  • Sr. Network Engineer

    Titan Technologies 4.0company rating

    Network security consultant job in Arlington, VA

    Titan Technologies is seeking a Senior Network Engineer to design, implement, and maintain enterprise LAN/WAN environments. The Senior Network Engineer will provide advanced support for routing, switching, network performance optimization, and access control across enterprise-scale systems within the Department of Homeland Security (DHS). Duties and Responsibilities Design, configure, and maintain enterprise network systems. Support routing protocols, VLAN segmentation, NAT, and firewall rule sets. Capture, analyze, and optimize network performance. Implement and maintain network security measures and access controls. Provide Tier 3 troubleshooting and root cause analysis. Lead preventative network monitoring and capacity planning activities. Provide work leadership and training to junior network engineers. Support secure cloud networking (Azure, AWS, hybrid). You MUST have: 7+ years of professional network engineering experience. Expertise with DNS, DHCP, NTP, IPv4/IPv6, and BGP. One or more of the following certifications: -Cisco Certified Network Associate (CCNA) -Cisco Certified Network Professional (CCNP) -CompTIA Security+ ITIL 4 Foundation (preferred) Cloud certifications (AWS, Azure, etc) A DoD Secret clearance is required. Education: Bachelor's degree in Information Technology, Computer Science, or related field.
    $96k-124k yearly est. 1d ago
  • Network Architect

    Strategic Systems Inc. 4.4company rating

    Remote network security consultant job

    Join our family and contribute to the timely delivery of cargo shipment, luggage, business to customer delivery, and on-time flights while operating safely and securely. We perform at the highest level for our customers every day and strive to be an exceptional leader in our industry with our teams of cargo, passenger, ramp handling, and technical service experts in 164 airport locations, 18 countries, and on 5 continents. Are you ready to take off on your next career with us? Position Overview: The Senior Network Architect will play a pivotal role in designing, implementing, and managing the organization's network infrastructure. This role demands extensive hands-on experience with Cisco, Meraki, Aruba, and Palo Alto hardware, with a specialized focus on wireless networks and deployments. The ideal candidate will have a track record of leading network modernization projects and conducting comprehensive site surveys. Additionally, the Senior Network Architect will lead and mentor a team of network engineers, ensuring alignment with architectural standards and project goals. This role ensures the network meets high-performance, scalability, and security requirements, supporting both current and future business needs. Key Responsibilities: Ensure the network infrastructure supports scalability, performance, and security, aligning with business goals. Lead efforts in network modernization, leveraging best practices and state-of-the-art solutions. Design and deploy wireless networks, ensuring coverage, performance, and security meet or exceed industry standards. Conduct detailed site surveys for wireless deployments, ensuring optimal placement of access points and minimal interference. Troubleshoot and resolve wireless network issues, ensuring minimal downtime and seamless user experience. Work with third-party vendors and internal teams to deploy wireless networks efficiently and securely. Configure and manage hardware across Cisco, Meraki, Aruba, and Palo Alto platforms. Ensure seamless integration of network components with cloud and on premises infrastructure. Stay updated with the latest technology trends and vendor solutions to recommend the best-fit hardware for the organization. Lead network modernization projects, including migrations, upgrades, and large-scale deployments. Collaborate with stakeholders, including IT leadership and external partners, to ensure projects meet deadlines and budgetary constraints. Provide hands-on technical leadership to other network engineers, ensuring adherence to best practices. Design networks with robust security protocols, utilizing firewall technologies (such as Palo Alto) to safeguard against threats. Ensure compliance with regulatory standards, industry best practices, and internal security policies. Proactively monitor the network for performance issues, implementing upgrades and fixes as necessary. Analyze current network configurations and propose enhancements to improve resilience, security, and performance. Lead and mentor a team of network engineers, providing guidance, support, and professional development. Foster a collaborative and high-performance environment, ensuring the team meets architectural and project goals. Coordinate team efforts to ensure the successful execution of network projects. Qualifications: Education: Bachelor's or Master's degree in Computer Science, Information Technology, or a related field. Experience: 8+ years of experience in network architecture, with a strong emphasis on wireless network design and deployment. Proven experience working with Cisco, Meraki, Aruba, and Palo Alto hardware. Extensive hands-on experience with network modernization projects. Certifications: Cisco CCNP/CCIE, Aruba Certified Mobility Expert (ACMX), and Palo Alto Networks Certified Network Security Engineer (PCNSE) are highly desirable. Working Conditions: This is a full-time position. Regular travel within the North American region will be required, remote working will be considered for the right candidate, but regular site visits are a requirement. Ability to work outside of regular business hours to address critical issues or during emergencies. Maintain regular and punctual attendance consistent with the ADA, FMLA, and other federal, state, and local standards. Work is performed in an office environment, with the potential for occasional work outdoors or in a warehouse. It requires the ability to operate standard office equipment, as well as occasionally lift up to 25lbs.
    $93k-123k yearly est. 5d ago
  • Network Engineer

    Astreya 4.3company rating

    Network security consultant job in Ashburn, VA

    What this Job Entails: The Network Deployment Engineer II will design, develop, build and test systems and products based on optic, photonic and laser technologies. The position will interact with device, hardware and software design teams to assist in overall development of optical systems. The position will be responsible for specifying, selecting and qualifying active and passive optical components. The role will also assist with developing and benchmarking system performance models, developing and assisting with implementing test procedures and/or evaluating and selecting appropriate test instrumentation. Scope: Applies company policies and procedures to resolve a variety of issues Works on problems of moderate scope Receives general instructions on routine work and detailed instructions on new projects Your Roles and Responsibilities: Deploy, configure, and support a large-scale production and corporate network and server infrastructure in data centers and Point of Presence (POP) sites throughout the assigned region Calculate and document equipment power requirements and work with Engineering, Facilities Operations, and/or collocation vendors to meet these requirements Participate in project timelines to support network turn-up within expected completion intervals Responsible for asset management of networking gear in datacenter and POP sites Proactively contribute to documentation, automation and processes as they evolve Create network and server rack face elevations, floor plans, wiring diagrams, and detailed port maps for new deployments and documentation Create statements of work for vendors at the POP sites Prepare cage and rack designs, and understand the overall needs of POP infrastructure Document and follow RMA processes and procedures for all relevant vendors Follow, improve, and implement data center and POP best practices Provide necessary escalations to higher support tier; assist Sales and Customer Support with technical operations, and work with internal departments to ensure customer satisfaction Work closely with Network Engineering, Logistics, and equipment vendors as new equipment and technologies are integrated into the production network Use internal tools and scripts to configure, monitor, and repair servers and network equipment Detect and diagnose various error/failure conditions across an array of server types Other duties as required. This list is not meant to be a comprehensive inventory of all responsibilities assigned to this position Required Qualifications/Skills: Bachelor's degree (B.S/B.A) from four-college or university and 2 to 5 years' related experience and/or training; or equivalent combination of education and experience Builds productive internal and external working relationships Exercises judgment within defined procedures and practices to determine appropriate action Must have an understanding of data center network architecture and common issues related to data center networks Knowledgeable in data center practices (i.e. cable routing, calculating power usage and cooling) Experience with field-based work in POPs, carrier hotels, or central office environments Experience with enterprise and service provider network hardware platforms and architectures, including data center switching platforms Must have a sound and in-depth understanding of IP technologies such as MPLS, BGP, RSVP-TE, IS-IS Basic understanding of transmission technology and circuit troubleshooting techniques Solid understanding of fiber-optic technology including cable types, connector types, optic types, patch panels, and optical transport technologies Proficiency in various operating systems Ability to capture and analyze traffic Solid understanding of queue management for tasks and incidents, vendor engagement, and escalation and participation in ongoing POPs deployment projects Demonstrated ability to analyze complex situations and utilize troubleshooting skills, systems and tools, and creative problem solving abilities under pressure Excellent communication skills Experience in dealing with service providers and colocation facilities around the world Ability to work within a global team in a fast-paced and dynamic environment with limited supervision Strong attention to detail with excellent time management and organization skills 20% to 50% of travel required Preferred Qualifications: Understanding of various scripting languages is strongly desired Certification such as CCNA, JNCIA, RHCT, or equivalent experience Physical Demand & Work Environment: Must have the ability to lift/move 30-40 lbs. Must have the ability to perform office-related tasks which may include prolonged sitting or standing Must have the ability to move from place to place within an office environment Must be able to use a computer Must have the ability to communicate effectively Some positions may require occasional repetitive motion or movements of the wrists, hands, and/or fingers
    $67k-86k yearly est. 3d ago
  • Senior Network Engineer

    Brooksource 4.1company rating

    Network security consultant job in Arlington, VA

    Network Engineer IV - Onsite in Arlington, VA Schedule: Full-time, Monday-Friday, 9am-5pm Duration: 7 months with potential extension Start: ASAP About the Role This is a senior-level Network Engineering position supporting a large-scale, high-availability enterprise network. You'll work on complex routing, scaling initiatives, and network decom/expansion projects. The environment is fast-paced and highly collaborative, with daily interaction across engineering teams. What You'll Do Deploy, scale, and troubleshoot large enterprise network infrastructure Work on routing, connectivity, and network automation projects Support critical network expansion and decommissioning efforts Troubleshoot complex network issues across multiple platforms Collaborate onsite with senior engineers and technical stakeholders What You Need to Bring Must-Have Experience: 7+ years of hands-on network engineering experience Strong understanding of IP networking fundamentals Deep experience with BGP and OSPF Strong troubleshooting and network analysis skills Background working with major router platforms (e.g., Cisco 37xx, 49xx, 65xx, 73xx, 76xx) Additional Valuable Experience: Experience with several of the following protocols/technologies: DWDM, T1/DS1, DS3, SONET (OC3/OC48), VLANs/STP, IPv4/IPv6, TCP internals, HSRP/GLBP, PIMv2, IGMP, LDP, TACACS, IPSEC/VPNs, NetFlow, DNS, HTTP. Education: Bachelor's degree in a related field or relevant networking certifications. What Makes This Role Attractive Work on one of the largest and most complex enterprise networks High-impact projects tied to network scaling and modernization Opportunity to deepen expertise across advanced routing + transport technologies Collaborative, engineering-driven environment Strong likelihood of extension based on performance ABOUT EIGHT ELEVEN: At Eight Eleven, our business is people. Relationships are at the center of what we do. A successful partnership is only as strong as the relationship built. We're your trusted partner for IT hiring, recruiting and staffing needs. For over 16 years, Eight Eleven has established and maintained relationships that are designed to meet your IT staffing needs. Whether it's contract, contract-to-hire, or permanent placement work, we customize our search based upon your company's unique initiatives, culture and technologies. With our national team of recruiters placed at 21 major hubs around the nation, Eight Eleven finds the people best-suited for your business. When you work with us, we work with you. That's the Eight Eleven promise. Eight Eleven Group provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, national origin, age, sex, citizenship, disability, genetic information, gender, sexual orientation, gender identity, marital status, amnesty or status as a covered veteran in accordance with applicable federal, state, and local laws.
    $97k-123k yearly est. 3d ago
  • Cyber Security Consultant

    The Planet Group 4.1company rating

    Network security consultant job in Washington, DC

    BASIC FUNCTION: The Senior Cybersecurity Engineer is responsible for safeguarding the client information systems, digital assets, and technology infrastructure. This role designs, deploys, and maintains advanced cybersecurity solutions that protect patient data, clinical systems, and enterprise applications. The Senior Cybersecurity Engineer ensures the client's technology environment remains secure, compliant, and resilient against emerging threats. This position combines hands-on technical expertise with strategic leadership, driving initiatives that enhance cybersecurity maturity and operational readiness across on-premises, hybrid, and cloud environments (e.g., Azure, AWS). The role is pivotal in incident response, risk management, and ongoing improvement of security controls in alignment with hospital policies and regulatory standards such as HIPAA, NIST 800-53, and ISO/IEC 27001. Salary: $130-140k Employment Type: Full-time, direct hire Location: Onsite 3 days/week, remote 2 days/week in Washington DC SUPERVISORY ACCOUNTABILITIES: This role does not have direct supervisory responsibility but may provide technical guidance and mentorship to junior cybersecurity staff, contractors, and project teams. The Senior Cybersecurity Engineer may lead cross-functional implementation teams and coordinate security initiatives with other IT departments. NATURE AND SCOPE: Operating in a fast-paced, high-impact healthcare technology environment, the Senior Cybersecurity Engineer reports to the Senior Director of Cybersecurity and collaborates with colleagues across Technology Services, including Infrastructure, Applications, Network Operations, and Compliance. Internal contacts include hospital administrators, clinical and research staff, faculty, and IT personnel. External contacts include technology vendors, auditors, and regulatory agencies. The role requires strong analytical skills, proactive threat awareness, and the ability to balance operational needs with strategic security objectives in a mission-critical healthcare setting. PRINCIPAL ACCOUNTABILITIES: Security Operations & Incident Response Monitor, analyze, and respond to security alerts, incidents, and anomalies across hospital systems. Conduct vulnerability assessments, penetration tests, and threat-hunting activities to identify and mitigate risks. Investigate and document security incidents, performing root cause analyses and recommending remediation measures. Utilize SIEM, EDR, and IDS/IPS platforms (e.g., CrowdStrike, Microsoft Sentinel) to enhance continuous monitoring. Security Engineering & Architecture Design, implement, and manage enterprise cybersecurity controls, including firewalls, NAC, DLP, CASB, and endpoint protection systems. Support secure configuration management using CIS Benchmarks and STIGs. Implement and maintain identity and access management (IAM), multifactor authentication (MFA), and privileged access controls. Integrate security practices into DevOps processes and CI/CD pipelines (DevSecOps). Support the adoption and enforcement of Zero Trust Architecture principles across hybrid and cloud environments. Governance, Risk, and Compliance Ensure adherence to cybersecurity frameworks and regulatory standards, including HIPAA, NIST 800-53, ISO/IEC 27001, PCI DSS, and GDPR. Contribute to the creation and maintenance of security policies, procedures, and documentation. Support internal and external audits, risk assessments, and compliance reviews. Participate in disaster recovery and business continuity planning activities. Collaboration, Training, and Awareness Collaborate with IT, Compliance, and Clinical Operations to integrate security into all technology operations. Provide mentorship and technical guidance to IT staff and cybersecurity personnel. Develop and deliver training on secure computing, phishing prevention, and data protection best practices. Communicate complex technical concepts clearly to diverse audiences, promoting shared responsibility for security. CORE COMPETENCIES: Strategic Thinking: Align cybersecurity initiatives with hospital priorities and risk management goals. Technical Expertise: Deep knowledge of enterprise and cloud security controls, architectures, and technologies. Incident Response: Skilled in threat analysis, vulnerability mitigation, and incident management. Collaboration: Strong interpersonal and communication skills for cross-departmental teamwork. Innovation: Ability to evaluate emerging tools, techniques, and threat intelligence for proactive defense. Compliance Knowledge: Familiarity with HIPAA, NIST, ISO 27001, PCI DSS, and related standards. Problem Solving: Detail-oriented and methodical approach to resolving complex security challenges. Adaptability: Capable of managing multiple priorities and responding quickly to evolving threats. MINIMUM REQUIREMENTS: Education: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field required. Master's degree in Business Administration, Cybersecurity, or related discipline preferred. Experience: 7-10 years of progressive experience in information security, with at least 5 years in a security engineering role. Proven experience securing hybrid infrastructures, including on-premises systems and cloud environments (Azure, AWS, GCP). Hands-on expertise with enterprise tools such as Microsoft Defender Suite, Cisco ISE, CrowdStrike Falcon, and Azure Sentinel. Proficiency in scripting languages (e.g., PowerShell, Python) for automation and threat analysis. Certifications (one or more preferred): CISSP (Certified Information Systems Security Professional) CISM (Certified Information Security Manager) CCSP (Certified Cloud Security Professional) AWS Certified Security - Specialty Microsoft Certified: Azure Security Engineer Associate SABSA or TOGAF (preferred)
    $130k-140k yearly 2d ago
  • Cyber Security Analyst

    Dunhill Professional Search & Government Solutions

    Network security consultant job in Germantown, MD

    Creates cyber-intelligence tools / methods and performs research and analysis in order to mitigate and eliminate data and cyber security risks. Develops acceptance criteria for cybersecurity architecture. Investigates computer and information security incidents to determine extent of compromise to national security information and automated information systems. Assists with defining security objectives and system-level performance requirements. Researches and stays abreast of tools, techniques, countermeasures, and trends in computer network vulnerabilities. Configures and validates secure systems, tests security products/systems to detect computer and information security weaknesses. Maintains the computer and information security incident, damage and threat assessment programs. Supports the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results and preparation of required reports. Involved in the periodic conduct of a review of each system's audits and monitors corrective actions until all actions are closed. Supports the development of integrated system solutions ensuring proprietary/confidential data and systems are protected. Involved in the establishment of strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems. Minimum Qualifications Bachelor's Degree in Computer Science or a related field or equivalent experience. 2-4 years of experience in systems security. Other Job Specific Skills Must be able to communicate effectively and clearly present technical approaches and findings. Exercises a limited degree of latitude in determining technical objectives of assignments. Excellent attention to detail. Must be able to balance multiple tasks simultaneously. #cjpost
    $74k-101k yearly est. 1d ago
  • Network Engineer

    Tekstream Solutions 4.5company rating

    Network security consultant job in Washington, DC

    The selected candidate will be responsible for the following: Support the ITP network infrastructure, perform all routine maintenance activities, provide guidance on upgrades and system recapitalization, perform availability/capacity management. Oversee High Speed Guard Cross Domain solution that supports the transfer of data between multiple classification domains. Support all documentation to effectively capture the configuration baseline. Design and support system recapitalization plans to account for capacity growth and changes as directed by the customer. Serve as the subject matter expert on all ITP network infrastructure. Basic Qualifications: Bachelors degree and (12)+ years of prior relevant experience or Masters with (10)+ years of prior relevant experience Prior leadership responsibilities Excellent written and oral communication skills Experienced and adept at developing and maintaining technical documents, analyses, and reports Experienced with preparing and presenting briefings to senior customer management, and customer stakeholders Working knowledge of defense-in-depth principles, network/HW/SW security architecture, network topology, IT device integrity, and common security elements Active Top Secret government security clearance; ability to obtain DHS EOD SCI Preferred Qualifications: Master's degree from an accredited college or university in IT Management, Engineering, or related field Proven experience (10+ years) in IT service delivery management Experience with User Activity Monitoring products and platforms Experience with Everfox High Speed Guard Platform Experience with Cisco, Juniper LAN/WAN network infrastructure Experience with Palo Alto Firewalls DHS Cleared preferred CCNP or Higher ForcePoint/FirePower Experience
    $70k-91k yearly est. 3d ago
  • Network Engineer

    Presidio 4.7company rating

    Network security consultant job in Columbia, MD

    SEIZE THE OPPORTUNITY TO BE A PART OF SOMETHING GREAT! Presidio is on the leading edge of a technology-driven movement to transform the way business is done, for our customers and our customers' customers. Joining Presidio means immersing yourself in a culture of self-starters, collaborators and innovators who make real, lasting change in the marketplace via cutting-edge technology and business solutions. At Presidio, we know that it's our people that make the connections happen. WHY SHOULD YOU JOIN US? You will set your career on track for outstanding achievement with a company that knows no limits. Presidio is a leading a global digital services and solutions provider focused on Digital Infrastructure, Business Analytics, Cloud, Security & Emerging solutions. JOB SUMMARY: One of our Healthcare and Hospital clients is seeking a hands-on Network Engineer to support the organization's core network infrastructure, including routing, switching, firewalls, and wireless environments. This is a hybrid position based in Columbia, MD, requiring two days per week onsite and occasional travel to two local data centers. The ideal candidate will be a self-starter with strong Cisco networking experience, capable of working independently in a dynamic, fast-paced environment. Role: Network Engineer Location: Hybrid - Columbia, MD (2 days/week onsite) Contract: 6-Month Contract-to-Hire Key Responsibilities Support, maintain, and optimize core network infrastructure (switching, routing, and wireless). Manage Cisco network devices, including routers, switches, and Nexus platforms. Configure and monitor Meraki firewalls and wireless access points. Support secure connectivity through Zscaler and related technologies. Participate in network upgrades, performance tuning, and troubleshooting. Collaborate with IT leadership to align infrastructure initiatives with business goals. Ensure reliability and scalability across corporate and data center environments. Required Skills & Experience Strong foundation in networking fundamentals - switching, routing, and core infrastructure. Hands-on experience with Cisco technologies (routers, switches, Nexus). Experience with Meraki firewalls, wireless, and Zscaler. Exposure to F5 load balancing is a plus. Certifications (CCNA, CCNP) and degrees are helpful but not required. Self-motivated, eager to learn, and comfortable working independently in a fast-paced setting. About Presidio Presidio is committed to Diversity, Equity, and Inclusion at the highest levels and has strengthened its drive to build and drive systemic DEI change process across all levels of the organization.Cultivating a culture of inclusion where the expression of all our differences are valued, celebrated, and add to our collective achievements. Presidio is a global digital services and solutions provider accelerating business transformation through secured technology modernization. Highly skilled teams of engineers and solutions architects with deep expertise across cloud, security, networking and modern data center infrastructure help customers acquire, deploy and operate technology that delivers impactful business outcomes. Presidio is a trusted strategic advisor with a flexible full life cycle model of professional, managed, and support and staffing services to help execute, secure, operationalize and maintain technology solutions. We serve as an extension of our clients' IT teams, providing deep expertise and letting them focus on their core business. Presidio operates in 40+ US offices and offices in Ireland, London, Singapore, and India. For more information visit: *******************
    $76k-102k yearly est. 1d ago
  • Network Engineer

    TBG | The Bachrach Group

    Network security consultant job in Washington, DC

    We're hiring a Network Engineer to help design, build, and support a secure, high-availability enterprise network spanning voice, collaboration, data, and wireless. You'll own projects end to end-from architecture and documentation through deployment and ongoing operations-partnering with internal teams and external vendors to deliver resilient, well-instrumented connectivity across a global footprint. What you'll do Lead and contribute to network projects Recommend solutions for strategy, performance, and security; design and operate voice, data, and wireless services. Engineer and standardize the network Develop specifications, standards, and reference architectures; drive improvements in scale, security, and manageability. Optimize and modernize Analyze current-state infrastructure to improve reliability, efficiency, and ROI; plan for capacity and growth. Vendor and SOW management Coordinate with vendors to ensure scopes of work are accurate and implementations meet requirements. Operate and support Troubleshoot and resolve incidents to minimize business impact; perform routine and emergency maintenance across networking gear. Performance and observability Define and track KPIs for network health; contribute to capacity planning and performance tuning. Resilience and continuity Support DR/BC strategies to achieve minimal downtime; participate in testing and documentation. Collaboration and escalation Partner with adjacent IT teams to diagnose and resolve cross-domain issues; document resolutions in the knowledge base. Ownership and delivery Take the lead on assigned projects, follow work plans, and meet deadlines; participate in on-call rotation for 24/7 coverage. What you'll bring Education/Experience Bachelor's degree preferred (or equivalent experience). 5+ years supporting large, Cisco-centric enterprise networks and voice environments. Experience in regulated, client-service-oriented industries preferred. CCNA/CCNP (or equivalent demonstrated expertise); CCIE is a plus. Technical skills Strong grounding in routing/switching and network architecture: SD-WAN, QoS, BGP, EIGRP, and core TCP/IP. Hands-on with Cisco technologies: SD-WAN, Identity Services (ISE), Nexus (NX-OS), Catalyst 9K/9400 series. Security and cloud networking exposure: next‑gen firewalls (e.g., Palo Alto), secure access (e.g., Prisma Access), major cloud networking (e.g., Azure). Scripting/automation familiarity: Linux and Ansible for network automation a plus. Proficiency with Windows environments and productivity tooling. Problem solving Ability to analyze complex issues, introduce fit-for-purpose solutions (technology or process), and drive to resolution. Experience balancing standardization with practical constraints in dynamic environments. Communication Translate complex technical topics for non-technical stakeholders; create clear reports, runbooks, and procedure docs. Confident presenting to managers, partners, and broader audiences. Professionalism Detail-oriented, discreet, and client-focused; comfortable in high-energy, fast-changing settings. Strong prioritization and time management across multiple concurrent initiatives. Why this role High ownership across a modern, global Cisco ecosystem Blend of architecture, implementation, and operations Opportunity to raise the bar on reliability, security, and automation
    $70k-93k yearly est. 5d ago
  • SME Network Engineer

    Harmonia Holdings Group, LLC 4.3company rating

    Network security consultant job in Lorton, VA

    Harmonia Holdings Group, LLC is an award-winning, rapidly growing federal government contractor committed to providing innovative, high-performing solutions to our government clients and focused on fostering a workplace that encourages growth, initiative, creativity, and employee satisfaction. SME Network Engineer Location: Lorton, VA (22079) Citizenship: U.S. Citizen (required for access to DHS IT systems) Clearance: Must be able to obtain and maintain DHS/ICE Fitness Determination (Public Trust), including a favorable preliminary Fitness and full NBIS eAPP investigation (SF-85P, OF-306, SSA-89, fingerprints, PREA questionnaire if required) Schedule: Full-time; business hours (7:00-5:30, M-F) with required 24/7 on-call availability Hybrid Work: Lorton, VA roles may telework up to 2 days per week; 3 days onsite required (subject to mission needs) Travel: Occasional CONUS travel; local travel within 50 miles is not reimbursable Role Overview Harmonia Holdings Group is seeking an experienced SME Network Engineer to support DHS ICE Homeland Security Investigations (HSI) Title III and Linguists Unit (T3LU) under the CALEA program. This role provides hands-on leadership across all network engineering functions, including architecture, routing, switching, firewall engineering, VPN and PKI integration, segmentation design, troubleshooting, and IA/accreditation-grade documentation. The SME ensures the integrity, resilience, and performance of mission-critical CALEA networks and collaborates closely with Systems, Virtualization, Storage, and Field Engineering teams to ensure end-to-end operational success. This position supports DHS's mission while contributing to Harmonia's overarching goals: delivering premier technology services, driving mission-focused innovation, sustaining organizational excellence, and being an employer of choice for skilled professionals. Responsibilities Network Architecture & Design Design, document, and maintain CALEA network architecture, including: Layer 2/Layer 3 topology IP address schema and subnetting VLAN/VRF segmentation Routing design (OSPF, BGP, EIGRP, static routing) Firewall zoning, NAT policies, and security segmentation VPN tunnels, encrypted transport paths, and PKI integrations COOP/DR network routing and failover paths Produce and maintain authoritative network diagrams, data flows, trust boundaries, and configuration baselines. Evaluate, recommend, and implement enhancements to improve security, availability, and performance. Network Operations & Troubleshooting Serve as the primary network engineer for diagnosing, resolving, and preventing outages across the CALEA enterprise. Perform packet-level analysis (Wireshark/tcpdump), flow analysis, and log correlation to identify and remediate issues. Lead network upgrades, configuration changes, ACL/policy adjustments, and planned maintenance. Monitor network performance and availability; tune routing, firewall, and VPN parameters as needed. Firewall, Security & Accreditation Support Engineer and maintain firewall policies and segmentation (Palo Alto preferred; Fortinet/Cisco ASA experience acceptable). Support security hardening, vulnerability remediation, and IA/ATO documentation requirements. Produce accreditation-ready artifacts, including boundary diagrams, data-flow representations, rule documentation, and enclave segmentation maps. Collaborate with ISSO and security teams to address findings and strengthen compliance posture. Interoperability & Cross-Domain Integration Document and support network dependencies across Active Directory, DNS/DHCP, VMware/vSphere, SAN/iSCSI/NFS storage, and application tiers. Validate end-to-end system functionality after network changes. Partner with Systems, Virtualization, Storage, and Field SMEs to maintain seamless operations across CALEA sites. COOP/DR & Lab Engineering Contribute to COOP/DR planning, design, and testing to ensure high availability and rapid failover capabilities. Support lab environment setup for replication, patch validation, and network simulation. Documentation & Mission Coordination Maintain technical documentation, diagrams, IP plans, SOPs, and configuration repositories. Coordinate with Harmonia and ICE technical leads to resolve issues, support field operations, and sustain mission readiness. Required Qualifications Bachelor's degree in IT, Engineering, or related field OR +5 years equivalent experience. 10+ years of enterprise network engineering experience with increasing responsibility. Technical Proficiency Deep hands-on experience with: Cisco routing/switching (3k-9k platforms) Palo Alto or Fortinet firewalls and policy design VPN architecture, IPsec tunneling, PKI integration Network segmentation using VLANs, VRFs, and security zones Packet capture and analysis Network monitoring and telemetry tools (SolarWinds, NetFlow, Splunk, etc.) Demonstrated ability to produce complete network diagrams and architecture documentation based solely on device configuration, logs, and analysis. Strong understanding of cross-domain interactions (DNS, AD, VMware networking, SAN connectivity). Preferred Certifications CCNA, CCNP Enterprise, or CCNP Security PCNSE Fortinet NSE4/NSE5 CCIE-level competency (or equivalent expertise) Additional certifications may be required after hire and must be obtained within designated timelines. Professional Competencies Excellent communication skills with both technical and non-technical stakeholders. Proven ability to work independently in high-pressure, mission-critical environments. Strong analytical, investigative, and documentation skills. Preferred Experience Experience supporting federal law enforcement IT systems or CALEA-aligned mission operations. Hands-on participation in COOP/DR architecture or failover site execution. Experience with VPN transitions, network segmentation, and multi-site resiliency. Familiarity with Kubernetes/container environments (e.g., JSI platforms). Experience supporting 24/7 high-availability operations. Soft Skills Strong initiative and attention to detail. Adaptability to evolving mission requirements and operational tempo. Collaborative approach with technical teams, vendors, and government partners. Alignment with Harmonia's principles of excellence, collaboration, curiosity, and integrity. Physical Demands / Work Environment Must regularly lift/move up to 50 lbs.; occasionally up to 80 lbs. using a hand truck or lift cart. Requires standing, kneeling, crouching, and navigating server-room environments. Normal vision and hearing required; moderate server-room noise.
    $70k-94k yearly est. 3d ago
  • Network Operations Engineer

    Lexmark 4.9company rating

    Remote network security consultant job

    Lexmark is now a proud part of Xerox, bringing together two trusted names and decades of expertise into a bold and shared vision. When you join us, you step into a technology ecosystem where your ideas, skills, and ambition can shape what comes next. Whether you're just starting out or leading at the highest levels, this is a place to grow, stretch, and make real impact-across industries, countries, and careers. From engineering and product to digital services and customer experience, you'll help connect data, devices, and people in smarter, faster ways. This is meaningful, connected work-on a global stage, with the backing of a company built for the future, and a robust benefits package designed to support your growth, well-being, and life beyond work. ** This role requires candidates to be onsite in Webster, CN 3+ days a week. Preference will be given to those applicants already within a commutable distance. We are in search of a Network Operations Engineer with a passion for designing, configuring, and enhancing a global enterprise network. The selected candidate will collaborate with multiple teams to ensure the implementation and maintenance of the enterprise network infrastructure and security policies. This role involves working with architects and business teams to ensure the confidentiality, integrity, and availability of the enterprise network and connected systems. The Network Operations Engineer will also be responsible for documenting procedures, coordinating implementations, and eliminating barriers to achieve desired outcomes. Additionally, they will liaise with other IT operation teams to resolve any network-related issues. The ideal candidate must possess robust communication skills and the ability to manage competing priorities effectively. Key Responsibilities: Configuration and diagnostics of network switches, routers, and load balancers. Execution of network configuration processes such as VLAN creation, route advertisements, firewall policy configurations, DNS record changes, IPAM network creation, network performance reports, network infrastructure hardening, circuit management, and software/hardware licensing. Creation of logical diagrams, datacenter diagrams, and network operational procedures. Development and use of automation to execute repeatable tasks and processes. Coordination of high-impact infrastructure changes and outages during on and off-hours. Collaboration with architecture and operational teams providing design feedback, process improvement opportunities, and potential solution enhancements. Act as the escalation contact for the network operations and incident managers. Light travel may be required to deliver certain projects. Be an advocate and change leader for network, security, and operational initiatives with a goal of improving the overall culture. Qualifications: Bachelor's degree in computer engineering or related field 3-5 years of network and security experience Knowledge of LAN, WAN, VLAN, Wireless, and VoIP networking technologies. Knowledge of routing protocols to include Border Gateway Protocol (BGP), Open Shortest Path First (OSPF), and Enhanced Interior Gateway Routing Protocol (EIGRP). Knowledge of network services, including DNS, DHCP, IPAM, SNMP, IPSec, NetFlow. Knowledge of Secure Access Service Edge (SASE) and Network Access Control (NAC) technologies. Knowledge of scripting and automation languages (Python). Experience configuring Fortinet, Cisco, Infoblox, Zscaler, Checkpoint, Palo Alto, Juniper, and Bind technologies. Familiar with NIST CSF, CIS, and ISO 27001 information security frameworks. Advanced troubleshooting and diagnostic skills. Excellent verbal and written communication skills. Proven ability to lead and manage multiple priorities with proven organizational skills with the ability to manage multiple tasks with changing priorities. Strong ability in multiple technologies, analytical techniques, and leadership skills. Familiar with IT operational processes (Event, Incident, Change, Problem, ITSM), development frameworks (Agile, SAFe), and service management frameworks (ITIL). Preferred Certifications: CompTIA + Certifications (Network+, Security+) Cisco Certifications (CCNA, CCNP) #LI-JR1 How to Apply ? Are you an innovator? Here is your chance to make your mark with a global technology leader. Apply now! We are proudly an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based on race, color, religion, gender, national origin, protected veteran status, disability status, sexual orientation, gender identity or expression. Global Privacy Notice Lexmark is committed to appropriately protecting and managing any personal information you share with us. Click here to view Lexmark's Privacy Notice.
    $74k-98k yearly est. Auto-Apply 1d ago
  • Cyber Network Operations Engineer (TS/SCI w/ Poly)

    Sixgen, Inc. 4.1company rating

    Remote network security consultant job

    SIXGEN's mission is to deliver agile, mission-ready cybersecurity solutions that empower government and critical infrastructure organizations to stay ahead of advanced cyber threats. We combine innovation, deep expertise, and cutting-edge capabilities to uncover vulnerabilities, protect vital systems, and ensure operational superiority in an ever-evolving digital landscape. POSITION OVERVIEW Position: CNO Engineer Job Type: Full Time Location: Onsite - Ft Meade, MD Clearance Requirements: TS/SCI & Poly (MUST HAVE) Travel: Up to 10% ABOUT THE TEAM SIXGEN supports missions by serving government and commercial organizations as they overcome global cybersecurity challenges. In this position, you'll provide meaningful support to our customer's missions and operations. You'll work alongside a team of highly skilled operators who are dedicated to using innovative processes, tools, and techniques to get things done. WHAT YOU'LL DO Develop Windows applications using Visual Studio or .Net environments UNIX experience Provide/author documentation and software readiness reviews Design end-to-end data flow and tasking for CNO tools developed Debug software and troubleshoot issues Provide/author and participate in technical presentations or assigned projects REQUIRED QUALIFICATIONS US Citizen with a US Government Security clearance and a Full Scope Polygraph Bachelor's degree or 10+ years relevant experience 4+ years experience Strong Proficiency with C, C++, Python, Java, and/or Perl In depth understanding of OS internals In depth understanding of network protocols Knowledge of common CNO techniques Familiarity with modern software engineering techniques COMPENSATION & BENEFITS $175,000 - $265,000 USD The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. The final salary offer will be determined after a thorough review of the candidate's background and alignment with the role. Additionally, SIXGEN offers top-tier benefits for full-time employees, including: Employer-paid health insurance premiums (medical, dental, vision) for you and your family Employer-paid short/long term disability insurance and basic life/AD&D insurance 401K with a 4% employer contribution Professional development reimbursement options available (training, certification, education, etc) Flexible and remote work policies for most positions Flexible PTO and holiday schedule OUR COMMITMENT SIXGEN is an Equal Opportunity Employer. We ensure that all applicants are considered for employment without regard to race, color, religion, sexual orientation, gender identity, national origin, disability, age, marital status, ancestry, projected veteran status, or any other protected group or class. We are committed to fostering an inclusive culture that values diversity in our people, reflecting the communities we serve and our customer base. We strive to attract and retain a diverse talent pool and create an environment where everyone is empowered to be their authentic selves at work.
    $83k-116k yearly est. Auto-Apply 60d+ ago

Learn more about network security consultant jobs

Browse computer and mathematical jobs