Senior Network Engineer

Technica Corporation
Sterling, VA, United States
26 days ago

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$174,000.0 - $210,000.0
Working hours
Regular working hours

Tech stack

Access Network Systems Engineering Audit Trail Microsoft Azure Microsoft Online Services Configuration Management Cyber Security Data Security Software Design Documents Network Address Translation Electronic Data Interchange (EDI) Firmware
+26 more
Networking Hardware Virtual Private Networks (VPN) Network Security Network Architecture Routing Network Segmentation Public Key Infrastructure Remote Access Technology Remote Administration Cloud Services Zero Trust Network Access Security Information and Event Management Software Engineering Vault (Revision Control System) Data Streaming Software Vulnerability Management Data Logging Network Access Control Connectivity Problems HybridCloud Firewalls (Computer Science) Wired Networks Information Technology Microsoft Sentinel Firewall Services Module Open Network Automation Platform

Job description

Technica is looking for a Senior Network Engineer to support the design, implementation, integration, hardening, testing, and documentation, and operational transition of network and infrastructure security solutions. The engineer will serve as a hands-on technical resource, implementing secure connectivity, VPN services, network segmentation, Zero Trust-aligned access controls, Palo Alto firewall capabilities, Azure and GCC High-aligned network security, manufacturing isolation, customer-site connectivity, logging integration, and site implementation support.

The Network Engineer will work as part of an integrated team spanning cybersecurity, cloud, endpoint, SOC/SIEM, compliance, and manufacturing protection, supporting commercial, CUI, restricted manufacturing, vault, customer-site, and future federal-site operating environments. The role requires practical network engineering experience, strong security implementation skills, familiarity with regulated environments, and the ability to produce maintainable, well-documented configurations suitable for sustainment, audit readiness, and transition to managed operations.

Responsibilities

  • Lead the engineering, design refinement, implementation, qualification testing, and technical deployment of a modernized wired network infrastructure.
  • Design and implement secure network connectivity across corporate, CUI, customer-site, Azure-hosted, GCC High-aligned, and future manufacturing locations.
  • Support VPN architecture, configuration, testing, and sustainment for user remote access, site-to-site connectivity, customer-site access, and future manufacturing site deployments.
  • Implement network segmentation controls that separate commercial, CUI, restricted manufacturing, vault, administrative, VDI, ERP, partner/customer, and security monitoring environments.
  • Support Zero Trust network architecture and policy design by enforcing least-privilege access, deny-by-default traffic patterns, controlled administrative pathways, and documented business-approved data flows.
  • Configure and support Palo Alto virtual firewalls in commercial Azure and GCC High-aligned environments, including firewall policies, security profiles, NAT, routing, VPN, management access, logging profiles, and rule documentation.
  • Develop and maintain firewall rule sets that are traceable to business requirements, system owners, approved traffic flows, risk decisions, and change control records.
  • Support secure remote access patterns for employees, administrators, engineering users, CUI users, and approved customer-site personnel.
  • Coordinate with identity, endpoint, and Microsoft cloud teams to ensure network access policies align with MFA, Conditional Access, device compliance, role-based access, VDI, and user authorization requirements.
  • Support user isolation through dedicated network zones, restricted access paths, secure administrative access, and approved data exchange patterns.
  • Support network access control planning and implementation, including device authorization assumptions, remote access restrictions, segmentation enforcement, and visibility into connected assets.
  • Implement secure site connectivity for operational locations.
  • Coordinate with Microsoft Sentinel/SOC/SIEM teams to forward firewall, VPN, network device, remote access, administrative, and threat telemetry into centralized logging and monitoring workflows.
  • Develop network logging and telemetry handoff documentation, including log source inventory, event types, forwarding methods, validation steps, and monitoring use cases.
  • Support incident response and operational troubleshooting for VPN failures, firewall policy issues, site connectivity problems, suspicious network events, remote access anomalies, and segmentation violations.
  • Participate in vulnerability remediation coordination for network devices, firewalls, VPN components, firmware, virtual appliances, and Azure network security components.
  • Develop and maintain network architecture diagrams, firewall policy documentation, VPN design documents, segmentation matrices, traffic flow diagrams, as-built configurations, test results, and administrator runbooks.
  • Support CMMC/NIST SP 800-171 readiness by producing implementation evidence for network access control, system and communications protection, audit logging, configuration management, vulnerability remediation, and security assessment activities.
  • Work closely with the Program Management Office, security architect, cloud engineers, endpoint engineers, SOC/SIEM team, manufacturing stakeholders, compliance team, and system owners to meet schedule, security, and documentation objectives.

The position will be based in Sterling, VA, or at other select locations as required by the contract and may support a hybrid work schedule. The final approved work schedule arrangement will be coordinated with the hiring manager. This position may require 10%-20% travel., At Technica Corporation, our goal is to provide exceptional professional services and innovative technology solutions that meet or exceed our customer’s expectations. We specialize in a wide range of advanced information technology solutions from Systems Engineering to Cyber Security, and from Software Development to Product Solutions. From our locations across the DC Metro area, Hampton, Virginia, and Huntsville, Alabama, we provide technological subject matter expertise, program management and business process knowledge as a trusted advisor in support of our Department of Defense and other Federal Agency customers.

Requirements

  • Bachelor’s degree in a technical-related field, or an equivalent combination of education and/or experience in a related field
  • Minimum of 12 years’ related experience
  • Experience designing secure network architectures for Microsoft GCC High, regulated Microsoft cloud environments, or FedRAMP-aligned cloud services.
  • Experience with Palo Alto virtual firewalls in Azure or hybrid-cloud environments.
  • Experience supporting VDI, secure remote administration, privileged access pathways, and restricted data access environments.
  • Experience with network automation, infrastructure-as-code, configuration backup, or repeatable site deployment templates.
  • Familiarization with DoD implementations, including cybersecurity standards, risk management framework, Security Technical Implementation Guides (STIGs), DoD PKI and certificate frameworks, and ATO .
  • Must be a U.S. Citizen and able to obtain a clearance

  • Experience supporting CMMC Level 2, NIST SP 800-171, Defense Industrial Base, aerospace, manufacturing, CUI, ITAR, or export-controlled environments.
  • Additional certifications such as Security+, Network+, CCNA, CCNP, CISSP, CCSP, or Azure Network Engineer Associate.
  • Strong oral and written communication skills

Benefits & conditions

The annual base salary range for this position is $174,000 - $210,000. Please note that the salary information is a general guideline only. Technica considers factors such as scope and responsibilities of the position, candidate’s work experience, education/training, key skills, location, as well as market and business considerations when extending an offer.

About the company

Technica’s EEO philosophy promotes equal employment opportunity throughout the organization. Any form of unlawful employee harassment based on the above mentioned characteristics is prohibited. Equal Opportunity Employer Minorities/Women/Vets/Disabled/Gender Identity/Sexual Orientation.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos ¡ LIVE

2:19 min

Orchestrating over-the-air firmware updates for vehicle modules

Denis Grahovac ¡ WWC 2021

3:56 min

Leveraging GitOps for AI auditing and instant rollbacks

Jaroslaw Gajewski Jaroslaw Gajewski ¡ WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira ¡ Coffee With Developers

1:51 min

Overview of the three Google Maps routing applications

Germån Álvarez ¡ LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 ¡ Coffee With Developers

Videos

See all

Related articles

See all