Network Security Engineer

Eliassen Group
Washington, DC, United States
14 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours

Tech stack

Private Networks Agile Methodology Cisco PIX Cyber Security Intrusion Detection Systems Virtual Private Networks (VPN) Network Security Network Architecture Zero Trust Network Access Identity Services Engine Network Access Control Computer Network Operations
+4 more
Palo Alto Networks Fortinet Cisco Unified Endpoint Management

Job description

As a Sr. Network Security Engineer III, you’ll provide hands-on expertise securing mission-critical networks for a high-visibility customer with the goal of making an impact across the federal government. Our team is responsible for designing, operating, and hardening complex security environments, and you’ll play a critical role in strengthening, scaling, and protecting these environments while enabling secure mission delivery across the organization.

If you think you can see yourself delivering our mission and pursuing our goals with us, then check out the job description below!

What you’ll do:

Design, implement, and manage firewalls, VPNs, IPS, and NAC solutions in mission-critical environments Secure network perimeters and internal network segments using defense-in-depth strategies Respond rapidly to security incidents, vulnerabilities, and operational needs with urgency and discipline Support continuous security hardening and improvement of network infrastructure Participate in Agile execution, technical planning, and security risk discussions Communicate security impacts, risks, and mitigation strategies clearly to technical and non-technical stakeholders Recommend and implement security architecture and operational improvements Serve as a hands-on technical SME, contributing immediately with minimal ramp-up Establish and maintain a high level of customer trust and confidence through reliable, secure delivery

Requirements

Apply creativity and engineering judgment to deliver practical, mission-focused security solutions Demonstrated subject matter expertise designing, implementing, and managing next-generation firewalls, VPN solutions, intrusion prevention systems, and network access control platforms. Hands-on experience securing network perimeters and internal network segments, including policy design, segmentation, and threat mitigation. Operational experience deploying and managing firewall rule sets, VPN tunnels, and security policies in mission-critical environments. Hands-on experience with at least one enterprise security platform, such as Palo Alto Networks, Fortinet, or Cisco security technologies. Hands-on experience with Cisco ISE and Cisco ASA environments. Hands-on experience with IDS and IPS solutions and endpoint configuration hardening in secure environments. Experience supporting Zero Trust architectures and identity-centric network security patterns. Ability to contribute immediately with minimal ramp-up in a mission-critical operational environment. What you’ll need to succeed:

Active Top Secret security clearance with SCI eligibility required. Required technical certifications include Security+ and at least one platform-specific security certification, such as PCNSE, Fortinet NSE, or a Cisco security certification. Possess DoD 8140 certification aligned to the 441 Network Operations Specialist work role, such as Network+, Security+, Cloud+, SSCP, CASP+, CISSP, or CCNP Security. 10+ years of experience in network engineering with a primary focus on enterprise network security infrastructure. Demonstrated subject matter expertise designing, implementing, and managing next-generation firewalls, VPN solutions, intrusion prevention systems, and network access control platforms. Hands-on experience securing network perimeters and internal network segments, including policy design, segmentation, and threat mitigation. Operational experience deploying and managing firewall rule sets, VPN tunnels, and security policies in mission-critical environments. Hands-on experience with at least one enterprise security platform, such as Palo Alto Networks, Fortinet, or Cisco security technologies. Hands-on experience with Cisco ISE and Cisco ASA environments. Hands-on experience with IDS and IPS solutions and endpoint configuration hardening in secure environments. Experience supporting Zero Trust architectures and identity-centric network security patterns. Bachelor’s degree in a technical field is preferred. Relevant experience may substitute for education requirements. Ability to contribute immediately with minimal ramp-up in a mission-critical operational environment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Fortinet firewall administrative passwords leaked on the dark net

Chris Heilmann +1 · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:38 min

Exploring developer resources for further API automation learning

Shweta Palande · LIVE

Videos

See all

Related articles

See all