Cyber Security Engineer

Actalent
Germantown, MD, United States
5 days ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$79,040.0 - $130,000.0
Working hours
Regular working hours
Job source

Tech stack

Proxmox Active Directory Computing Platforms Signals Intelligence Complex Networks Cyber Security System Configuration Dynamic Host Configuration Protocol Disaster Recovery Domain Name System (DNS) Trunking Monitoring of Systems
+29 more
Storage Area Network (SAN) Virtual Private Networks (VPN) Network Security Network Troubleshooting Multicasting Network Architecture Networking Basics Network Planning and Design Routing Network Segmentation OpenVPN Remote Access Technology Systems Integration TCP/IP Virtual Local Area Networks Virtualization Technology Backup and Restore Wireless Access Point Wireless Networks Wi-Fi Technology Network Routers Sonicwall Firewalls (Computer Science) Information Technology Software Defined Radio TACACS+ Protocol Firewall Services Module Veeam Vmware

Job description

We are seeking a hands-on Cyber Security Engineer with strong network engineering expertise who enjoys designing, configuring, and securing modern networks while documenting solutions so others can support them. You will work closely with a small, tight-knit team to build secure, well-structured network architectures, enhance remote access capabilities, strengthen monitoring and security operations, and support virtualization and backup platforms in a demanding R&D and manufacturing environment., * Design, configure, and maintain firewall policies using SonicWall NSa and TZ series to ensure robust perimeter security and effective network segmentation.

  • Develop and implement layered network segmentation between LAN, server, Wi-Fi, and VPN environments to reduce risk and improve security posture.
  • Engineer and support enterprise Wi-Fi solutions, including RADIUS authentication and TACACS+ integration, to provide secure wireless access.
  • Integrate wireless and identity solutions with Active Directory to streamline user authentication and access control.
  • Configure and maintain captive portal and landing page workflows to manage guest and user access to wireless networks.
  • Modernize and optimize remote access solutions using OpenVPN and SonicWall SMA to deliver secure, reliable connectivity for remote users.
  • Redesign and modernize network architecture into a Core, Distribution, and Access layer model, improving scalability, performance, and manageability.
  • Configure core network components to handle routing, VLAN trunking, and VPN trunking, ensuring efficient and secure traffic flow.
  • Maintain and improve network and system monitoring using tools such as Lansweeper and Darktrace to detect issues and security threats proactively.
  • Support endpoint and security tooling, such as CrowdStrike, to enhance detection, response, and protection capabilities across the environment.
  • Configure and support virtualization platforms including VMware and Proxmox, as well as storage area networks (SANs), to ensure reliable infrastructure services.
  • Ensure and maintain system backups using Veeam, regularly validating backup integrity and recovery procedures.
  • Apply network security and hardening best practices across firewalls, switches, routers, Wi-Fi, and virtualized environments.
  • Troubleshoot complex networking issues involving TCP/IP, DNS, DHCP, VLANs, and Layer 1-7 concepts, including broadcast and multicast behavior.
  • Produce clear, comprehensive documentation for network designs, configurations, and operational procedures to support ongoing maintenance and knowledge sharing.
  • Collaborate closely with team members in a security-minded, team-first environment to deliver reliable solutions that meet mission-critical requirements., This role is based on-site in an R&D and manufacturing environment in Germantown, MD, supporting mission-critical systems that operate in demanding field conditions. You will work closely with a small, collaborative engineering team, interacting with both hardware and software platforms, including network infrastructure, virtualization systems, and specialized communications technologies. The environment emphasizes reliability, performance, and security, with a strong focus on disciplined engineering practices, thorough documentation, and continuous improvement of network and security operations.

Requirements

  • Minimum of 3 years of cyber security experience with a focus on network security and hardening.
  • Strong, hands-on networking fundamentals, including deep understanding of the TCP/IP stack, DNS, DHCP, VLANs, and Layer 1-7 concepts.
  • Experience troubleshooting broadcast and multicast behavior in complex network environments.
  • Proven ability to configure firewalls, switches, routers, and enterprise Wi-Fi solutions.
  • Practical experience designing and implementing firewall policies, preferably with SonicWall NSa and TZ series.
  • Experience with layered network segmentation across LAN, server, Wi-Fi, and VPN environments.
  • Hands-on experience with enterprise Wi-Fi security, including RADIUS authentication and TACACS+.
  • Ability to integrate network and identity solutions with Active Directory for centralized authentication and access control.
  • Experience optimizing remote access solutions using technologies such as OpenVPN and SonicWall SMA.
  • Knowledge of network architecture design, including Core, Distribution, and Access layers, routing, VLAN trunking, and VPN trunking.
  • Experience with monitoring and security operations tools such as Lansweeper and Darktrace.
  • Familiarity with endpoint security tooling, for example CrowdStrike or similar platforms.
  • Hands-on experience configuring and supporting virtualization platforms such as VMware and Proxmox.
  • Experience managing and supporting SAN storage environments.
  • Proficiency with backup and recovery solutions, specifically Veeam, including configuration and maintenance of backup jobs.
  • Security-minded approach with a strong focus on risk reduction, best practices, and operational resilience.
  • Collaborative, team-first attitude with the ability to work effectively in a small, focused engineering team.
  • Strong orientation toward documentation, with the ability to write clear “how-to” guides and technical documentation.
  • Eligibility to obtain a TS/SCI clearance for work involving sensitive and mission-critical systems.

Additional Skills & Qualifications

  • Experience working in environments that support high-performance, mission-critical systems.
  • Familiarity with SIGINT, EW, or communications-related products and systems is beneficial.
  • Understanding of software-defined radio (SDR) platforms and multi-channel RF transceiver concepts is a plus.
  • Appreciation for SWaP-C (Size, Weight, Power, Cost) considerations in system design and deployment.
  • Ability to operate effectively in an R&D and manufacturing setting where hardware and software integration is common.
  • Strong written and verbal communication skills for collaboration and documentation.
  • Ability to remain steady and focused in a high-responsibility environment with demanding mission requirements.

Benefits & conditions

This is a Contract to Hire position based out of Germantown, MD.

Pay and Benefits

The pay range for this position is $38.00 - $62.50/hr.

Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: * Medical, dental & vision * Critical Illness, Accident, and Hospital * 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available * Life Insurance (Voluntary Life & AD&D for the employee and dependents) * Short and long-term disability * Health Spending Account (HSA) * Transportation benefits * Employee Assistance Program * Time Off/Leave (PTO, Vacation or Sick Leave)

Workplace Type

About the company

Actalent is a global leader in engineering and sciences services and talent solutions. We help visionary companies advance their engineering and science initiatives through access to specialized experts who drive scale, innovation and speed to market. With a network of almost 20,000 consultants and 5,000 clients across the U.S., Canada, Asia and Europe, Actalent serves many of the Fortune 500. We are proud to be an Engineering News-Record (ENR) Top 500 Design Firm for our engineering design services and a ClearlyRated Best of Staffing® winner for both client and talent service.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · WWC 2025

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · WWC 2024

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all