Illumio Network Security Engineer

VACO LLC
Addison, TX, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$208,000.0 - $312,000.0
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Application Programming Interfaces (APIs) Application Layers Automation of Tests Bash Shell Border Gateway Protocol Cloud Computing Cyber Security Computer Networks Data Centers Subnetting Virtual Private Networks (VPN) Python (Programming Language)
+29 more
Network Security Network Troubleshooting Network Planning and Design Network Monitoring Routing Network Segmentation Packet Analyzer Citrix Systems Open Shortest Path First (OSPF) Windows PowerShell Zero Trust Network Access Runbook Software Deployment Virtual Local Area Networks Wide Area Networks Network Switches Network Routers Scripting Google Cloud Load Balancing System Availability Firewalls (Computer Science) Templating Palo Alto Networks Cloud Migration Terraform Open Network Automation Platform Citrix Netscaler Vmware

Job description

Vaco is currently seeking an Illumio Network Security Engineer for a 6M Contract opportunity that is remote. The Illumino Network Security Engineer will support a key client in a large-scale migration from OnPrem VMware to Google Cloud VMware Engine (GCVE). The Illumio Network Security Engineer is directly involved in client-facing and must possess a strong, hands-on doer mentality while simultaneously owning the design, implementation, and operations across data center and GCP cloud environments.

  • Network Security Transformation - Migrating from Traditional Firewalls to Illumio Host-Based Micro-Segmentation
  • Load Balancer Modernization - Transitioning From NetScaler / Citrix ADC to F5 for Application Delivery
  • Cloud Firewall Operations - Supporting Palo Alto Networks Firewalls Deployed within GCP Environments
  • Network / Security Architecture - Leading Design / Implementation / Optimization of Enterprise Network / Security Architecture Across OnPrem / GCP Environments
  • Micro-Segmentation / Policy Management - Owning Full Lifecycle of Illumio Policy Creation / Maintenance (Allow/Deny Rules / Segmentation Strategy / Testing / Change Management)
  • Firewall Engineering - Engineering / Deploying / Supporting Palo Alto Networks Firewalls / Panorama (Security Policy / NAT / VPN / Content Security Services)
  • Load Balancing / ADC - Designing / Operating / Troubleshooting F5/NetScaler / Citrix ADC Solutions for Application Delivery
  • Cloud Migration / Transformation - Supporting Lift-and-Shift Migration from OnPrem VMware to GCVE (Firewall / Load Balancer Transitions, etc.)
  • Network Troubleshooting - Diagnosing Complex L2-L7 Issues Packet Captures / Logs / Flow Data Across Network / Firewall / Application Layers
  • Monitoring / Incident Prevention - Proactively Monitoring Network / Security Platforms to Identify Risks / Performance Issues / Drive Remediation
  • Automation / Scripting - Developing Scripts / Tooling to Automate Tasks / Validate Configurations / Remediate Network Issues
  • Infrastructure as Code - Contributing to IaC / Automation Efforts Using Terraform and Related Tooling
  • Cross-Functional Collaboration - Partnering with Security / Cloud / Application Teams to Translate Requirements into Resilient Network Designs
  • Documentation / Knowledge Sharing - Creating / Maintaining Technical Documentation / Runbooks / Architecture Diagrams, Vaco by Highspring and its parents, affiliates, and subsidiaries (“we,” “our,” or “Vaco by Highspring”) respects your privacy and are committed to providing transparent notice of our policies.
  • California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here.
  • Virginia residents may access our state specific policies here.
  • Residents of all other states may access our policies here.
  • Canadian residents may access our policies in English here and in French here.
  • Residents of countries governed by GDPR may access our policies here.

Requirements

  • Illumio / Micro-Segmentation - Designing / Implementing Allow/Deny Policies / Micro-Segmentation Strategies / Associated Workflows
  • Network Engineering (fundamentals) - Applying Strong Enterprise Routing / Switching Knowledge (BGP / OSPF / VLANs / VRFs / High Availability / QoS)
  • Firewall / Security Platforms (deep experience) - Leveraging Palo Alto Firewalls / Panorama in Enterprise Environments
  • Load Balancing / ADC - Utilizing F5 / NetScaler / Citrix ADC for L4-L7 Load Balancing / Application Delivery
  • Troubleshooting / Problem Solving - Diagnosing Ambiguous / Cross-Domain Issues / Strong Critical Thinking Under Pressure
  • Automation / Scripting - Building Repeatable Workflows using Python / PowerShell / Bash and Network / Security APIs
  • Infrastructure as Code - Managing Network / Security Infrastructure using Terraform Across OnPrem / GCP
  • Network Automation (applying concepts) - Templating / Idempotency / Configuration Validation / Automated Testing
  • GCP Networking - Designing / Supporting GCP Networking (VPCs / Subnets / Firewalls / Cloud Router / VPN / Interconnect / Load Balancers / Hybrid Connectivity)
  • Communication - Effectively Communicating Technical Designs / Tradeoffs / Troubleshooting Findings Clearly to Technical / Non-Technical Stakeholders

PREFERRED (not required)

  • Certifications - PCNSE / CCNP / CCIE / F5 / GCP Professional Network Engineer, etc.
  • Public Cloud / Modern Networking - Additional Public Clouds / SD-WAN / Zero Trust Network Architectures

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

2:50 min

Introduction and the value of runbooks

Hila Fish · WWC 2023

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · WWC 2025

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · WWC Europe 2026

Videos

See all

Related articles

See all