Illumio Zero Trust Engineer - Active TS/SCI with CI Poly

ENS Solutions, LLC
Washington, DC, United States
3 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Compensation
$92,300.0 - $166,850.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Amazon Web Services Microsoft Azure Bash Shell Cloud Computing Security Cloud Engineering Configuration Management Databases Cyber Security Linux Distributed Systems Hyper-V Python (Programming Language)
+19 more
Network Segmentation Windows PowerShell Ansible Zero Trust Network Access Runbook Security Information and Event Management Virtualization Technology Software Vulnerability Management Scripting Cloud Platform System Delivery Pipeline Infrastructure Automation Frameworks Information Technology Restful APIs Terraform Security Orchestration, Automation & Response Servicenow Vulnerability Analysis Vmware

Job description

Assist in the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments. Support the architecting and implementation of Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls. Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications. Integrate Illumio with SIEM, SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines. Conduct traffic flow analysis using Illumio VEN telemetry and assist in building policy recommendations to reduce attack surface and limit east-west movement. Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure. Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes. Perform lifecycle management, including upgrades, health checks, certificate operations, and policy governance. Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies. Contribute to architectural standards, documentation, and enterprise security playbooks., * Assist in the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.

  • Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.
  • Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.
  • Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
  • Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.
  • Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
  • Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.
  • Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.
  • Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.
  • Contribute to architectural standards, documentation, and enterprise security playbooks.

Requirements

  • 5+ years in cybersecurity, cloud security, or infrastructure engineering.

  • 3+ years of expertise in Linux/Windows systems, virtualization (VMware, Hyper-V), and cloud environments (AWS, Azure, or GCP).
  • 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments (finance, healthcare, federal, or energy).
  • 1+ year experience with infrastructure automation tools (Ansible, Terraform, or similar).
  • 1+ year experience with REST APIs, scripting (Python, Bash, PowerShell), or automation frameworks.
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, or Master’s degree and 1+ years of experience supporting IT projects and activities
  • Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support (CSSP-IS) Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of offer accept
  • Ability to obtain a DoD 8570 IAT Level III Certification such as SecurityX (formerly CASP+), CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, CCSP certification within 45 days of CSSP-IS date (or offer accept if candidate already has CSSP-IS Cert)., * Experience deploying and managing Illumio Adaptive Security Platform (ASP) in enterprise environments
  • Experience with CMDB systems such as ServiceNow, SIEM and SOAR tools, or vulnerability management platforms
  • Knowledge of Zero Trust principles, micro-segmentation, and lateral movement mitigation
  • Ability to translate policies into technical controls
  • Possession of strong analytical and problem-solving skills
  • Illumio certifications such as Illumio Platform Associate, Illumio Platform Specialist, Illumio Platform Expert, or Illumio Platform On-Prem PCE Administrator

Benefits & conditions

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
  • 401k Contribution from Day 1
  • PTO + 11 Paid Federal Holidays
  • Long & Short Term Disability Insurance
  • Group Term Life Insurance
  • Tuition, Certification & Professional Development Assistance
  • Workers’ Compensation
  • Relocation Assistance

Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · World Congress 2024

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all