VMware NSX Security Engineer / Administrator

PROLIM Global Corporation
United States
12 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Systems Engineering Microsoft Azure Border Gateway Protocol Cloud Computing Cyber Security Computer Networks System Configuration Deep Packet Inspection Disaster Recovery VMware ESX Servers Intrusion Detection Systems
+31 more
Python (Programming Language) Network Security Network Troubleshooting Log Analysis Network Configuration and Change Management Routing Network Segmentation Network Administration Network Virtualization Open Shortest Path First (OSPF) PowerCLI Windows PowerShell Zero Trust Network Access Security Information and Event Management Systems Integration TCP/IP VMware Infrastructure Virtual Local Area Networks Virtual Machines VMware VSphere Computer Network Technologies Firewalls (Computer Science) Infrastructure Automation Frameworks Palo Alto Networks Enterprise Integration Firewall Services Module Restful APIs Terraform Splunk Cisco Vmware

Job description

The VMware NSX Security Engineer / Administrator is responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware infrastructure., 1. Security Architecture & Micro-Segmentation

  • Design and enforce granular Distributed Firewall (DFW) and Gateway Firewall rules.
  • Implement micro-segmentation to isolate virtual machines and applications.
  • Prevent lateral east-west threat propagation across virtualized workloads.
  • Develop and maintain security policies aligned with Zero Trust principles., * Perform regular maintenance, scaling, upgrades, and patching of VMware NSX components.
  • Manage and maintain:
  • NSX Managers
  • Edge Nodes
  • Transport Nodes
  • Ensure system configurations remain secure, stable, and highly available.
  1. Infrastructure Automation
  • Develop and maintain Infrastructure-as-Code (IaC) solutions.
  • Create automation scripts to streamline security rule deployment and network configuration.
  • Utilize automation to improve consistency, operational efficiency, and disaster recovery readiness.
  1. Monitoring & Log Analysis
  • Monitor infrastructure health, capacity, and security events.
  • Analyze network and security logs using tools such as:
  • VMware Aria Operations (formerly vRealize)
  • VMware Aria Operations for Networks / Network Insight
  • Splunk
  • Other third-party SIEM platforms
  • Identify performance, connectivity, and security issues and assist with remediation.
  1. Cross-Team Collaboration
  • Collaborate with:
  • Systems Engineers
  • Network Administrators
  • Cloud Infrastructure Teams
  • Security Operations Center (SOC)
  • Troubleshoot connectivity and networking issues across physical and virtual network overlays.
  1. Incident Response Support
  • Support security incident response teams during active security events.
  • Perform deep-packet inspection and network-flow tracing.
  • Investigate suspicious network traffic and connectivity patterns.
  • Apply emergency isolation and security rules during active security incidents.

Requirements

  • Strong hands-on experience with:
  • VMware vSphere
  • VMware ESXi
  • VMware vCenter
  • VMware NSX-T / NSX
  • Strong understanding of NSX architecture, deployment, and administration.

Core Networking

  • Expert-level knowledge of:
  • BGP
  • OSPF
  • GENEVE / VXLAN
  • VLANs
  • TCP/IP
  • Strong understanding of network overlays, routing, switching, and network virtualization.

Firewall & Security

  • Strong knowledge of Layer 4-7 firewall rules.
  • Experience with Distributed Firewall (DFW) and Gateway Firewall.
  • Understanding of IDS/IPS technologies.
  • Strong knowledge of Zero Trust security concepts.
  • Experience with micro-segmentation and network security policies.

Automation & Scripting

  • Proficiency in one or more of the following:
  • PowerShell / PowerCLI
  • Python
  • Terraform
  • NSX REST APIs
  • Experience automating network and security configurations is highly preferred.

Third-Party Integration

  • Experience integrating VMware NSX with physical next-generation firewalls such as:
  • Palo Alto Networks
  • Check Point
  • Familiarity with cloud networking environments such as:
  • AWS
  • Microsoft Azure

Preferred Certifications

  • VMware Certified Professional - Network Virtualization (VCP-NV)
  • VMware Certified Advanced Professional - Network Virtualization (VCAP-NV) - Design or Deploy
  • Cisco Certified Network Associate (CCNA)
  • Cisco Certified Network Professional (CCNP)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Loading talks and stories from around this role…