Senior Network Engineer IRES - SSFB/HSV/FBEL

Amentum Services, Inc.
Arlington, VA, United States
4 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Compensation
$170,000.0 - $220,000.0
Working hours
Regular working hours

Tech stack

IEEE 802.1X Application Programming Interfaces (APIs) Agile Methodology Data Analysis Confluence JIRA Bash Shell Configuration Management Cyber Security Data Centers Dynamic Host Configuration Protocol Domain Name System (DNS)
+27 more
Network Interface Controllers Federal Information Processing Standards (FIPS) Internet Protocol Security (IP SEC) IP Address Management Python (Programming Language) Network Security Network Segmentation Network Virtualization Cisco Nexus Switches Ansible Zero Trust Network Access Software Deployment Systems Architecture VMware VSphere Wide Area Networks Scripting Network Access Control Load Balancing Nx-os HybridCloud Infrastructure Automation Frameworks SDN Network Terraform Devsecops Big Ip Cisco Vmware

Job description

As a Senior Network Engineer supporting the Next Generation Environment (NGE) on the Integrated Research and Development for Enterprise Solutions (IRES) contract, you will serve as a senior technical contributor responsible for engineering, configuring, implementing, and securing the high-speed data center fabrics and software-defined network enclaves underpinning the Missile Defense Agency’s (MDA) unified digital environment.

In this role, you will turn high-level architectural designs into resilient, automated network solutions by configuring Cisco Nexus Spine-Leaf EVPN-VxLAN fabrics, VMware NSX software-defined networks, Versa SD-WAN edge transport, F5 BIG-IP application delivery controllers, and Infoblox enterprise DDI services. You will collaborate across engineering, systems architecture, systems security, multi-contractor consortium performers, and Government stakeholder teams to deliver cohesive hybrid cloud and on-premises network transport.

You will play a key role in standardizing infrastructure automation, resolving complex tier-3/4 routing issues, enforcing Zero Trust boundaries, and ensuring continuous network compliance with DoD, DISA, and MDA security requirements.

Description of Duties

Data Center Fabric Engineering:

  • Configure, deploy, and administer Cisco Nexus (NX-OS) switches operating in high-performance Spine-Leaf topologies.

  • Build, maintain, and optimize EVPN-VxLAN virtual overlay networks, Multi-Site fabrics, vPC domains, and complex underlay routing baselines.

Software-Defined Networking & Micro-segmentation:

  • Deploy, configure, and manage VMware NSX components including NSX Edge nodes, Tier-0 and Tier-1 logical gateways, and distributed firewalls.

  • Implement policy-driven micro-segmentation rules within virtualized compute environments (vSphere/VCF) to isolate mission workloads and support multi-tenant enclaves.

Application Delivery & Load Balancing:

  • Deploy, configure, and maintain F5 BIG-IP physical and virtual appliances, specifically Local Traffic Managers (LTM) and Global Traffic Managers (GTM).

  • Author and troubleshoot custom F5 iRules, and configure virtual servers, load-balancing pools, health monitors, and secure SSL/TLS decryption profiles.

SD-WAN & Edge Connectivity:

  • Provision, deploy, and maintain Versa SD-WAN edge appliances (including Director, Analytics, and VOS) to establish secure transport across disparate WAN paths.

  • Configure secure tunneling, dynamic traffic steering rules, QoS queue policies, and security boundaries for remote sites and tactical test networks.

Core DDI & IPAM Administration:

  • Administer enterprise-wide IP Address Management (IPAM), authoritative internal DNS zones, and DHCP scopes utilizing Infoblox Grid Manager.

  • Support the automation of DNS records and IP allocation using Infoblox APIs integrated with Infrastructure-as-Code pipelines.

Zero Trust & Network Security Hardening:

  • Implement identity-aware access controls, 802.1X network access control (NAC), and FIPS-compliant cryptography tunnels (IPsec/MACsec).

  • Harden all network assets in accordance with DISA STIGs, Risk Management Framework (RMF) guidelines, and MDA cybersecurity requirements to support continuous ATO (cATO).

Consortium & Program Integration (Program-Facing):

  • Coordinate and collaborate directly with external contractor performers and systems administrators across the program consortium during joint integration events, lab setups, and production cutovers.

  • Author and execute comprehensive Low-Level Designs (LLDs), Interface Control Documents (ICDs), standard operating procedures (SOPs), deployment runbooks, and cutover plans.

Automation, DevSecOps & Scripting:

  • Develop and sustain Infrastructure-as-Code (IaC) playbooks and configuration management scripts (Ansible, Terraform, Python, Bash) to automate configuration deployments, perform validation checks, and remediate compliance drift.

Resumes, in month and year format, must be submitted with application in order to be considered for the position. The selected candidate may be assigned as an employee for one of our teammate companies.

Requirements

  • Must have 12, or more, years of general (full-time) work experience

o May be reduced with completion of advanced education

  • Must have 6, or more, years of directly related experience

  • Must have 1, or more, years of experience working in a management or leadership role

  • Must have demonstrated, hands-on, engineering and administration experience with:

  • Cisco Nexus (NX-OS) switches configured in Spine-Leaf / EVPN-VxLAN topologies.

  • VMware NSX software-defined network segmentation and gateway routing.

  • F5 BIG-IP LTM/GTM application delivery controllers.

  • Infoblox DDI/IPAM grid managers.

  • Versa SD-WAN enterprise solutions or equivalent software-defined WAN transport.

  • Must hold a current DoW 8140/8570 IAT Level II or higher certification (e.g., Security+ CE, CySA+, CASP+ CE, CISSP).

  • Must have an active DoW Secret security clearance with verified eligibility to obtain a Top Secret clearance (or active Top Secret).

  • Must have an active DoW Secret Security Clearance

Desired Requirements:

  • Active DoW Top Secret security clearance.

  • Professional-level network and platform certifications:

o Cisco Certified Network Professional (CCNP Enterprise or Data Center)

o VMware Certified Professional - Network Virtualization (VCP-NV) or VCAP-NV

o F5 Certified Technology Specialist (F5-CTS)

o Versa Certified SD-WAN Associate/Specialist

o Infoblox Core DDI Configurator Associate (CDCA)

  • Have practical experience scripting or automating network changes with Python, Ansible, or Terraform.

  • Have experience supporting the Missile Defense Agency (MDA), the IRES contract, or secure DISA networks.

  • Have experience with Agile/SAFe development methodologies and tools (Jira, Confluence).

This position will be posted for a minimum of 3 days. If a candidate has not been selected at that time, it will continue to be posted until a suitable candidate is selected or the position is closed.

Benefits & conditions

Our health and welfare benefits are designed to support you and your priorities. Offerings include:

  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retirement benefits (including 401(k) matching)
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance

Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O’Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:52 min

Addressing junior hiring bottlenecks and mitigating widespread employee burnout

Hung Lee Hung Lee +3 · World Congress 2026 Europe

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

2:11 min

Updating the delivery architecture with Jira and Tekton pipelines

Lian Li · World Congress 2022

Videos

See all

Related articles

See all