> Markdown version of [/jobs/ext/3563716-network-security-tools-engineer](https://www.wearedevelopers.com/jobs/ext/3563716-network-security-tools-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Network Security Tools Engineer - **Company:** Leidos, Inc. - **Location:** Suitland-Silver Hill, MD, United States - **Experience:** Expert - **Salary:** $107,900.0 - $195,050.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Proxy Servers, Microsoft Azure, Bash Shell, Cloud Computing, Complex Networks, Cyber Security, Computer Networks, System Configuration, Dynamic Host Configuration Protocol, Linux, Domain Name System (DNS), Hypertext Transfer Protocols (HTTP), Intrusion Detection and Prevention, Intrusion Detection Systems, Python (Programming Language), Network Security, Routing, Packet Analyzer, Network Administration, Windows PowerShell, Runbook, Security Software, Security Information and Event Management, TCP/IP, Wireshark, Scripting, Computer Networking Systems, Google Cloud, In-Plane Switching (IPS), Data Ingestion, Firewalls (Computer Science), Falcon Platform, Information Technology, Palo Alto Networks, Microsoft Sentinel, Splunk, Cisco, Security Orchestration, Automation & Response - **Published:** October 3, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9213964/network-security-tools-engineer ## About the Role * Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related technical discipline with 8+ years of relevant professional experience or a Master's degree with 6+ years of relevant professional experience. Equivalent practical experience may be considered in lieu of a degree, as permitted by contract requirements. * Active TS/SCI security clearance in DISS. * Hands on experience supporting information security, network administration, cybersecurity engineering, or enterprise security tools. * Strong understanding of networking concepts and protocols, including TCP/IP, DNS, DHCP, HTTP/S, routing, and network security architecture. * Experience administering or supporting enterprise cybersecurity technologies such as Splunk, Microsoft Sentinel, Elastic, CrowdStrike, Palo Alto Networks, Wireshark, SteelCloud, or similar platforms. * Experience working with network and enterprise operating systems, including Linux and Windows. * Experience troubleshooting complex network, system, or cybersecurity tool issues. * Ability to work effectively with technical teams in a mission critical enterprise environment. Required Certifications: * Active DoD 8570 compliant industry certification listed under CSSP Infrastructure Support such as SecurityX, CISSP, CASP, etc., or the ability to obtain the required certification within 30 days of hire., * Vendor specific certifications from Cisco, Palo Alto Networks, Splunk, or similar technology providers. * Experience with IDS/IPS, SIEM, endpoint detection and response, firewalls, packet capture, network visibility, or security orchestration technologies. * Experience with scripting or automation using Python, PowerShell, Bash, or similar technologies. * Familiarity with cloud networking and security controls within AWS, Azure, or Google Cloud Platform environments. * Experience integrating cybersecurity tools with automation or Security Orchestration, Automation, and Response platforms. * Experience supporting cybersecurity operations or Security Operations Center environments. ## Description Leidos is seeking an experienced Network Security Tools Engineer to join our cybersecurity team in Suitland, MD. This position will support the security technologies and infrastructure that provide visibility, monitoring, detection, and protection across a mission critical enterprise environment. In this role, you will be responsible for the administration, engineering, optimization, integration, and troubleshooting of enterprise network security tools and platforms. You will work closely with cybersecurity operations, network engineering, and other technical teams to ensure security tools remain available, properly configured, and capable of providing reliable data to support threat detection and incident response. The ideal candidate will bring a strong combination of networking and cybersecurity experience, along with hands on experience supporting enterprise security technologies such as SIEM, IDS/IPS, firewalls, endpoint security, packet capture, and network visibility solutions. Primary Responsibilities * Deploy, configure, administer, upgrade, and maintain enterprise network security tools and platforms, including SIEM, firewalls, proxy servers, packet capture solutions, IDS/IPS, endpoint security, and network visibility technologies. * Monitor the health, availability, performance, and data ingestion of cybersecurity tools to ensure continuous visibility across the enterprise environment. * Troubleshoot and resolve security tool performance, connectivity, integration, configuration, and data collection issues. * Support the integration of security technologies across enterprise networks, systems, and other cybersecurity platforms. * Collaborate with Security Operations Center teams to optimize security tools, tune detection capabilities, reduce false positives, and improve the quality of security alerts. * Provide technical support during cybersecurity incidents and service outages, including troubleshooting issues affecting security monitoring and data collection. * Support the integration and automation of cybersecurity tools using scripting and orchestration technologies. * Analyze network and security telemetry to identify gaps, performance issues, and opportunities to improve security visibility. * Maintain accurate technical documentation, including architecture diagrams, system configurations, runbooks, standard operating procedures, and asset inventories. * Collaborate with cybersecurity, network, systems, and engineering teams to support the continued operation and improvement of the enterprise security infrastructure.