> Markdown version of [/jobs/ext/3638875-cloud-network-security-engineer](https://www.wearedevelopers.com/jobs/ext/3638875-cloud-network-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Network Security Engineer - **Company:** NEW MISSION - **Location:** Bethesda, MD, United States - **Experience:** Expert - **Salary:** $175,000.0 - $200,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Computing Platforms, Microsoft Azure, Border Gateway Protocol, Cloud Computing, Cloud Computing Security, Configuration Management, CompTIA Security+, Computer Networks, System Configuration, Dynamic Host Configuration Protocol, Domain Name System (DNS), IP Address Management, IP Routing, Subnetting, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Log Analysis, Network Configuration and Change Management, Network Architecture, Networking Basics, Network Diagrams, Network Planning and Design, Network Monitoring, Routing, Windows PowerShell, Remote Access Technology, Aws Command Line Interface (CLI), Firewall Policy Management, TCP/IP, Network Switches, Cloud-native Network Functions (CNF), Load Balancing, Multi-Cloud, Azure Powershell, Firewalls (Computer Science), Cloudformation, Infrastructure Automation Frameworks, Palo Alto Networks, Bicep, Hardware Infrastructure, Elastic Beanstalk, Terraform, Azure Resource Manager, Cisco - **Published:** October 8, 2026 - **Apply:** https://www.thejobnetwork.com/job/f3a7ca34-bd68-4bf5-aaa9-591b04703ef8/cloud-network-security-engineer ## About the Role * Active Top Secret clearance with SCI eligibility. * U.S. citizenship required. * Bachelor's degree in a related technical field or equivalent professional experience. * 8+ years of overall network engineering experience. * 5+ years of hands-on experience configuring, administering, and troubleshooting cloud networking environments. * Strong understanding of networking fundamentals, including TCP/IP, routing, switching, DNS, DHCP, BGP, and VPN technologies. * CompTIA Security+ certification., * Hands-on experience with both Azure networking (VNets, subnets, NSGs, ExpressRoute, VPN Gateway, Azure Firewall) and AWS networking (VPCs, Transit Gateways, Site-to-Site VPN, Security Groups). * Experience troubleshooting complex hybrid connectivity between on-premises and multi-cloud environments. * Hands-on experience administering enterprise firewall platforms, particularly Palo Alto and Cisco, including policy configuration and firewall log analysis. * Experience with Infrastructure-as-Code technologies such as Terraform, Bicep, ARM templates, or CloudFormation. * Strong understanding of network security principles, including segmentation, least-privilege access, firewall policy management, and secure cloud connectivity. * Demonstrated ability to independently own and lead network engineering efforts within a complex customer environment. * Microsoft Certified: Azure Network Engineer Associate, Azure Administrator Associate, and/or AWS Certified Advanced Networking - Specialty. * Experience with multi-region or multi-cloud architectures utilizing technologies such as Azure Virtual WAN, Azure Front Door, AWS Transit Gateway, or AWS Direct Connect. * Experience with carrier cloud-connect or colocation solutions such as AT&T NetBond, Verizon Software-Defined Interconnect, Equinix, or Digital Realty. * Scripting and automation experience using PowerShell, Python, Azure CLI, or AWS CLI. * Familiarity with Trusted Internet Connection (TIC) 3.0 and Policy Enforcement Point (PEP) concepts. * Experience supporting federal government, regulated, or compliance-driven environments, including FedRAMP and NIST 800-53. ## Description We are seeking an experienced Cloud Network Security Engineer to own network connectivity between a federal government customer's on-premises infrastructure and its cloud environments, currently spanning Microsoft Azure and AWS. This is a fully onsite role in Washington, D.C. or Bethesda, MD. This is a senior, hands-on engineering role responsible for the configuration, troubleshooting, security, and lifecycle management of hybrid and multi-cloud network infrastructure. The engineer will serve as a primary technical bridge between the customer's on-premises network organization and cloud/platform teams. The ideal candidate combines deep traditional networking expertise with hands-on cloud networking and security experience and understands how network architecture, routing, security controls, and capacity constraints affect application and platform design., * Configure and maintain hybrid and multi-cloud networking components, including virtual networks, gateways, site-to-site VPNs, and dedicated circuit connectivity across Azure and AWS. * Manage technologies including Azure VNets, ExpressRoute, Virtual WAN, AWS VPCs, Transit Gateways, DNS, IPAM, load balancing, and private connectivity to platform services. * Configure and manage firewall and network security policies across cloud and enterprise platforms, including NSGs, Azure Firewall, Palo Alto, and Cisco. * Perform firewall policy configuration, log analysis, and troubleshooting of complex connectivity and security issues. * Design and optimize routing and traffic engineering using BGP, route tables, and user-defined routes, accounting for application traffic patterns, bandwidth constraints, and mission requirements. * Manage DNS configurations, including Azure DNS and Private DNS Zones, and IP address management across Azure environments. * Deploy and maintain Private Link and Private Endpoint configurations to secure connectivity to PaaS services. * Monitor network health, performance, availability, and security across on-premises and cloud environments. * Develop and maintain Infrastructure-as-Code (IaC) to enable repeatable, auditable network configuration and deployment. * Maintain network diagrams, technical documentation, and standard operating procedures. * Respond to and resolve network incidents within established SLAs and coordinate with telecommunications carriers and colocation providers when necessary. * Partner with security, infrastructure, application, and cloud teams to design network solutions for new workloads, migrations, and long-term multi-cloud initiatives.