> Markdown version of [/jobs/ext/971533-network-access-engineer](https://www.wearedevelopers.com/jobs/ext/971533-network-access-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Network Access Engineer - **Company:** University of California, Davis - **Location:** Sacramento, CA, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Access, Private Networks, IEEE 802.1X, Access Network, Active Directory, User Authentication, Complex Networks, Cyber Security, Dynamic Host Configuration Protocol, Domain Name System (DNS), Intrusion Detection and Prevention, OSI Models, Network Security, Network Architecture, Networking Basics, Routing, Network Service, Network Administration, Public Key Infrastructure, Zero Trust Network Access, Systems Integration, Terminal Access Controller Access-Control System (TACACS), Virtual Local Area Networks, Wide Area Networks, Wireless Networks, Wi-Fi Technology, Identity Services Engine, Enterprise Software Applications, Network Access Control, Firewalls (Computer Science), Information Technology, Cisco Switches, Cisco - **Published:** June 9, 2026 - **Apply:** https://diversityjobs.com/career/17191882/Network-Access-Engineer-California-Sacramento ## About the Role * Required to hold a valid California driver's license, have a driving record that is in accordance with local policies/procedures, and/or enroll in the California Employer Pull Notice Program * Some college or vocational network training * Extensive experience (5+ years) working with Cisco Identity Services Engine (ISE) in medium to large enterprise environments. * Strong background designing, deploying, and supporting network access control (NAC) solutions using Cisco ISE. * Hands-on experience with 802.1X authentication, RADIUS, TACACS+, and general access-control policies for wired and wireless networks. * Experience building and managing ISE policies, including authentication/authorization rules, device profiling, guest access, and endpoint onboarding. * Expert knowledge and experience in network access policies, protocols, and best practice in an enterprise network, focusing on both external and internal network protection and threat detection, mitigation and response. * Expert knowledge and experience with the standards, protocols, installation and maintenance procedures of network security hardware and core network and network access technologies. * Advanced knowledge and experience with Cisco ISE and NAC as implemented on Cisco switches. * Highly developed analysis and problem solving skills to quickly assess complex problems, evaluate options, make a decision and resolve problems. * Advance knowledge and experience with network theory and technology * A deep understanding of the OSI model and the interconnection, crititical standards and complexities related to OSI layers 1 through 4. * Highly developed project management skills encompassing planning, purchasing, scheduling, installation, tracking, test and acceptance and problem resolution in a multi-vendor environment. * Highly developed organizational skills to manage multiple projects simultaneously. * Completing multiple tasks which may not be well defined and to work effectively with frequent interruptions and changing environment. * Demonstrated ability to communicate effectively on a technical level with other knowledgeable persons and solve technical problems. * Proven ability to work independently and generate innovative solutions to problems. * Advanced technical writing skills to document systems and procedures and develop work plans. * Demonstrated ability to train staff on highly technical concepts. * Familiarity with integrating ISE with other enterprise systems such as Active Directory, certificate services (PKI), MDM solutions, and network infrastructure (switches, wireless controllers, firewalls). * Ability to troubleshoot complex access issues involving users, devices, certificates, and switch/Wi-Fi configurations. * Solid networking fundamentals: switching, wireless, VLANs, routing basics, DHCP/DNS, and security best practices., * Experience with Cisco Catalyst Center (formerly DNA Center) or similar centralized management tools. * Experience automating or documenting NAC workflows (scripting is a plus but not required). * Prior work supporting NAC in specialized environments (research, IoT/OT, medical, or lab networks). * Experience leading migrations or upgrades of Cisco ISE environments. * Experience with Zero Trust or identity-based access models is strongly preferred., * Sustained attention and concentration - Frequent 3 to 6 Hours * Complex problem solving/reasoning - Frequent 3 to 6 Hours * Ability to organize & prioritize - Frequent 3 to 6 Hours * Communication skills - Frequent 3 to 6 Hours * Numerical skills - Occasional Up to 3 Hours * Constant Interaction - Occasional Up to 3 Hours * Customer/Patient Contact - Occasional Up to 3 Hours * Multiple Concurrent Tasks - Frequent 3 to 6 Hours ## Description Under general direction, the IT Network Access Engineer will provide advance level technical expertise and technical leadership in the area of IT security as it relates to UCDH networking (LAN, WAN, Wireless) and network access services as it relates to software defined access (SDA) and network access control (NAC). Incumbent has a primary responsibility for IT security operations, engineering and projects in new/existing environments. In consultation with the UCDH IT Security team, the IT Network Access Engineer will oversee design, installation and support functions, including coordination of projects and workflow, decision making authority on large system design and high-level problem-solving pertaining to IT Security for UCDH networks and network access services. The IT Network Security Access Engineer applies advanced technical knowledge and leadership to enterprise level network security specializing in IT Security, software defined access, network access control, network security best practices, and network access hardening for the UC Davis Health Sacramento campus. Working closely with the UCDH IT Security team and the IT Network Security Engineer, the IT Network Access Engineer is responsible for design, implementation, troubleshooting and support of access security, as well as any new security access required. The IT Network Access Engineer has independent responsibility for design and implementation of highly complex network security designs encompassing implementation, configuration, maintenance, and troubleshooting. Additional responsibilities include assisting with general Unified Communications departmental projects, support requirements, on-call assignments, projects and design/engineering efforts that impact the Enterprise WAN/LAN/Wireless., * 30% - Network Access Architect/ Engineering Design/Project Management * 30% - IT Security network and network services Implementation * 20% - IT Security network and network services Hardware Purchase and Maintenance * 10% - IT Security Network Administration * 10% - Cisco Core network/LAN services Administration ## Related Videos - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [What Makes Open Source Work: Licensing and Beyond](https://www.wearedevelopers.com/videos/1416-what-makes-open-source-work-licensing-and-beyond) - [Creating a routing app with Google Maps API from scratch](https://www.wearedevelopers.com/videos/831-creating-a-routing-app-with-google-maps-api-from-scratch) - [Your Infrastructure Is Not a Playground: AI Agents for Infra Done Right](https://www.wearedevelopers.com/videos/2084-your-infrastructure-is-not-a-playground-ai-agents-for-infra-done-right) - [Going Quantum: The future of the internet ...](https://www.wearedevelopers.com/videos/672-going-quantum-the-future-of-the-internet) ## Related Articles - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [What Makes WeAreDevelopers World Congress Different From Every Other Tech Event?](https://www.wearedevelopers.com/magazine/701-what-makes-wearedevelopers-world-congress-different-from-every-other-tech-event) - [Why Attend a Developer Event in 2026?](https://www.wearedevelopers.com/magazine/688-why-attend-a-developer-event-in-2026)