Posted today
Secret
Senior Level Career (10+ yrs experience)
$140,000 - $165,000
IT - Networking
Radford, VA (Off-Site/Hybrid)
Title:
• Platform Network Engineer
Location:
• Radford, Virginia (Hybrid)
Clearance Required:
• Secret
Certification Required:
1) Security+ or IAT II equivalent AND
2) Must have (or obtain within 6 months of hire) a Computing Environment certification in a related field:
• Network relevant certification in Cisco(DCNX) or Palo Alto(PCNSE/PCCSE/NGFW)
• Certified Kubernetes Administrator (CKA).
• Red Hat Certified Specialist in OpenShift Administration.
• Certified Kubernetes Security Specialist (CKS).
• Other equivalent Kubernetes or container networking certifications.
Top Skills Required:
• Network Engineering, Underlay/Overlay, Kubernetes, Infrastructure as Code (IaC)
• Senior-level network engineering experience with at least five years of experience in implementing and troubleshooting IT infrastructure systems, specifically focusing on Kubernetes networking, containerized workloads, and configurations in enterprise environments.
• Experience in underly/overlay technologies such as VXLAN, GENEVE, and SD-WAN. Experience in out-of-cluster switching and firewalling platforms such as Cisco NXOS or Palo Alto NGFW.
• Experience with network automation tools (e.g., Ansible, Terraform), scripting languages (Python, Bash, etc.), packet captures, mTLS, service mesh, and routing protocols.
• Strong knowledge of Kubernetes network design, deployment and management concepts, including Container Network Interface (CNI) plugins (e.g., Calico, Cilium, OpenShift SDN), service discovery, ingress controllers, network policies, and DNS management within Kubernetes environments.
Desired Skills:
• Working knowledge of DoD Security Technical Implementation Guides (STIG) and the Information Assurance Vulnerability Management (IAVM) process, and/or industry hardening best practices and processes.
• Familiarity with Kubernetes-based platforms, such as Red Hat OpenShift, Rancher, or vanilla Kubernetes.
• Demonstrated expertise with automation and Infrastructure as code (IAC) concepts
Job Description:
• Work with Government engineers to develop and maintain the Kubernetes-based architecture.
• Develop, deploy, and maintain Infrastructure as Code (IaC) for the deployment and sustainment of the Kubernetes networking architecture in the project.
• As applications are hosted on the project solution, utilize IaC for the provisioning of the network foundation for customer namespaces and enclaves.
• Provide daily administration of the network, including patching and upgrading of all Kubernetes networking components (e.g., CNI plugins like Calico, Cilium, or OpenShift SDN) in coordination with the full Kubernetes ecosystem.
• Monitor the health and utilization of the network resources and notify the project Lead when critical issues arise, and additional resources will be required.
• Harden the network per cloud-native best practices and the required government cybersecurity controls.
• Troubleshoot and perform root cause analysis of any hosting platform network issues, including Kubernetes networking and containerized workloads.
• Develop and maintain system, infrastructure, and process documentation (e.g., system diagrams, network topology, Kubernetes configurations, device configurations, standard operating procedures).
• Provide on-call support for triage and resolution of after-hours production incidents.
• Make recommendations for improvements to security, scalability, manageability, and performance across the project Kubernetes network enclaves.
• This position requires an active DoD Clearance (Secret, Top Secret, Top Secret/SCI) or the ability to be obtain an (Interim Secret, Interim Top Secret)
• Because an active or interim DoD clearance is required, U.S. Citizenship is required
o Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:
Medical, dental & vision
Critical Illness, Accident, and Hospital
401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
Life Insurance (Voluntary Life & AD&D for the employee and dependents)
Short and long-term disability
Health Spending Account (HSA)
Transportation benefits
Employee Assistance Program
Time Off/Leave (PTO, Vacation or Sick Leave)
• Platform Network Engineer
Location:
• Radford, Virginia (Hybrid)
Clearance Required:
• Secret
Certification Required:
1) Security+ or IAT II equivalent AND
2) Must have (or obtain within 6 months of hire) a Computing Environment certification in a related field:
• Network relevant certification in Cisco(DCNX) or Palo Alto(PCNSE/PCCSE/NGFW)
• Certified Kubernetes Administrator (CKA).
• Red Hat Certified Specialist in OpenShift Administration.
• Certified Kubernetes Security Specialist (CKS).
• Other equivalent Kubernetes or container networking certifications.
Top Skills Required:
• Network Engineering, Underlay/Overlay, Kubernetes, Infrastructure as Code (IaC)
• Senior-level network engineering experience with at least five years of experience in implementing and troubleshooting IT infrastructure systems, specifically focusing on Kubernetes networking, containerized workloads, and configurations in enterprise environments.
• Experience in underly/overlay technologies such as VXLAN, GENEVE, and SD-WAN. Experience in out-of-cluster switching and firewalling platforms such as Cisco NXOS or Palo Alto NGFW.
• Experience with network automation tools (e.g., Ansible, Terraform), scripting languages (Python, Bash, etc.), packet captures, mTLS, service mesh, and routing protocols.
• Strong knowledge of Kubernetes network design, deployment and management concepts, including Container Network Interface (CNI) plugins (e.g., Calico, Cilium, OpenShift SDN), service discovery, ingress controllers, network policies, and DNS management within Kubernetes environments.
Desired Skills:
• Working knowledge of DoD Security Technical Implementation Guides (STIG) and the Information Assurance Vulnerability Management (IAVM) process, and/or industry hardening best practices and processes.
• Familiarity with Kubernetes-based platforms, such as Red Hat OpenShift, Rancher, or vanilla Kubernetes.
• Demonstrated expertise with automation and Infrastructure as code (IAC) concepts
Job Description:
• Work with Government engineers to develop and maintain the Kubernetes-based architecture.
• Develop, deploy, and maintain Infrastructure as Code (IaC) for the deployment and sustainment of the Kubernetes networking architecture in the project.
• As applications are hosted on the project solution, utilize IaC for the provisioning of the network foundation for customer namespaces and enclaves.
• Provide daily administration of the network, including patching and upgrading of all Kubernetes networking components (e.g., CNI plugins like Calico, Cilium, or OpenShift SDN) in coordination with the full Kubernetes ecosystem.
• Monitor the health and utilization of the network resources and notify the project Lead when critical issues arise, and additional resources will be required.
• Harden the network per cloud-native best practices and the required government cybersecurity controls.
• Troubleshoot and perform root cause analysis of any hosting platform network issues, including Kubernetes networking and containerized workloads.
• Develop and maintain system, infrastructure, and process documentation (e.g., system diagrams, network topology, Kubernetes configurations, device configurations, standard operating procedures).
• Provide on-call support for triage and resolution of after-hours production incidents.
• Make recommendations for improvements to security, scalability, manageability, and performance across the project Kubernetes network enclaves.
• This position requires an active DoD Clearance (Secret, Top Secret, Top Secret/SCI) or the ability to be obtain an (Interim Secret, Interim Top Secret)
• Because an active or interim DoD clearance is required, U.S. Citizenship is required
o Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:
Medical, dental & vision
Critical Illness, Accident, and Hospital
401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
Life Insurance (Voluntary Life & AD&D for the employee and dependents)
Short and long-term disability
Health Spending Account (HSA)
Transportation benefits
Employee Assistance Program
Time Off/Leave (PTO, Vacation or Sick Leave)
group id: 10105424
Accelerating IT transformation in the public sector