user avatar

Cybersecurity Network Engineer

IPSecure

Posted today

Job Requirements

San Antonio, TX
Top Secret/SCI Polygraph Unspecified
Senior Level Career (10+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries

Job Description


Cybersecurity Network Engineer – TS/SCI Clearance Required – JBSA Lackland - San Antonio, TX

Job Description 


We are seeking an experienced Cybersecurity Network Engineer to support the design, integration, configuration, testing, and security of advanced network infrastructure within a lab-based engineering environment. This position requires a strong combination of traditional network engineering, cybersecurity, and modern software-defined networking experience.


The ideal candidate will have extensive hands-on experience with Cisco Application Centric Infrastructure (ACI), Software-Defined Networking (SDN), Cisco routing and switching, enterprise firewalls, IP addressing and subnetting, network segmentation, and virtualization technologies.


This position will work directly with engineering, cybersecurity, systems administration, and test teams to build, configure, secure, troubleshoot, and validate network architectures prior to deployment into operational environments.

Job Responsibilities 


  • Design, configure, integrate, secure, and troubleshoot enterprise network infrastructure within a lab and test environment.

  • Engineer and support Cisco ACI architectures, including APIC controllers, leaf/spine architectures, tenants, VRFs, bridge domains, endpoint groups (EPGs), contracts, and external connectivity.

  • Support Software-Defined Networking (SDN) technologies and network automation concepts used to centrally manage and secure network infrastructure.

  • Configure and troubleshoot Cisco routers and switches, including Layer 2 and Layer 3 networking.

  • Develop and maintain IP addressing and subnetting schemes, VLANs, VRFs, routing domains, and network segmentation strategies.

  • Configure and troubleshoot routing protocols such as BGP, OSPF, and static routing.

  • Engineer and support enterprise firewall and network security solutions, including security policies, access control rules, NAT, VPN connectivity, network segmentation, and traffic inspection.

  • Analyze network traffic and connectivity using packet captures, logs, monitoring platforms, and other network diagnostic tools.

  • Perform cybersecurity hardening of network infrastructure in accordance with applicable security requirements and organizational standards.

  • Identify network vulnerabilities, configuration weaknesses, unnecessary services, and segmentation issues and recommend appropriate remediation.

  • Support implementation of Zero Trust and defense-in-depth network architectures, including segmentation and least-privilege communications between systems and security zones.

  • Build and maintain representative network environments used for integration, testing, troubleshooting, cybersecurity validation, and engineering development.

  • Develop network diagrams, interface documentation, IP address plans, configuration documentation, test procedures, and engineering artifacts.

  • Conduct configuration testing and validation prior to implementation within production or mission environments.

  • Troubleshoot complex connectivity issues across routers, switches, firewalls, virtual networks, servers, and applications.

  • Coordinate with cybersecurity, systems, virtualization, application, and engineering teams to identify and resolve cross-domain infrastructure issues.

  • Support change management, configuration management, technical documentation, and engineering review processes.



Cisco ACI / SDN Requirements:


  • Candidates should possess hands-on experience with Cisco Application Centric Infrastructure (ACI) and software-defined networking concepts, including:



  • Cisco APIC administration and configuration

  • ACI leaf/spine architecture

  • Tenants and VRFs

  • Bridge Domains (BDs)

  • Endpoint Groups (EPGs)

  • Application Profiles

  • ACI Contracts and Filters

  • Physical and virtual domains

  • VLAN pools

  • External Layer 2/Layer 3 connectivity

  • L3Out configuration

  • Routing integration

  • Network segmentation and micro-segmentation

  • ACI troubleshooting and fault analysis

  • SDN policy-based networking

  • Network automation and programmable infrastructure concepts

  • Experience integrating ACI with virtualized environments, firewalls, external routing infrastructure, and traditional Cisco networks is highly desired.



Basic Qualifications


Security Clearance: Active TS/SCI  


Education: Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Systems, Engineering, or related discipline. Equivalent experience may be substituted. 


Certification: Security + and CCNA


Experience:


  • 10+ years of experience in network engineering, cybersecurity engineering, network security, or a related technical field.

  • Demonstrated hands-on experience configuring and troubleshooting enterprise routers, switches, and firewalls.

  • Demonstrated experience with Cisco ACI and Software-Defined Networking (SDN).

  • Strong understanding of IP networking, routing, switching, subnetting, VLANs, and network segmentation.

  • Experience supporting complex lab, integration, test, development, or production network environments.

  • Experience working with virtualized infrastructure.

  • Strong troubleshooting and root-cause analysis skills.

  • Ability to develop and maintain detailed technical and network documentation.



Preferred Qualifications


One or more of the following certifications:


  • Cisco CCNP Enterprise

  • Cisco CCNP Data Center

  • Cisco Certified DevNet Professional

  • Cisco ACI-focused training/certification



Benefits


Medical, Dental, Vision, Unlimited Vacation, Sick Leave, Paid Federal Holidays, Education and Certification Reimbursement Program, 401(k) retirement plan with safe harbor employer match after 3 months, Prepaid Legal Plan and Identity Protection Plan available, Accident Insurance, Critical Illness Insurance, and Hospital Indemnity Insurance available.

EEOC Statement


IPSecure does not discriminate based on race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. 

Apply for this Position


group id: 10230535

Similar Jobs


Job Category
IT - Hardware
Clearance Level
Top Secret/SCI
Employer
IPSecure