Network Engineer
SUMMARY:
We are seeking a highly skilled Network Engineer to support the implementation, operation, security, and optimization of a large-scale Cisco enterprise network environment. The ideal candidate will possess strong expertise in network engineering, routing and switching, network security, Zero Trust architecture, and infrastructure operations.
This role will be responsible for maintaining secure, reliable, and high-performing network services while supporting compliance with NIST security frameworks and organizational cybersecurity requirements. The Network Engineer will collaborate closely with cloud, Microsoft, cybersecurity, and infrastructure teams to ensure operational excellence and continuous improvement of enterprise networking capabilities.
EDUCATION:
Bachelor's degree, Information Technology, Computer Science, Network Engineering, Telecommunications, Cybersecurity, Or a related technical discipline
Master's degree (Preferred), Information Systems, Network Engineering, Cybersecurity, Or a related field
TECHNICAL SKILLS:
Cisco Routers and Switche
Cisco Catalyst and Nexus Platforms
Cisco Identity Services Engine (ISE)
Cisco Firepower
Cisco ASA Firewalls
TCP/IP
IPv4 and IPv6
VLANs
STP and VTP
BGP
OSPF
EIGRP
DNS
DHCP
VPN Technologies
802.1X Authentication
Network Access Control (NAC)
Network Segmentation and Micro-Segmentation
Zero Trust Architecture
Firewall Administration
Secure Remote Access Solutions
SIEM Integration
SolarWinds
Wireshark
Splunk
Microsoft Sentinel
Network Performance Monitoring Solutions
AWS Networking
Azure Networking
NIST SP 800-53
NIST SP 800-207 (Zero Trust Architecture)
NIST Risk Management Framework (RMF)
Strong analytical and troubleshooting abilities
Excellent verbal and written communication skills
Strong documentation and technical writing skills
Attention to detail and commitment to operational excellence
Ability to manage multiple priorities in a fast-paced environment
Strong understanding of cybersecurity principles and best practices
Ability to work collaboratively across technical and business teams Commitment to continuous improvement and process optimization
CERTIFICATIONS:
Cisco Certified Network Associate (CCNA)
Cisco Certified Network Professional (CCNP Enterprise)
Cisco Certified Internetwork Expert (CCIE)
CompTIA Network+
CompTIA Security+
Cisco Certified CyberOps Associate
Certified Information Systems Security Professional (CISSP)
AWS Advanced Networking – Specialty
Microsoft Certified: Azure Network Engineer Associate
POSITION SUMMARY:
We are seeking a highly skilled Network Engineer to support the implementation, operation, security, and optimization of a large-scale Cisco enterprise network environment. The ideal candidate will possess strong expertise in network engineering, routing and switching, network security, Zero Trust architecture, and infrastructure operations.
This role will be responsible for maintaining secure, reliable, and high-performing network services while supporting compliance with NIST security frameworks and organizational cybersecurity requirements. The Network Engineer will collaborate closely with cloud, Microsoft, cybersecurity, and infrastructure teams to ensure operational excellence and continuous improvement of enterprise networking capabilities.
KEY RESPONSIBILITIES:
Enterprise Network Operations - Support the implementation, administration, and optimization of enterprise Cisco network infrastructure, including core, distribution, access, and edge environments. - Maintain network availability, reliability, and performance in support of mission-critical business operations. - Monitor network health, capacity, and utilization to proactively identify and resolve issues.
Network Engineering & Infrastructure Services - Configure, manage, and troubleshoot Cisco routers, switches, firewalls, and network services. - Support Layer 2 and Layer 3 networking technologies, including VLANs, STP, VTP, and routing protocols. - Administer DNS, DHCP, VPN, and network access control services. - Implement and maintain routing protocols including BGP, OSPF, and EIGRP. - Support IPv4 and IPv6 networking environments.
Network Security & Zero Trust Implementation - Implement and maintain network security controls aligned with
NIST SP 800-53 and organizational security standards. - Support Zero Trust Architecture initiatives in accordance with NIST SP 800-207. - Design and maintain network segmentation and micro-segmentation strategies. - Implement leastprivilege and identity-aware access controls across network environments. - Configure and support 802.1X network access control solutions. - Secure perimeter and public-facing network infrastructure through firewall management, ingress/egress filtering, and secure access controls. - Support multi-factor authentication (MFA) for administrative network access.
Monitoring, Logging & Incident Response - Configure and maintain centralized logging and audit capabilities for network devices. - Integrate network infrastructure with enterprise SIEM platforms and monitoring solutions. - Support security event monitoring, investigation, and response activities. - Provide network-level analysis and containment support during cybersecurity incidents. - Collect and preserve network forensic data when required.
Vulnerability Management & Infrastructure Hardening - Perform vulnerability assessments and support remediation efforts. - Manage firmware updates, patching, and lifecycle maintenance activities. - Harden network devices using Cisco secure configuration baselines and industry best practices. - Ensure compliance with organizational security policies and standards.
Change Management & Documentation - Participate in formal change management processes and security impact assessments. - Develop and maintain network diagrams, architecture documentation, SOPs, and operational procedures. - Maintain detailed hardware inventories, configuration baselines, and asset documentation. - Conduct annual reviews and updates of documentation and operational procedures.
Troubleshooting & Root Cause Analysis - Diagnose and resolve complex network performance, connectivity, and security issues. - Perform root cause analysis (RCA) for outages, incidents, and performance degradation. - Implement corrective and preventive actions to improve network stability and security.
Collaboration & Customer Support - Serve as a technical advisor for complex service desk tickets and network-related initiatives. - Collaborate with cybersecurity, cloud engineering, Microsoft infrastructure, and operations teams. - Provide technical guidance and support to stakeholders and project teams.
REQUIRED QUALIFICATIONS:
Experience - Minimum 5–7 years of experience in network engineering, network operations, or infrastructure support. - Experience designing, implementing, and supporting Cisco enterprise networking environments. - Hands-on experience with routing, switching, and network infrastructure technologies. - Experience implementing network security controls and Zero Trust networking principles. - Experience supporting vulnerability management, device hardening, and firmware maintenance. - Experience integrating network infrastructure with SIEM and monitoring platforms. - Proven experience troubleshooting complex network issues and conducting root cause analysis.
PREFERRED EXPERIENCE:
Experience supporting federal government or highly regulated environments. - Experience implementing Zero Trust
Architecture initiatives. - Experience supporting 24x7 enterprise network operations. - Experience working within NIST-based cybersecurity and compliance programs. - Experience maintaining audit-ready documentation and configuration baselines.