it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

106 jobs found

Email me jobs like this
Refine Search
Current Search
enterprise monitoring and operations
Principal Enterprise Architect
McKesson Richmond, Virginia
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you. Key Responsibilities Lead architecture review board reviews and provide architectural guidance for enterprise technology initiatives. Partner with application, infrastructure, security, cloud, and operations teams to evaluate solution designs and technology decisions. Identify architectural, operational, security, and supportability risks and provide recommendations for mitigation. Consult with project teams throughout the solution lifecycle, from initial design through implementation and operational transition. Develop and maintain technology standards, architectural patterns, and governance processes. Evaluate emerging technologies and provide recommendations on adoption and enterprise fit. Review proposed architectures for scalability, reliability, maintainability, and alignment with enterprise objectives. Build strong partnerships with technical and business stakeholders and serve as a trusted advisor on technology decisions. Prepare and present architectural recommendations, readiness assessments, and governance findings to leadership and governance forums. Required Qualifications Bachelor's degree in Information Technology, Computer Science, Engineering, or equivalent experience. 10+ years of experience in enterprise architecture, solution architecture, engineering, infrastructure, or related technology roles. Experience leading architecture reviews and guiding technical decision-making across diverse technology domains. Strong understanding of application architecture, cloud platforms, integrations, security, infrastructure, and operational support models. Experience working directly with delivery teams, engineering teams, and technology leadership. Demonstrated ability to influence decisions and drive consensus across technical and business stakeholders. Excellent communication, facilitation, and presentation skills. Ability to balance governance requirements with practical delivery needs. Demonstrated hands-on experience with emerging AI technologies and ability to apply them to real-world challenges Preferred Qualifications Experience participating in or leading architecture review boards or similar governance processes. Experience supporting production readiness, operational readiness, deployment governance, or service transition activities. Experience with cloud platforms, DevOps practices, enterprise integrations, and observability/monitoring solutions. Experience in large, complex enterprise environments, especially healthcare or medical distribution Experience with large-scale distribution, supply chain, logistics, fulfillment, or e-commerce platforms. Experience with Google Cloud Platform, Kubernetes, IaC/Terraform Knowledge of IT operational processes including incident, change, problem, and service management. Experience creating technology standards, reference architectures, and architectural guidance. Experience working within regulated or highly governed environments. About McKesson Medical-Surgical McKesson Medical-Surgical (MMS), which is expected to become Wellverse in early 2027, is a subsidiary and publicly reported segment of the McKesson Corporation. MMS distributes medical-surgical supplies, pharmaceuticals, diagnostic equipment and supplies, along with other solutions and services to virtually every type of healthcare setting and provider outside of the traditional hospital. These markets - often referred to as Alternate Care or Non-Acute Care - include physician offices, surgery centers, long-term care providers, laboratories, home health and hospice agencies, health systems, government facilities and online marketplaces and retailers. Alternate Care markets are growing rapidly and MMS is proud to be a leader in this space. With a team of approximately 8,000 employees, a network of 15 distribution centers and approximately 900 delivery vehicles, we collaborate with more than 2,200 leading manufacturers and serve over 200,000 customer accounts across the U.S. Our catalog includes more than 270,000 SKUs of branded and private-label medical-surgical products - from bandages to specialty pharmaceuticals and COVID-19 tests. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $178,500 - $297,500 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson's (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: . McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, please contact us by sending an email to (United States) or (Canada) . Resumes or CVs submitted to this email box will not be accepted. Join us at McKesson!
09/28/2026
Full time
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you. Key Responsibilities Lead architecture review board reviews and provide architectural guidance for enterprise technology initiatives. Partner with application, infrastructure, security, cloud, and operations teams to evaluate solution designs and technology decisions. Identify architectural, operational, security, and supportability risks and provide recommendations for mitigation. Consult with project teams throughout the solution lifecycle, from initial design through implementation and operational transition. Develop and maintain technology standards, architectural patterns, and governance processes. Evaluate emerging technologies and provide recommendations on adoption and enterprise fit. Review proposed architectures for scalability, reliability, maintainability, and alignment with enterprise objectives. Build strong partnerships with technical and business stakeholders and serve as a trusted advisor on technology decisions. Prepare and present architectural recommendations, readiness assessments, and governance findings to leadership and governance forums. Required Qualifications Bachelor's degree in Information Technology, Computer Science, Engineering, or equivalent experience. 10+ years of experience in enterprise architecture, solution architecture, engineering, infrastructure, or related technology roles. Experience leading architecture reviews and guiding technical decision-making across diverse technology domains. Strong understanding of application architecture, cloud platforms, integrations, security, infrastructure, and operational support models. Experience working directly with delivery teams, engineering teams, and technology leadership. Demonstrated ability to influence decisions and drive consensus across technical and business stakeholders. Excellent communication, facilitation, and presentation skills. Ability to balance governance requirements with practical delivery needs. Demonstrated hands-on experience with emerging AI technologies and ability to apply them to real-world challenges Preferred Qualifications Experience participating in or leading architecture review boards or similar governance processes. Experience supporting production readiness, operational readiness, deployment governance, or service transition activities. Experience with cloud platforms, DevOps practices, enterprise integrations, and observability/monitoring solutions. Experience in large, complex enterprise environments, especially healthcare or medical distribution Experience with large-scale distribution, supply chain, logistics, fulfillment, or e-commerce platforms. Experience with Google Cloud Platform, Kubernetes, IaC/Terraform Knowledge of IT operational processes including incident, change, problem, and service management. Experience creating technology standards, reference architectures, and architectural guidance. Experience working within regulated or highly governed environments. About McKesson Medical-Surgical McKesson Medical-Surgical (MMS), which is expected to become Wellverse in early 2027, is a subsidiary and publicly reported segment of the McKesson Corporation. MMS distributes medical-surgical supplies, pharmaceuticals, diagnostic equipment and supplies, along with other solutions and services to virtually every type of healthcare setting and provider outside of the traditional hospital. These markets - often referred to as Alternate Care or Non-Acute Care - include physician offices, surgery centers, long-term care providers, laboratories, home health and hospice agencies, health systems, government facilities and online marketplaces and retailers. Alternate Care markets are growing rapidly and MMS is proud to be a leader in this space. With a team of approximately 8,000 employees, a network of 15 distribution centers and approximately 900 delivery vehicles, we collaborate with more than 2,200 leading manufacturers and serve over 200,000 customer accounts across the U.S. Our catalog includes more than 270,000 SKUs of branded and private-label medical-surgical products - from bandages to specialty pharmaceuticals and COVID-19 tests. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $178,500 - $297,500 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson's (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: . McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, please contact us by sending an email to (United States) or (Canada) . Resumes or CVs submitted to this email box will not be accepted. Join us at McKesson!
Principal Enterprise Architect
McKesson Irving, Texas
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you. Key Responsibilities Lead architecture review board reviews and provide architectural guidance for enterprise technology initiatives. Partner with application, infrastructure, security, cloud, and operations teams to evaluate solution designs and technology decisions. Identify architectural, operational, security, and supportability risks and provide recommendations for mitigation. Consult with project teams throughout the solution lifecycle, from initial design through implementation and operational transition. Develop and maintain technology standards, architectural patterns, and governance processes. Evaluate emerging technologies and provide recommendations on adoption and enterprise fit. Review proposed architectures for scalability, reliability, maintainability, and alignment with enterprise objectives. Build strong partnerships with technical and business stakeholders and serve as a trusted advisor on technology decisions. Prepare and present architectural recommendations, readiness assessments, and governance findings to leadership and governance forums. Required Qualifications Bachelor's degree in Information Technology, Computer Science, Engineering, or equivalent experience. 10+ years of experience in enterprise architecture, solution architecture, engineering, infrastructure, or related technology roles. Experience leading architecture reviews and guiding technical decision-making across diverse technology domains. Strong understanding of application architecture, cloud platforms, integrations, security, infrastructure, and operational support models. Experience working directly with delivery teams, engineering teams, and technology leadership. Demonstrated ability to influence decisions and drive consensus across technical and business stakeholders. Excellent communication, facilitation, and presentation skills. Ability to balance governance requirements with practical delivery needs. Demonstrated hands-on experience with emerging AI technologies and ability to apply them to real-world challenges Preferred Qualifications Experience participating in or leading architecture review boards or similar governance processes. Experience supporting production readiness, operational readiness, deployment governance, or service transition activities. Experience with cloud platforms, DevOps practices, enterprise integrations, and observability/monitoring solutions. Experience in large, complex enterprise environments, especially healthcare or medical distribution Experience with large-scale distribution, supply chain, logistics, fulfillment, or e-commerce platforms. Experience with Google Cloud Platform, Kubernetes, IaC/Terraform Knowledge of IT operational processes including incident, change, problem, and service management. Experience creating technology standards, reference architectures, and architectural guidance. Experience working within regulated or highly governed environments. About McKesson Medical-Surgical McKesson Medical-Surgical (MMS), which is expected to become Wellverse in early 2027, is a subsidiary and publicly reported segment of the McKesson Corporation. MMS distributes medical-surgical supplies, pharmaceuticals, diagnostic equipment and supplies, along with other solutions and services to virtually every type of healthcare setting and provider outside of the traditional hospital. These markets - often referred to as Alternate Care or Non-Acute Care - include physician offices, surgery centers, long-term care providers, laboratories, home health and hospice agencies, health systems, government facilities and online marketplaces and retailers. Alternate Care markets are growing rapidly and MMS is proud to be a leader in this space. With a team of approximately 8,000 employees, a network of 15 distribution centers and approximately 900 delivery vehicles, we collaborate with more than 2,200 leading manufacturers and serve over 200,000 customer accounts across the U.S. Our catalog includes more than 270,000 SKUs of branded and private-label medical-surgical products - from bandages to specialty pharmaceuticals and COVID-19 tests. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $178,500 - $297,500 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson's (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: . McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, please contact us by sending an email to (United States) or (Canada) . Resumes or CVs submitted to this email box will not be accepted. Join us at McKesson!
09/28/2026
Full time
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you. Key Responsibilities Lead architecture review board reviews and provide architectural guidance for enterprise technology initiatives. Partner with application, infrastructure, security, cloud, and operations teams to evaluate solution designs and technology decisions. Identify architectural, operational, security, and supportability risks and provide recommendations for mitigation. Consult with project teams throughout the solution lifecycle, from initial design through implementation and operational transition. Develop and maintain technology standards, architectural patterns, and governance processes. Evaluate emerging technologies and provide recommendations on adoption and enterprise fit. Review proposed architectures for scalability, reliability, maintainability, and alignment with enterprise objectives. Build strong partnerships with technical and business stakeholders and serve as a trusted advisor on technology decisions. Prepare and present architectural recommendations, readiness assessments, and governance findings to leadership and governance forums. Required Qualifications Bachelor's degree in Information Technology, Computer Science, Engineering, or equivalent experience. 10+ years of experience in enterprise architecture, solution architecture, engineering, infrastructure, or related technology roles. Experience leading architecture reviews and guiding technical decision-making across diverse technology domains. Strong understanding of application architecture, cloud platforms, integrations, security, infrastructure, and operational support models. Experience working directly with delivery teams, engineering teams, and technology leadership. Demonstrated ability to influence decisions and drive consensus across technical and business stakeholders. Excellent communication, facilitation, and presentation skills. Ability to balance governance requirements with practical delivery needs. Demonstrated hands-on experience with emerging AI technologies and ability to apply them to real-world challenges Preferred Qualifications Experience participating in or leading architecture review boards or similar governance processes. Experience supporting production readiness, operational readiness, deployment governance, or service transition activities. Experience with cloud platforms, DevOps practices, enterprise integrations, and observability/monitoring solutions. Experience in large, complex enterprise environments, especially healthcare or medical distribution Experience with large-scale distribution, supply chain, logistics, fulfillment, or e-commerce platforms. Experience with Google Cloud Platform, Kubernetes, IaC/Terraform Knowledge of IT operational processes including incident, change, problem, and service management. Experience creating technology standards, reference architectures, and architectural guidance. Experience working within regulated or highly governed environments. About McKesson Medical-Surgical McKesson Medical-Surgical (MMS), which is expected to become Wellverse in early 2027, is a subsidiary and publicly reported segment of the McKesson Corporation. MMS distributes medical-surgical supplies, pharmaceuticals, diagnostic equipment and supplies, along with other solutions and services to virtually every type of healthcare setting and provider outside of the traditional hospital. These markets - often referred to as Alternate Care or Non-Acute Care - include physician offices, surgery centers, long-term care providers, laboratories, home health and hospice agencies, health systems, government facilities and online marketplaces and retailers. Alternate Care markets are growing rapidly and MMS is proud to be a leader in this space. With a team of approximately 8,000 employees, a network of 15 distribution centers and approximately 900 delivery vehicles, we collaborate with more than 2,200 leading manufacturers and serve over 200,000 customer accounts across the U.S. Our catalog includes more than 270,000 SKUs of branded and private-label medical-surgical products - from bandages to specialty pharmaceuticals and COVID-19 tests. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $178,500 - $297,500 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson's (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: . McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, please contact us by sending an email to (United States) or (Canada) . Resumes or CVs submitted to this email box will not be accepted. Join us at McKesson!
Infrastructure Engineer-Intermediate Level
USAA San Antonio, Texas
Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the choice for the military community and their families. Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful. We are proud to support active-duty military spouses. USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with applicable policy and business needs. The Opportunity We are seeking multiple dedicated Infrastructure Engineer-Intermediate Level to provide Tier 2 technical support, operational engineering, and production support for enterprise infrastructure services. This role serves as an escalation point for incidents and service requests that cannot be resolved by Tier 1 support teams and is responsible for troubleshooting, service restoration, monitoring, and operational support across server, cloud, database, network, storage, and platform technologies. Working closely with the Availability Command Center (ACC), Tier 1 Operations, Engineering Teams, and external vendors, this position provides technical expertise for infrastructure incidents, service requests, operational problems, and stability initiatives. The engineer analyzes and resolves issues related to servers, operating systems, virtualization platforms, cloud services, storage, networking, middleware, and enterprise infrastructure services. We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position will be based in San Antonio; TX. Relocation assistance is not available for this position. What you'll do: Under direct supervision, design scalable IT system infrastructure, implements system changes with some independence; may automate service delivery, maintenance tasks, and builds the ecosystem for solutions including individual infrastructure components. Provide Tier 2 support for infrastructure-related incidents, service requests, and operational issues. Troubleshoot and resolve complex production issues affecting servers, databases, cloud platforms, storage, networking, and core infrastructure services. Participate in incident response, service restoration, and Major Incident recovery activities. Monitor infrastructure health, performance, availability, and capacity. Resolves simple technology production issues with some assistance through troubleshooting systems. Identifies issues for escalation. Analyzes outages in order to identify opportunities for solutions. Participates in product selection and testing. Understands engineering best practices, concepts, and patterns. Intake customer requirements and aligns requirements to standardized product offerings Interacts with management and staff to provide analytical and technical assistance for continuous improvement of IT solutions. - and would need to be differentiated across levels. Develop software defined infrastructure in code in CI/CD Pipelines. Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures. What You Have: Bachelor's degree; OR 4 years of relevant education and/or experience. 3-5 years of infrastructure operations experience Experience supporting 24x7 enterprise environments Experience in a NOC or an Enterprise Availability Command Center, Operations Center, or Production Support organization Experience with Site Reliability Engineering (SRE) fundamentals to supporting cloud-based infrastructure platforms Experience supporting financial services, insurance, healthcare, or other highly regulated industries What Sets You Apart: Understanding of core operating systems and virtualization: Proficiency in both Microsoft Windows Server Administration and Linux Administration (Red Hat, Ubuntu, SUSE) alongside experience with VMware vSphere and Hyper-V. Experience in foundational network services: Solid grasp of TCP/IP, DNS, and DHCP is crucial. Comprehensive cloud platform experience: Demonstrated experience with major cloud providers such as Microsoft Azure and Amazon Web Services (AWS), including hybrid cloud environments. Familiarity with containerization technologies: Experience with Docker and especially Kubernetes is a significant advantage. Proven ability in monitoring and observability tools: Hands-on experience with platforms like Dynatrace, Splunk, Datadog, or AWS CloudWatch to proactively manage and troubleshoot infrastructure. Mainframe & z/OS Skills: possess foundational to intermediate experience supporting z/OS environments, batch processing, and core mainframe infrastructure services. Strong IT Service Management (ITSM) tool proficiency: Experience with tools such as ServiceNow or Jira Service Management, coupled with a deep understanding of Incident, Change, and Problem Management processes. Experience in high-availability and disaster recovery: A solid background in SAN, NAS, enterprise storage, and implementing robust backup, recovery, and disaster recovery solutions is essential. Database support experience: Supporting one or more key databases like Microsoft SQL Server, Oracle, PostgreSQL, or MySQL, along with knowledge of monitoring and performance, adds significant value. Experience in regulated industries and 24x7 environments: Prior experience supporting critical infrastructure in financial services, healthcare, or other highly regulated sectors, especially within 24x7 operations, is a strong indicator of a candidate's ability to handle demanding environments. Compensation range: The salary range for this position is: $ 69,920 - $ 133,620 . USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.). Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors. The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job. Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals. For more details on our outstanding benefits, visit our benefits page on Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting. USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
09/28/2026
Full time
Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the choice for the military community and their families. Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful. We are proud to support active-duty military spouses. USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with applicable policy and business needs. The Opportunity We are seeking multiple dedicated Infrastructure Engineer-Intermediate Level to provide Tier 2 technical support, operational engineering, and production support for enterprise infrastructure services. This role serves as an escalation point for incidents and service requests that cannot be resolved by Tier 1 support teams and is responsible for troubleshooting, service restoration, monitoring, and operational support across server, cloud, database, network, storage, and platform technologies. Working closely with the Availability Command Center (ACC), Tier 1 Operations, Engineering Teams, and external vendors, this position provides technical expertise for infrastructure incidents, service requests, operational problems, and stability initiatives. The engineer analyzes and resolves issues related to servers, operating systems, virtualization platforms, cloud services, storage, networking, middleware, and enterprise infrastructure services. We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position will be based in San Antonio; TX. Relocation assistance is not available for this position. What you'll do: Under direct supervision, design scalable IT system infrastructure, implements system changes with some independence; may automate service delivery, maintenance tasks, and builds the ecosystem for solutions including individual infrastructure components. Provide Tier 2 support for infrastructure-related incidents, service requests, and operational issues. Troubleshoot and resolve complex production issues affecting servers, databases, cloud platforms, storage, networking, and core infrastructure services. Participate in incident response, service restoration, and Major Incident recovery activities. Monitor infrastructure health, performance, availability, and capacity. Resolves simple technology production issues with some assistance through troubleshooting systems. Identifies issues for escalation. Analyzes outages in order to identify opportunities for solutions. Participates in product selection and testing. Understands engineering best practices, concepts, and patterns. Intake customer requirements and aligns requirements to standardized product offerings Interacts with management and staff to provide analytical and technical assistance for continuous improvement of IT solutions. - and would need to be differentiated across levels. Develop software defined infrastructure in code in CI/CD Pipelines. Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures. What You Have: Bachelor's degree; OR 4 years of relevant education and/or experience. 3-5 years of infrastructure operations experience Experience supporting 24x7 enterprise environments Experience in a NOC or an Enterprise Availability Command Center, Operations Center, or Production Support organization Experience with Site Reliability Engineering (SRE) fundamentals to supporting cloud-based infrastructure platforms Experience supporting financial services, insurance, healthcare, or other highly regulated industries What Sets You Apart: Understanding of core operating systems and virtualization: Proficiency in both Microsoft Windows Server Administration and Linux Administration (Red Hat, Ubuntu, SUSE) alongside experience with VMware vSphere and Hyper-V. Experience in foundational network services: Solid grasp of TCP/IP, DNS, and DHCP is crucial. Comprehensive cloud platform experience: Demonstrated experience with major cloud providers such as Microsoft Azure and Amazon Web Services (AWS), including hybrid cloud environments. Familiarity with containerization technologies: Experience with Docker and especially Kubernetes is a significant advantage. Proven ability in monitoring and observability tools: Hands-on experience with platforms like Dynatrace, Splunk, Datadog, or AWS CloudWatch to proactively manage and troubleshoot infrastructure. Mainframe & z/OS Skills: possess foundational to intermediate experience supporting z/OS environments, batch processing, and core mainframe infrastructure services. Strong IT Service Management (ITSM) tool proficiency: Experience with tools such as ServiceNow or Jira Service Management, coupled with a deep understanding of Incident, Change, and Problem Management processes. Experience in high-availability and disaster recovery: A solid background in SAN, NAS, enterprise storage, and implementing robust backup, recovery, and disaster recovery solutions is essential. Database support experience: Supporting one or more key databases like Microsoft SQL Server, Oracle, PostgreSQL, or MySQL, along with knowledge of monitoring and performance, adds significant value. Experience in regulated industries and 24x7 environments: Prior experience supporting critical infrastructure in financial services, healthcare, or other highly regulated sectors, especially within 24x7 operations, is a strong indicator of a candidate's ability to handle demanding environments. Compensation range: The salary range for this position is: $ 69,920 - $ 133,620 . USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.). Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors. The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job. Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals. For more details on our outstanding benefits, visit our benefits page on Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting. USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Northrop Grumman
Sentinel - Systems States & Controls Capability Lead Staff Systems Engineer
Northrop Grumman Huntsville, Alabama
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE REQUIRED FOR START: Yes CLEARANCE TYPE: Secret TRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. Northrop Grumman Defense Systems is seeking a System States and Controls Capability Lead (Staff Systems Engineer - Level 5) to join the team located in Roy UT, Bellevue NE, Huntsville, AL or Manhattan Beach, CA in support of the Sentinel program. Northrop Grumman supports the Air Force's sustainment, development, production and deployment of hardware and system modifications for Intercontinental Ballistic Missile (ICBM,) Ground and Airborne Launch Control Systems, Launch Facilities, and associated infrastructure. What you will get to do: The Sentinel program has an exciting opportunity for a System States & Controls Capability Lead Staff Systems Engineer (Level 5) to join the Command Systems team leading activities including requirements definition / allocation, functional decomposition, interface definition, verification & validation, and requirements traceability across the ground segment of the Sentinel Weapon System. Specific duties to include, but are not limited to the following: Lead a small team of systems engineers to develop systems engineering artifacts across wing-wide maintenance, operations, initialize, fault detection, and shutdown capabilities Work with both technical teams and stakeholders to develop and mature off-nominal system use cases and states deriving full-scope functionality for the wing and preliminary product selection and development Help develop and incorporate the appropriate requirements for the system and ensure that they are properly represented in the model. Develop systems architecture using Cameo Enterprise Architecture (behavioral, structural, analytical). Contribute to system requirements development, management, and analysis. Develop unifying model techniques, procedures, and processes (for model development, tool integration, and team integration). Basic Qualifications: Bachelor's degree in STEM (Science, Technology, Engineering, and Mathematics) with 12 years of experience; or master's degree with 10 years of experience; or PhD with 8 years of experience Must be a US Citizen with an active DoD Secret Clearance, at time of application, current and within scope, with an investigation date within the last 6 years. Must have the ability to obtain Special Access Program (SAP) approval within a reasonable period, as determined by the company to meet its business needs. 4 years of experience with requirements management/analysis/allocations 3 years of experience with Model-Based Engineering / Model-Based Systems Engineering (MBE/MBSE) practices, languages and/or tools such as Cameo, Rhapsody or MagicDraw 5 years of experience with one or more of the following: Command & Control (C2), physical security, cybersecurity, Nuclear Command, Control, and Communications (NC3) systems/processes, communications systems, facility design, military aerospace development (e.g. Sentinel, Minute Man III, B-2, B-21 delivery systems) Preferred Qualifications: Active DoD Top Secret Clearance Demonstrated understanding of the Systems Engineering Vee Model 3+ years of experience in model-based systems engineering; thread-based system decomposition, requirements engineering, system modeling in SysML Experience in documenting Interface Control Documents, Interface Requirement Specifications, and Interface Description Documents Understanding of Object-Oriented Systems Engineering Methodology and systems thinking Excellent collaboration skills and experience working across product, design, and systems engineering teams with various stakeholder communities Proven technical leadership in designing, modeling, and verifying complex, hierarchical State Machines for distributed, real-time command and control architectures. This includes defining clear, deterministic state transitions for critical mission sequences (e.g., Power-On, Daily Monitoring, Targeting/Planning, Countdown, Launch, Abort, and Shutdown) Extensive experience developing automated FDIR frameworks and Built-In Test (BIT) strategies (Periodic, Initiated, and Continuous) for high-consequence systems. This includes leveraging fault-tree analysis to design algorithms that isolate anomalous behavior down to the specific LRU or software. Demonstrated understanding of the systematic challenges of distributed system synchronization - specifically how a network of geographically separated ground nodes initially coordinates clocks, shares state telemetry, loads cryptographic keys, and handles simultaneous, secure shutdowns Experience with ICBM weapon system engineering and integration Experience with complex system development on large programs As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including: - Medical, Dental & Vision coverage - 401k - Educational Assistance - Life Insurance - Employee Assistance Programs & Work/Life Solutions - Paid Time Off - Health & Wellness Resources - Employee Discounts This position's standard work schedule is 9/80. The 9/80 schedule allows employees who work a nine-hour day Monday through Thursday to take every other Friday off. Primary Level Salary Range: $152,900.00 - $229,300.00 The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business. The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
09/28/2026
Full time
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE REQUIRED FOR START: Yes CLEARANCE TYPE: Secret TRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. Northrop Grumman Defense Systems is seeking a System States and Controls Capability Lead (Staff Systems Engineer - Level 5) to join the team located in Roy UT, Bellevue NE, Huntsville, AL or Manhattan Beach, CA in support of the Sentinel program. Northrop Grumman supports the Air Force's sustainment, development, production and deployment of hardware and system modifications for Intercontinental Ballistic Missile (ICBM,) Ground and Airborne Launch Control Systems, Launch Facilities, and associated infrastructure. What you will get to do: The Sentinel program has an exciting opportunity for a System States & Controls Capability Lead Staff Systems Engineer (Level 5) to join the Command Systems team leading activities including requirements definition / allocation, functional decomposition, interface definition, verification & validation, and requirements traceability across the ground segment of the Sentinel Weapon System. Specific duties to include, but are not limited to the following: Lead a small team of systems engineers to develop systems engineering artifacts across wing-wide maintenance, operations, initialize, fault detection, and shutdown capabilities Work with both technical teams and stakeholders to develop and mature off-nominal system use cases and states deriving full-scope functionality for the wing and preliminary product selection and development Help develop and incorporate the appropriate requirements for the system and ensure that they are properly represented in the model. Develop systems architecture using Cameo Enterprise Architecture (behavioral, structural, analytical). Contribute to system requirements development, management, and analysis. Develop unifying model techniques, procedures, and processes (for model development, tool integration, and team integration). Basic Qualifications: Bachelor's degree in STEM (Science, Technology, Engineering, and Mathematics) with 12 years of experience; or master's degree with 10 years of experience; or PhD with 8 years of experience Must be a US Citizen with an active DoD Secret Clearance, at time of application, current and within scope, with an investigation date within the last 6 years. Must have the ability to obtain Special Access Program (SAP) approval within a reasonable period, as determined by the company to meet its business needs. 4 years of experience with requirements management/analysis/allocations 3 years of experience with Model-Based Engineering / Model-Based Systems Engineering (MBE/MBSE) practices, languages and/or tools such as Cameo, Rhapsody or MagicDraw 5 years of experience with one or more of the following: Command & Control (C2), physical security, cybersecurity, Nuclear Command, Control, and Communications (NC3) systems/processes, communications systems, facility design, military aerospace development (e.g. Sentinel, Minute Man III, B-2, B-21 delivery systems) Preferred Qualifications: Active DoD Top Secret Clearance Demonstrated understanding of the Systems Engineering Vee Model 3+ years of experience in model-based systems engineering; thread-based system decomposition, requirements engineering, system modeling in SysML Experience in documenting Interface Control Documents, Interface Requirement Specifications, and Interface Description Documents Understanding of Object-Oriented Systems Engineering Methodology and systems thinking Excellent collaboration skills and experience working across product, design, and systems engineering teams with various stakeholder communities Proven technical leadership in designing, modeling, and verifying complex, hierarchical State Machines for distributed, real-time command and control architectures. This includes defining clear, deterministic state transitions for critical mission sequences (e.g., Power-On, Daily Monitoring, Targeting/Planning, Countdown, Launch, Abort, and Shutdown) Extensive experience developing automated FDIR frameworks and Built-In Test (BIT) strategies (Periodic, Initiated, and Continuous) for high-consequence systems. This includes leveraging fault-tree analysis to design algorithms that isolate anomalous behavior down to the specific LRU or software. Demonstrated understanding of the systematic challenges of distributed system synchronization - specifically how a network of geographically separated ground nodes initially coordinates clocks, shares state telemetry, loads cryptographic keys, and handles simultaneous, secure shutdowns Experience with ICBM weapon system engineering and integration Experience with complex system development on large programs As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including: - Medical, Dental & Vision coverage - 401k - Educational Assistance - Life Insurance - Employee Assistance Programs & Work/Life Solutions - Paid Time Off - Health & Wellness Resources - Employee Discounts This position's standard work schedule is 9/80. The 9/80 schedule allows employees who work a nine-hour day Monday through Thursday to take every other Friday off. Primary Level Salary Range: $152,900.00 - $229,300.00 The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business. The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
Principal Machine Learning Engineer
Vail Resorts Broomfield, Colorado
Job Description Job Description Our mission is to create the Experience of a Lifetime for our employees, so they can, in turn, create the Experience of a Lifetime for our guests. We own and operate the most renowned destination resorts in the world as well as regional and local ski areas outside major cities, and connect them all through one unrivaled network. We are looking for ambitious leaders, innovators and creators to join our talented team. If you're ready to pursue your fullest potential, we want to get to know you! Candidates for year-round positions are reviewed on a rolling basis. Applications will be accepted up to 90 days after the posting date, or until the position is filled (whichever is first). Job Summary: We are looking for a curious, driven, innovative machine learning engineer who takes initiative to solve problems and create environments that accelerate the development, deployment, and usage of data science models and AI to drive greater organizational impact. The Data Science & Data Engineering team within the Enterprise Analytics organization builds data assets, predictive models, analytical applications, and platforms across the organization. Our team collaborates with business stakeholders, analysts, and technology teams to tackle high-impact use cases with state-of-the-art models and tools to grow the business, streamline costs, and improve guest experiences. Job Specifications: Starting Wage: $140,000 - $185,000 + Annual Bonus Employment Type: Year Round Shift Type: Full Time hours Minimum Age: At least 18 years of age Housing Availability: No Job Responsibilities: Productionize ML models developed by data science into reliable, monitored, maintainable systems. Build model data foundations that ensure training, inference, monitoring, and analytics data are trustworthy and scalable. Architect ML platform patterns in Databricks that bring reliability, consistency, governance, performance, and cost discipline to ML and data workflows. Identify and scope opportunities for ML engineering across the business for high-impact. Develop reusable tools , libraries, standards, documentation, and production-readiness practices to enable data science and data engineering teams. Develop analytical and model-powered applications that turn data and ML outputs into usable business workflows for end users. Prepare the platform for future AI engineering , including LLM and agent-based systems, as the organization matures. Provide technical leadership and mentoring across engineering, architecture, and development including design and code reviews. Job Requirements: Technical Skills: Quantitative Foundation : B.S. degree in a quantitative field (e.g., Computer Science, Mathematics, Statistics, Economics, Operations Research, Engineering). Software Engineering Fundamentals: write clean, modular, testable, maintainable code and understand how to structure production-grade systems rather than one-off notebooks or scripts. Python and SQL Proficiency: strong in Python and SQL for building data pipelines, automation, model integrations, analytical workflows, and production services. Data Modeling and Pipeline Design: understand how to design reliable, well-structured data assets, including curated tables, feature datasets, batch pipelines, orchestration, data quality checks, and lineage. ML Lifecycle Fluency: understand the full model lifecycle: data collection, exploration, model development, validation, deployment, monitoring, retraining, and retirement. Production ML Patterns: understand core MLOps patterns such as model registries, feature/data versioning, reproducible environments, testing/validation, monitoring, and rollback. Cloud and Platform Engineering: You are comfortable working in cloud-based data and ML environments and understand the foundations of permissions, environments, jobs, services, storage, networking, and cost-aware architecture. Databricks Expertise : You're familiar and experienced with the core parts of Spark, Unity Catalog, Delta Lake, Databricks Workflows, MLflow, model registry patterns, job/cluster optimization, and governance. DevOps Practices: You use modern engineering practices such as Git, CI/CD, automated testing, code review, dependency management, environment management, and observability. Application Development : You can build applications, APIs, dashboards, or workflow tools that sit on top of data and model outputs. System Design: You can reason through tradeoffs across reliability, latency, scale, cost, governance, maintainability, and ease of use. Soft Skills: Curious : bring intellectual curiosity, an inquisitive nature, and a desire to deepen your knowledge and continue learning. Ownership : take responsibility to proactively advance projects, contribute to the organization, and develop the best solutions. Communication: explain technical concepts, risks, tradeoffs, and recommendations clearly to technical and non-technical audiences. Collaboration: work effectively cross-functionally with data scientists, data engineers, analysts, application engineers, product partners, and business stakeholders. Pragmatism : You know how to balance ideal architecture with business urgency, team maturity, operational constraints, and the need to ship. Preferred qualifications: A graduate degree (Masters or PhD) in a quantitative field Experience with dbt (Core) for modular data modeling, including testing, documentation, and dependency management Experience with AI engineer to use, build, and monitor agentic solutions The expected Total Compensation for this role is $140,000 - $185,000 + Annual Bonus. Individual compensation decisions are based on a variety of factors. Job Benefits Ski/Mountain Perks! Free passes for employees, employee discounted lift tickets for friends and family AND free ski lessons MORE employee discounts on lodging, food, gear, and mountain shuttles 401(k) Retirement Plan Employee Assistance Program Excellent training and professional development Full Time roles are eligible for the above, plus: Health Insurance; Medical Insurance, Dental Insurance, and Vision Insurance plans (for eligible seasonal employees after working 500 hours) Free ski passes for dependents Critical Illness and Accident plans Employees can work remotely from British Columbia, Washington D.C., and the 16 U.S. states in which we currently operate. This includes: California, Colorado, Indiana, Michigan, Minnesota, Missouri, New Hampshire, New York, Nevada, Ohio, Pennsylvania, Utah, Vermont, Washington State, Wisconsin, and Wyoming. Please note that the ability to work in person or off-site, and the particulars related to such work, are subject to change at any time; and, accordingly, the Company reserves the right to change its policies and/or require in-person/in-office work or off-site work at any time in its sole discretion. In completing this application, and when submitting related documentation, applicants may redact information that identifies their age, date of birth, and/or dates of attendance at or graduation from an educational institution. We follow all federal, state, and local laws including restrictions on child/minor labor. Minors hired into this position will not be asked or permitted to engage in any activities restricted to adult workers. Vail Resorts is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, protected veteran status or any other status protected by applicable law. Requisition ID 517322 Reference Date: 09/05/2026 Job Code Function: Data Science
09/28/2026
Full time
Job Description Job Description Our mission is to create the Experience of a Lifetime for our employees, so they can, in turn, create the Experience of a Lifetime for our guests. We own and operate the most renowned destination resorts in the world as well as regional and local ski areas outside major cities, and connect them all through one unrivaled network. We are looking for ambitious leaders, innovators and creators to join our talented team. If you're ready to pursue your fullest potential, we want to get to know you! Candidates for year-round positions are reviewed on a rolling basis. Applications will be accepted up to 90 days after the posting date, or until the position is filled (whichever is first). Job Summary: We are looking for a curious, driven, innovative machine learning engineer who takes initiative to solve problems and create environments that accelerate the development, deployment, and usage of data science models and AI to drive greater organizational impact. The Data Science & Data Engineering team within the Enterprise Analytics organization builds data assets, predictive models, analytical applications, and platforms across the organization. Our team collaborates with business stakeholders, analysts, and technology teams to tackle high-impact use cases with state-of-the-art models and tools to grow the business, streamline costs, and improve guest experiences. Job Specifications: Starting Wage: $140,000 - $185,000 + Annual Bonus Employment Type: Year Round Shift Type: Full Time hours Minimum Age: At least 18 years of age Housing Availability: No Job Responsibilities: Productionize ML models developed by data science into reliable, monitored, maintainable systems. Build model data foundations that ensure training, inference, monitoring, and analytics data are trustworthy and scalable. Architect ML platform patterns in Databricks that bring reliability, consistency, governance, performance, and cost discipline to ML and data workflows. Identify and scope opportunities for ML engineering across the business for high-impact. Develop reusable tools , libraries, standards, documentation, and production-readiness practices to enable data science and data engineering teams. Develop analytical and model-powered applications that turn data and ML outputs into usable business workflows for end users. Prepare the platform for future AI engineering , including LLM and agent-based systems, as the organization matures. Provide technical leadership and mentoring across engineering, architecture, and development including design and code reviews. Job Requirements: Technical Skills: Quantitative Foundation : B.S. degree in a quantitative field (e.g., Computer Science, Mathematics, Statistics, Economics, Operations Research, Engineering). Software Engineering Fundamentals: write clean, modular, testable, maintainable code and understand how to structure production-grade systems rather than one-off notebooks or scripts. Python and SQL Proficiency: strong in Python and SQL for building data pipelines, automation, model integrations, analytical workflows, and production services. Data Modeling and Pipeline Design: understand how to design reliable, well-structured data assets, including curated tables, feature datasets, batch pipelines, orchestration, data quality checks, and lineage. ML Lifecycle Fluency: understand the full model lifecycle: data collection, exploration, model development, validation, deployment, monitoring, retraining, and retirement. Production ML Patterns: understand core MLOps patterns such as model registries, feature/data versioning, reproducible environments, testing/validation, monitoring, and rollback. Cloud and Platform Engineering: You are comfortable working in cloud-based data and ML environments and understand the foundations of permissions, environments, jobs, services, storage, networking, and cost-aware architecture. Databricks Expertise : You're familiar and experienced with the core parts of Spark, Unity Catalog, Delta Lake, Databricks Workflows, MLflow, model registry patterns, job/cluster optimization, and governance. DevOps Practices: You use modern engineering practices such as Git, CI/CD, automated testing, code review, dependency management, environment management, and observability. Application Development : You can build applications, APIs, dashboards, or workflow tools that sit on top of data and model outputs. System Design: You can reason through tradeoffs across reliability, latency, scale, cost, governance, maintainability, and ease of use. Soft Skills: Curious : bring intellectual curiosity, an inquisitive nature, and a desire to deepen your knowledge and continue learning. Ownership : take responsibility to proactively advance projects, contribute to the organization, and develop the best solutions. Communication: explain technical concepts, risks, tradeoffs, and recommendations clearly to technical and non-technical audiences. Collaboration: work effectively cross-functionally with data scientists, data engineers, analysts, application engineers, product partners, and business stakeholders. Pragmatism : You know how to balance ideal architecture with business urgency, team maturity, operational constraints, and the need to ship. Preferred qualifications: A graduate degree (Masters or PhD) in a quantitative field Experience with dbt (Core) for modular data modeling, including testing, documentation, and dependency management Experience with AI engineer to use, build, and monitor agentic solutions The expected Total Compensation for this role is $140,000 - $185,000 + Annual Bonus. Individual compensation decisions are based on a variety of factors. Job Benefits Ski/Mountain Perks! Free passes for employees, employee discounted lift tickets for friends and family AND free ski lessons MORE employee discounts on lodging, food, gear, and mountain shuttles 401(k) Retirement Plan Employee Assistance Program Excellent training and professional development Full Time roles are eligible for the above, plus: Health Insurance; Medical Insurance, Dental Insurance, and Vision Insurance plans (for eligible seasonal employees after working 500 hours) Free ski passes for dependents Critical Illness and Accident plans Employees can work remotely from British Columbia, Washington D.C., and the 16 U.S. states in which we currently operate. This includes: California, Colorado, Indiana, Michigan, Minnesota, Missouri, New Hampshire, New York, Nevada, Ohio, Pennsylvania, Utah, Vermont, Washington State, Wisconsin, and Wyoming. Please note that the ability to work in person or off-site, and the particulars related to such work, are subject to change at any time; and, accordingly, the Company reserves the right to change its policies and/or require in-person/in-office work or off-site work at any time in its sole discretion. In completing this application, and when submitting related documentation, applicants may redact information that identifies their age, date of birth, and/or dates of attendance at or graduation from an educational institution. We follow all federal, state, and local laws including restrictions on child/minor labor. Minors hired into this position will not be asked or permitted to engage in any activities restricted to adult workers. Vail Resorts is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, protected veteran status or any other status protected by applicable law. Requisition ID 517322 Reference Date: 09/05/2026 Job Code Function: Data Science
Network Security Engineer
Credence Mc Lean, Virginia
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset Responsibilities:Network Infrastructure & Operations Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management. Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity. Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government). Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process. Oversee network configuration management and backups to ensure recoverability and business continuity. Analyze and resolve escalated Tier 2+ network support tickets. Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation. Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions. Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening). Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed. Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles. Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments. Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes. Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions. Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles. Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards. Cloud Infrastructure & GCP Governance Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries. Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments. Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT. Requirements Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience). Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role. Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals. Hands-on experience with enterprise firewall administration; Palo Alto NGFW experience and Cisco or equivalent routing and switching experience required. Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus). Must be familiar with configuration management, monitoring, and documentation tools. Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions. Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff. Preferred Qualifications Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent. FortiGate experience, including FortiGate VM in Azure Government, preferred; candidates with strong enterprise firewall experience may ramp up on FortiGate with internal support. Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred. Familiarity with VoIP, secure mail flow, and endpoint management integration. Experience contributing to IT/security-related project initiatives. Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping. Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments. Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible. Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts. GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience. Familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy. Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred. Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks. Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development Wellness Resources
09/28/2026
Full time
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset Responsibilities:Network Infrastructure & Operations Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management. Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity. Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government). Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process. Oversee network configuration management and backups to ensure recoverability and business continuity. Analyze and resolve escalated Tier 2+ network support tickets. Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation. Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions. Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening). Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed. Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles. Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments. Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes. Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions. Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles. Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards. Cloud Infrastructure & GCP Governance Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries. Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments. Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT. Requirements Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience). Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role. Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals. Hands-on experience with enterprise firewall administration; Palo Alto NGFW experience and Cisco or equivalent routing and switching experience required. Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus). Must be familiar with configuration management, monitoring, and documentation tools. Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions. Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff. Preferred Qualifications Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent. FortiGate experience, including FortiGate VM in Azure Government, preferred; candidates with strong enterprise firewall experience may ramp up on FortiGate with internal support. Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred. Familiarity with VoIP, secure mail flow, and endpoint management integration. Experience contributing to IT/security-related project initiatives. Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping. Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments. Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible. Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts. GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience. Familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy. Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred. Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks. Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development Wellness Resources
GNOSC Watch Officer/Network Engineer
LAUNCHTECH Colorado Springs, Colorado
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. We are seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. What You'll Be Doing Be responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. The successful candidate will: Have excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understand Command level Management. Be able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Be able to perform as a section trainer and create lesson plans. Be able to operate within a stressful high speed Operational environment and be able to multi-task. What You Bring Basic Requirements: Must have 1, or more, years of IT experience Must have a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher. Must have an active DoW Secret Security Clearance Desired Requirements: Have experience in metrics-based IT Operations and Maintenance (O&M) teams. Have experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Have previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Have previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Have experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Have knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Have Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Have knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Have Quality Assurance/Quality Control Inspection process knowledge. Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role places you at the operational heart of a 24/7 enterprise network operations center defending the nation's missile defense infrastructure around the clock. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR NYRvODyGdv
09/28/2026
Full time
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. We are seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. What You'll Be Doing Be responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. The successful candidate will: Have excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understand Command level Management. Be able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Be able to perform as a section trainer and create lesson plans. Be able to operate within a stressful high speed Operational environment and be able to multi-task. What You Bring Basic Requirements: Must have 1, or more, years of IT experience Must have a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher. Must have an active DoW Secret Security Clearance Desired Requirements: Have experience in metrics-based IT Operations and Maintenance (O&M) teams. Have experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Have previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Have previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Have experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Have knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Have Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Have knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Have Quality Assurance/Quality Control Inspection process knowledge. Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role places you at the operational heart of a 24/7 enterprise network operations center defending the nation's missile defense infrastructure around the clock. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR NYRvODyGdv
Associate Network Security Engineer
Eliassen Group Cary, North Carolina
Job Description Job Description Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12 month contract, with potential for permanent conversion, to support the Information Security organization. This role focuses on monitoring network security activities and operating and optimizing security infrastructure. The engineer will drive policy, rule, and architecture improvements to prevent and remediate incidents, perform security configuration changes, and collaborate with IT and business stakeholders on triage. The position emphasizes enterprise firewalls, SASE and ZTNA, identity and access management, Microsoft security tooling, and process development aligned to best practices and regulatory requirements. Rate : $42.00 - $48.00 per hour W2 Responsibilities: Monitor network security activities and maintain oversight of security infrastructure. Implement, monitor, and manage enterprise firewall solutions, including NGFW, to enforce network security policies. Operate and configure SASE capabilities including secure web gateways, ZTNA, and CASB. Execute security configuration changes and support incident prevention and remediation through policy, rule, and architecture optimization. Collaborate with IT and business stakeholders on security triage and operational support. Leverage Microsoft Security Suite such as Defender for Endpoint, Sentinel, and Entra/Azure AD across on premises and cloud environments. Develop and refine procedures, policies, and processes aligned with best practices and regulatory requirements. Recommend remediation measures to improve security posture and reduce risk. Communicate security concepts to cross functional teams and stakeholders. Perform other related duties as assigned. Experience Requirements: 3+ years in cloud or network security engineering, security operations, insider risk management, or security event management. Hands on experience with identity, firewall, cloud, and SIEM tools such as Microsoft Azure, Okta, Duo, Palo Alto, Fortinet, Zscaler, Windows Defender, OCI, and Sentinel. Ability to convey complex information risk and security issues in an actionable manner. Demonstrated judgment, urgency, ethical standards, regulatory awareness, customer service, and business integrity. Preferred proficiency with automation or scripting such as Ansible, Python, KQL, or PowerShell. Strong written and oral communication skills and the ability to work cross functionally with network, cloud, infrastructure, and application teams. Strong organizational skills with the ability to prioritize and deliver in a fast paced environment. Ability to accommodate approximately 5% travel. Recruitment Transparency Notice Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team ( , ) inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group's use of these tools, including AI tools, as part of the application and hiring process. Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following: When you work with Eliassen Group, all email communication will come from an address, never Gmail, Yahoo, etc. Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group. If you have any indication of fraudulent activity, please contact . About Eliassen Group: Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients' capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve. Eliassen is committed to building a diverse and inclusive team from a variety of backgrounds, perspectives, and skills. We are an Equal Opportunity and Affirmative Action Employer and all employment decisions are based on merit, performance, and business needs. Eliassen does not discriminate on the basis of race, color, gender identity or expression, sexual preference or orientation, sex (including pregnancy, childbirth, and related medical conditions), marital status, creed, religion, physical or mental disability, genetic information, military or veteran status, age, ancestry, national origin, citizenship status, prohibited criminal record inquiries of applicants and employees, or any other category protected by federal, state, or local laws. Don't miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!
09/28/2026
Full time
Job Description Job Description Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12 month contract, with potential for permanent conversion, to support the Information Security organization. This role focuses on monitoring network security activities and operating and optimizing security infrastructure. The engineer will drive policy, rule, and architecture improvements to prevent and remediate incidents, perform security configuration changes, and collaborate with IT and business stakeholders on triage. The position emphasizes enterprise firewalls, SASE and ZTNA, identity and access management, Microsoft security tooling, and process development aligned to best practices and regulatory requirements. Rate : $42.00 - $48.00 per hour W2 Responsibilities: Monitor network security activities and maintain oversight of security infrastructure. Implement, monitor, and manage enterprise firewall solutions, including NGFW, to enforce network security policies. Operate and configure SASE capabilities including secure web gateways, ZTNA, and CASB. Execute security configuration changes and support incident prevention and remediation through policy, rule, and architecture optimization. Collaborate with IT and business stakeholders on security triage and operational support. Leverage Microsoft Security Suite such as Defender for Endpoint, Sentinel, and Entra/Azure AD across on premises and cloud environments. Develop and refine procedures, policies, and processes aligned with best practices and regulatory requirements. Recommend remediation measures to improve security posture and reduce risk. Communicate security concepts to cross functional teams and stakeholders. Perform other related duties as assigned. Experience Requirements: 3+ years in cloud or network security engineering, security operations, insider risk management, or security event management. Hands on experience with identity, firewall, cloud, and SIEM tools such as Microsoft Azure, Okta, Duo, Palo Alto, Fortinet, Zscaler, Windows Defender, OCI, and Sentinel. Ability to convey complex information risk and security issues in an actionable manner. Demonstrated judgment, urgency, ethical standards, regulatory awareness, customer service, and business integrity. Preferred proficiency with automation or scripting such as Ansible, Python, KQL, or PowerShell. Strong written and oral communication skills and the ability to work cross functionally with network, cloud, infrastructure, and application teams. Strong organizational skills with the ability to prioritize and deliver in a fast paced environment. Ability to accommodate approximately 5% travel. Recruitment Transparency Notice Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team ( , ) inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group's use of these tools, including AI tools, as part of the application and hiring process. Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following: When you work with Eliassen Group, all email communication will come from an address, never Gmail, Yahoo, etc. Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group. If you have any indication of fraudulent activity, please contact . About Eliassen Group: Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients' capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve. Eliassen is committed to building a diverse and inclusive team from a variety of backgrounds, perspectives, and skills. We are an Equal Opportunity and Affirmative Action Employer and all employment decisions are based on merit, performance, and business needs. Eliassen does not discriminate on the basis of race, color, gender identity or expression, sexual preference or orientation, sex (including pregnancy, childbirth, and related medical conditions), marital status, creed, religion, physical or mental disability, genetic information, military or veteran status, age, ancestry, national origin, citizenship status, prohibited criminal record inquiries of applicants and employees, or any other category protected by federal, state, or local laws. Don't miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!
Senior Network Security Engineer
Zoox San Mateo, California
Job Description Job Description Zoox's Network Security team architects and defends the digital borders of the company - from corporate offices to engineering labs and product/mission environments. As a Network Security Engineer, you will design, implement, and operate security controls across Zoox's enterprise, OT networks, and cloud infrastructure spanning on-premises data centers and public cloud environments (AWS, GCP), partnering closely with Network Engineering, IT, Product Security, and Software Engineering teams. In This Role, You Will Design, implement, and maintain secure hybrid/multi-cloud network architectures (AWS/GCP, CloudWAN); enforce zero-trust access controls and network segmentation across corporate, data center, lab, and edge environments; develop and maintain related policies, standards, and architecture diagrams Own and operate next-generation firewall platforms (Palo Alto Networks, Fortinet), managing policy architecture, segmentation, NAT, URL filtering, SSL/TLS decryption, and threat prevention tuning Architect, operate, and own the lifecycle of secure remote access solutions (VPN, ZTNA, site-to-site tunnels), ensuring high availability, certificate-based authentication, and integration with identity providers (SAML, Entra ID) Drive automation and Infrastructure-as-Code (IaC) using Terraform, Python, CI/CD, and REST APIs for configuration management, firewall policies, and security baselines; integrate LLM-based tools to streamline operational tasks and reduce manual toil Oversee security operations including 24/7 network security monitoring, traffic analysis, threat detection, vulnerability assessments, and remediation; support compliance requirements by conducting security reviews for new projects and infrastructure changes Drive 802.1X/certificate-based Network Access Control (NAC) initiatives across wired and wireless environments Collaborate with team members and contribute to cross-functional security initiatives with Product Security, SRE, IT, and Software Engineering teams Qualifications 6+ years of network security engineering experience securing enterprise, cloud, and OT/lab environments Platform Expertise: Deep, hands-on expertise in next-gen firewalls (Palo Alto, Fortinet), AWS NFW, WAFs, IDS/IPS, NAC/802.1X, PKI, VPN, and ZTNA solutions (Zscaler, Netskope, Prisma Access, or equivalent) Technical Knowledge: Strong understanding of core network protocols (TCP/IP, BGP, OSPF, VLAN, 802.1X, TLS/PKI) and cloud networking security principles (AWS, GCP, or Azure) Automation: Hands-on experience with IaC and automation tooling including Terraform, Python, CI/CD pipelines, and REST APIs Security Operations: Experience with network security monitoring, threat detection, and security operations tooling (SIEM, IDS/IPS, vulnerability management platforms), including integration with network controls Compliance: Proven experience supporting major compliance initiatives (NIST 800-53, CSF 2.0, ISO 27001), including control implementation and evidence collection Bonus Qualifications Experience in autonomous vehicle, robotics, IT/OT or automotive environments Certifications: PCNSE, AWS Security Specialty, CCNA Experience experimenting with or deploying AI/ML-based security capabilities (e.g., anomaly detection, behavioral analytics, LLM-driven copilots) in network or cloud security workflows There are three major components to compensation for this position: salary, Amazon Restricted Stock Units (RSUs), and Zoox Stock Appreciation Rights. A sign-on bonus may be offered as part of the compensation package. The listed range applies only to the base salary. Compensation will vary based on geographic location and level. Leveling, as well as positioning within a level, is determined by a range of factors, including, but not limited to, a candidate's relevant years of experience, domain knowledge, and interview performance. The salary range listed in this posting is representative of the range of levels Zoox is considering for this position. Zoox also offers a comprehensive package of benefits, including paid time off (e.g. sick leave, vacation, bereavement), unpaid time off, Zoox Stock Appreciation Rights, Amazon RSUs, health insurance, long-term care insurance, long-term and short-term disability insurance, and life insurance. About Zoox Zoox is developing the first ground-up, fully autonomous vehicle fleet and the supporting ecosystem required to bring this technology to market. Sitting at the intersection of robotics, machine learning, and design, Zoox aims to provide the next generation of mobility-as-a-service in urban environments. We're looking for top talent that shares our passion and wants to be part of a fast-moving and highly execution-oriented team. Follow us on LinkedIn Accommodations If you need an accommodation to participate in the application or interview process please reach out to or your assigned recruiter. A Final Note: You do not need to match every listed expectation to apply for this position. Here at Zoox, we know that diverse perspectives foster the innovation we need to be successful, and we are committed to building a team that encompasses a variety of backgrounds, experiences, and skills. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
09/28/2026
Full time
Job Description Job Description Zoox's Network Security team architects and defends the digital borders of the company - from corporate offices to engineering labs and product/mission environments. As a Network Security Engineer, you will design, implement, and operate security controls across Zoox's enterprise, OT networks, and cloud infrastructure spanning on-premises data centers and public cloud environments (AWS, GCP), partnering closely with Network Engineering, IT, Product Security, and Software Engineering teams. In This Role, You Will Design, implement, and maintain secure hybrid/multi-cloud network architectures (AWS/GCP, CloudWAN); enforce zero-trust access controls and network segmentation across corporate, data center, lab, and edge environments; develop and maintain related policies, standards, and architecture diagrams Own and operate next-generation firewall platforms (Palo Alto Networks, Fortinet), managing policy architecture, segmentation, NAT, URL filtering, SSL/TLS decryption, and threat prevention tuning Architect, operate, and own the lifecycle of secure remote access solutions (VPN, ZTNA, site-to-site tunnels), ensuring high availability, certificate-based authentication, and integration with identity providers (SAML, Entra ID) Drive automation and Infrastructure-as-Code (IaC) using Terraform, Python, CI/CD, and REST APIs for configuration management, firewall policies, and security baselines; integrate LLM-based tools to streamline operational tasks and reduce manual toil Oversee security operations including 24/7 network security monitoring, traffic analysis, threat detection, vulnerability assessments, and remediation; support compliance requirements by conducting security reviews for new projects and infrastructure changes Drive 802.1X/certificate-based Network Access Control (NAC) initiatives across wired and wireless environments Collaborate with team members and contribute to cross-functional security initiatives with Product Security, SRE, IT, and Software Engineering teams Qualifications 6+ years of network security engineering experience securing enterprise, cloud, and OT/lab environments Platform Expertise: Deep, hands-on expertise in next-gen firewalls (Palo Alto, Fortinet), AWS NFW, WAFs, IDS/IPS, NAC/802.1X, PKI, VPN, and ZTNA solutions (Zscaler, Netskope, Prisma Access, or equivalent) Technical Knowledge: Strong understanding of core network protocols (TCP/IP, BGP, OSPF, VLAN, 802.1X, TLS/PKI) and cloud networking security principles (AWS, GCP, or Azure) Automation: Hands-on experience with IaC and automation tooling including Terraform, Python, CI/CD pipelines, and REST APIs Security Operations: Experience with network security monitoring, threat detection, and security operations tooling (SIEM, IDS/IPS, vulnerability management platforms), including integration with network controls Compliance: Proven experience supporting major compliance initiatives (NIST 800-53, CSF 2.0, ISO 27001), including control implementation and evidence collection Bonus Qualifications Experience in autonomous vehicle, robotics, IT/OT or automotive environments Certifications: PCNSE, AWS Security Specialty, CCNA Experience experimenting with or deploying AI/ML-based security capabilities (e.g., anomaly detection, behavioral analytics, LLM-driven copilots) in network or cloud security workflows There are three major components to compensation for this position: salary, Amazon Restricted Stock Units (RSUs), and Zoox Stock Appreciation Rights. A sign-on bonus may be offered as part of the compensation package. The listed range applies only to the base salary. Compensation will vary based on geographic location and level. Leveling, as well as positioning within a level, is determined by a range of factors, including, but not limited to, a candidate's relevant years of experience, domain knowledge, and interview performance. The salary range listed in this posting is representative of the range of levels Zoox is considering for this position. Zoox also offers a comprehensive package of benefits, including paid time off (e.g. sick leave, vacation, bereavement), unpaid time off, Zoox Stock Appreciation Rights, Amazon RSUs, health insurance, long-term care insurance, long-term and short-term disability insurance, and life insurance. About Zoox Zoox is developing the first ground-up, fully autonomous vehicle fleet and the supporting ecosystem required to bring this technology to market. Sitting at the intersection of robotics, machine learning, and design, Zoox aims to provide the next generation of mobility-as-a-service in urban environments. We're looking for top talent that shares our passion and wants to be part of a fast-moving and highly execution-oriented team. Follow us on LinkedIn Accommodations If you need an accommodation to participate in the application or interview process please reach out to or your assigned recruiter. A Final Note: You do not need to match every listed expectation to apply for this position. Here at Zoox, we know that diverse perspectives foster the innovation we need to be successful, and we are committed to building a team that encompasses a variety of backgrounds, experiences, and skills. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Senior Security Engineer, Infrastructure & Network Security
Metropolis New York, New York
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $165,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
09/28/2026
Full time
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $165,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
Global Network Operations and Security Center / GNOSC Manager
IQUASAR LLC Colorado Springs, Colorado
Job Description Job Description Cimarron is seeking a Global Network Operations and Security Center (GNOSC) Manager to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract at the Schriever Space Force Base in the Colorado Springs area. Key Duties: Direct all facets of the continuous 24x7x365 GNOSC environment. Provide administrative and technical oversight to Watch Officers and Mission Support Team (MST) Engineers. Serve as an escalation point for complex IT incidents, outages, and service degradations. Ensure that all incidents are effectively escalated, managed, and resolved within established service level agreements (SLAs). Provide full communication of status, remediation plans, and operational actions to executive leadership and the Government customer. Deliver post-event recommendations such as "Lessons Learned" and "Hot Wash" inputs. Oversee ITIL-based continual service improvement initiatives to minimize risk to services and operational networks. Coordinate the Mission Support Schedule with the MST Lead and Watch Officers to ensure all CIO assets directly support event requirements, exercises, and war games in a geographically distributed enterprise. Ensure team compliance with Tier III Information Assurance practices, IT security governance, and DoD 8570/8140 requirements. Champion metrics-based IT Operations and Maintenance (O&M) and oversee Quality Assurance/Quality Control Inspection processes. Required Skills, Experience, and Education: Due to facility security requirements, only U.S. citizens are eligible for consideration at the time. This position requires access to federal facilities. Candidates must possess a valid, unexpired Real ID-compliant driver's license or state-issued identification card at the time of hire. If you are unsure whether your ID is Real ID-compliant, please check for the star symbol in the upper portion of your driver's license or state ID. Active Secret Clearance. 12 or more years of general, full-time work experience (may be reduced with advanced education). 6 or more years of progressive experience in IT operations management, network control center (NCC), or enterprise operations center (EOC) roles. 2 or more years of direct personnel management or team leadership experience in a complex, 24/7 IT environment. Education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, Incident, and change management. Current DoD 8570.01 IAT Level II Certification (e.g., CompTIA Security+ CE) or higher (IAM Level II/III preferred, such as CISM or CISSP). Desired Skills, Experience, and Education: Active DoW Top Secret Security Clearance. Bachelor's degree (or higher) in Computer Science, Information Technology, Cybersecurity, or a related field. Extensive experience leading metrics-based IT Operations and Maintenance (O&M) teams within a DoD or MDA environment. Advanced understanding of the ITIL framework with related certifications (e.g., ITIL 4 Foundation, ITIL 4 Managing Professional, or Strategic Leader). Familiar with enterprise monitoring, ticketing, and security toolsets utilized by the team, including Remedy, and SNMP monitoring tools (e.g. SolarWinds and Structure Ware Datacenter. Working technical background in network engineering, systems administration (Windows/Linux), or cybersecurity operations. Experience running operations centers for large complex organizations. Understanding of military organizations and structures Experience working with DISA and DREN.
09/28/2026
Full time
Job Description Job Description Cimarron is seeking a Global Network Operations and Security Center (GNOSC) Manager to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract at the Schriever Space Force Base in the Colorado Springs area. Key Duties: Direct all facets of the continuous 24x7x365 GNOSC environment. Provide administrative and technical oversight to Watch Officers and Mission Support Team (MST) Engineers. Serve as an escalation point for complex IT incidents, outages, and service degradations. Ensure that all incidents are effectively escalated, managed, and resolved within established service level agreements (SLAs). Provide full communication of status, remediation plans, and operational actions to executive leadership and the Government customer. Deliver post-event recommendations such as "Lessons Learned" and "Hot Wash" inputs. Oversee ITIL-based continual service improvement initiatives to minimize risk to services and operational networks. Coordinate the Mission Support Schedule with the MST Lead and Watch Officers to ensure all CIO assets directly support event requirements, exercises, and war games in a geographically distributed enterprise. Ensure team compliance with Tier III Information Assurance practices, IT security governance, and DoD 8570/8140 requirements. Champion metrics-based IT Operations and Maintenance (O&M) and oversee Quality Assurance/Quality Control Inspection processes. Required Skills, Experience, and Education: Due to facility security requirements, only U.S. citizens are eligible for consideration at the time. This position requires access to federal facilities. Candidates must possess a valid, unexpired Real ID-compliant driver's license or state-issued identification card at the time of hire. If you are unsure whether your ID is Real ID-compliant, please check for the star symbol in the upper portion of your driver's license or state ID. Active Secret Clearance. 12 or more years of general, full-time work experience (may be reduced with advanced education). 6 or more years of progressive experience in IT operations management, network control center (NCC), or enterprise operations center (EOC) roles. 2 or more years of direct personnel management or team leadership experience in a complex, 24/7 IT environment. Education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, Incident, and change management. Current DoD 8570.01 IAT Level II Certification (e.g., CompTIA Security+ CE) or higher (IAM Level II/III preferred, such as CISM or CISSP). Desired Skills, Experience, and Education: Active DoW Top Secret Security Clearance. Bachelor's degree (or higher) in Computer Science, Information Technology, Cybersecurity, or a related field. Extensive experience leading metrics-based IT Operations and Maintenance (O&M) teams within a DoD or MDA environment. Advanced understanding of the ITIL framework with related certifications (e.g., ITIL 4 Foundation, ITIL 4 Managing Professional, or Strategic Leader). Familiar with enterprise monitoring, ticketing, and security toolsets utilized by the team, including Remedy, and SNMP monitoring tools (e.g. SolarWinds and Structure Ware Datacenter. Working technical background in network engineering, systems administration (Windows/Linux), or cybersecurity operations. Experience running operations centers for large complex organizations. Understanding of military organizations and structures Experience working with DISA and DREN.
Network Security Engineer
Georgia System Operations Corporation Tucker, Georgia
Job Description Job Description Network Security EngineerEngineer Secure, Resilient Network Services That Support Mission-Critical OperationsGeorgia System Operations Corporation (GSOC) is seeking a Network Security Engineer to design, implement, secure, and operate corporate network services and cybersecurity tools that enable reliable, protected business operations.This hands-on role combines enterprise network engineering and cybersecurity expertise across datacenter, campus, remote-site, internet-edge, and approved cloud environments. The Network Security Engineer helps safeguard availability, performance, secure access, and security visibility while advancing resilient, supportable, and automated network and security services.This opportunity is ideal for an experienced network and security professional who enjoys solving complex technical problems, strengthening controls, supporting incident response, mentoring peers, and collaborating across infrastructure, cybersecurity, application, service desk, and vendor teams. This is an onsite position and it is not eligible for visa sponsorshipWhat You'll DoAs a Network Security Engineer, you will engineer and support the network and network-focused security services that connect and protect enterprise users, systems, and sites.You will:Design, deploy, and support datacenter and campus switching, routing, VLANs, VRFs, high availability, capacity planning, and network segmentation.Administer next-generation firewalls, security zones, NAT, threat-prevention services, firewall policy lifecycle, and least-privilege access controls.Engineer WAN, internet-edge, remote-site, remote-access VPN, and site-to-site VPN connectivity, including integrations with identity, MFA, and device-trust services.Design and support corporate and guest wireless, controllers, access points, RF performance, 802.1X, network access control, device profiling, and secure authentication.Configure load balancers, virtual servers, pools, health monitors, persistence, TLS termination, and high-availability services.Manage the network-facing certificate lifecycle and PKI integrations.Engineer and operate secure web and DNS controls, network detection and response, security logging, SIEM integrations, and security-control health monitoring.Partner with the Security Operations Center on alert tuning, investigations, evidence gathering, and operational security use cases.Support secure DNS, DHCP, and IP address management and maintain telemetry, flow data, logging, alerting, packet analysis, and service dashboards.Maintain secure configuration baselines, backups, firmware and software lifecycle, and remediation of network-device and security-tool vulnerabilities.Automate repeatable work using APIs, scripting, and infrastructure-as-code practices.Develop and test network and security-platform recovery and failover capabilities.Prepare change and rollback plans and provide incident escalation, containment support, root-cause analysis, and vendor coordination. This role also:Works independently within established standards and change processes.Provides technical leadership for projects and mentors peers.Participates in technology evaluations, proof-of-concepts, cross-functional initiatives, backup support, and knowledge transfer. What You BringBachelor's degree in Information Technology, Computer Science, Engineering, Cybersecurity, or a related field. Equivalent combination of education, training, and directly related work experience may be considered.Ideally 5+ years of progressive experience supporting enterprise network and network-security infrastructure, including switching, routing, firewall administration, VPN, wireless, and troubleshooting.Strong knowledge of enterprise LAN/WAN, datacenter switching, routing, firewalls, VPN, wireless, NAC, load balancing, PKI and certificates, DNS, DHCP, IPAM, and secure configuration management.Hands-on experience operating cybersecurity tooling such as secure web and DNS services, network detection and response, vulnerability management, SIEM and logging integrations, and security monitoring.Experience with network and security automation using Python, PowerShell, Ansible, Terraform, APIs, or comparable tools.Working knowledge of NIST CSF, CIS Controls, incident-response practices, and applicable regulatory or industry requirements, including NERC CIP where relevant to the IT environment.Strong analytical, troubleshooting, documentation, communication, collaboration, and customer-service skills. Preferred QualificationsEnterprise Network EngineeringExperience engineering highly available datacenter, campus, WAN, internet-edge, remote-site, wireless, and VPN services.Experience with segmentation, least-privilege access, identity and MFA integrations, device trust, and network access control.Experience with load balancing, TLS termination, application delivery, certificate lifecycle management, and PKI integrations.Network Security & DetectionExperience operating next-generation firewalls, threat-prevention services, secure web or DNS controls, network detection and response, and vulnerability-management processes.Experience integrating network-security telemetry with SIEM, logging, alerting, dashboards, and incident-response workflows.Experience partnering with a SOC on investigation, tuning, containment, evidence, or root-cause activities.Automation, Resilience & OperationsExperience automating network or security operations through scripting, APIs, Ansible, Terraform, or infrastructure as code.Experience developing recovery, failover, configuration-backup, firmware-lifecycle, and vulnerability-remediation practices.Experience preparing changes, rollback plans, technical documentation, performance measures, and vendor-supported resolutions.CertificationsRelevant credentials such as CCNA, CCNP, ACP, PCNSE or equivalent firewall-vendor certification, CWNA, Security+, CISSP, AZ-700, or similar certifications are preferred. Advantages of Working at GSOCWorking at GSOC means more than just a job it's an opportunity to contribute to work that truly matters. Mission-Driven ImpactYour work supports secure, reliable corporate network services and cybersecurity capabilities used across GSOC's enterprise environment. Network Engineering & Cybersecurity DepthApply both network engineering and hands-on security expertise across switching, routing, wireless, firewalls, VPN, application delivery, monitoring, automation, and incident support. Technical Leadership & Continuous ImprovementLead technical projects, mentor peers, evaluate new technologies, automate repeatable work, and strengthen resilience, visibility, and operational supportability. Strong Values and Professional StandardsWork in an environment grounded in accountability, collaboration, integrity, security, compliance, and continuous improvement. Work Environment & BenefitsGSOC offers a professional, collaborative work environment with competitive compensation, comprehensive benefits, and a commitment to creating a respectful and inclusive workplace.Participation in an on-call rotation, emergency support, and scheduled maintenance outside normal business hours is required. Why Join GSOCAt GSOC, you will help engineer the network and security services that enable dependable business operations, secure access, security visibility, and resilient enterprise technology.You'll collaborate across infrastructure, cybersecurity, applications, service desk, and vendor teams while expanding your technical leadership and automation capabilities. Apply TodayIf you're ready to combine enterprise network engineering and cybersecurity expertise in a hands-on role supporting reliable, protected operations, we encourage you to apply. GSOC does not accept unsolicited resumes or candidate submissions from staffing agencies, search firms, or third-party recruiters. Any unsolicited resumes submitted without a valid, executed agreement will become the property of GSOC, and no placement fee will be paid. Job Posted by ApplicantPro
09/28/2026
Full time
Job Description Job Description Network Security EngineerEngineer Secure, Resilient Network Services That Support Mission-Critical OperationsGeorgia System Operations Corporation (GSOC) is seeking a Network Security Engineer to design, implement, secure, and operate corporate network services and cybersecurity tools that enable reliable, protected business operations.This hands-on role combines enterprise network engineering and cybersecurity expertise across datacenter, campus, remote-site, internet-edge, and approved cloud environments. The Network Security Engineer helps safeguard availability, performance, secure access, and security visibility while advancing resilient, supportable, and automated network and security services.This opportunity is ideal for an experienced network and security professional who enjoys solving complex technical problems, strengthening controls, supporting incident response, mentoring peers, and collaborating across infrastructure, cybersecurity, application, service desk, and vendor teams. This is an onsite position and it is not eligible for visa sponsorshipWhat You'll DoAs a Network Security Engineer, you will engineer and support the network and network-focused security services that connect and protect enterprise users, systems, and sites.You will:Design, deploy, and support datacenter and campus switching, routing, VLANs, VRFs, high availability, capacity planning, and network segmentation.Administer next-generation firewalls, security zones, NAT, threat-prevention services, firewall policy lifecycle, and least-privilege access controls.Engineer WAN, internet-edge, remote-site, remote-access VPN, and site-to-site VPN connectivity, including integrations with identity, MFA, and device-trust services.Design and support corporate and guest wireless, controllers, access points, RF performance, 802.1X, network access control, device profiling, and secure authentication.Configure load balancers, virtual servers, pools, health monitors, persistence, TLS termination, and high-availability services.Manage the network-facing certificate lifecycle and PKI integrations.Engineer and operate secure web and DNS controls, network detection and response, security logging, SIEM integrations, and security-control health monitoring.Partner with the Security Operations Center on alert tuning, investigations, evidence gathering, and operational security use cases.Support secure DNS, DHCP, and IP address management and maintain telemetry, flow data, logging, alerting, packet analysis, and service dashboards.Maintain secure configuration baselines, backups, firmware and software lifecycle, and remediation of network-device and security-tool vulnerabilities.Automate repeatable work using APIs, scripting, and infrastructure-as-code practices.Develop and test network and security-platform recovery and failover capabilities.Prepare change and rollback plans and provide incident escalation, containment support, root-cause analysis, and vendor coordination. This role also:Works independently within established standards and change processes.Provides technical leadership for projects and mentors peers.Participates in technology evaluations, proof-of-concepts, cross-functional initiatives, backup support, and knowledge transfer. What You BringBachelor's degree in Information Technology, Computer Science, Engineering, Cybersecurity, or a related field. Equivalent combination of education, training, and directly related work experience may be considered.Ideally 5+ years of progressive experience supporting enterprise network and network-security infrastructure, including switching, routing, firewall administration, VPN, wireless, and troubleshooting.Strong knowledge of enterprise LAN/WAN, datacenter switching, routing, firewalls, VPN, wireless, NAC, load balancing, PKI and certificates, DNS, DHCP, IPAM, and secure configuration management.Hands-on experience operating cybersecurity tooling such as secure web and DNS services, network detection and response, vulnerability management, SIEM and logging integrations, and security monitoring.Experience with network and security automation using Python, PowerShell, Ansible, Terraform, APIs, or comparable tools.Working knowledge of NIST CSF, CIS Controls, incident-response practices, and applicable regulatory or industry requirements, including NERC CIP where relevant to the IT environment.Strong analytical, troubleshooting, documentation, communication, collaboration, and customer-service skills. Preferred QualificationsEnterprise Network EngineeringExperience engineering highly available datacenter, campus, WAN, internet-edge, remote-site, wireless, and VPN services.Experience with segmentation, least-privilege access, identity and MFA integrations, device trust, and network access control.Experience with load balancing, TLS termination, application delivery, certificate lifecycle management, and PKI integrations.Network Security & DetectionExperience operating next-generation firewalls, threat-prevention services, secure web or DNS controls, network detection and response, and vulnerability-management processes.Experience integrating network-security telemetry with SIEM, logging, alerting, dashboards, and incident-response workflows.Experience partnering with a SOC on investigation, tuning, containment, evidence, or root-cause activities.Automation, Resilience & OperationsExperience automating network or security operations through scripting, APIs, Ansible, Terraform, or infrastructure as code.Experience developing recovery, failover, configuration-backup, firmware-lifecycle, and vulnerability-remediation practices.Experience preparing changes, rollback plans, technical documentation, performance measures, and vendor-supported resolutions.CertificationsRelevant credentials such as CCNA, CCNP, ACP, PCNSE or equivalent firewall-vendor certification, CWNA, Security+, CISSP, AZ-700, or similar certifications are preferred. Advantages of Working at GSOCWorking at GSOC means more than just a job it's an opportunity to contribute to work that truly matters. Mission-Driven ImpactYour work supports secure, reliable corporate network services and cybersecurity capabilities used across GSOC's enterprise environment. Network Engineering & Cybersecurity DepthApply both network engineering and hands-on security expertise across switching, routing, wireless, firewalls, VPN, application delivery, monitoring, automation, and incident support. Technical Leadership & Continuous ImprovementLead technical projects, mentor peers, evaluate new technologies, automate repeatable work, and strengthen resilience, visibility, and operational supportability. Strong Values and Professional StandardsWork in an environment grounded in accountability, collaboration, integrity, security, compliance, and continuous improvement. Work Environment & BenefitsGSOC offers a professional, collaborative work environment with competitive compensation, comprehensive benefits, and a commitment to creating a respectful and inclusive workplace.Participation in an on-call rotation, emergency support, and scheduled maintenance outside normal business hours is required. Why Join GSOCAt GSOC, you will help engineer the network and security services that enable dependable business operations, secure access, security visibility, and resilient enterprise technology.You'll collaborate across infrastructure, cybersecurity, applications, service desk, and vendor teams while expanding your technical leadership and automation capabilities. Apply TodayIf you're ready to combine enterprise network engineering and cybersecurity expertise in a hands-on role supporting reliable, protected operations, we encourage you to apply. GSOC does not accept unsolicited resumes or candidate submissions from staffing agencies, search firms, or third-party recruiters. Any unsolicited resumes submitted without a valid, executed agreement will become the property of GSOC, and no placement fee will be paid. Job Posted by ApplicantPro
Senior Security Engineer, Infrastructure & Network Security
Metropolis Acton, California
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $160,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
09/28/2026
Full time
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $160,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
Principal Software Engineer, Platform Engineering & Edge Infrastructure
Saviynt Milpitas, California
Job Description Job Description Saviynt's AI-powered identity platform manages and governs human and non-human access to all of an organization's applications, data, and business processes. Customers trust Saviynt to safeguard their digital assets, drive operational efficiency, and reduce compliance costs. Built for the AI age, Saviynt is today helping organizations safely accelerate their deployment and usage of AI. Saviynt is recognized as the leader in identity security, with solutions that protect and empower the world's leading brands, Fortune 500 companies and government institutions. For more information, please visit . Come join us as founding members of Saviynt's AI Security team and help us build out AI security for the world's leading enterprises. WHAT YOU WILL BE DOING Design and operate the infrastructure powering Cloud and Edge platform deployments. Build deployment automation for distributed Edge PoPs supporting headquarters, branch offices, regional hubs, and customer data centers. Design highly available deployment architectures supporting secure fail-closed operation and resilient policy synchronization. Build CI/CD pipelines, release automation, upgrade orchestration, and lifecycle management for Cloud, Edge, and Endpoint components. Develop observability platforms, including logging, metrics, tracing, health monitoring, and audit pipelines. Automate provisioning, certificate lifecycle management, secrets management, and secure configuration distribution. Drive platform scalability, operational excellence, reliability, disaster recovery, and security. AI & Agentic Engineering Apply AI-assisted engineering across infrastructure, deployment automation, and platform operations. Build infrastructure supporting AI-native applications, AI services, and distributed agentic workloads. Follow AI SDLC best practices for software delivery, automation, deployment, monitoring, and continuous improvement. Evaluate emerging AI infrastructure technologies to improve engineering productivity and operational efficiency. WHAT YOU BRING 1+ years of Principal-level of platform engineering, DevOps, or Site Reliability Engineering experience. Deep experience operating Kubernetes and cloud-native platforms at enterprise scale. Strong experience with Terraform, Helm, GitHub Actions, ArgoCD, Ansible, or similar automation technologies. Experience with distributed networking, service meshes, proxies, DNS, load balancing, and TLS. Strong experience in Linux systems administration and infrastructure automation. Experience deploying highly available distributed enterprise software across multiple customer environments. Hands-on experience using AI-assisted development tools such as GitHub Copilot, Cursor, Claude Code, Windsurf, ChatGPT, or similar. Understanding of AI application architectures, AI agents, MCP, and AI-enabled infrastructure. Familiarity with AI SDLC best practices, including AI-assisted development, automated testing, CI/CD automation, observability, and responsible use of AI-generated code. Strong operational mindset with excellent communication, collaboration, and leadership skills. We offer you a competitive total rewards package, learning and tremendous opportunities to grow and advance in your career. At Saviynt, it is not typical for an individual to be hired at or near the top of the range for their role and final compensation decisions are dependent on many factors including but are not limited to location; skill sets; experience and training; licensure and certifications; and other relevant business and organizational needs. A reasonable estimate of the current range is $240,000 - $250,000 annually. You may also be eligible to participate in a Saviynt discretionary bonus plan, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance. Saviynt is an amazing place to work. We are a high-growth, Platform as a Service company focused on Identity Authority to power and protect the world at work. You will experience tremendous growth and learning opportunities through challenging yet rewarding work which directly impacts our customers, all within a welcoming and positive work environment. If you're resilient and enjoy working in a dynamic environment you belong with us! Security & Compliance This role requires adherence to Saviynt's information security and privacy policies and procedures, including annual security training. Saviynt is an equal opportunity employer and we welcome everyone to our team. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
09/28/2026
Full time
Job Description Job Description Saviynt's AI-powered identity platform manages and governs human and non-human access to all of an organization's applications, data, and business processes. Customers trust Saviynt to safeguard their digital assets, drive operational efficiency, and reduce compliance costs. Built for the AI age, Saviynt is today helping organizations safely accelerate their deployment and usage of AI. Saviynt is recognized as the leader in identity security, with solutions that protect and empower the world's leading brands, Fortune 500 companies and government institutions. For more information, please visit . Come join us as founding members of Saviynt's AI Security team and help us build out AI security for the world's leading enterprises. WHAT YOU WILL BE DOING Design and operate the infrastructure powering Cloud and Edge platform deployments. Build deployment automation for distributed Edge PoPs supporting headquarters, branch offices, regional hubs, and customer data centers. Design highly available deployment architectures supporting secure fail-closed operation and resilient policy synchronization. Build CI/CD pipelines, release automation, upgrade orchestration, and lifecycle management for Cloud, Edge, and Endpoint components. Develop observability platforms, including logging, metrics, tracing, health monitoring, and audit pipelines. Automate provisioning, certificate lifecycle management, secrets management, and secure configuration distribution. Drive platform scalability, operational excellence, reliability, disaster recovery, and security. AI & Agentic Engineering Apply AI-assisted engineering across infrastructure, deployment automation, and platform operations. Build infrastructure supporting AI-native applications, AI services, and distributed agentic workloads. Follow AI SDLC best practices for software delivery, automation, deployment, monitoring, and continuous improvement. Evaluate emerging AI infrastructure technologies to improve engineering productivity and operational efficiency. WHAT YOU BRING 1+ years of Principal-level of platform engineering, DevOps, or Site Reliability Engineering experience. Deep experience operating Kubernetes and cloud-native platforms at enterprise scale. Strong experience with Terraform, Helm, GitHub Actions, ArgoCD, Ansible, or similar automation technologies. Experience with distributed networking, service meshes, proxies, DNS, load balancing, and TLS. Strong experience in Linux systems administration and infrastructure automation. Experience deploying highly available distributed enterprise software across multiple customer environments. Hands-on experience using AI-assisted development tools such as GitHub Copilot, Cursor, Claude Code, Windsurf, ChatGPT, or similar. Understanding of AI application architectures, AI agents, MCP, and AI-enabled infrastructure. Familiarity with AI SDLC best practices, including AI-assisted development, automated testing, CI/CD automation, observability, and responsible use of AI-generated code. Strong operational mindset with excellent communication, collaboration, and leadership skills. We offer you a competitive total rewards package, learning and tremendous opportunities to grow and advance in your career. At Saviynt, it is not typical for an individual to be hired at or near the top of the range for their role and final compensation decisions are dependent on many factors including but are not limited to location; skill sets; experience and training; licensure and certifications; and other relevant business and organizational needs. A reasonable estimate of the current range is $240,000 - $250,000 annually. You may also be eligible to participate in a Saviynt discretionary bonus plan, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance. Saviynt is an amazing place to work. We are a high-growth, Platform as a Service company focused on Identity Authority to power and protect the world at work. You will experience tremendous growth and learning opportunities through challenging yet rewarding work which directly impacts our customers, all within a welcoming and positive work environment. If you're resilient and enjoy working in a dynamic environment you belong with us! Security & Compliance This role requires adherence to Saviynt's information security and privacy policies and procedures, including annual security training. Saviynt is an equal opportunity employer and we welcome everyone to our team. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Firewall Operations Engineer Secret Clearance
Conceras Beltsville, Maryland
Job Description Job Description Network Operations - Firewall Operations Engineer Position Description Description This is an opening for a Firewall Engineer to support a Department of State (DoS) Bureau of Diplomatic Technology (DT) program. This program provides transparent, interconnected systems and security supporting the DoS in successfully carrying out its U.S. foreign policy mission. DT provides enterprise architecture design, engineering, operations and maintenance support services for servers, networks, firewalls, and enterprise applications across the Department. This is a firewall engineer position, providing general Tier 2 monitoring, configuration, and support to multiple firewalls and perimeter security systems. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally. This is a hybrid position based out of Beltsville, MD with 3 days on-site. Shift is Day's (7:00am-3:30pm), Tuesday-Saturday after training. During the 6-8-week training period, it will be 5 days on-site Mon-Fri (7:00am-3:30pm). Your responsibilities will include: Provides Tier 2 support in the monitoring, management, and troubleshooting of perimeter devices to include firewalls, proxies, and mail transport agents. Monitor Service Now application for Firewall Operations (FWOPS) incident and service requests. Implements firewall rules and policies, perform troubleshooting of firewalls (Palo Alto, Cloud Palo Alto, and FortiGate), CISCO Email Security Appliance (ESA), A10 (load balancer), Proxy platforms, URL filtering across platforms, and analyzing network traffic captures. Escalates issues as required to Tier 3 staff and monitors issues throughout a problem's life cycle. Performs recurring maintenance activities such as device reboots and software upgrades on all devices underneath the Firewall Operations Team. Records and reports on firewall operations, utilization, and maintenance. Collaborate across Bureaus and Agencies to implement and repair network changes as they relate to perimeter security devices. Support Diplomatic Security Computer Incident Response Team (CIRT) by implementing block requests for IP's, Websites, and Email addresses. Update architecture diagrams using Visio. Monitor and perform health checks on multiple perimeter security devices. Draft, coordinate and publish outage notifications as required. Update shift logs and provide reports to leadership as needed. Maintain standard operating procedures (SOP), work instructions, and other working documents. Attend calls requiring a FWOPS team to attend, to include troubleshooting calls. Required Education & Experience: BA degree and 2-4 years of experience, may accept additional experience in lieu of degree. In Depth experience using Palo Alto Firewalls and Panorama monitoring tools to troubleshoot and configure a Firewall infrastructure. Strong understanding of networking, proxy, and packet filtering technologies. Minimum 3-5 years of IT Customer Support experience (Tier I and/or Tier II). First-hand experience with supporting the monitoring and configuration of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (Palo Alto, Palo Alto virtual FW (cloud), FortiGate, Azure Firewall, Cloudflare, Cisco Email Security Appliances (ESA), A10 (Load Balancer), and proxy devices. CLI experience preferred. Experienced in utilizing network monitoring tools such as NeuralStar. Experienced with TCP/IP network implementation and troubleshooting. Required Clearance US Citizenship. An Interim Secret clearance is required to start work and requires eligibility to obtain a Top-Secret clearance. Powered by JazzHR 2IrLa6mmdU
09/28/2026
Full time
Job Description Job Description Network Operations - Firewall Operations Engineer Position Description Description This is an opening for a Firewall Engineer to support a Department of State (DoS) Bureau of Diplomatic Technology (DT) program. This program provides transparent, interconnected systems and security supporting the DoS in successfully carrying out its U.S. foreign policy mission. DT provides enterprise architecture design, engineering, operations and maintenance support services for servers, networks, firewalls, and enterprise applications across the Department. This is a firewall engineer position, providing general Tier 2 monitoring, configuration, and support to multiple firewalls and perimeter security systems. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally. This is a hybrid position based out of Beltsville, MD with 3 days on-site. Shift is Day's (7:00am-3:30pm), Tuesday-Saturday after training. During the 6-8-week training period, it will be 5 days on-site Mon-Fri (7:00am-3:30pm). Your responsibilities will include: Provides Tier 2 support in the monitoring, management, and troubleshooting of perimeter devices to include firewalls, proxies, and mail transport agents. Monitor Service Now application for Firewall Operations (FWOPS) incident and service requests. Implements firewall rules and policies, perform troubleshooting of firewalls (Palo Alto, Cloud Palo Alto, and FortiGate), CISCO Email Security Appliance (ESA), A10 (load balancer), Proxy platforms, URL filtering across platforms, and analyzing network traffic captures. Escalates issues as required to Tier 3 staff and monitors issues throughout a problem's life cycle. Performs recurring maintenance activities such as device reboots and software upgrades on all devices underneath the Firewall Operations Team. Records and reports on firewall operations, utilization, and maintenance. Collaborate across Bureaus and Agencies to implement and repair network changes as they relate to perimeter security devices. Support Diplomatic Security Computer Incident Response Team (CIRT) by implementing block requests for IP's, Websites, and Email addresses. Update architecture diagrams using Visio. Monitor and perform health checks on multiple perimeter security devices. Draft, coordinate and publish outage notifications as required. Update shift logs and provide reports to leadership as needed. Maintain standard operating procedures (SOP), work instructions, and other working documents. Attend calls requiring a FWOPS team to attend, to include troubleshooting calls. Required Education & Experience: BA degree and 2-4 years of experience, may accept additional experience in lieu of degree. In Depth experience using Palo Alto Firewalls and Panorama monitoring tools to troubleshoot and configure a Firewall infrastructure. Strong understanding of networking, proxy, and packet filtering technologies. Minimum 3-5 years of IT Customer Support experience (Tier I and/or Tier II). First-hand experience with supporting the monitoring and configuration of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (Palo Alto, Palo Alto virtual FW (cloud), FortiGate, Azure Firewall, Cloudflare, Cisco Email Security Appliances (ESA), A10 (Load Balancer), and proxy devices. CLI experience preferred. Experienced in utilizing network monitoring tools such as NeuralStar. Experienced with TCP/IP network implementation and troubleshooting. Required Clearance US Citizenship. An Interim Secret clearance is required to start work and requires eligibility to obtain a Top-Secret clearance. Powered by JazzHR 2IrLa6mmdU
Senior Network Security Engineer
Ignite IT
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
09/28/2026
Full time
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
GNOSC Watch Officer/Network Engineer
IQUASAR LLC Colorado Springs, Colorado
Job Description Job Description Benefits: 401(k) Competitive salary Dental insurance Health insurance Paid time off Vision insurance Cimarron is seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract at Schriever Space Force Base in the Colorado Springs, CO area. Key Duties: Responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Required Skills, Experience, and Education: Due to facility security requirements, only U.S. citizens are eligible for consideration at this time. Ability to complete a pre-employment background check and drug screening, which will include, but is not limited to, testing for marijuana use. This position requires access to federal facilities. Candidates must possess a valid, unexpired Real ID-compliant driver's license or state-issued identification card at the time of hire. If you are unsure whether your ID is Real ID-compliant, please check for the star symbol in the upper portion of your driver's license or state ID. Active Secret Clearance. Current DoD 8570 IAT Level II certification (ex., Security + CE, CySA, etc.). 1 or more years of IT experience. Excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understanding of Command level Management. Able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Able to perform as a section trainer and create lesson plans. Able to operate within a stressful high speed Operational environment and be able to multi-task. Desired Skills, Experience, and Education: Experience in metrics-based IT Operations and Maintenance (O&M) teams. Experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Quality Assurance/Quality Control Inspection process knowledge.
09/28/2026
Full time
Job Description Job Description Benefits: 401(k) Competitive salary Dental insurance Health insurance Paid time off Vision insurance Cimarron is seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract at Schriever Space Force Base in the Colorado Springs, CO area. Key Duties: Responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Required Skills, Experience, and Education: Due to facility security requirements, only U.S. citizens are eligible for consideration at this time. Ability to complete a pre-employment background check and drug screening, which will include, but is not limited to, testing for marijuana use. This position requires access to federal facilities. Candidates must possess a valid, unexpired Real ID-compliant driver's license or state-issued identification card at the time of hire. If you are unsure whether your ID is Real ID-compliant, please check for the star symbol in the upper portion of your driver's license or state ID. Active Secret Clearance. Current DoD 8570 IAT Level II certification (ex., Security + CE, CySA, etc.). 1 or more years of IT experience. Excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understanding of Command level Management. Able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Able to perform as a section trainer and create lesson plans. Able to operate within a stressful high speed Operational environment and be able to multi-task. Desired Skills, Experience, and Education: Experience in metrics-based IT Operations and Maintenance (O&M) teams. Experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Quality Assurance/Quality Control Inspection process knowledge.
Network Security Engineer
Arctiq Duluth, Georgia
Job Description Job Description Company Overview: Arctiq is a global, intelligence-driven technology services company delivering professional and managed services across Hybrid Cloud Infrastructure, Networking & Connected Experiences, Cybersecurity, Data & AI, Autonomous Operations & Intelligence, and Enterprise Service Management. We help organizations operate, secure, and modernize complex environments by unifying infrastructure, networking, data, security, automation, and observability under a single, integrated operating model. Our work focuses on helping customers reduce operational friction, improve resilience, and make better, faster decisions as their environments evolve. Arctiq builds on decades of industry expertise and a customer-centric ethos to deliver exceptional value to clients across diverse industries. This is a 3-month contract-to-hire position with one of Arctiq's clients. It is on-site in Alpharetta, GA. Position Overview: We are seeking a highly skilled Network Security Engineer to support and manage global physical security and infrastructure operations. This role is responsible for deploying, maintaining, and supporting enterprise security systems, access control platforms, surveillance technologies, and supporting infrastructure across a distributed global environment. The ideal candidate will have extensive hands-on experience with cloud-based security platforms, smart-hands support, access control systems, video surveillance solutions, and infrastructure hardware. This position is security-focused, with networking knowledge serving as a supporting competency. This is an onsite role (5 days/week) with participation in an on-call support rotation required, supporting global operations across multiple time zones (8am-5pm core hours). Occasional travel to support installations and operational initiatives may be required. Responsibilities: Physical Security Operations Administer and support global physical security systems and operations Deploy, configure, and maintain enterprise access control platforms including Verkada, Avigilon, and Openpath Manage and troubleshoot camera systems, access control hardware, and monitoring solutions Configure and support wired access control panels and associated infrastructure Monitor security events and ensure operational health of physical security platforms globally Perform firmware updates, patching, and lifecycle management of security devices Global Infrastructure & Security Operations Monitor the health, availability, and performance of global physical security and infrastructure systems Proactively monitor enterprise security platforms, servers, storage systems, network connectivity, and associated cloud services Investigate and resolve alerts, outages, and performance degradation across global environments Perform firmware upgrades, software updates, and security patching for cameras, access control systems, servers, and supporting infrastructure Maintain operational dashboards and monitoring tools to ensure continuous visibility of security and infrastructure assets worldwide Coordinate incident response activities related to security systems, storage platforms, server infrastructure, and connectivity disruptions Infrastructure & Smart Hands Support Provide smart-hands support for servers, network equipment, access control systems, surveillance devices, PCs/desktop hardware, and infrastructure management tools Deploy new hardware and perform rack-and-stack activities Configure, install, and commission security and infrastructure equipment using standardized deployment procedures Coordinate hardware replacements, upgrades, and equipment refresh activities Support remote sites and assist local teams with physical installations and troubleshooting Security Technology Administration Manage cloud-based security platforms and associated integrations Support hardware and software components of security ecosystems Ensure security systems maintain operational availability and compliance requirements Develop and maintain documentation, standard operating procedures, and asset inventories Incident Response & Support Participate in an on-call rotation providing after-hours support Respond to outages involving security systems, camera platforms, access control services, and connectivity-related incidents Troubleshoot loss-of-connectivity events and coordinate restoration efforts Escalate and coordinate with vendors and internal infrastructure teams as required Qualifications: Required: 8+ years of experience in physical security technology, infrastructure operations, or network/security engineering Hands-on experience supporting Verkada, Avigilon, Openpath, enterprise camera systems, and access control platforms Experience deploying and maintaining cloud-based security solutions Strong troubleshooting skills across hardware, software, and connectivity issues Experience with cabling, wiring, access panels, surveillance equipment, and supporting infrastructure Understanding of networking fundamentals including TCP/IP, switching, routing, VLANs, and remote connectivity Experience supporting servers, storage systems, and enterprise infrastructure environments Ability to travel occasionally to support installations and operational initiatives Preferred: Experience supporting global security operations centers (SOC) or enterprise security programs Familiarity with enterprise monitoring and infrastructure management tools Experience managing firmware, software upgrades, and device lifecycle planning Security industry certifications or vendor certifications related to access control or video surveillance systems Knowledge of physical security best practices and operational risk management Arctiq is an equal opportunity employer. If you need any accommodations or adjustments throughout the interview process and beyond, please let us know. We celebrate our inclusive work environment and welcome members of all backgrounds and perspectives to apply. We thank you for your interest in joining the Arctiq team! While we welcome all applicants, only those who are selected for an interview will be contacted.
09/28/2026
Full time
Job Description Job Description Company Overview: Arctiq is a global, intelligence-driven technology services company delivering professional and managed services across Hybrid Cloud Infrastructure, Networking & Connected Experiences, Cybersecurity, Data & AI, Autonomous Operations & Intelligence, and Enterprise Service Management. We help organizations operate, secure, and modernize complex environments by unifying infrastructure, networking, data, security, automation, and observability under a single, integrated operating model. Our work focuses on helping customers reduce operational friction, improve resilience, and make better, faster decisions as their environments evolve. Arctiq builds on decades of industry expertise and a customer-centric ethos to deliver exceptional value to clients across diverse industries. This is a 3-month contract-to-hire position with one of Arctiq's clients. It is on-site in Alpharetta, GA. Position Overview: We are seeking a highly skilled Network Security Engineer to support and manage global physical security and infrastructure operations. This role is responsible for deploying, maintaining, and supporting enterprise security systems, access control platforms, surveillance technologies, and supporting infrastructure across a distributed global environment. The ideal candidate will have extensive hands-on experience with cloud-based security platforms, smart-hands support, access control systems, video surveillance solutions, and infrastructure hardware. This position is security-focused, with networking knowledge serving as a supporting competency. This is an onsite role (5 days/week) with participation in an on-call support rotation required, supporting global operations across multiple time zones (8am-5pm core hours). Occasional travel to support installations and operational initiatives may be required. Responsibilities: Physical Security Operations Administer and support global physical security systems and operations Deploy, configure, and maintain enterprise access control platforms including Verkada, Avigilon, and Openpath Manage and troubleshoot camera systems, access control hardware, and monitoring solutions Configure and support wired access control panels and associated infrastructure Monitor security events and ensure operational health of physical security platforms globally Perform firmware updates, patching, and lifecycle management of security devices Global Infrastructure & Security Operations Monitor the health, availability, and performance of global physical security and infrastructure systems Proactively monitor enterprise security platforms, servers, storage systems, network connectivity, and associated cloud services Investigate and resolve alerts, outages, and performance degradation across global environments Perform firmware upgrades, software updates, and security patching for cameras, access control systems, servers, and supporting infrastructure Maintain operational dashboards and monitoring tools to ensure continuous visibility of security and infrastructure assets worldwide Coordinate incident response activities related to security systems, storage platforms, server infrastructure, and connectivity disruptions Infrastructure & Smart Hands Support Provide smart-hands support for servers, network equipment, access control systems, surveillance devices, PCs/desktop hardware, and infrastructure management tools Deploy new hardware and perform rack-and-stack activities Configure, install, and commission security and infrastructure equipment using standardized deployment procedures Coordinate hardware replacements, upgrades, and equipment refresh activities Support remote sites and assist local teams with physical installations and troubleshooting Security Technology Administration Manage cloud-based security platforms and associated integrations Support hardware and software components of security ecosystems Ensure security systems maintain operational availability and compliance requirements Develop and maintain documentation, standard operating procedures, and asset inventories Incident Response & Support Participate in an on-call rotation providing after-hours support Respond to outages involving security systems, camera platforms, access control services, and connectivity-related incidents Troubleshoot loss-of-connectivity events and coordinate restoration efforts Escalate and coordinate with vendors and internal infrastructure teams as required Qualifications: Required: 8+ years of experience in physical security technology, infrastructure operations, or network/security engineering Hands-on experience supporting Verkada, Avigilon, Openpath, enterprise camera systems, and access control platforms Experience deploying and maintaining cloud-based security solutions Strong troubleshooting skills across hardware, software, and connectivity issues Experience with cabling, wiring, access panels, surveillance equipment, and supporting infrastructure Understanding of networking fundamentals including TCP/IP, switching, routing, VLANs, and remote connectivity Experience supporting servers, storage systems, and enterprise infrastructure environments Ability to travel occasionally to support installations and operational initiatives Preferred: Experience supporting global security operations centers (SOC) or enterprise security programs Familiarity with enterprise monitoring and infrastructure management tools Experience managing firmware, software upgrades, and device lifecycle planning Security industry certifications or vendor certifications related to access control or video surveillance systems Knowledge of physical security best practices and operational risk management Arctiq is an equal opportunity employer. If you need any accommodations or adjustments throughout the interview process and beyond, please let us know. We celebrate our inclusive work environment and welcome members of all backgrounds and perspectives to apply. We thank you for your interest in joining the Arctiq team! While we welcome all applicants, only those who are selected for an interview will be contacted.
Network & Security Engineer
Citadel Completions LLC Dallas, Texas
Job Description Job Description Purpose Information technology is foundational to how Citadel Aviation operates at every site, from the systems that move work across the hangar floor and the shops to the platforms that support administrative staff. Secure, reliable network and identity infrastructure enable Citadel to operate without interruption, protect its work and its people, and meet its obligations to customers and partners. This role owns the design, operation, and security of Citadel's network and identity infrastructure across every Citadel site: reliable connectivity, a hardened identity platform, and a security posture that scales with the business. The role serves as Citadel's internal technical counterpart to the company's security SOC and managed detection and response (MDR) provider, partners with IT leadership and peers across IT and the business, owns assigned IT projects, and is accountable for the reliability of the network and the strength of the security posture across every site. Environment The technology stack includes Palo Alto next-generation firewalls, Cisco switching, Meraki wireless, Microsoft 365 with Entra ID for identity, Microsoft Defender for Endpoint and Intune for endpoint security and management, Tenable for vulnerability management, and KnowBe4 for security awareness. Security operations are delivered in partnership with an external SOC and MDR provider. Essential Job Functions Own the design, operation, and security of Citadel's network infrastructure across all sites. Maintain firewalls, switching, wireless, ISP connectivity, and backup connectivity. Design and implement upgrades to support growth, lead network design and turn-up for new Citadel facilities, and maintain secure connectivity between sites, between sites and the cloud, and for remote users. Own the design, operation, and security of Citadel's voice and unified communications infrastructure, including the company's calling system, VOIP infrastructure, and integration with Microsoft 365 communications. Maintain consistent network and security service quality across all Citadel sites. Travel between sites is heavier during the initial standardization phase across existing sites and during turn-up of new sites, and lighter once the environment reaches steady state. Perform in line with established KPIs and service-level targets, including network availability, security patch SLA, mean time to remediate vulnerabilities, mean time to respond to security incidents, and related measures. Track and report performance regularly to IT leadership. Serve as the internal technical counterpart to the company's security SOC and MDR provider, who operate detection, monitoring, and response. Partner closely on detection tuning, alert triage, investigation, and remediation. Own endpoint security policy across the Microsoft 365 platform, including Microsoft Defender for Endpoint configuration, conditional access, identity hardening, and Intune security baselines. Partner with the IT manager and the support team on day-to-day operation and enforcement. Own technical email security controls, including anti-phishing, anti-malware, secure transport, and tenant security configuration. Partner with the IT manager on user-facing reporting and response workflows. Run Citadel's vulnerability management process in partnership with the MDR provider. Operate scanning tooling, prioritize findings, and drive remediation across the IT organization. Own identity and access management hardening, including multi-factor authentication, conditional access policy, privileged access controls, and account lifecycle hygiene. Set program direction and content for Citadel's cybersecurity awareness program, including training plans, phishing simulation strategy, and ongoing user education topics. Partner with the IT manager, who runs the user-facing activities and reporting. Conduct third-party security review of new vendors, software platforms, and integrations before they enter the environment. Assess data handling, integration security, and ongoing risk; track approval and remediation. Coordinate Citadel's response to external security assessments, including penetration testing, cyber insurance reviews, customer security questionnaires, and regulatory inquiries. Scope engagements, work with vendors, maintain evidence, and track remediation. Deliver assigned IT projects within networking and security, and contribute to broader IT initiatives. Coordinate with IT leadership and peers, and engage external specialists and contractors as needed. Partner with IT leadership and peers in infrastructure, support, and software development on initiatives originating in those service lines. Contribute network and security expertise to keep delivery on track. Own vendor relationships within the network and security portfolio, including ISPs, network hardware, security tooling, and specialized contractors. Take on broader IT vendor relationships as assigned. Own the network and security operating budget, with broader budget scope as assigned. Track expenses, project upcoming needs, and provide input on annual IT budget planning. Own the on-call rotation for network and security incidents. Drive diagnosis, coordinate internal and external resources, and engage directly in resolution. Own incident communication for network and security events. Notify IT leadership and impacted business stakeholders, provide regular status updates throughout an incident, and deliver post-incident summaries with root cause and follow-up actions. Conduct periodic internal security audits across user access, identity hygiene, configuration baselines, vulnerability posture, and policy adherence. Remediate findings in partnership with the IT manager. Maintain and enforce IT network and security policies, procedures, runbooks, technical documentation, and asset inventory. Contribute to the creation and modification of policies as needed. Identify and propose improvements in network design, security posture, monitoring coverage, and tool consolidation. Deliver approved initiatives. Non-Essential Functions Running cables and installing hardware. Other duties as assigned. Minimum Qualifications or Experience Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Network Engineering, or a related technical discipline. Equivalent professional experience considered in lieu of degree. 5+ years of progressive experience in enterprise network engineering and information security. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Experience operating in partnership with a managed detection and response (MDR) provider or security operations center (SOC). Experience with vulnerability management, including scanning tooling (Tenable Nessus or comparable), prioritization, and driving remediation across an organization. Experience operating in an environment with regular external security assessments (penetration testing, cyber insurance reviews, customer security audits) and remediating findings under deadline. Experience supporting multi-site operations or production environments where uptime, security, and consistency of service are operational requirements. Experience delivering IT projects from scope through completion, including scheduling, vendor coordination, and budget tracking. Demonstrated ability to communicate technical concepts clearly to non-technical business stakeholders and to senior leadership. Demonstrated experience adhering to and enforcing security best practices across network, endpoint, and identity domains. Preferred Qualifications or Experience Experience in aviation, aerospace, manufacturing, MRO, or other regulated operational environments. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Active IT industry certifications such as CompTIA Security+ or Network+, Cisco CCNA / CCNP, Palo Alto PCNSA / PCNSE, Microsoft Security or Identity certifications, CISSP, GIAC, or comparable. Experience designing and bringing up network infrastructure at new sites or facilities. Experience with SD-WAN, zero-trust architecture, network segmentation, or related modern network design patterns. Familiarity with security frameworks (NIST, CIS) and audit or compliance work. Experience with security awareness platforms (KnowBe4 or comparable). Experience administering identity and access controls in a hybrid or cloud-first environment. Experience with VOIP or unified communications infrastructure. Supervisory Responsibilities This position has no direct reports. Coordinates day-to-day with external network and security contractors, managed-service providers, and the company's SOC and MDR partner. Provides technical guidance and security expertise to IT team peers and to business stakeholders as needed. Knowledge, Skills, and Other Attributes Deep technical expertise across enterprise networking (firewalls, switching, wireless, routing) and information security (endpoint, identity, vulnerability management, security monitoring). . click apply for full job details
09/28/2026
Full time
Job Description Job Description Purpose Information technology is foundational to how Citadel Aviation operates at every site, from the systems that move work across the hangar floor and the shops to the platforms that support administrative staff. Secure, reliable network and identity infrastructure enable Citadel to operate without interruption, protect its work and its people, and meet its obligations to customers and partners. This role owns the design, operation, and security of Citadel's network and identity infrastructure across every Citadel site: reliable connectivity, a hardened identity platform, and a security posture that scales with the business. The role serves as Citadel's internal technical counterpart to the company's security SOC and managed detection and response (MDR) provider, partners with IT leadership and peers across IT and the business, owns assigned IT projects, and is accountable for the reliability of the network and the strength of the security posture across every site. Environment The technology stack includes Palo Alto next-generation firewalls, Cisco switching, Meraki wireless, Microsoft 365 with Entra ID for identity, Microsoft Defender for Endpoint and Intune for endpoint security and management, Tenable for vulnerability management, and KnowBe4 for security awareness. Security operations are delivered in partnership with an external SOC and MDR provider. Essential Job Functions Own the design, operation, and security of Citadel's network infrastructure across all sites. Maintain firewalls, switching, wireless, ISP connectivity, and backup connectivity. Design and implement upgrades to support growth, lead network design and turn-up for new Citadel facilities, and maintain secure connectivity between sites, between sites and the cloud, and for remote users. Own the design, operation, and security of Citadel's voice and unified communications infrastructure, including the company's calling system, VOIP infrastructure, and integration with Microsoft 365 communications. Maintain consistent network and security service quality across all Citadel sites. Travel between sites is heavier during the initial standardization phase across existing sites and during turn-up of new sites, and lighter once the environment reaches steady state. Perform in line with established KPIs and service-level targets, including network availability, security patch SLA, mean time to remediate vulnerabilities, mean time to respond to security incidents, and related measures. Track and report performance regularly to IT leadership. Serve as the internal technical counterpart to the company's security SOC and MDR provider, who operate detection, monitoring, and response. Partner closely on detection tuning, alert triage, investigation, and remediation. Own endpoint security policy across the Microsoft 365 platform, including Microsoft Defender for Endpoint configuration, conditional access, identity hardening, and Intune security baselines. Partner with the IT manager and the support team on day-to-day operation and enforcement. Own technical email security controls, including anti-phishing, anti-malware, secure transport, and tenant security configuration. Partner with the IT manager on user-facing reporting and response workflows. Run Citadel's vulnerability management process in partnership with the MDR provider. Operate scanning tooling, prioritize findings, and drive remediation across the IT organization. Own identity and access management hardening, including multi-factor authentication, conditional access policy, privileged access controls, and account lifecycle hygiene. Set program direction and content for Citadel's cybersecurity awareness program, including training plans, phishing simulation strategy, and ongoing user education topics. Partner with the IT manager, who runs the user-facing activities and reporting. Conduct third-party security review of new vendors, software platforms, and integrations before they enter the environment. Assess data handling, integration security, and ongoing risk; track approval and remediation. Coordinate Citadel's response to external security assessments, including penetration testing, cyber insurance reviews, customer security questionnaires, and regulatory inquiries. Scope engagements, work with vendors, maintain evidence, and track remediation. Deliver assigned IT projects within networking and security, and contribute to broader IT initiatives. Coordinate with IT leadership and peers, and engage external specialists and contractors as needed. Partner with IT leadership and peers in infrastructure, support, and software development on initiatives originating in those service lines. Contribute network and security expertise to keep delivery on track. Own vendor relationships within the network and security portfolio, including ISPs, network hardware, security tooling, and specialized contractors. Take on broader IT vendor relationships as assigned. Own the network and security operating budget, with broader budget scope as assigned. Track expenses, project upcoming needs, and provide input on annual IT budget planning. Own the on-call rotation for network and security incidents. Drive diagnosis, coordinate internal and external resources, and engage directly in resolution. Own incident communication for network and security events. Notify IT leadership and impacted business stakeholders, provide regular status updates throughout an incident, and deliver post-incident summaries with root cause and follow-up actions. Conduct periodic internal security audits across user access, identity hygiene, configuration baselines, vulnerability posture, and policy adherence. Remediate findings in partnership with the IT manager. Maintain and enforce IT network and security policies, procedures, runbooks, technical documentation, and asset inventory. Contribute to the creation and modification of policies as needed. Identify and propose improvements in network design, security posture, monitoring coverage, and tool consolidation. Deliver approved initiatives. Non-Essential Functions Running cables and installing hardware. Other duties as assigned. Minimum Qualifications or Experience Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Network Engineering, or a related technical discipline. Equivalent professional experience considered in lieu of degree. 5+ years of progressive experience in enterprise network engineering and information security. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Experience operating in partnership with a managed detection and response (MDR) provider or security operations center (SOC). Experience with vulnerability management, including scanning tooling (Tenable Nessus or comparable), prioritization, and driving remediation across an organization. Experience operating in an environment with regular external security assessments (penetration testing, cyber insurance reviews, customer security audits) and remediating findings under deadline. Experience supporting multi-site operations or production environments where uptime, security, and consistency of service are operational requirements. Experience delivering IT projects from scope through completion, including scheduling, vendor coordination, and budget tracking. Demonstrated ability to communicate technical concepts clearly to non-technical business stakeholders and to senior leadership. Demonstrated experience adhering to and enforcing security best practices across network, endpoint, and identity domains. Preferred Qualifications or Experience Experience in aviation, aerospace, manufacturing, MRO, or other regulated operational environments. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Active IT industry certifications such as CompTIA Security+ or Network+, Cisco CCNA / CCNP, Palo Alto PCNSA / PCNSE, Microsoft Security or Identity certifications, CISSP, GIAC, or comparable. Experience designing and bringing up network infrastructure at new sites or facilities. Experience with SD-WAN, zero-trust architecture, network segmentation, or related modern network design patterns. Familiarity with security frameworks (NIST, CIS) and audit or compliance work. Experience with security awareness platforms (KnowBe4 or comparable). Experience administering identity and access controls in a hybrid or cloud-first environment. Experience with VOIP or unified communications infrastructure. Supervisory Responsibilities This position has no direct reports. Coordinates day-to-day with external network and security contractors, managed-service providers, and the company's SOC and MDR partner. Provides technical guidance and security expertise to IT team peers and to business stakeholders as needed. Knowledge, Skills, and Other Attributes Deep technical expertise across enterprise networking (firewalls, switching, wireless, routing) and information security (endpoint, identity, vulnerability management, security monitoring). . click apply for full job details
Security Engineer - Network & Identity (Contractor)
Sungrow USA Corporation Houston, Texas
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.
09/28/2026
Full time
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board