Job Description Job Description Position Overview The Network Security Engineer role sits within the Information Technology Department and exists to keep the organization's WAN, LAN, voice, and cloud infrastructure running efficiently, reliably, and securely. While the role retains the full scope of traditional network engineering, this description places heightened emphasis on cybersecurity operations and Microsoft Azure security, reflecting the organization's continued shift toward hybrid and cloud-hosted infrastructure. The successful candidate will partner with third-party providers and internal IT leadership to defend the network and cloud environment against malware, intrusion, and emerging cyber-threats; maintain firewalls, identity controls, and access policies; ensure reliable backups and disaster recovery; and act as a key contributor to the organization's overall security posture across both on-premises and Azure-hosted resources. Cybersecurity & Azure Security Responsibilities (Primary Emphasis) • Lead and support efforts to harden the network and cloud environment against malware, ransomware, and intrusion, including proactive identification of emerging cyber-threats and at-risk areas across LAN, WAN, WLAN, SD-WAN, and Azure-hosted workloads. • Design, implement, and maintain security controls within Microsoft Azure, including Azure Active Directory / Entra ID, Conditional Access policies, Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), and Azure role-based access control (RBAC). • Monitor and respond to alerts from Microsoft Defender for Cloud, Microsoft Sentinel (or equivalent SIEM), and Helpdesk/security partner tooling, escalating high-risk issues to IT Management in a timely manner. • Configure and maintain Cisco Meraki firewall security settings, network segmentation (subnetting/VLANs), and access permission groups to enforce least-privilege principles across both on-premises and cloud resources. • Implement and maintain Azure network security components such as Network Security Groups (NSGs), Azure Firewall, Azure VPN/ExpressRoute connections, and Azure Bastion for secure remote access. • Support identity and access management initiatives, including device hardening, endpoint security, single sign-on (SSO), and Group Policy enforcement for domain-wide computer and user security baselines. • Ensure secure, regularly-tested backups of critical systems and servers, including the organization's Nutanix hyper-converged and Cohesity backup environments, with attention to ransomware-resilient and immutable backup practices. • Participate in vulnerability management and patching cycles (Microsoft Intune), prioritizing remediation of high-severity findings across servers, network devices, and cloud resources. • Maintain and continuously improve security documentation, including network topology, data flow, incident response procedures, and Azure security architecture diagrams. • Assist in security awareness initiatives and end-user training to reinforce safe computing practices and compliance with IT framework, policies, and procedures. • Support audits and compliance efforts related to data protection, access control, and cloud security standards, providing evidence and documentation as required. Core Network Engineering Responsibilities • Perform day-to-day networking tasks to ensure network reliability, availability, and serviceability with minimal interruption. • Provide technical support, respond to work orders and tickets, and analyze and resolve reported network problems. • Install and troubleshoot LAN, WAN, WLAN, and SD-WAN connectivity, including DNS, DHCP, and TCP/IP services. • Develop and maintain complex documentation for installation, network topology, and troubleshooting of communications hardware and software. • Work with the IT Team to coordinate and install server updates, patches, and certificates. • Maintain an enterprise-wide inventory of all server and network infrastructure assets, including warranty status and lifecycle management. • Provide server systems support, administration, and documentation, including Windows Server operating systems and hypervisor-based environments (Nutanix AHV). • Work with the Sr. Network Engineer to maintain and update the company's hyper-converged Nutanix solution and Cohesity backup solution. • Create and maintain IT-related end-user training documentation. • Participate in the on-call rotation as needed and required. • Demonstrate excellent time management and prioritization skills, balancing routine tasks with urgent support and security needs. • Adhere to, support, and foster compliance with the IT framework, policies, and procedures across the user base. • Act as a strong team player who continually seeks to grow technical expertise and the scope of the role. Knowledge, Skills & Experience Required Technical Skills • Strong working knowledge of cybersecurity principles, including threat detection, firewall management (Cisco Meraki and Fortigate), network segmentation, and identity-based security controls. • Hands-on experience with Microsoft Azure security tools and services (Azure AD/Entra ID, Conditional Access, MFA, NSGs, Azure Firewall, Defender for Cloud, or Sentinel). • Ability to troubleshoot current Windows and Server operating systems, including patching and hardware support. • Experience troubleshooting LAN, WAN, WLAN, and SD-WAN environments (DNS, DHCP, TCP/IP). • Solid understanding of network segmentation (sub-netting) and VLANs. • Experience with a patch management solution (WSUS and/or Microsoft Intune) and structured vulnerability remediation. • Familiarity or working knowledge of hypervisor-based servers and computing; Nutanix AHV experience a plus. • Understanding of hybrid identity and access management concepts spanning on-premises Active Directory and Azure AD. Desired Technical Skills • Microsoft Azure security certifications (e.g., SC-200, SC-300, AZ-500) or demonstrated equivalent experience. • Citrix XenApp Server support (Studio, Director, Storefront, Apps). • Active Directory domain infrastructure and Group Policy administration for domain-wide computer and user policies. • NTFS file permissions and data access governance. • Security focus on device hardening, endpoint protection, and identity management across hybrid environments. • Experience with SIEM platforms, security monitoring, and incident response workflows. Education & Experience • Minimum 10 years of experience working in an IT department performing similar duties, with demonstrated exposure to network security and cloud security practices. • Professional certifications such as MCP, A+, Network+, Security+, or Microsoft Azure security certifications (SC-200, SC-300, AZ-500) are preferred. Working Environment • No special physical requirements for this position. • General office conditions. • Some light lifting and bending. • Periods of sitting. • Travel 20% Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
09/24/2026
Full time
Job Description Job Description Position Overview The Network Security Engineer role sits within the Information Technology Department and exists to keep the organization's WAN, LAN, voice, and cloud infrastructure running efficiently, reliably, and securely. While the role retains the full scope of traditional network engineering, this description places heightened emphasis on cybersecurity operations and Microsoft Azure security, reflecting the organization's continued shift toward hybrid and cloud-hosted infrastructure. The successful candidate will partner with third-party providers and internal IT leadership to defend the network and cloud environment against malware, intrusion, and emerging cyber-threats; maintain firewalls, identity controls, and access policies; ensure reliable backups and disaster recovery; and act as a key contributor to the organization's overall security posture across both on-premises and Azure-hosted resources. Cybersecurity & Azure Security Responsibilities (Primary Emphasis) • Lead and support efforts to harden the network and cloud environment against malware, ransomware, and intrusion, including proactive identification of emerging cyber-threats and at-risk areas across LAN, WAN, WLAN, SD-WAN, and Azure-hosted workloads. • Design, implement, and maintain security controls within Microsoft Azure, including Azure Active Directory / Entra ID, Conditional Access policies, Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), and Azure role-based access control (RBAC). • Monitor and respond to alerts from Microsoft Defender for Cloud, Microsoft Sentinel (or equivalent SIEM), and Helpdesk/security partner tooling, escalating high-risk issues to IT Management in a timely manner. • Configure and maintain Cisco Meraki firewall security settings, network segmentation (subnetting/VLANs), and access permission groups to enforce least-privilege principles across both on-premises and cloud resources. • Implement and maintain Azure network security components such as Network Security Groups (NSGs), Azure Firewall, Azure VPN/ExpressRoute connections, and Azure Bastion for secure remote access. • Support identity and access management initiatives, including device hardening, endpoint security, single sign-on (SSO), and Group Policy enforcement for domain-wide computer and user security baselines. • Ensure secure, regularly-tested backups of critical systems and servers, including the organization's Nutanix hyper-converged and Cohesity backup environments, with attention to ransomware-resilient and immutable backup practices. • Participate in vulnerability management and patching cycles (Microsoft Intune), prioritizing remediation of high-severity findings across servers, network devices, and cloud resources. • Maintain and continuously improve security documentation, including network topology, data flow, incident response procedures, and Azure security architecture diagrams. • Assist in security awareness initiatives and end-user training to reinforce safe computing practices and compliance with IT framework, policies, and procedures. • Support audits and compliance efforts related to data protection, access control, and cloud security standards, providing evidence and documentation as required. Core Network Engineering Responsibilities • Perform day-to-day networking tasks to ensure network reliability, availability, and serviceability with minimal interruption. • Provide technical support, respond to work orders and tickets, and analyze and resolve reported network problems. • Install and troubleshoot LAN, WAN, WLAN, and SD-WAN connectivity, including DNS, DHCP, and TCP/IP services. • Develop and maintain complex documentation for installation, network topology, and troubleshooting of communications hardware and software. • Work with the IT Team to coordinate and install server updates, patches, and certificates. • Maintain an enterprise-wide inventory of all server and network infrastructure assets, including warranty status and lifecycle management. • Provide server systems support, administration, and documentation, including Windows Server operating systems and hypervisor-based environments (Nutanix AHV). • Work with the Sr. Network Engineer to maintain and update the company's hyper-converged Nutanix solution and Cohesity backup solution. • Create and maintain IT-related end-user training documentation. • Participate in the on-call rotation as needed and required. • Demonstrate excellent time management and prioritization skills, balancing routine tasks with urgent support and security needs. • Adhere to, support, and foster compliance with the IT framework, policies, and procedures across the user base. • Act as a strong team player who continually seeks to grow technical expertise and the scope of the role. Knowledge, Skills & Experience Required Technical Skills • Strong working knowledge of cybersecurity principles, including threat detection, firewall management (Cisco Meraki and Fortigate), network segmentation, and identity-based security controls. • Hands-on experience with Microsoft Azure security tools and services (Azure AD/Entra ID, Conditional Access, MFA, NSGs, Azure Firewall, Defender for Cloud, or Sentinel). • Ability to troubleshoot current Windows and Server operating systems, including patching and hardware support. • Experience troubleshooting LAN, WAN, WLAN, and SD-WAN environments (DNS, DHCP, TCP/IP). • Solid understanding of network segmentation (sub-netting) and VLANs. • Experience with a patch management solution (WSUS and/or Microsoft Intune) and structured vulnerability remediation. • Familiarity or working knowledge of hypervisor-based servers and computing; Nutanix AHV experience a plus. • Understanding of hybrid identity and access management concepts spanning on-premises Active Directory and Azure AD. Desired Technical Skills • Microsoft Azure security certifications (e.g., SC-200, SC-300, AZ-500) or demonstrated equivalent experience. • Citrix XenApp Server support (Studio, Director, Storefront, Apps). • Active Directory domain infrastructure and Group Policy administration for domain-wide computer and user policies. • NTFS file permissions and data access governance. • Security focus on device hardening, endpoint protection, and identity management across hybrid environments. • Experience with SIEM platforms, security monitoring, and incident response workflows. Education & Experience • Minimum 10 years of experience working in an IT department performing similar duties, with demonstrated exposure to network security and cloud security practices. • Professional certifications such as MCP, A+, Network+, Security+, or Microsoft Azure security certifications (SC-200, SC-300, AZ-500) are preferred. Working Environment • No special physical requirements for this position. • General office conditions. • Some light lifting and bending. • Periods of sitting. • Travel 20% Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Job Description Job Description Description: MDVIP: Transforming Primary Care, One Patient at a Time MDVIP is a national leader in personalized healthcare, empowering over 425,000 members to achieve their health and wellness goals through a network of more than 1,400 concierge primary care physicians. Our program emphasizes preventive medicine, offering comprehensive screenings, advanced diagnostics, and individualized wellness plans. Recognized as a Great Place to Work since 2018, MDVIP is committed to excellence in patient care and employee satisfaction. Position Summary The Network Security Engineer is an individual contributor role reporting to the Sr. Network Operations Manager. This is a contract-to-perm position (6-month contract), based in Boca Raton, FL (Hybrid), supporting the Boca Raton and Atlanta (ATL) data centers. This role provides dedicated engineering capacity for the ownership, hardening, and reliability of the organization's on-premises and hybrid infrastructure. The Network Security Engineer sustains a predictable remediation cadence across recurring security obligations - including monthly patching, zero-day response, vulnerability remediation, OS hardening, and cloud security score - while maintaining core platform services that underpin 24/7 operational reliability. This role is critical to reducing key-person risk, closing the capacity gap between rising compliance/audit workloads and existing staffing, and ensuring remediation tied to penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments is completed on schedule. Key Responsibilities Security Remediation & Compliance Execute remediation for findings from penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments, ensuring items are tracked to closure within defined SLAs; work with Project Managers, technology stack owners, and third-party resources to ensure timely delivery. Lead monthly patching cycles and rapid zero-day response across on-prem and hybrid server environments. Apply security remediations on infrastructure appliances including Cisco switches, firewalls (Palo Alto, Fortinet, Cisco Meraki), Linux appliances, and the virtual server environment and SANs (VMware, vSphere). Perform vulnerability remediation and OS/system hardening in line with established security baselines and audit requirements. Maintain a remediation burndown and support reporting on patch/vulnerability KPIs, including critical remediation timelines and cloud security score. Core Platform & Infrastructure Ownership Track Azure Security Score trends and drive remediation of flagged recommendations, providing regular posture reporting to leadership and audit stakeholders. Manage the full PKI infrastructure/SSL certificate lifecycle, including issuance, renewal, tracking, and remediation of expiring or non-compliant certificates, and manage key vault rotations for critical cloud-hosted applications. Utilize automation tools to deploy required machine certificates across the organization. Manage syslog retention and forwarding across on-premises and cloud infrastructure, supporting the Security team's SIEM ingestion, correlation, and compliance reporting needs. Administer network micro-segmentation using Illumio, including policy design, enforcement, and ongoing tuning. Review and administer security tools to harden network edge security, including next generation firewalls, SD-WAN, and switching, striving for zero trust networks. Manage wireless security, including network access control (NAC), utilizing Cisco wireless and HPE Aruba ClearPass. Administer Identity and Access Management/Privileged Access Management (IAM/PAM) using BeyondTrust for remote server access, including access reviews and privileged session controls. Manage and review Azure RBAC roles and access privileges, and perform Active Directory hardening in compliance with discovered vulnerabilities and best practices. Review and secure SDLC servers and hosted applications, both on-premises and in Azure, applying measures to keep all public endpoints secure. Operational Reliability & Risk Reduction Balance day-to-day operational demands (SSL renewals/rotations, security remediation, configuration hardening, troubleshooting) with planned, time-bound deliverables. Identify and reduce single-point-of-failure risk by documenting procedures and cross-training across PKI, AD, cloud access, segmentation, and patching functions. Partner with the Azure DevOps and Security teams to align on-prem/hybrid remediation with broader cloud governance and security initiatives. Escalate emerging risks, audit exceptions, and outage-driving conflicts between operational and remediation priorities to leadership. Key Competencies Analytical: synthesizes complex or diverse technical information, using intuition and experience to complement data. Collaboration: openly partners with security operations, DevOps, and business stakeholders, valuing diverse perspectives and building productive relationships. Communication: listens and responds effectively to stakeholder needs; writes and speaks clearly and persuasively. Initiative and personal accountability: identifies and creates solutions independently, sets and meets deadlines, and reports timely and prepared. Problem solving/decision making: thinks strategically, drawing on diverse sources to identify issues, risks, and trends and determine optimal, timely solutions. Strong troubleshooting skills and the ability to manage competing priorities between reactive operational work and scheduled remediation projects. Ability to support 24/7 platform reliability, including scheduled evening and weekend work for monthly patching cycles, zero-day response, and maintenance outside normal business hours. Ability to travel periodically between the Boca Raton, FL and Atlanta (ATL) data centers as needed. Requirements: Qualifications Required Qualifications Bachelor's degree in Computer Science, Information Security, or a related field; at least five (5) years of related business experience in network security, systems engineering, or infrastructure operations in an enterprise environment, or an equivalent combination of education and professional experience. Hands-on experience with both on-premises and cloud infrastructure platforms, including vulnerability management, patch management, and OS hardening across Windows and/or Linux server environments. Experience with PKI/SSL certificate lifecycle management and IAM/PAM tools (e.g., BeyondTrust or equivalent). Experience partnering with security operations/SIEM teams to onboard new log sources and ensure reliable syslog delivery from network infrastructure. Working knowledge of hybrid Active Directory/Microsoft Entra ID environments and familiarity with network segmentation concepts and tools (e.g., Illumio or comparable micro-segmentation platforms). Experience supporting audit and compliance remediation cycles, such as HIPAA assessments, SRAs, or penetration test findings. Proficiency with firewalls and network security appliances (Palo Alto, Fortinet, Cisco Meraki, Cisco switches), SD-WAN/next-generation firewall administration, and wireless security/NAC (Cisco wireless, HPE Aruba ClearPass). This is a hybrid role based in Boca Raton, FL, with periodic on-site support required at the Boca Raton and Atlanta (ATL) data centers. At no time may work be performed, or computer systems accessed, from outside of the U.S. Preferred Qualifications Vendor-specific certifications, Microsoft Azure, Security+, CISSP, GIAC, or an equivalent security certification. Scripting/automation experience (e.g., PowerShell) for remediation and hardening tasks. Why Join MDVIP? Be part of a mission-driven organization leading innovation in personalized healthcare. Drive transformation and growth in a dynamic, fast-paced environment. Competitive Compensation: Attractive base salary complemented by performance-based incentives. Comprehensive Benefits: Health, dental, vision insurance, and retirement plans. Professional Development: Access to ongoing training and leadership development programs. Positive Work Environment: Consistently recognized as a Great Place to Work , fostering a culture of collaboration and excellence. MDVIP is an Equal Opportunity Employer and is committed to fostering an inclusive and diverse workplace. We welcome applicants of all backgrounds and do not discriminate based on race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected status. We believe that diversity and inclusion drive innovation and strengthen our company culture. If you require accommodations during the application or interview process, please let us know, and we will be happy to assist. Pay Transparency: Our compensation reflects the cost of labor across appropriate US geographic markets. Pay is based on several factors including but not limited to market location and may vary depending on job-related knowledge, skills, and education/training and a candidate's work experience. Hired applicants are offered annual incentive compensation programs, subject to applicable eligibility requirements . click apply for full job details
09/24/2026
Full time
Job Description Job Description Description: MDVIP: Transforming Primary Care, One Patient at a Time MDVIP is a national leader in personalized healthcare, empowering over 425,000 members to achieve their health and wellness goals through a network of more than 1,400 concierge primary care physicians. Our program emphasizes preventive medicine, offering comprehensive screenings, advanced diagnostics, and individualized wellness plans. Recognized as a Great Place to Work since 2018, MDVIP is committed to excellence in patient care and employee satisfaction. Position Summary The Network Security Engineer is an individual contributor role reporting to the Sr. Network Operations Manager. This is a contract-to-perm position (6-month contract), based in Boca Raton, FL (Hybrid), supporting the Boca Raton and Atlanta (ATL) data centers. This role provides dedicated engineering capacity for the ownership, hardening, and reliability of the organization's on-premises and hybrid infrastructure. The Network Security Engineer sustains a predictable remediation cadence across recurring security obligations - including monthly patching, zero-day response, vulnerability remediation, OS hardening, and cloud security score - while maintaining core platform services that underpin 24/7 operational reliability. This role is critical to reducing key-person risk, closing the capacity gap between rising compliance/audit workloads and existing staffing, and ensuring remediation tied to penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments is completed on schedule. Key Responsibilities Security Remediation & Compliance Execute remediation for findings from penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments, ensuring items are tracked to closure within defined SLAs; work with Project Managers, technology stack owners, and third-party resources to ensure timely delivery. Lead monthly patching cycles and rapid zero-day response across on-prem and hybrid server environments. Apply security remediations on infrastructure appliances including Cisco switches, firewalls (Palo Alto, Fortinet, Cisco Meraki), Linux appliances, and the virtual server environment and SANs (VMware, vSphere). Perform vulnerability remediation and OS/system hardening in line with established security baselines and audit requirements. Maintain a remediation burndown and support reporting on patch/vulnerability KPIs, including critical remediation timelines and cloud security score. Core Platform & Infrastructure Ownership Track Azure Security Score trends and drive remediation of flagged recommendations, providing regular posture reporting to leadership and audit stakeholders. Manage the full PKI infrastructure/SSL certificate lifecycle, including issuance, renewal, tracking, and remediation of expiring or non-compliant certificates, and manage key vault rotations for critical cloud-hosted applications. Utilize automation tools to deploy required machine certificates across the organization. Manage syslog retention and forwarding across on-premises and cloud infrastructure, supporting the Security team's SIEM ingestion, correlation, and compliance reporting needs. Administer network micro-segmentation using Illumio, including policy design, enforcement, and ongoing tuning. Review and administer security tools to harden network edge security, including next generation firewalls, SD-WAN, and switching, striving for zero trust networks. Manage wireless security, including network access control (NAC), utilizing Cisco wireless and HPE Aruba ClearPass. Administer Identity and Access Management/Privileged Access Management (IAM/PAM) using BeyondTrust for remote server access, including access reviews and privileged session controls. Manage and review Azure RBAC roles and access privileges, and perform Active Directory hardening in compliance with discovered vulnerabilities and best practices. Review and secure SDLC servers and hosted applications, both on-premises and in Azure, applying measures to keep all public endpoints secure. Operational Reliability & Risk Reduction Balance day-to-day operational demands (SSL renewals/rotations, security remediation, configuration hardening, troubleshooting) with planned, time-bound deliverables. Identify and reduce single-point-of-failure risk by documenting procedures and cross-training across PKI, AD, cloud access, segmentation, and patching functions. Partner with the Azure DevOps and Security teams to align on-prem/hybrid remediation with broader cloud governance and security initiatives. Escalate emerging risks, audit exceptions, and outage-driving conflicts between operational and remediation priorities to leadership. Key Competencies Analytical: synthesizes complex or diverse technical information, using intuition and experience to complement data. Collaboration: openly partners with security operations, DevOps, and business stakeholders, valuing diverse perspectives and building productive relationships. Communication: listens and responds effectively to stakeholder needs; writes and speaks clearly and persuasively. Initiative and personal accountability: identifies and creates solutions independently, sets and meets deadlines, and reports timely and prepared. Problem solving/decision making: thinks strategically, drawing on diverse sources to identify issues, risks, and trends and determine optimal, timely solutions. Strong troubleshooting skills and the ability to manage competing priorities between reactive operational work and scheduled remediation projects. Ability to support 24/7 platform reliability, including scheduled evening and weekend work for monthly patching cycles, zero-day response, and maintenance outside normal business hours. Ability to travel periodically between the Boca Raton, FL and Atlanta (ATL) data centers as needed. Requirements: Qualifications Required Qualifications Bachelor's degree in Computer Science, Information Security, or a related field; at least five (5) years of related business experience in network security, systems engineering, or infrastructure operations in an enterprise environment, or an equivalent combination of education and professional experience. Hands-on experience with both on-premises and cloud infrastructure platforms, including vulnerability management, patch management, and OS hardening across Windows and/or Linux server environments. Experience with PKI/SSL certificate lifecycle management and IAM/PAM tools (e.g., BeyondTrust or equivalent). Experience partnering with security operations/SIEM teams to onboard new log sources and ensure reliable syslog delivery from network infrastructure. Working knowledge of hybrid Active Directory/Microsoft Entra ID environments and familiarity with network segmentation concepts and tools (e.g., Illumio or comparable micro-segmentation platforms). Experience supporting audit and compliance remediation cycles, such as HIPAA assessments, SRAs, or penetration test findings. Proficiency with firewalls and network security appliances (Palo Alto, Fortinet, Cisco Meraki, Cisco switches), SD-WAN/next-generation firewall administration, and wireless security/NAC (Cisco wireless, HPE Aruba ClearPass). This is a hybrid role based in Boca Raton, FL, with periodic on-site support required at the Boca Raton and Atlanta (ATL) data centers. At no time may work be performed, or computer systems accessed, from outside of the U.S. Preferred Qualifications Vendor-specific certifications, Microsoft Azure, Security+, CISSP, GIAC, or an equivalent security certification. Scripting/automation experience (e.g., PowerShell) for remediation and hardening tasks. Why Join MDVIP? Be part of a mission-driven organization leading innovation in personalized healthcare. Drive transformation and growth in a dynamic, fast-paced environment. Competitive Compensation: Attractive base salary complemented by performance-based incentives. Comprehensive Benefits: Health, dental, vision insurance, and retirement plans. Professional Development: Access to ongoing training and leadership development programs. Positive Work Environment: Consistently recognized as a Great Place to Work , fostering a culture of collaboration and excellence. MDVIP is an Equal Opportunity Employer and is committed to fostering an inclusive and diverse workplace. We welcome applicants of all backgrounds and do not discriminate based on race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected status. We believe that diversity and inclusion drive innovation and strengthen our company culture. If you require accommodations during the application or interview process, please let us know, and we will be happy to assist. Pay Transparency: Our compensation reflects the cost of labor across appropriate US geographic markets. Pay is based on several factors including but not limited to market location and may vary depending on job-related knowledge, skills, and education/training and a candidate's work experience. Hired applicants are offered annual incentive compensation programs, subject to applicable eligibility requirements . click apply for full job details
Job Description Job Description About Etched Etched is building hardware for frontier intelligence. We co-design chips, racks, software, and manufacturing to deliver best-in-class throughput and latency across both prefill and decode workloads. Our first products are heavily focused on inference . Backed by hundreds of millions from top-tier investors and staffed by leading engineers, Etched is redefining the infrastructure layer for the fastest growing industry in history. Job Summary Etched's infrastructure spans some of the most sensitive compute environments in the industry: bare-metal HPC clusters running proprietary ASIC workloads, hybrid on-prem/cloud deployments, and internal toolchains that house irreplaceable chip design IP. As we scale from early silicon to production, securing these environments is foundational - not an afterthought. As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden our physical and virtual networks, enforce least-privilege access to chip design environments, and build the detection and response capabilities that keep our most sensitive assets safe. This is a high-ownership role for someone who wants to shape security architecture at a company building the compute infrastructure for the next decade of AI - not maintain someone else's stack. Key Responsibilities Design and implement a zero-trust network architecture across on-prem datacenters, multiple office locations, and multi-cloud platforms, including secure remote access that eliminates VPN sprawl without sacrificing engineer usability and speed Define and enforce network segmentation policies that isolate sensitive ASIC development workflows from general infrastructure, customer access, validation labs, and manufacturing infrastructure Balancing prevention and detection, deploy, tune, and operate NDR, IDS/IPS, and next-generation firewalls across our physical and virtual network fabric; build automation to continuously assess and enforce firewall rules, ACLs, and routing policies - treating network security configuration as code Integrate and operate EDR/XDR, MDM/MAM, SASE, and CASB tooling in partnership with end-user and IT teams, enforcing unified DLP policies and device compliance posture across endpoint, cloud, and network control planes to eliminate data exfiltration risk Own our vulnerability management process for network-layer exposure: scanning, prioritization, and remediation tracking in partnership with infrastructure engineers Lead incident response for network-layer security events: detection, containment, root-cause analysis, and post-incident hardening Partner with legal, compliance, and leadership to support regulatory requirements and customer security reviews as they arise Architect and deploy network segmentation for our HPC clusters, isolating EDA tool traffic, ASIC simulation workloads, and CI pipelines from each other and from the corporate network Architect and deploy a ZTNA-based corporate network that eliminates VPN sprawl and ensures end-user devices maintain a consistent security posture and seamless access to sensitive development environments - whether engineers are on-site, remote, or traveling - replacing location-dependent trust with continuous identity and device health verification Design and implement a scalable NDR pipeline that ingests flow data across bare-metal switches and cloud VPCs, feeds a centralized SIEM, and generates actionable alerts with low false-positive rates Develop runbooks and automated playbooks for the highest-probability incident scenarios - credential compromise, lateral movement, and exfiltration from IP-sensitive environments Integrate EDR/XDR telemetry with SASE enforcement and CASB inline controls to build a unified DLP detection and response pipeline spanning endpoints, cloud SaaS, and the corporate network Partner with end-user and IT teams to roll out MDM/MAM policies that containerize sensitive IP on engineer devices and enforce compliance-based conditional access across managed and unmanaged environments You may be a good fit if you have (Must-have qualifications) Bring deep, broad networking expertise - from low-level packet analysis and firewall log forensics to BGP configuration, multi-cloud networking, and CASB/SASE integration across a diverse SaaS landscape Have hands-on experience with the Fortinet ecosystem - firewalls, FortiSASE, FortiAPs, and switches - and are comfortable with Arista switch platforms, including configuration, EOS automation, and integration into a broader security architecture Treat security as an engineering discipline: you write code and automation rather than relying on point-and-click tooling, version-control your configurations, and develop intent-driven network automation Have experience securing high-value compute environments - datacenters, HPC clusters, semiconductor design environments, or similar settings where the cost of a breach is extremely high Have deployed and integrated EDR/XDR, MDM/MAM, SASE, and CASB tooling, and understand how to stitch them together into a unified DLP and access control framework that spans endpoints, cloud, and the network Have built or operated ZTNA-based access models and understand how to enforce consistent security posture across on-site, remote, and traveling users without degrading the experience for engineers Are comfortable owning your domain with minimal oversight: you can independently scope a project, identify the right tooling, and drive it to completion Have strong Linux fundamentals and understand how OS-level networking (iptables/nftables, network namespaces, eBPF) interacts with physical and virtual network security controls Have built or operated network security monitoring at scale - you know the difference between a good alert and noise, and you can architect a detection pipeline that surfaces real signal Can communicate risk clearly to both technical peers and non-technical leadership, and can translate security requirements into actionable infrastructure changes Strong candidates may also have experience with (Nice-to-have qualifications) Experience with EDA environments or semiconductor IP security Familiarity with cloud-native network security controls on AWS, GCP, or Azure (security groups, VPC flow logs, cloud firewalls, CSPM) Background in or exposure to NIST, SOC 2, or ISO 27001 frameworks Experience with eBPF-based network observability and security tooling Benefits Medical, dental, and vision packages with generous premium coverage $500 per month credit for waiving medical benefits Housing subsidy of $2,500 per month for those living within walking distance of the office Relocation support for those moving to San Jose (Santana Row) Various wellness benefits covering fitness, mental health, and more Daily lunch and dinner in our office Unlimited compute budget subject to ROI justification How we're different Etched believes in the Bitter Lesson. We are the first inference-focused frontier AI system. Our addressable market is the entirety of inference, unlike many of our competitors. We are a fully in-person team in San Jose (Santana Row), and greatly value engineering skills. We do not have boundaries between engineering and research, and we expect all of our technical staff to contribute to both and work across disciplines as needed. Compensation Range: $175K - $275K
09/24/2026
Full time
Job Description Job Description About Etched Etched is building hardware for frontier intelligence. We co-design chips, racks, software, and manufacturing to deliver best-in-class throughput and latency across both prefill and decode workloads. Our first products are heavily focused on inference . Backed by hundreds of millions from top-tier investors and staffed by leading engineers, Etched is redefining the infrastructure layer for the fastest growing industry in history. Job Summary Etched's infrastructure spans some of the most sensitive compute environments in the industry: bare-metal HPC clusters running proprietary ASIC workloads, hybrid on-prem/cloud deployments, and internal toolchains that house irreplaceable chip design IP. As we scale from early silicon to production, securing these environments is foundational - not an afterthought. As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden our physical and virtual networks, enforce least-privilege access to chip design environments, and build the detection and response capabilities that keep our most sensitive assets safe. This is a high-ownership role for someone who wants to shape security architecture at a company building the compute infrastructure for the next decade of AI - not maintain someone else's stack. Key Responsibilities Design and implement a zero-trust network architecture across on-prem datacenters, multiple office locations, and multi-cloud platforms, including secure remote access that eliminates VPN sprawl without sacrificing engineer usability and speed Define and enforce network segmentation policies that isolate sensitive ASIC development workflows from general infrastructure, customer access, validation labs, and manufacturing infrastructure Balancing prevention and detection, deploy, tune, and operate NDR, IDS/IPS, and next-generation firewalls across our physical and virtual network fabric; build automation to continuously assess and enforce firewall rules, ACLs, and routing policies - treating network security configuration as code Integrate and operate EDR/XDR, MDM/MAM, SASE, and CASB tooling in partnership with end-user and IT teams, enforcing unified DLP policies and device compliance posture across endpoint, cloud, and network control planes to eliminate data exfiltration risk Own our vulnerability management process for network-layer exposure: scanning, prioritization, and remediation tracking in partnership with infrastructure engineers Lead incident response for network-layer security events: detection, containment, root-cause analysis, and post-incident hardening Partner with legal, compliance, and leadership to support regulatory requirements and customer security reviews as they arise Architect and deploy network segmentation for our HPC clusters, isolating EDA tool traffic, ASIC simulation workloads, and CI pipelines from each other and from the corporate network Architect and deploy a ZTNA-based corporate network that eliminates VPN sprawl and ensures end-user devices maintain a consistent security posture and seamless access to sensitive development environments - whether engineers are on-site, remote, or traveling - replacing location-dependent trust with continuous identity and device health verification Design and implement a scalable NDR pipeline that ingests flow data across bare-metal switches and cloud VPCs, feeds a centralized SIEM, and generates actionable alerts with low false-positive rates Develop runbooks and automated playbooks for the highest-probability incident scenarios - credential compromise, lateral movement, and exfiltration from IP-sensitive environments Integrate EDR/XDR telemetry with SASE enforcement and CASB inline controls to build a unified DLP detection and response pipeline spanning endpoints, cloud SaaS, and the corporate network Partner with end-user and IT teams to roll out MDM/MAM policies that containerize sensitive IP on engineer devices and enforce compliance-based conditional access across managed and unmanaged environments You may be a good fit if you have (Must-have qualifications) Bring deep, broad networking expertise - from low-level packet analysis and firewall log forensics to BGP configuration, multi-cloud networking, and CASB/SASE integration across a diverse SaaS landscape Have hands-on experience with the Fortinet ecosystem - firewalls, FortiSASE, FortiAPs, and switches - and are comfortable with Arista switch platforms, including configuration, EOS automation, and integration into a broader security architecture Treat security as an engineering discipline: you write code and automation rather than relying on point-and-click tooling, version-control your configurations, and develop intent-driven network automation Have experience securing high-value compute environments - datacenters, HPC clusters, semiconductor design environments, or similar settings where the cost of a breach is extremely high Have deployed and integrated EDR/XDR, MDM/MAM, SASE, and CASB tooling, and understand how to stitch them together into a unified DLP and access control framework that spans endpoints, cloud, and the network Have built or operated ZTNA-based access models and understand how to enforce consistent security posture across on-site, remote, and traveling users without degrading the experience for engineers Are comfortable owning your domain with minimal oversight: you can independently scope a project, identify the right tooling, and drive it to completion Have strong Linux fundamentals and understand how OS-level networking (iptables/nftables, network namespaces, eBPF) interacts with physical and virtual network security controls Have built or operated network security monitoring at scale - you know the difference between a good alert and noise, and you can architect a detection pipeline that surfaces real signal Can communicate risk clearly to both technical peers and non-technical leadership, and can translate security requirements into actionable infrastructure changes Strong candidates may also have experience with (Nice-to-have qualifications) Experience with EDA environments or semiconductor IP security Familiarity with cloud-native network security controls on AWS, GCP, or Azure (security groups, VPC flow logs, cloud firewalls, CSPM) Background in or exposure to NIST, SOC 2, or ISO 27001 frameworks Experience with eBPF-based network observability and security tooling Benefits Medical, dental, and vision packages with generous premium coverage $500 per month credit for waiving medical benefits Housing subsidy of $2,500 per month for those living within walking distance of the office Relocation support for those moving to San Jose (Santana Row) Various wellness benefits covering fitness, mental health, and more Daily lunch and dinner in our office Unlimited compute budget subject to ROI justification How we're different Etched believes in the Bitter Lesson. We are the first inference-focused frontier AI system. Our addressable market is the entirety of inference, unlike many of our competitors. We are a fully in-person team in San Jose (Santana Row), and greatly value engineering skills. We do not have boundaries between engineering and research, and we expect all of our technical staff to contribute to both and work across disciplines as needed. Compensation Range: $175K - $275K
Job Description Job Description Company Description: For over 80 years, Puffer-Sweiven has set the standard in equipment and services for process control, automation, safety, and reliability. We help process-intensive facilities run more efficiently and safely by delivering quality products, technical support, and knowledgeable staff to implement the needed process solutions - with the goal of exceeding customer expectations. Our dedication brings the most advanced products and services to our customers throughout the Central and Gulf Coast regions of Texas. Specialties: As an Emerson Impact Partner, we offer a broad base of superior solutions including the top product lines for a given application. Our specialties at Puffer-Sweiven include: Pressure Management Isolation Valves & Actuation Control Valves & Regulators Process Control & Safety Systems Oil & Gas Automation- fiscal custody metering, controls, and SCADA Reliability Solutions & Services Specialty Pumps & Rotating Equipment Instrumentation Maintenance & Repair Services Duties and Responsibilities Machinery Monitoring & Protection Systems Install, configure, commission, and troubleshoot machinery protection and condition monitoring systems. Configure vibration, process, and asset health monitoring devices and associated infrastructure. Verify sensor installation, signal quality, alarm functionality, and communication integrity. Perform startup, testing, and commissioning activities for online monitoring solutions. Support system upgrades, migrations, and modernization projects. Assist with field acceptance testing and customer turnover activities. Software & System Configuration Install, configure, and maintain machinery health, asset monitoring, and condition monitoring software platforms. Configure assets, measurement points, alarms, databases, users, reporting tools, and system architecture. Perform software updates, patching, backups, and licensing activities. Troubleshoot software, database, and communication-related issues. Provide customer training and technical support. Industrial Networking & Communications Configure and troubleshoot Ethernet-based industrial networks. Assign and manage IP addresses, subnetting, gateways, and network connectivity. Configure and validate industrial communication protocols including Modbus TCP, Modbus RTU, OPC, and similar technologies. Assist customers with cybersecurity requirements, firewall configuration, and network access requests. Integrate monitoring systems with PLCs, DCSs, SCADA systems, historians, and enterprise asset management platforms. Coordinate with plant operations, engineering, automation, and IT personnel to establish secure and reliable communications. Technical Support Provide onsite and remote troubleshooting support. Diagnose hardware, software, communication, and instrumentation issues. Generate detailed service reports and technical documentation. Support emergency callouts and critical customer issues when required. Establish and maintain strong customer relationships through technical expertise and professional service. QUALIFICATIONS: Education/Experience: Associate's Degree in Instrumentation, Electronics, Electrical Technology, Industrial Automation, Computer Networking, Engineering Technology, or equivalent work experience. Minimum 3 years of experience supporting industrial instrumentation, automation, controls, machinery monitoring, reliability systems, or related technologies. Strong technical understanding of industrial instrumentation, automation systems, machinery monitoring, or reliability technologies. Experience installing and commissioning industrial electronic equipment in operating facilities. Experience with Windows-based software installation, configuration, and troubleshooting. Working knowledge of industrial networking principles including TCP/IP communications. Experience configuring IP addresses, switches, gateways, and network connectivity. Experience coordinating with customer IT departments regarding server access, cybersecurity requirements, and firewall exceptions. Ability to interpret electrical drawings, wiring schematics, network diagrams, and technical documentation. Strong troubleshooting and problem-solving skills. Must pass DOT and customer required drug testing. Must meet company requirements for driving privileges. Excellent verbal and written communication skills Preferred proficiency with: Experience with machinery protection and condition monitoring systems. Experience with vibration monitoring, rotating equipment reliability, and asset health technologies. Experience commissioning wireless industrial instrumentation and WirelessHART networks. Experience integrating industrial monitoring systems using Modbus, OPC, MQTT, or similar communication protocols. Experience supporting industrial software applications and databases. Familiarity with machine protection standards such as API 670. Experience supporting reliability programs in refining, petrochemical, chemical, power generation, LNG, pipeline, or manufacturing environments. Knowledge of industrial cybersecurity concepts and network segmentation practices. Basic understanding of vibration analysis and machinery diagnostics.
09/24/2026
Full time
Job Description Job Description Company Description: For over 80 years, Puffer-Sweiven has set the standard in equipment and services for process control, automation, safety, and reliability. We help process-intensive facilities run more efficiently and safely by delivering quality products, technical support, and knowledgeable staff to implement the needed process solutions - with the goal of exceeding customer expectations. Our dedication brings the most advanced products and services to our customers throughout the Central and Gulf Coast regions of Texas. Specialties: As an Emerson Impact Partner, we offer a broad base of superior solutions including the top product lines for a given application. Our specialties at Puffer-Sweiven include: Pressure Management Isolation Valves & Actuation Control Valves & Regulators Process Control & Safety Systems Oil & Gas Automation- fiscal custody metering, controls, and SCADA Reliability Solutions & Services Specialty Pumps & Rotating Equipment Instrumentation Maintenance & Repair Services Duties and Responsibilities Machinery Monitoring & Protection Systems Install, configure, commission, and troubleshoot machinery protection and condition monitoring systems. Configure vibration, process, and asset health monitoring devices and associated infrastructure. Verify sensor installation, signal quality, alarm functionality, and communication integrity. Perform startup, testing, and commissioning activities for online monitoring solutions. Support system upgrades, migrations, and modernization projects. Assist with field acceptance testing and customer turnover activities. Software & System Configuration Install, configure, and maintain machinery health, asset monitoring, and condition monitoring software platforms. Configure assets, measurement points, alarms, databases, users, reporting tools, and system architecture. Perform software updates, patching, backups, and licensing activities. Troubleshoot software, database, and communication-related issues. Provide customer training and technical support. Industrial Networking & Communications Configure and troubleshoot Ethernet-based industrial networks. Assign and manage IP addresses, subnetting, gateways, and network connectivity. Configure and validate industrial communication protocols including Modbus TCP, Modbus RTU, OPC, and similar technologies. Assist customers with cybersecurity requirements, firewall configuration, and network access requests. Integrate monitoring systems with PLCs, DCSs, SCADA systems, historians, and enterprise asset management platforms. Coordinate with plant operations, engineering, automation, and IT personnel to establish secure and reliable communications. Technical Support Provide onsite and remote troubleshooting support. Diagnose hardware, software, communication, and instrumentation issues. Generate detailed service reports and technical documentation. Support emergency callouts and critical customer issues when required. Establish and maintain strong customer relationships through technical expertise and professional service. QUALIFICATIONS: Education/Experience: Associate's Degree in Instrumentation, Electronics, Electrical Technology, Industrial Automation, Computer Networking, Engineering Technology, or equivalent work experience. Minimum 3 years of experience supporting industrial instrumentation, automation, controls, machinery monitoring, reliability systems, or related technologies. Strong technical understanding of industrial instrumentation, automation systems, machinery monitoring, or reliability technologies. Experience installing and commissioning industrial electronic equipment in operating facilities. Experience with Windows-based software installation, configuration, and troubleshooting. Working knowledge of industrial networking principles including TCP/IP communications. Experience configuring IP addresses, switches, gateways, and network connectivity. Experience coordinating with customer IT departments regarding server access, cybersecurity requirements, and firewall exceptions. Ability to interpret electrical drawings, wiring schematics, network diagrams, and technical documentation. Strong troubleshooting and problem-solving skills. Must pass DOT and customer required drug testing. Must meet company requirements for driving privileges. Excellent verbal and written communication skills Preferred proficiency with: Experience with machinery protection and condition monitoring systems. Experience with vibration monitoring, rotating equipment reliability, and asset health technologies. Experience commissioning wireless industrial instrumentation and WirelessHART networks. Experience integrating industrial monitoring systems using Modbus, OPC, MQTT, or similar communication protocols. Experience supporting industrial software applications and databases. Familiarity with machine protection standards such as API 670. Experience supporting reliability programs in refining, petrochemical, chemical, power generation, LNG, pipeline, or manufacturing environments. Knowledge of industrial cybersecurity concepts and network segmentation practices. Basic understanding of vibration analysis and machinery diagnostics.
Job Description Job Description Role: Cybersecurity / Network Engineer Location: Houston, TX (Hybrid) Pay Range: $120,000 - $125,000 / year Benefits: This position is eligible for medical, dental, vision and 401(k) About the Role We are seeking a Cybersecurity / Network Engineer to take ownership of a growing enterprise network and help shape the organization's long-term infrastructure and security strategy. This role combines hands-on network engineering with cybersecurity oversight, making it an excellent opportunity for someone who enjoys building secure, scalable environments while proactively identifying opportunities for improvement. The ideal candidate has experience managing enterprise network infrastructure, strengthening security posture, and partnering with third-party security providers to protect business operations. This position is best suited for someone who takes initiative, thinks strategically, and is comfortable serving as the technical owner of a complex network environment. Primary Responsibilities Manage, maintain, and optimize enterprise network infrastructure across multiple locations. Design, implement, and support secure networking solutions including firewalls, VPNs, wireless networks, and SD-WAN connectivity. Administer and support Cisco Meraki and Fortinet network environments. Partner with third-party security vendors to monitor, investigate, and respond to cybersecurity events. Lead vulnerability remediation efforts and support ongoing risk reduction initiatives. Develop and enhance security policies, standards, and best practices to strengthen the organization's cybersecurity posture. Support compliance initiatives including NIST and CMMC frameworks. Perform regular security assessments, identify infrastructure risks, and recommend improvements. Administer core Microsoft infrastructure including Active Directory, DNS, DHCP, and Group Policy. Troubleshoot network, server, and infrastructure issues across both on-premises and cloud environments. Maintain accurate network diagrams, technical documentation, and system inventories. Provide Tier II/III infrastructure support and collaborate with internal teams on technology initiatives. Participate in infrastructure planning, capacity management, and continuous improvement efforts. Required Background 5+ years of experience in Network Engineering, Cybersecurity, or Infrastructure Engineering. Experience administering Cisco Meraki networking environments. Hands-on experience managing Fortinet/FortiGate firewalls. Strong understanding of enterprise networking including routing, switching, VPNs, wireless networking, and SD-WAN. Experience supporting Microsoft Active Directory, DNS, DHCP, and Group Policy. Knowledge of cybersecurity frameworks such as NIST and/or CMMC. Experience working through a cybersecurity incident, including investigation, remediation, and recovery efforts. Experience coordinating with third-party security vendors or managed security providers. Strong troubleshooting skills across network and infrastructure technologies. Skills & Qualifications Strong understanding of network architecture, cybersecurity principles, and infrastructure best practices. Ability to proactively identify risks and implement long-term technical improvements. Excellent problem-solving and analytical skills. Strong verbal and written communication skills. Ability to work independently while collaborating with cross-functional teams. Experience with VMware, SAN/NAS storage, or cloud infrastructure is a plus. Familiarity with endpoint security platforms, vulnerability management, SIEM solutions, or email security tools is preferred. Comfortable supporting multiple locations and occasional travel to local data center facilities as needed. Self-motivated with a strong sense of ownership and accountability. Addison Group is an Equal Opportunity Employer. Addison Group provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. Addison Group complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. Reasonable accommodation is available for qualified individuals with disabilities, upon request. IND 005-009
09/24/2026
Full time
Job Description Job Description Role: Cybersecurity / Network Engineer Location: Houston, TX (Hybrid) Pay Range: $120,000 - $125,000 / year Benefits: This position is eligible for medical, dental, vision and 401(k) About the Role We are seeking a Cybersecurity / Network Engineer to take ownership of a growing enterprise network and help shape the organization's long-term infrastructure and security strategy. This role combines hands-on network engineering with cybersecurity oversight, making it an excellent opportunity for someone who enjoys building secure, scalable environments while proactively identifying opportunities for improvement. The ideal candidate has experience managing enterprise network infrastructure, strengthening security posture, and partnering with third-party security providers to protect business operations. This position is best suited for someone who takes initiative, thinks strategically, and is comfortable serving as the technical owner of a complex network environment. Primary Responsibilities Manage, maintain, and optimize enterprise network infrastructure across multiple locations. Design, implement, and support secure networking solutions including firewalls, VPNs, wireless networks, and SD-WAN connectivity. Administer and support Cisco Meraki and Fortinet network environments. Partner with third-party security vendors to monitor, investigate, and respond to cybersecurity events. Lead vulnerability remediation efforts and support ongoing risk reduction initiatives. Develop and enhance security policies, standards, and best practices to strengthen the organization's cybersecurity posture. Support compliance initiatives including NIST and CMMC frameworks. Perform regular security assessments, identify infrastructure risks, and recommend improvements. Administer core Microsoft infrastructure including Active Directory, DNS, DHCP, and Group Policy. Troubleshoot network, server, and infrastructure issues across both on-premises and cloud environments. Maintain accurate network diagrams, technical documentation, and system inventories. Provide Tier II/III infrastructure support and collaborate with internal teams on technology initiatives. Participate in infrastructure planning, capacity management, and continuous improvement efforts. Required Background 5+ years of experience in Network Engineering, Cybersecurity, or Infrastructure Engineering. Experience administering Cisco Meraki networking environments. Hands-on experience managing Fortinet/FortiGate firewalls. Strong understanding of enterprise networking including routing, switching, VPNs, wireless networking, and SD-WAN. Experience supporting Microsoft Active Directory, DNS, DHCP, and Group Policy. Knowledge of cybersecurity frameworks such as NIST and/or CMMC. Experience working through a cybersecurity incident, including investigation, remediation, and recovery efforts. Experience coordinating with third-party security vendors or managed security providers. Strong troubleshooting skills across network and infrastructure technologies. Skills & Qualifications Strong understanding of network architecture, cybersecurity principles, and infrastructure best practices. Ability to proactively identify risks and implement long-term technical improvements. Excellent problem-solving and analytical skills. Strong verbal and written communication skills. Ability to work independently while collaborating with cross-functional teams. Experience with VMware, SAN/NAS storage, or cloud infrastructure is a plus. Familiarity with endpoint security platforms, vulnerability management, SIEM solutions, or email security tools is preferred. Comfortable supporting multiple locations and occasional travel to local data center facilities as needed. Self-motivated with a strong sense of ownership and accountability. Addison Group is an Equal Opportunity Employer. Addison Group provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. Addison Group complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. Reasonable accommodation is available for qualified individuals with disabilities, upon request. IND 005-009
Job Description Job Description Job Title: Palo Alto Firewall Engineer Location: Springfield, VA Type: Contract To Hire Compensation: $80/hr. W2 Benefits available Conversion Salary: $150,000 annually plus benefits Work Model: Onsite Security Clearance: Active TS/SCI clearance and the ability to successfully pass and maintain a U.S. Government polygraph Responsibilities Lead the design, requirements analysis, testing, integration, and implementation of secure network architectures centered on the Palo Alto Networks ecosystem. Serve as the lead technical authority for administering, configuring, and troubleshooting Palo Alto Networks Next-Generation Firewalls (NGFWs) across a hybrid enterprise environment. Engineer and implement solutions for customer Change Requests (CRQs); assess impacts on enterprise transport and security activities and provide technically sound recommendations. Serve as the technical representative for assigned projects and coordinate issues with the appropriate owners, organizations, contract leadership, and customer leadership. Manage the full lifecycle of Palo Alto hardware and software, including complex hardware refreshes, PAN-OS upgrades, legacy-platform sustainment, physical troubleshooting, and line-card replacements. Develop, oversee, and maintain configuration-management processes, network architecture diagrams, technical documentation, integration and test plans, and Standard Operating Procedures (SOPs) for Palo Alto security platforms. Use Panorama for centralized policy management, including templates, device groups, inheritance, and consistent configuration across a diverse fleet of physical and virtual firewalls. Configure and maintain advanced security capabilities and profiles, including App-ID, User-ID, Content-ID, SSL Decryption, WildFire, NAT, IPSec VPNs, and threat prevention. Oversee security-incident reporting, documentation, investigation, and corrective-action development. Act as a liaison to contract/customer management and the government Designated Approving Authority (DAA) regarding network-security status, policies, procedures, and risks. Evaluate and report on new and emerging network-security and communications technologies to improve network capacity, performance, reliability, standardization, and security. Provide mentorship and technical oversight to junior engineers and serve as an escalation point for complex troubleshooting. Follow all customer network-security processes and procedures, maintain compliance with Government and QA standards, and ensure service-performance indicators are met or exceeded. Requirements Security Clearance: Active TS/SCI clearance and the ability to successfully pass and maintain a U.S. Government polygraph. A minimum of 7+ years of hands-on experience administering, configuring, and troubleshooting Palo Alto Networks NGFWs in large-scale enterprise/global environments. Active Palo Alto Networks Certified Network Security Engineer (PCNSE) certification. DoD 8140.01 and DoD 8570.01-M IAT Level II compliance (for example, Security+ CE). Ability to obtain and maintain a CSSP Infrastructure Support certification within 120 days of the start date. Deep practical knowledge of legacy Gen 2/Gen 3 Palo Alto hardware, including PA-3000 and PA-5000 series platforms, legacy CLI, hardware troubleshooting, and line-card replacements. Experience deploying and managing modern PAN-OS architectures, including Prisma Access (SASE), Prisma SD-WAN, and VM-Series virtual firewalls in cloud environments such as AWS, Azure, GCP, or private-cloud. Proven expertise with Panorama for centralized policy management, template/device-group inheritance, and configuration deployment across a hybrid firewall fleet. Advanced understanding of BGP, OSPF, IPSec VPNs, NAT, TLS/SSL, mutual TLS (mTLS), HTTP, SAML, OAuth, OCSP revocation, DoD PKI, Kerberos, LDAP, and Active Directory. Experience with F5 technologies, including APM, AFM, and SSL Orchestrator (SSLO), and troubleshooting TLS/SSL handshake/connection issues. Strong network design, engineering, implementation, and troubleshooting skills, including ROM equipment lists and cost estimates. Knowledge of DISA and Intelligence Community security standards and requirements. Excellent interpersonal skills and technical judgment with the ability to work independently and support weekend/evening work if needed. Bachelor's degree in IT, Cybersecurity, Computer Science, or a related field, with additional relevant experience considered in lieu of a degree. Desired Qualifications Active Palo Alto Networks Certified Network Security Consultant (PCNSC) or Prisma Certified SASE Professional (PCSAE). F5 Networks Certified Technology Specialist (CTS). Cisco CCNP, CCVP, CCNA, CCDP, or equivalent. ITIL v3 Foundations and/or ISC2 CISSP Certification. Proficiency in Python and automation tools such as Ansible, Terraform, or Palo Alto XML/REST APIs. Hands-on experience with Cortex XDR or Cortex XSOAR. Experience with Palo Alto Networks Expedition for migration and rule consolidation. Knowledge of Zero Trust Network Access (ZTNA) architectures and additional security platforms (e.g., Juniper SRX, Cisco FTD/ASA). Master's degree in related fields is a plus. System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan. System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law. Ref: Baltimore
09/24/2026
Full time
Job Description Job Description Job Title: Palo Alto Firewall Engineer Location: Springfield, VA Type: Contract To Hire Compensation: $80/hr. W2 Benefits available Conversion Salary: $150,000 annually plus benefits Work Model: Onsite Security Clearance: Active TS/SCI clearance and the ability to successfully pass and maintain a U.S. Government polygraph Responsibilities Lead the design, requirements analysis, testing, integration, and implementation of secure network architectures centered on the Palo Alto Networks ecosystem. Serve as the lead technical authority for administering, configuring, and troubleshooting Palo Alto Networks Next-Generation Firewalls (NGFWs) across a hybrid enterprise environment. Engineer and implement solutions for customer Change Requests (CRQs); assess impacts on enterprise transport and security activities and provide technically sound recommendations. Serve as the technical representative for assigned projects and coordinate issues with the appropriate owners, organizations, contract leadership, and customer leadership. Manage the full lifecycle of Palo Alto hardware and software, including complex hardware refreshes, PAN-OS upgrades, legacy-platform sustainment, physical troubleshooting, and line-card replacements. Develop, oversee, and maintain configuration-management processes, network architecture diagrams, technical documentation, integration and test plans, and Standard Operating Procedures (SOPs) for Palo Alto security platforms. Use Panorama for centralized policy management, including templates, device groups, inheritance, and consistent configuration across a diverse fleet of physical and virtual firewalls. Configure and maintain advanced security capabilities and profiles, including App-ID, User-ID, Content-ID, SSL Decryption, WildFire, NAT, IPSec VPNs, and threat prevention. Oversee security-incident reporting, documentation, investigation, and corrective-action development. Act as a liaison to contract/customer management and the government Designated Approving Authority (DAA) regarding network-security status, policies, procedures, and risks. Evaluate and report on new and emerging network-security and communications technologies to improve network capacity, performance, reliability, standardization, and security. Provide mentorship and technical oversight to junior engineers and serve as an escalation point for complex troubleshooting. Follow all customer network-security processes and procedures, maintain compliance with Government and QA standards, and ensure service-performance indicators are met or exceeded. Requirements Security Clearance: Active TS/SCI clearance and the ability to successfully pass and maintain a U.S. Government polygraph. A minimum of 7+ years of hands-on experience administering, configuring, and troubleshooting Palo Alto Networks NGFWs in large-scale enterprise/global environments. Active Palo Alto Networks Certified Network Security Engineer (PCNSE) certification. DoD 8140.01 and DoD 8570.01-M IAT Level II compliance (for example, Security+ CE). Ability to obtain and maintain a CSSP Infrastructure Support certification within 120 days of the start date. Deep practical knowledge of legacy Gen 2/Gen 3 Palo Alto hardware, including PA-3000 and PA-5000 series platforms, legacy CLI, hardware troubleshooting, and line-card replacements. Experience deploying and managing modern PAN-OS architectures, including Prisma Access (SASE), Prisma SD-WAN, and VM-Series virtual firewalls in cloud environments such as AWS, Azure, GCP, or private-cloud. Proven expertise with Panorama for centralized policy management, template/device-group inheritance, and configuration deployment across a hybrid firewall fleet. Advanced understanding of BGP, OSPF, IPSec VPNs, NAT, TLS/SSL, mutual TLS (mTLS), HTTP, SAML, OAuth, OCSP revocation, DoD PKI, Kerberos, LDAP, and Active Directory. Experience with F5 technologies, including APM, AFM, and SSL Orchestrator (SSLO), and troubleshooting TLS/SSL handshake/connection issues. Strong network design, engineering, implementation, and troubleshooting skills, including ROM equipment lists and cost estimates. Knowledge of DISA and Intelligence Community security standards and requirements. Excellent interpersonal skills and technical judgment with the ability to work independently and support weekend/evening work if needed. Bachelor's degree in IT, Cybersecurity, Computer Science, or a related field, with additional relevant experience considered in lieu of a degree. Desired Qualifications Active Palo Alto Networks Certified Network Security Consultant (PCNSC) or Prisma Certified SASE Professional (PCSAE). F5 Networks Certified Technology Specialist (CTS). Cisco CCNP, CCVP, CCNA, CCDP, or equivalent. ITIL v3 Foundations and/or ISC2 CISSP Certification. Proficiency in Python and automation tools such as Ansible, Terraform, or Palo Alto XML/REST APIs. Hands-on experience with Cortex XDR or Cortex XSOAR. Experience with Palo Alto Networks Expedition for migration and rule consolidation. Knowledge of Zero Trust Network Access (ZTNA) architectures and additional security platforms (e.g., Juniper SRX, Cisco FTD/ASA). Master's degree in related fields is a plus. System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan. System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law. Ref: Baltimore
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116 Our direct client has an opening for an Senior Network Security Engineer (807471). This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116. Please send rates and a resume. Corp to Corp or w2 allowed. Requirements: Enterprise Networking - Required 8 Years. Enterprise Security - Required 5 Years. Azure Networking - Required 3 Years. WAF/NGFW - Required 3 Years. Supporting environments with 300+ Network Devices - Desired 3 Years. Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor - Required. Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) - Required. Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def - Required. Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates - Required. Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles - Required. Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS - Required. Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP - Required. Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages - Required. Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers - Required. Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700) - Required.
09/24/2026
Full time
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116 Our direct client has an opening for an Senior Network Security Engineer (807471). This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116. Please send rates and a resume. Corp to Corp or w2 allowed. Requirements: Enterprise Networking - Required 8 Years. Enterprise Security - Required 5 Years. Azure Networking - Required 3 Years. WAF/NGFW - Required 3 Years. Supporting environments with 300+ Network Devices - Desired 3 Years. Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor - Required. Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) - Required. Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def - Required. Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates - Required. Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles - Required. Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS - Required. Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP - Required. Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages - Required. Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers - Required. Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700) - Required.
Job Description Job Description Overview Principal Data Links and Communications Engineer LOCATION : Hanscom AFB, MA Salary Range : $145-$155,000 annually depending on experience, certifications, and qualifications JOB STATUS: Full-time CLEARANCE : Top Secret/SCI TRAVEL: Limited, as needed Astrion has an exciting opportunity for a Principal Data Links and Communications Engineer for the EPASS Cyber and Networks Directorate (EPASS HN II) contract , supporting the Aerial Networks Division (AFLCMC/HNA) located at Hanscom AFB in Massachusetts . REQUIRED QUALIFICATIONS / SKILLS: Must be a US Citizen Must have and be able to maintain a Top Secret/SCI clearance Knowledge and experience with Link 22 and tatical data links engineering DESIRED QUALIFICATIONS / SKILLS: 5 Years experience in software design and software requirements development Proficiency in C++ an Java Programming languages and development frameworks Proficiency in MBSE modeling, languages, and tools (DODAF, SysML, UML, Cameo) Networking and embedded mission systems experience Familiarity with government acquisition planning, tailoring and documentation (Acquisition Strategy Plan, Statement of Work, System Engineering Plan, User Agreements, Product Roadmap). ADDITIONAL QUALIFICATIONS: Provide knowledge and experience in the development, integration, testing, and deployment of Air Force systems and their associated data links, to include definition of data link interoperability, interfaces, and verification and test assessment requirements. This includes interfacing with the Federal, Department of Defense (DoD), United States Air Force (USAF), United States Army, and Joint communities to ensure the data link communications capability complies with the applicable Federal Aviation Administration, Defense Information Systems Agency (DISA), National Security Agency (NSA), Service Acquisition Executive, Joint Mission Planning System (JMPS), Damage Assessment and Casualty Report business and technical rules. Provide resources with knowledge and experience in Developmental and Operational test and Evaluation at the sub-system and system level. This includes interface with Air Combat Command, Air Force Command and Control Integration Center, Joint Interoperability Test Command, Space and Naval Warfare Systems Command, and all levels of the organizations that develop and manage the C3 and encryption key distribution infrastructure for controlling a networked system, providing technical advice on C4 issues, including pre-launch conditioning and planning, aircraft-weapon pre- and post-release communications, and real-time targeting. The Contractor shall advise and assist the program Chief Engineer, Integrated Product Team (IPT) Leads, Program Managers (PMs), and joint combined test team customers on performance, schedule, and cost issues with respect to planning, communications, and control. The contractor will perform other duties as assigned. The candidate may be called upon for knowledge and experience in the following specific areas: Combat Net Radio (CNR) Test and Demonstration include engineering support for interoperability testing weapon configurations with Threshold and Objective launch platforms/controllers and ground Joint Terminal Attack Controllers over Ultra-High Frequency (UHF) CNR and Link 22 communications. Joint Concept of Employment (CONEMP) Cryptologic Systems Link 16 Networking Interface Control Digitally Aided Close Air Support (DACAS) United States Message Text Format (USMTF) Joint Interoperability of Tactical Command and Control Systems (JINTACCS) RESPONSIBILITIES: Support defining and documenting specifications for network-enabled weapon systems to ensure Link 16 J11.X message interoperability Interface with DoD and non-DoD federal agencies to ensure the data link communications capability complies with the applicable regulations Interface with Air Force, other services and agencies in support of developing communications equipment and managing encryption infrastructure for controlling a networked system Provide technical advice on Command, Control and Communications (C3) issues, including pre-launch conditioning and planning, networked weapons, and real-time targeting Advise and assist the staff Engineers, IPT members, PMs, and test team customers on performance, schedule, and cost issues with respect to planning, communications, and control Support defining and documenting a set of Combat Net Radio (CNR) networking parameter configurations to provide the best balance between flexible implementation of capability and implementation impact on both existing and emerging weapon systems Provide engineering support for interoperability testing weapon configurations over UHF CNR and Link 16 Support developing, documenting, and presenting a Joint Concept of Employment (CONEMP) which is flexible, scalable, and compatible with communications via Military tactical data exchange network Support developing and documenting Joint Service approaches for integrating weapons into existing TDL environments Support development and documentation of Link 16 J11.X messages within the construct of a Joint Service CM strategy that will maintain interoperability between weapon systems and controllers while supporting a flexible CONEMP
09/24/2026
Full time
Job Description Job Description Overview Principal Data Links and Communications Engineer LOCATION : Hanscom AFB, MA Salary Range : $145-$155,000 annually depending on experience, certifications, and qualifications JOB STATUS: Full-time CLEARANCE : Top Secret/SCI TRAVEL: Limited, as needed Astrion has an exciting opportunity for a Principal Data Links and Communications Engineer for the EPASS Cyber and Networks Directorate (EPASS HN II) contract , supporting the Aerial Networks Division (AFLCMC/HNA) located at Hanscom AFB in Massachusetts . REQUIRED QUALIFICATIONS / SKILLS: Must be a US Citizen Must have and be able to maintain a Top Secret/SCI clearance Knowledge and experience with Link 22 and tatical data links engineering DESIRED QUALIFICATIONS / SKILLS: 5 Years experience in software design and software requirements development Proficiency in C++ an Java Programming languages and development frameworks Proficiency in MBSE modeling, languages, and tools (DODAF, SysML, UML, Cameo) Networking and embedded mission systems experience Familiarity with government acquisition planning, tailoring and documentation (Acquisition Strategy Plan, Statement of Work, System Engineering Plan, User Agreements, Product Roadmap). ADDITIONAL QUALIFICATIONS: Provide knowledge and experience in the development, integration, testing, and deployment of Air Force systems and their associated data links, to include definition of data link interoperability, interfaces, and verification and test assessment requirements. This includes interfacing with the Federal, Department of Defense (DoD), United States Air Force (USAF), United States Army, and Joint communities to ensure the data link communications capability complies with the applicable Federal Aviation Administration, Defense Information Systems Agency (DISA), National Security Agency (NSA), Service Acquisition Executive, Joint Mission Planning System (JMPS), Damage Assessment and Casualty Report business and technical rules. Provide resources with knowledge and experience in Developmental and Operational test and Evaluation at the sub-system and system level. This includes interface with Air Combat Command, Air Force Command and Control Integration Center, Joint Interoperability Test Command, Space and Naval Warfare Systems Command, and all levels of the organizations that develop and manage the C3 and encryption key distribution infrastructure for controlling a networked system, providing technical advice on C4 issues, including pre-launch conditioning and planning, aircraft-weapon pre- and post-release communications, and real-time targeting. The Contractor shall advise and assist the program Chief Engineer, Integrated Product Team (IPT) Leads, Program Managers (PMs), and joint combined test team customers on performance, schedule, and cost issues with respect to planning, communications, and control. The contractor will perform other duties as assigned. The candidate may be called upon for knowledge and experience in the following specific areas: Combat Net Radio (CNR) Test and Demonstration include engineering support for interoperability testing weapon configurations with Threshold and Objective launch platforms/controllers and ground Joint Terminal Attack Controllers over Ultra-High Frequency (UHF) CNR and Link 22 communications. Joint Concept of Employment (CONEMP) Cryptologic Systems Link 16 Networking Interface Control Digitally Aided Close Air Support (DACAS) United States Message Text Format (USMTF) Joint Interoperability of Tactical Command and Control Systems (JINTACCS) RESPONSIBILITIES: Support defining and documenting specifications for network-enabled weapon systems to ensure Link 16 J11.X message interoperability Interface with DoD and non-DoD federal agencies to ensure the data link communications capability complies with the applicable regulations Interface with Air Force, other services and agencies in support of developing communications equipment and managing encryption infrastructure for controlling a networked system Provide technical advice on Command, Control and Communications (C3) issues, including pre-launch conditioning and planning, networked weapons, and real-time targeting Advise and assist the staff Engineers, IPT members, PMs, and test team customers on performance, schedule, and cost issues with respect to planning, communications, and control Support defining and documenting a set of Combat Net Radio (CNR) networking parameter configurations to provide the best balance between flexible implementation of capability and implementation impact on both existing and emerging weapon systems Provide engineering support for interoperability testing weapon configurations over UHF CNR and Link 16 Support developing, documenting, and presenting a Joint Concept of Employment (CONEMP) which is flexible, scalable, and compatible with communications via Military tactical data exchange network Support developing and documenting Joint Service approaches for integrating weapons into existing TDL environments Support development and documentation of Link 16 J11.X messages within the construct of a Joint Service CM strategy that will maintain interoperability between weapon systems and controllers while supporting a flexible CONEMP
Job Description Job Description DevSecOps Engineer (TS/SCI Clearance or Eligibility Required) Location: San Antonio, TX Clearance: Active Top Secret / SCI (or ability to obtain and maintain) Employment Type: Full-Time - On-site Position Overview Seeking a DevSecOps Engineer to design, develop, and maintain on-demand ephemeral test automation ranges in secure environments. This position will support U.S. Air Force and related defense missions by enabling automated test and development pipelines across a variety of virtualization and cloud platforms. The role requires adaptability, rapid prototyping, and strong DevSecOps practices to deliver innovative solutions within highly regulated environments. This is not a traditional enterprise cloud application engineering role. Instead, the engineer will focus on building test automation environments, ephemeral compute stacks, reusable CI/CD components, and custom workflows to accelerate mission software development and validation. Responsibilities Design, implement, and manage GitOps CI/CD workflows leveraging GitLabCI and reusable pipeline components. Develop Infrastructure as Code (IaC) solutions using Terraform, Ansible, and Packer (or similar image-building tools) for both Linux and Windows platforms. Build and maintain ephemeral test environments on AWS, Azure, and local Linux virtualization stacks (Libvirt, QEMU). Develop and maintain Python, Bash, and PowerShell scripts to support test automation, prototyping, and system integration. Rapidly prototype MVP solutions to meet evolving mission requirements, with the ability to refine disposable code into reusable, production-ready modules. Deploy and configure temporary or experimental compute stacks in non-production test environments, including some networking setup/configuration. Support file analysis and novel file type handling for test automation, forensic evaluation, and data fixture management. Collaborate closely with system/software developers to gather requirements and deliver tailored automation solutions. Apply AGILE development practices and ensure strict adherence to SecOps and code hygiene standards. Safely operate across networks of varying classifications, following mandatory data transfer processes and security guidelines. Required Qualifications Active TS/SCI clearance, or the ability to obtain and maintain one. 5+ years of experience in DevOps, Systems Engineering, or Infrastructure Automation. Hands-on experience with: GitOps & CI/CD tools (GitLabCI, Jenkins) IaC tools: Terraform, Ansible Image building: Packer or equivalent for Linux and Windows automation Virtualization platforms: Libvirt, QEMU, AWS, Azure Scripting: Python, Bash, PowerShell Strong ability to prototype solutions quickly and evolve them into modular, reusable systems. Experience with ephemeral environments, automated range deployments, or test infrastructure. Excellent communication skills for gathering requirements and interfacing with developer teams. Familiarity with Agile/Scrum methodologies and secure coding practices. Preferred Qualifications Familiarity with Kubernetes and container orchestration (beneficial but not required). Knowledge of file forensics, data transformation, and test data management in automation contexts. Experience working in defense or classified environments with adherence to RMF/ATO and related compliance standards. Knowledge of emerging technologies including Large Language Model, Machine Learning and Research and Development to support rapid development and prototyping.
09/24/2026
Full time
Job Description Job Description DevSecOps Engineer (TS/SCI Clearance or Eligibility Required) Location: San Antonio, TX Clearance: Active Top Secret / SCI (or ability to obtain and maintain) Employment Type: Full-Time - On-site Position Overview Seeking a DevSecOps Engineer to design, develop, and maintain on-demand ephemeral test automation ranges in secure environments. This position will support U.S. Air Force and related defense missions by enabling automated test and development pipelines across a variety of virtualization and cloud platforms. The role requires adaptability, rapid prototyping, and strong DevSecOps practices to deliver innovative solutions within highly regulated environments. This is not a traditional enterprise cloud application engineering role. Instead, the engineer will focus on building test automation environments, ephemeral compute stacks, reusable CI/CD components, and custom workflows to accelerate mission software development and validation. Responsibilities Design, implement, and manage GitOps CI/CD workflows leveraging GitLabCI and reusable pipeline components. Develop Infrastructure as Code (IaC) solutions using Terraform, Ansible, and Packer (or similar image-building tools) for both Linux and Windows platforms. Build and maintain ephemeral test environments on AWS, Azure, and local Linux virtualization stacks (Libvirt, QEMU). Develop and maintain Python, Bash, and PowerShell scripts to support test automation, prototyping, and system integration. Rapidly prototype MVP solutions to meet evolving mission requirements, with the ability to refine disposable code into reusable, production-ready modules. Deploy and configure temporary or experimental compute stacks in non-production test environments, including some networking setup/configuration. Support file analysis and novel file type handling for test automation, forensic evaluation, and data fixture management. Collaborate closely with system/software developers to gather requirements and deliver tailored automation solutions. Apply AGILE development practices and ensure strict adherence to SecOps and code hygiene standards. Safely operate across networks of varying classifications, following mandatory data transfer processes and security guidelines. Required Qualifications Active TS/SCI clearance, or the ability to obtain and maintain one. 5+ years of experience in DevOps, Systems Engineering, or Infrastructure Automation. Hands-on experience with: GitOps & CI/CD tools (GitLabCI, Jenkins) IaC tools: Terraform, Ansible Image building: Packer or equivalent for Linux and Windows automation Virtualization platforms: Libvirt, QEMU, AWS, Azure Scripting: Python, Bash, PowerShell Strong ability to prototype solutions quickly and evolve them into modular, reusable systems. Experience with ephemeral environments, automated range deployments, or test infrastructure. Excellent communication skills for gathering requirements and interfacing with developer teams. Familiarity with Agile/Scrum methodologies and secure coding practices. Preferred Qualifications Familiarity with Kubernetes and container orchestration (beneficial but not required). Knowledge of file forensics, data transformation, and test data management in automation contexts. Experience working in defense or classified environments with adherence to RMF/ATO and related compliance standards. Knowledge of emerging technologies including Large Language Model, Machine Learning and Research and Development to support rapid development and prototyping.
Job Description Job Description Network Security Engineer 11001 A growing technology organization is seeking a Senior Network Security Engineer to join its centralized Security Engineering team. This is a hands-on technical role responsible for designing, implementing, and maintaining network security infrastructure that protects a large-scale, high-performance computing and cloud environment. This position will contribute directly to the controls, automation, and operational practices required to secure complex infrastructure at scale. The Senior Network Security Engineer will help design, develop, and deliver critical network security capabilities across enterprise-scale systems and projects. The ideal candidate brings deep technical expertise in network security architecture and controls, along with the judgment needed to solve complex problems while balancing security requirements, operational needs, and delivery timelines. Working closely with security leadership and cross-functional infrastructure, cloud, and IT teams, this individual will help strengthen the organization's security posture while serving as a subject matter expert and mentor to other engineers. Responsibilities Contribute to the design, implementation, and delivery of scalable network security architecture and controls, including firewalls, IDS/IPS, and VPN technologies across on-premises and cloud environments. Serve as a subject matter expert for network security technologies, providing technical guidance and direction on complex security challenges. Apply strong technical judgment to resolve network security issues and make appropriate trade-offs between security requirements, operational needs, and delivery objectives. Collaborate with infrastructure, cloud, IT operations, and other cross-functional teams to communicate technical decisions, coordinate implementation efforts, and maintain alignment. Develop and maintain network security standards, policies, procedures, and technical documentation. Support network segmentation and micro-segmentation initiatives, providing expertise related to traffic flows, access controls, and policy enforcement. Participate in security architecture reviews for new projects, systems, and third-party integrations to ensure network security requirements are appropriately addressed. Identify and implement opportunities for process improvement, automation, and security tooling enhancements. Mentor junior security engineers and contribute to the technical growth of the security engineering team. Requirements 7+ years of experience in network security engineering, including hands-on experience across trusted, untrusted, and DMZ environments. Strong understanding of network protocols and the OSI model, with practical experience supporting TCP/UDP-based applications, routing, switching, and load balancing. Experience designing and securing both on-premises and cloud network environments using platforms such as AWS, Azure, or GCP. Demonstrated ability to identify and deliver process improvements, automation opportunities, and tooling enhancements within a security engineering environment. Experience with security monitoring tools and SIEM platforms, including investigating and responding to network-based security threats. Strong knowledge of recognized security frameworks and hardening standards such as NIST, CIS Benchmarks, or ISO 27001. Strong communication skills with the ability to clearly explain technical decisions, risks, and trade-offs to both technical stakeholders and leadership. Nice to Have Relevant security or networking certifications such as CCNP Security, PCNSE, CISSP, or equivalent. Experience with VXLAN EVPN data center architecture. Background in Security Operations Center (SOC) environments or experience working with managed security service providers (MSSPs). Experience with firewall automation. Company Description Thomas Edwards Group is an Executive Search Firm specializing in the direct hire and interim placement of Accounting, Finance, HR and IT professionals. We've been in business since 1997 and the Dallas Business Journal has ranked us a Top Search Firm in Dallas and one of the "Best Places to Work" multiple times. Thomas Edwards Group also made the Inc. 5000 list in 2016 and our award-winning team of Search Consultants, which rank among the best and most experienced in the area, includes MBAs, CPAs, former Big 4 Professionals, Controllers, IT Search Professionals, Finance/Banking, and Business Professionals. Company Description Thomas Edwards Group is an Executive Search Firm specializing in the direct hire and interim placement of Accounting, Finance, HR and IT professionals. We've been in business since 1997 and the Dallas Business Journal has ranked us a Top Search Firm in Dallas and one of the "Best Places to Work" multiple times. Thomas Edwards Group also made the Inc. 5000 list in 2016 and our award-winning team of Search Consultants, which rank among the best and most experienced in the area, includes MBAs, CPAs, former Big 4 Professionals, Controllers, IT Search Professionals, Finance/Banking, and Business Professionals.
09/24/2026
Full time
Job Description Job Description Network Security Engineer 11001 A growing technology organization is seeking a Senior Network Security Engineer to join its centralized Security Engineering team. This is a hands-on technical role responsible for designing, implementing, and maintaining network security infrastructure that protects a large-scale, high-performance computing and cloud environment. This position will contribute directly to the controls, automation, and operational practices required to secure complex infrastructure at scale. The Senior Network Security Engineer will help design, develop, and deliver critical network security capabilities across enterprise-scale systems and projects. The ideal candidate brings deep technical expertise in network security architecture and controls, along with the judgment needed to solve complex problems while balancing security requirements, operational needs, and delivery timelines. Working closely with security leadership and cross-functional infrastructure, cloud, and IT teams, this individual will help strengthen the organization's security posture while serving as a subject matter expert and mentor to other engineers. Responsibilities Contribute to the design, implementation, and delivery of scalable network security architecture and controls, including firewalls, IDS/IPS, and VPN technologies across on-premises and cloud environments. Serve as a subject matter expert for network security technologies, providing technical guidance and direction on complex security challenges. Apply strong technical judgment to resolve network security issues and make appropriate trade-offs between security requirements, operational needs, and delivery objectives. Collaborate with infrastructure, cloud, IT operations, and other cross-functional teams to communicate technical decisions, coordinate implementation efforts, and maintain alignment. Develop and maintain network security standards, policies, procedures, and technical documentation. Support network segmentation and micro-segmentation initiatives, providing expertise related to traffic flows, access controls, and policy enforcement. Participate in security architecture reviews for new projects, systems, and third-party integrations to ensure network security requirements are appropriately addressed. Identify and implement opportunities for process improvement, automation, and security tooling enhancements. Mentor junior security engineers and contribute to the technical growth of the security engineering team. Requirements 7+ years of experience in network security engineering, including hands-on experience across trusted, untrusted, and DMZ environments. Strong understanding of network protocols and the OSI model, with practical experience supporting TCP/UDP-based applications, routing, switching, and load balancing. Experience designing and securing both on-premises and cloud network environments using platforms such as AWS, Azure, or GCP. Demonstrated ability to identify and deliver process improvements, automation opportunities, and tooling enhancements within a security engineering environment. Experience with security monitoring tools and SIEM platforms, including investigating and responding to network-based security threats. Strong knowledge of recognized security frameworks and hardening standards such as NIST, CIS Benchmarks, or ISO 27001. Strong communication skills with the ability to clearly explain technical decisions, risks, and trade-offs to both technical stakeholders and leadership. Nice to Have Relevant security or networking certifications such as CCNP Security, PCNSE, CISSP, or equivalent. Experience with VXLAN EVPN data center architecture. Background in Security Operations Center (SOC) environments or experience working with managed security service providers (MSSPs). Experience with firewall automation. Company Description Thomas Edwards Group is an Executive Search Firm specializing in the direct hire and interim placement of Accounting, Finance, HR and IT professionals. We've been in business since 1997 and the Dallas Business Journal has ranked us a Top Search Firm in Dallas and one of the "Best Places to Work" multiple times. Thomas Edwards Group also made the Inc. 5000 list in 2016 and our award-winning team of Search Consultants, which rank among the best and most experienced in the area, includes MBAs, CPAs, former Big 4 Professionals, Controllers, IT Search Professionals, Finance/Banking, and Business Professionals. Company Description Thomas Edwards Group is an Executive Search Firm specializing in the direct hire and interim placement of Accounting, Finance, HR and IT professionals. We've been in business since 1997 and the Dallas Business Journal has ranked us a Top Search Firm in Dallas and one of the "Best Places to Work" multiple times. Thomas Edwards Group also made the Inc. 5000 list in 2016 and our award-winning team of Search Consultants, which rank among the best and most experienced in the area, includes MBAs, CPAs, former Big 4 Professionals, Controllers, IT Search Professionals, Finance/Banking, and Business Professionals.
Job Description Job Description Job Description ACTIVE SECURITY CLEARANCE AT THE TS/SCI POLYGRAPH LEVEL IS REQUIRED We are seeking a versatile, ever-curious Systems Administrator / Systems Engineer (flexible across SA1 to SA3 levels) to join our team in Annapolis Junction, MD. In this role, you will manage, automate, and secure a hybrid, mixed Linux/Windows environment spanning on-premise infrastructure, Proxmox virtualization, and AWS cloud platforms. As an engineer at Nyla, you are a self-starter who thrives on keeping systems running seamlessly while eliminating repetitive tasks through automation. You will leverage modern orchestration frameworks like Ansible and SaltStack, administer Proxmox virtualized infrastructure and CIFS storage shares, and manage cross-platform identity integration using Centrify. You will also play a critical role in enforcing System Security Plan (SSP) compliance and supporting STE/STN standards across managed systems. If you enjoy solving complex systems puzzles in a collaborative, tech-forward environment, Team Nyla is looking for you. The annual base salary range for this role is $115,000-$214,000 (USD) , which does not include discretionary bonus compensation or our comprehensive benefits package. Actual compensation offered to the successful candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level, among other things. , Required Skills Linux System Administration: Deep, hands-on experience administering, configuring, and tuning Linux operating environments within mixed OS ecosystems. Proxmox Virtualization: Practical experience deploying, configuring, and managing Proxmox VE hypervisors and virtual machines, alongside containerization platforms. Infrastructure Automation: Demonstrated experience utilizing Ansible and/or SaltStack for automated deployment, configuration management, and patch execution. Scripting Proficiency: Ability to write clean, maintainable automation scripts using Bash, Python, Perl, or similar scripting languages. Cross-Platform Identity Storage: Experience managing Centrify for Active Directory integration and configuring/managing CIFS network storage shares. Cloud Infrastructure (AWS): Applied operational experience working with AWS cloud environments and services. Security Compliance: Direct experience maintaining SSP compliance, implementing STIGs, and supporting STE/STN operational standards. Education: Bachelor's Degree in Computer Science, Computer Engineering, Software Engineering, or a related technical discipline, PLUS 5 + years of professional software development experience OR High School Diploma / GED, PLUS 10 + years of hands-on technical software engineering experience in lieu of a degree. , Desired Skills Administrative experience with Windows Server environments, Active Directory Domain Controllers (DCs), and Microsoft Exchange. Knowledge of advanced Kubernetes/EKS container orchestration platforms. Experience integrating CI/CD automation pipelines and Git-based version control for infrastructure management. , About Nyla Technology Solutions Nyla Technology Solutions delivers exceptional Artificial Intelligence (AI), Data Science, and Software Engineering services for the U.S. Government. Nyla embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the industry. We have a passion for developing solutions that have a quick and immediate impact on mission. Headquartered in Columbia, Maryland, our customers love how we tackle their most challenging problems and get things done. If you have the unique experience and expertise we are seeking, along with the desire and determination to invest your time and energy as a part of Nyla's team, Taking Care of All of You Nyla provides a top-of-market compensation and benefits package. And through our unique Nyla FLEX program, we custom tailor these benefits to best fit your lifestyle. The Nyla FLEX benefit program is designed to offer you flexibility in the 3 biggest areas of your life: your pay, your leave, and your schedule. PAY - Nyla starts with 4 weeks of Annual Leave plus 11 holidays and an additional day of Annual Leave for each year you're at the company. You have the flexibility to cash out your annual leave hours, opt out of other Nyla benefits, and/or arrange for additional hours on contract (over 40 hrs/week). There's even an option to earn 1.3 times your hourly rate once you work over 1880 hours on contract! LEAVE - Want to spend more time with the family? Want more time to travel the world? You can BUY additional annual leave for a total of 6 weeks of annual leave. That's up to 240 hours of leave plus 11 holidays! That's not even including paid anniversary leave! SCHEDULE - Does the traditional 40-hour workweek no longer fit your lifestyle? With Nyla FLEX, you have the freedom to scale down to 30-32 hours while still enjoying the top-notch Nyla benefits you know and love. It's flexibility that works for you without compromising the perks! WHAT ABOUT OTHER BENEFITS? Nyla's health care (medical, dental, and vision) is 100% covered by the company. We provide 10% 401k matching - with full vesting day 1! Our Professional Development offers $5,000 per year to be used towards fees, tuition, or time off for your continued growth. We even have a student loan repayment program and we provide 8 hours of volunteering annually so you can support your community, making your world a better place. To learn more about Nyla's culture and our exceptional benefit packages click here. Nyla is an equal opportunity employer.
09/24/2026
Full time
Job Description Job Description Job Description ACTIVE SECURITY CLEARANCE AT THE TS/SCI POLYGRAPH LEVEL IS REQUIRED We are seeking a versatile, ever-curious Systems Administrator / Systems Engineer (flexible across SA1 to SA3 levels) to join our team in Annapolis Junction, MD. In this role, you will manage, automate, and secure a hybrid, mixed Linux/Windows environment spanning on-premise infrastructure, Proxmox virtualization, and AWS cloud platforms. As an engineer at Nyla, you are a self-starter who thrives on keeping systems running seamlessly while eliminating repetitive tasks through automation. You will leverage modern orchestration frameworks like Ansible and SaltStack, administer Proxmox virtualized infrastructure and CIFS storage shares, and manage cross-platform identity integration using Centrify. You will also play a critical role in enforcing System Security Plan (SSP) compliance and supporting STE/STN standards across managed systems. If you enjoy solving complex systems puzzles in a collaborative, tech-forward environment, Team Nyla is looking for you. The annual base salary range for this role is $115,000-$214,000 (USD) , which does not include discretionary bonus compensation or our comprehensive benefits package. Actual compensation offered to the successful candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level, among other things. , Required Skills Linux System Administration: Deep, hands-on experience administering, configuring, and tuning Linux operating environments within mixed OS ecosystems. Proxmox Virtualization: Practical experience deploying, configuring, and managing Proxmox VE hypervisors and virtual machines, alongside containerization platforms. Infrastructure Automation: Demonstrated experience utilizing Ansible and/or SaltStack for automated deployment, configuration management, and patch execution. Scripting Proficiency: Ability to write clean, maintainable automation scripts using Bash, Python, Perl, or similar scripting languages. Cross-Platform Identity Storage: Experience managing Centrify for Active Directory integration and configuring/managing CIFS network storage shares. Cloud Infrastructure (AWS): Applied operational experience working with AWS cloud environments and services. Security Compliance: Direct experience maintaining SSP compliance, implementing STIGs, and supporting STE/STN operational standards. Education: Bachelor's Degree in Computer Science, Computer Engineering, Software Engineering, or a related technical discipline, PLUS 5 + years of professional software development experience OR High School Diploma / GED, PLUS 10 + years of hands-on technical software engineering experience in lieu of a degree. , Desired Skills Administrative experience with Windows Server environments, Active Directory Domain Controllers (DCs), and Microsoft Exchange. Knowledge of advanced Kubernetes/EKS container orchestration platforms. Experience integrating CI/CD automation pipelines and Git-based version control for infrastructure management. , About Nyla Technology Solutions Nyla Technology Solutions delivers exceptional Artificial Intelligence (AI), Data Science, and Software Engineering services for the U.S. Government. Nyla embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the industry. We have a passion for developing solutions that have a quick and immediate impact on mission. Headquartered in Columbia, Maryland, our customers love how we tackle their most challenging problems and get things done. If you have the unique experience and expertise we are seeking, along with the desire and determination to invest your time and energy as a part of Nyla's team, Taking Care of All of You Nyla provides a top-of-market compensation and benefits package. And through our unique Nyla FLEX program, we custom tailor these benefits to best fit your lifestyle. The Nyla FLEX benefit program is designed to offer you flexibility in the 3 biggest areas of your life: your pay, your leave, and your schedule. PAY - Nyla starts with 4 weeks of Annual Leave plus 11 holidays and an additional day of Annual Leave for each year you're at the company. You have the flexibility to cash out your annual leave hours, opt out of other Nyla benefits, and/or arrange for additional hours on contract (over 40 hrs/week). There's even an option to earn 1.3 times your hourly rate once you work over 1880 hours on contract! LEAVE - Want to spend more time with the family? Want more time to travel the world? You can BUY additional annual leave for a total of 6 weeks of annual leave. That's up to 240 hours of leave plus 11 holidays! That's not even including paid anniversary leave! SCHEDULE - Does the traditional 40-hour workweek no longer fit your lifestyle? With Nyla FLEX, you have the freedom to scale down to 30-32 hours while still enjoying the top-notch Nyla benefits you know and love. It's flexibility that works for you without compromising the perks! WHAT ABOUT OTHER BENEFITS? Nyla's health care (medical, dental, and vision) is 100% covered by the company. We provide 10% 401k matching - with full vesting day 1! Our Professional Development offers $5,000 per year to be used towards fees, tuition, or time off for your continued growth. We even have a student loan repayment program and we provide 8 hours of volunteering annually so you can support your community, making your world a better place. To learn more about Nyla's culture and our exceptional benefit packages click here. Nyla is an equal opportunity employer.
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/24/2026
Full time
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Job Description Job Description Hiring Vulnerability Remediation / Patch Management Engineer Location: NYC, NY Experience: 8-10 Years Platforms: Windows & Linux Tools: SCCM, Tanium Scripting: PowerShell, Shell Client: Genpact/Morgan Stanley at NYC, NY onsite role Rate: $55 hr on c2c Note: willing relocate fine - only EST prefer and CST also fine We are looking for a Vulnerability Remediation / Patch Management Engineer with strong hands-on experience in enterprise patching and vulnerability remediation. Required skills: Vulnerability Remediation Patch Management SCCM / Microsoft Configuration Manager Tanium Windows Server Administration Linux Administration Key Requirements: 8-10 years of Patch Management / Vulnerability Remediation experience Strong hands-on experience with SCCM & Tanium Windows & Linux administration experience End-to-end vulnerability remediation and patch lifecycle management Experience with Qualys, Tenable, or Rapid7 Strong PowerShell & Shell scripting skills Patch troubleshooting, RCA, compliance & reporting Experience working with Infrastructure, Security, Cloud & Application teams Knowledge of ITIL, Change & Incident Management Security certifications such as Security+ / CEH are a plus Company Description We are a leading recruiting and staffing agency connecting talented professionals with opportunities across IT and Non-IT industries. With a network of 500+ clients, we provide access to a wide range of career opportunities with reputable organizations. Direct Client Interviews: We coordinate candidate interviews directly with our client companies. 500+ Client Network: Access opportunities across a broad range of industries and organizations. IT & Non-IT Opportunities: We recruit for a diverse range of technical and non-technical roles. Career-Focused Support: Our recruiting team helps candidates navigate the hiring process and connect with roles aligned with their skills and experience. Strong Industry Network: Our established client relationships help us connect qualified candidates with relevant opportunities efficiently. Company Description We are a leading recruiting and staffing agency connecting talented professionals with opportunities across IT and Non-IT industries. With a network of 500+ clients, we provide access to a wide range of career opportunities with reputable organizations. Direct Client Interviews: We coordinate candidate interviews directly with our client companies. 500+ Client Network: Access opportunities across a broad range of industries and organizations. IT & Non-IT Opportunities: We recruit for a diverse range of technical and non-technical roles. Career-Focused Support: Our recruiting team helps candidates navigate the hiring process and connect with roles aligned with their skills and experience. Strong Industry Network: Our established client relationships help us connect qualified candidates with relevant opportunities efficiently.
09/24/2026
Full time
Job Description Job Description Hiring Vulnerability Remediation / Patch Management Engineer Location: NYC, NY Experience: 8-10 Years Platforms: Windows & Linux Tools: SCCM, Tanium Scripting: PowerShell, Shell Client: Genpact/Morgan Stanley at NYC, NY onsite role Rate: $55 hr on c2c Note: willing relocate fine - only EST prefer and CST also fine We are looking for a Vulnerability Remediation / Patch Management Engineer with strong hands-on experience in enterprise patching and vulnerability remediation. Required skills: Vulnerability Remediation Patch Management SCCM / Microsoft Configuration Manager Tanium Windows Server Administration Linux Administration Key Requirements: 8-10 years of Patch Management / Vulnerability Remediation experience Strong hands-on experience with SCCM & Tanium Windows & Linux administration experience End-to-end vulnerability remediation and patch lifecycle management Experience with Qualys, Tenable, or Rapid7 Strong PowerShell & Shell scripting skills Patch troubleshooting, RCA, compliance & reporting Experience working with Infrastructure, Security, Cloud & Application teams Knowledge of ITIL, Change & Incident Management Security certifications such as Security+ / CEH are a plus Company Description We are a leading recruiting and staffing agency connecting talented professionals with opportunities across IT and Non-IT industries. With a network of 500+ clients, we provide access to a wide range of career opportunities with reputable organizations. Direct Client Interviews: We coordinate candidate interviews directly with our client companies. 500+ Client Network: Access opportunities across a broad range of industries and organizations. IT & Non-IT Opportunities: We recruit for a diverse range of technical and non-technical roles. Career-Focused Support: Our recruiting team helps candidates navigate the hiring process and connect with roles aligned with their skills and experience. Strong Industry Network: Our established client relationships help us connect qualified candidates with relevant opportunities efficiently. Company Description We are a leading recruiting and staffing agency connecting talented professionals with opportunities across IT and Non-IT industries. With a network of 500+ clients, we provide access to a wide range of career opportunities with reputable organizations. Direct Client Interviews: We coordinate candidate interviews directly with our client companies. 500+ Client Network: Access opportunities across a broad range of industries and organizations. IT & Non-IT Opportunities: We recruit for a diverse range of technical and non-technical roles. Career-Focused Support: Our recruiting team helps candidates navigate the hiring process and connect with roles aligned with their skills and experience. Strong Industry Network: Our established client relationships help us connect qualified candidates with relevant opportunities efficiently.
Job Description Job Description Position Title: Systems Specialist Location: 100% On-Site In/Around Waldorf, MD Reports to: Engineering Manager/Site Lead Position Summary: Step into an exciting and modern company and use your skills for a unique opportunity to support our national security in a mission-critical environment. Our Systems Specialists provide operations and maintenance (O&M) support at an undisclosed customer site in Maryland supporting a 24x7x365 shift operation. Key Responsibilities: Resolve network, software, and/or hardware anomalies as they occur on a tactical ground processing system Understand and perform system / mission operations Hardware/software troubleshooting Network knowledge and troubleshooting skills File transfer protocols Support onsite integration and system verification efforts of both hardware and software deliveries, while adhering to established configuration management and security controls Work as a team member within a multi-contractor operations environment while embedded with the customer supporting mission operations Qualifications: U.S citizenship and an active Top Secret security clearance w/SCI eligibility Candidates must have the flexibility to provide support in 12-hour evening/night shifts and day shifts on a 5/5/4 schedule. Ample notice will be given before rotating between shifts, with much of the time on evening/night shifts. DoD 8570 IAT II certification (CCNA Security, GICSP, GSEC, Security+ CE, CND, SSCP) must be obtained within 90 days upon start date A minimum of 2-3 years' relevant experience Preferred Qualifications: DoD 8570 IAT active/current certification (CCNA Security, GICSP, GSEC, Security+ CE, CND, SSCP) Prior military experience as a maintainer and/or operation of a tactical ISR system Bachelor's degree in Engineering, Information Technology, Computer Technology, or related major Experience with the Distributed Common Ground System (DCGS) Systems administration and support on Windows and LINUX operating systems Experience and knowledge of UNIX OS (Linux, Solaris) RPI Group, Inc. is an Equal Employment Opportunity (EEO) Employer.
09/24/2026
Full time
Job Description Job Description Position Title: Systems Specialist Location: 100% On-Site In/Around Waldorf, MD Reports to: Engineering Manager/Site Lead Position Summary: Step into an exciting and modern company and use your skills for a unique opportunity to support our national security in a mission-critical environment. Our Systems Specialists provide operations and maintenance (O&M) support at an undisclosed customer site in Maryland supporting a 24x7x365 shift operation. Key Responsibilities: Resolve network, software, and/or hardware anomalies as they occur on a tactical ground processing system Understand and perform system / mission operations Hardware/software troubleshooting Network knowledge and troubleshooting skills File transfer protocols Support onsite integration and system verification efforts of both hardware and software deliveries, while adhering to established configuration management and security controls Work as a team member within a multi-contractor operations environment while embedded with the customer supporting mission operations Qualifications: U.S citizenship and an active Top Secret security clearance w/SCI eligibility Candidates must have the flexibility to provide support in 12-hour evening/night shifts and day shifts on a 5/5/4 schedule. Ample notice will be given before rotating between shifts, with much of the time on evening/night shifts. DoD 8570 IAT II certification (CCNA Security, GICSP, GSEC, Security+ CE, CND, SSCP) must be obtained within 90 days upon start date A minimum of 2-3 years' relevant experience Preferred Qualifications: DoD 8570 IAT active/current certification (CCNA Security, GICSP, GSEC, Security+ CE, CND, SSCP) Prior military experience as a maintainer and/or operation of a tactical ISR system Bachelor's degree in Engineering, Information Technology, Computer Technology, or related major Experience with the Distributed Common Ground System (DCGS) Systems administration and support on Windows and LINUX operating systems Experience and knowledge of UNIX OS (Linux, Solaris) RPI Group, Inc. is an Equal Employment Opportunity (EEO) Employer.
Job Description Job Description THOR Solutions is actively seeking a highly motivated Technical Support Management (TSM) System Deficiency Records Management Support Specialist to support the United States Coast Guard (USCG) Offshore Patrol Cutter (OPC) Resident Inspection Office (RIO) in Mobile, AL . This position is associated with an upcoming contract that THOR is pursuing. We are conducting preliminary, "contingent" hiring for roles associated with this contract. The work start is dependent upon THOR being awarded this contract. Typical Responsibilities: Provide OPC RIO, USN Board of Inspection and Survey (INSURV), and shipbuilder personnel with access and training on, and utilization support of the TSM System and Electronic Trial Card (ETC) tool as required. Support tracking deficiency records and processes including but not limited to: Surveillance (Product Verification/Procedure Review), Test Witnessing, Compartment Completion Inspection, Corrective Action Requests (CARs), Trial Cards, and Project Management records. Develop and maintain ship unique data and database for OPC RIO deficiency record input into the ETC tool and TSM system. Assist OPC RIO personnel in maintaining and updating the status of deficiency records from creation through closure in the ETC tool and TSM system. Assist OPC RIO in the preparation of technical briefings, assessments, audits, and milestone reviews. Utilize available programs, tools, and data sources; assist in the preparation of weekly program management reports, program technical and financial metric status reports, and other reports. Provide trial card status reports, through metrics, and progress the correction of deficiencies post-trials; in support of dock side and at-sea portions of trials. Maintain the ability to provide ETC creation during pre-trial production inspection and test cycles. Maintain the ability to transfer current cutter ETC tool pre-trial deficiencies, Quality CARs, and prior cutter(s) rollover trial card data into the TSM system. Assist OPC RIO and INSURV personnel with the creation of new trial cards using the ETC tool. Assist OPC RIO personnel with pre-screening and screening activities before, during and post trials. Assist OPC RIO with the tracking, defect coding, and other applicable technical assistance on all trial cards from the ETC tool creation, through closure in the TSM system. Maintain a deployable mini-local area network and surge support for sea trials consisting of twenty (20) laptops and associated network infrastructure to support dock side and at-sea portions of trials to record deficiencies in the TSM system. Respond to USN INSURV trial card database requests pre, during, and post trials. Attend meetings in relation to assigned tasks by the COR. Location : Primarily onsite at USCG Shipyard Facility in Mobile, AL. Travel : Up to 10% travel is anticipated. Typical Physical Requirements : Mix of desk/computer work in an office environment and periodic visits to waterfront/shipboard environments. May involve repetitive motion, traversing shipboard environments (e.g., confined spaces, ladders, hatches) or vision. Eligibility for a SECRET Security Clearance is Required : This position requires eligibility for a Secret security clearance, to be obtained after hire. Only U.S. citizens are eligible for a security clearance; therefore, only current U.S. citizens will be considered for this position. Required Knowledge, Skills, and Abilities: Bachelor's degree. Six (6) years of relevant experience in a shipbuilding environment. CompTIA Security+ certification. Proficient in the use of the Government TSM system and the ETC tool. Knowledge of ship construction deficiency records management processes. Proficient with the Microsoft Office suite including Word, Excel, PowerPoint, SharePoint, and Outlook, as well as other software/tools provided on the Coast Guard Standard Workstation. Strong communication and interpersonal skills. Benefit Offerings: Along with competitive pay, THOR offers a comprehensive benefits package including: Paid Time Off (accrued) Paid Holidays 401(k) with employer match and Traditional/Roth options Medical Insurance (3 plan options) TRICARE Supplemental Coverage for TRICARE-eligible individuals Dental Insurance (2 plan options) Vision Insurance Plan (2 plan options) Healthcare and Dependent Care Flexible Spending Accounts (FSAs) Commuter/Transit Benefits Basic Life/AD&D Insurance for employee Additional Life Insurance options for employee + family Short-Term and Long-Term Disability Insurance Pet Benefits Legal Plan ID Theft Protection Plan Employee Assistant Plan and Work-Life Program Voluntary Leave Transfer Program Tuition Reimbursement Program Employee Referral Program Please be aware that many of our positions require an existing security clearance or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants to cleared positions who lack clearance eligibility will not be considered. Founded in 2009, THOR Solutions, LLC (THOR) is a rapidly growing Center for Veteran's Excellence (CVE) verified Service-Disabled Veteran-Owned Small Business (SDVOSB) providing mission critical support across the Department of Defense, Department of Homeland Security, federal civilian agencies and commercial maritime industry, worldwide. THOR provides innovative and tailored expertise in multidisciplinary engineering, project and program management, business and financial management, technical support, integrated logistics support, training support, fleet support, corporate operations support, assessments and studies. THOR is privileged to deliver service solutions to the nation's most complex military, public sector and industry challenges. THOR is proud to be an Equal Opportunity Employer, including veterans and individuals with disabilities . THOR considers all qualified applicants for employment without regard to legally protected characteristics. This policy applies to all terms and conditions of employment. If you are an individual with a disability and would like to request a reasonable accommodation as part the employment selection process, please contact us at or . Powered by JazzHR u3u1CGKk9p
09/24/2026
Full time
Job Description Job Description THOR Solutions is actively seeking a highly motivated Technical Support Management (TSM) System Deficiency Records Management Support Specialist to support the United States Coast Guard (USCG) Offshore Patrol Cutter (OPC) Resident Inspection Office (RIO) in Mobile, AL . This position is associated with an upcoming contract that THOR is pursuing. We are conducting preliminary, "contingent" hiring for roles associated with this contract. The work start is dependent upon THOR being awarded this contract. Typical Responsibilities: Provide OPC RIO, USN Board of Inspection and Survey (INSURV), and shipbuilder personnel with access and training on, and utilization support of the TSM System and Electronic Trial Card (ETC) tool as required. Support tracking deficiency records and processes including but not limited to: Surveillance (Product Verification/Procedure Review), Test Witnessing, Compartment Completion Inspection, Corrective Action Requests (CARs), Trial Cards, and Project Management records. Develop and maintain ship unique data and database for OPC RIO deficiency record input into the ETC tool and TSM system. Assist OPC RIO personnel in maintaining and updating the status of deficiency records from creation through closure in the ETC tool and TSM system. Assist OPC RIO in the preparation of technical briefings, assessments, audits, and milestone reviews. Utilize available programs, tools, and data sources; assist in the preparation of weekly program management reports, program technical and financial metric status reports, and other reports. Provide trial card status reports, through metrics, and progress the correction of deficiencies post-trials; in support of dock side and at-sea portions of trials. Maintain the ability to provide ETC creation during pre-trial production inspection and test cycles. Maintain the ability to transfer current cutter ETC tool pre-trial deficiencies, Quality CARs, and prior cutter(s) rollover trial card data into the TSM system. Assist OPC RIO and INSURV personnel with the creation of new trial cards using the ETC tool. Assist OPC RIO personnel with pre-screening and screening activities before, during and post trials. Assist OPC RIO with the tracking, defect coding, and other applicable technical assistance on all trial cards from the ETC tool creation, through closure in the TSM system. Maintain a deployable mini-local area network and surge support for sea trials consisting of twenty (20) laptops and associated network infrastructure to support dock side and at-sea portions of trials to record deficiencies in the TSM system. Respond to USN INSURV trial card database requests pre, during, and post trials. Attend meetings in relation to assigned tasks by the COR. Location : Primarily onsite at USCG Shipyard Facility in Mobile, AL. Travel : Up to 10% travel is anticipated. Typical Physical Requirements : Mix of desk/computer work in an office environment and periodic visits to waterfront/shipboard environments. May involve repetitive motion, traversing shipboard environments (e.g., confined spaces, ladders, hatches) or vision. Eligibility for a SECRET Security Clearance is Required : This position requires eligibility for a Secret security clearance, to be obtained after hire. Only U.S. citizens are eligible for a security clearance; therefore, only current U.S. citizens will be considered for this position. Required Knowledge, Skills, and Abilities: Bachelor's degree. Six (6) years of relevant experience in a shipbuilding environment. CompTIA Security+ certification. Proficient in the use of the Government TSM system and the ETC tool. Knowledge of ship construction deficiency records management processes. Proficient with the Microsoft Office suite including Word, Excel, PowerPoint, SharePoint, and Outlook, as well as other software/tools provided on the Coast Guard Standard Workstation. Strong communication and interpersonal skills. Benefit Offerings: Along with competitive pay, THOR offers a comprehensive benefits package including: Paid Time Off (accrued) Paid Holidays 401(k) with employer match and Traditional/Roth options Medical Insurance (3 plan options) TRICARE Supplemental Coverage for TRICARE-eligible individuals Dental Insurance (2 plan options) Vision Insurance Plan (2 plan options) Healthcare and Dependent Care Flexible Spending Accounts (FSAs) Commuter/Transit Benefits Basic Life/AD&D Insurance for employee Additional Life Insurance options for employee + family Short-Term and Long-Term Disability Insurance Pet Benefits Legal Plan ID Theft Protection Plan Employee Assistant Plan and Work-Life Program Voluntary Leave Transfer Program Tuition Reimbursement Program Employee Referral Program Please be aware that many of our positions require an existing security clearance or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants to cleared positions who lack clearance eligibility will not be considered. Founded in 2009, THOR Solutions, LLC (THOR) is a rapidly growing Center for Veteran's Excellence (CVE) verified Service-Disabled Veteran-Owned Small Business (SDVOSB) providing mission critical support across the Department of Defense, Department of Homeland Security, federal civilian agencies and commercial maritime industry, worldwide. THOR provides innovative and tailored expertise in multidisciplinary engineering, project and program management, business and financial management, technical support, integrated logistics support, training support, fleet support, corporate operations support, assessments and studies. THOR is privileged to deliver service solutions to the nation's most complex military, public sector and industry challenges. THOR is proud to be an Equal Opportunity Employer, including veterans and individuals with disabilities . THOR considers all qualified applicants for employment without regard to legally protected characteristics. This policy applies to all terms and conditions of employment. If you are an individual with a disability and would like to request a reasonable accommodation as part the employment selection process, please contact us at or . Powered by JazzHR u3u1CGKk9p
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/24/2026
Full time
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/24/2026
Full time
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
AI Engineer III Position Overview We're looking for a highly technical, hands-on AI Engineer to help design, build, and deploy the next generation of AI-powered applications. This is not a role for someone whose AI experience stops at basic LLM integrations or RAG implementations. We're looking for a strong software engineer first who has evolved into AI engineering and has real experience developing Agentic AI solutions. The environment is highly hands-on. You'll have the opportunity to work across application development, AI architecture, cloud infrastructure, deployment, networking, and production support. The team is actively building several new AI solutions with additional development planned over the next 12 months. What You'll Be Doing Design, develop, and deploy production-grade Agentic AI applications Build agent-based and multi-agent workflows that interact with enterprise applications and data Develop AI solutions using LLMs, RAG, embeddings, vector databases, and modern AI frameworks Build and integrate APIs, services, tools, and enterprise applications Take applications from development and UAT through production deployment Work across the full software development lifecycle Support cloud infrastructure, servers, networking, and application environments as needed Build scalable, secure, and reliable AI services Work with DevOps and CI/CD processes to automate application deployment Troubleshoot complex application and infrastructure issues Participate in technical architecture and engineering decisions Support security, governance, and audit requirements Mentor other engineers and provide technical direction while remaining hands-on Help establish engineering standards and best practices as the AI environment continues to grow Must-Have Experience Strong full-stack software development background Broad software engineering and IT experience beyond AI alone Hands-on Agentic AI development experience Deep understanding of AI agents, orchestration, tool use, and multi-agent workflows Experience with LangGraph, LangChain, or similar agentic frameworks Strong experience integrating LLMs into production applications Experience with RAG, embeddings, and vector databases Experience developing APIs and integrating multiple systems Strong programming background with languages such as Python, Java, C#, and/or JavaScript Experience with cloud environments such as AWS or Azure Understanding of containers, microservices, CI/CD, and modern DevOps practices Ability to take an application from development through production Comfortable working across multiple areas of the technology stack rather than operating within a narrow specialty What Will Separate the Best Candidates The strongest candidates will be able to clearly explain: What they built before moving into AI Production applications they personally designed and developed Agentic AI systems they have built hands-on How their agents reason, use tools, interact with data, and communicate with other systems How they moved AI applications from development into production Technical challenges they personally solved rather than projects where they were simply part of the team RAG experience by itself is not enough for this position. We're specifically looking for engineers with deeper Agentic AI development experience.ion, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/24/2026
Full time
AI Engineer III Position Overview We're looking for a highly technical, hands-on AI Engineer to help design, build, and deploy the next generation of AI-powered applications. This is not a role for someone whose AI experience stops at basic LLM integrations or RAG implementations. We're looking for a strong software engineer first who has evolved into AI engineering and has real experience developing Agentic AI solutions. The environment is highly hands-on. You'll have the opportunity to work across application development, AI architecture, cloud infrastructure, deployment, networking, and production support. The team is actively building several new AI solutions with additional development planned over the next 12 months. What You'll Be Doing Design, develop, and deploy production-grade Agentic AI applications Build agent-based and multi-agent workflows that interact with enterprise applications and data Develop AI solutions using LLMs, RAG, embeddings, vector databases, and modern AI frameworks Build and integrate APIs, services, tools, and enterprise applications Take applications from development and UAT through production deployment Work across the full software development lifecycle Support cloud infrastructure, servers, networking, and application environments as needed Build scalable, secure, and reliable AI services Work with DevOps and CI/CD processes to automate application deployment Troubleshoot complex application and infrastructure issues Participate in technical architecture and engineering decisions Support security, governance, and audit requirements Mentor other engineers and provide technical direction while remaining hands-on Help establish engineering standards and best practices as the AI environment continues to grow Must-Have Experience Strong full-stack software development background Broad software engineering and IT experience beyond AI alone Hands-on Agentic AI development experience Deep understanding of AI agents, orchestration, tool use, and multi-agent workflows Experience with LangGraph, LangChain, or similar agentic frameworks Strong experience integrating LLMs into production applications Experience with RAG, embeddings, and vector databases Experience developing APIs and integrating multiple systems Strong programming background with languages such as Python, Java, C#, and/or JavaScript Experience with cloud environments such as AWS or Azure Understanding of containers, microservices, CI/CD, and modern DevOps practices Ability to take an application from development through production Comfortable working across multiple areas of the technology stack rather than operating within a narrow specialty What Will Separate the Best Candidates The strongest candidates will be able to clearly explain: What they built before moving into AI Production applications they personally designed and developed Agentic AI systems they have built hands-on How their agents reason, use tools, interact with data, and communicate with other systems How they moved AI applications from development into production Technical challenges they personally solved rather than projects where they were simply part of the team RAG experience by itself is not enough for this position. We're specifically looking for engineers with deeper Agentic AI development experience.ion, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
Desktop Engineer Role Summary The Desktop Engineer is responsible for delivering a secure, scalable, and modern end-user computing experience across the enterprise. This position owns the technologies, processes, and standards that support workstation deployment, device management, software delivery, endpoint security, and lifecycle governance. Working closely with infrastructure, security, and support teams, this individual will develop solutions that improve operational efficiency, enhance security posture, and simplify device administration across a diverse endpoint ecosystem. What You'll Do Build and Optimize Endpoint Services Design and maintain enterprise endpoint management solutions. Define standards for workstation provisioning, configuration, and ongoing support. Develop automated deployment and enrollment processes for corporate devices. Establish and maintain endpoint governance, policies, and technical standards. Drive modernization efforts that improve the employee technology experience. Manage Device Lifecycle Operations Oversee endpoint deployment from initial provisioning through retirement. Maintain operating system upgrade strategies and refresh programs. Manage enterprise desktop and laptop standards. Ensure consistent configurations across user populations and business units. Support multi-platform endpoint environments, including Windows and mobile technologies. Deliver Software and Updates Develop application deployment strategies and packaging standards. Manage operating system, security, and application update processes. Coordinate testing, validation, and rollout activities for enterprise releases. Identify opportunities to automate software distribution and maintenance tasks. Minimize business disruption while maintaining current and secure systems. Strengthen Endpoint Security Implement controls that support organizational cybersecurity objectives. Partner with security teams to address vulnerabilities and compliance requirements. Monitor endpoint health, policy enforcement, and device compliance metrics. Support hardening initiatives and security remediation efforts. Participate in incident response and root cause analysis when endpoint systems are involved. Advanced Technical Support Serve as the highest level of escalation for endpoint-related issues. Investigate complex operating system, application, and device management problems. Perform technical analysis and recommend long-term solutions to recurring issues. Mentor support personnel and provide technical guidance across IT teams. Reporting, Analytics, and Process Improvement Create dashboards and reporting that provide visibility into asset health, deployment success, compliance, and software utilization. Analyze trends and recommend improvements to endpoint operations. Document architecture, standards, procedures, and support models. Continuously evaluate emerging technologies and recommend enhancements. Minimum Qualifications Professional Experience Five or more years of experience supporting and engineering enterprise endpoint environments. Demonstrated experience administering modern device management solutions. Experience managing large-scale workstation deployments and operating system migrations. Background supporting structured release, patching, and change management processes. Technical Expertise Experience in several of the following areas: Microsoft Intune Microsoft Endpoint Configuration Manager (MECM/SCCM) Windows endpoint administration Microsoft 365 endpoint technologies Active Directory Group Policy administration Endpoint compliance and security controls Software packaging and deployment Endpoint automation and scripting Education Bachelor's degree in Information Technology, Computer Science, Engineering, or a related discipline; equivalent professional experience may be considered in lieu of a degree. Required Credential Microsoft 365 Certified: Endpoint Administrator Associate Preferred Qualifications Experience with Azure-based device management solutions. Familiarity with identity and access management technologies. Knowledge of networking concepts, including DNS, DHCP, TCP/IP, and VPN technologies. Experience with desktop, application, or virtual desktop virtualization platforms. Exposure to macOS, Linux, and mobile device management environments. Proficiency with PowerShell or similar automation tools. Preferred Certifications CompTIA A+ CompTIA Network+ CompTIA Security+ Microsoft Azure Fundamentals Azure Administrator Associate Success Profile The successful candidate combines deep technical expertise with a continuous-improvement mindset. They are comfortable designing solutions, leading initiatives, resolving complex technical issues, and influencing technology standards across the organization. This individual is passionate about automation, endpoint security, operational excellence, and creating a reliable, modern computing experience for employees. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/24/2026
Full time
Desktop Engineer Role Summary The Desktop Engineer is responsible for delivering a secure, scalable, and modern end-user computing experience across the enterprise. This position owns the technologies, processes, and standards that support workstation deployment, device management, software delivery, endpoint security, and lifecycle governance. Working closely with infrastructure, security, and support teams, this individual will develop solutions that improve operational efficiency, enhance security posture, and simplify device administration across a diverse endpoint ecosystem. What You'll Do Build and Optimize Endpoint Services Design and maintain enterprise endpoint management solutions. Define standards for workstation provisioning, configuration, and ongoing support. Develop automated deployment and enrollment processes for corporate devices. Establish and maintain endpoint governance, policies, and technical standards. Drive modernization efforts that improve the employee technology experience. Manage Device Lifecycle Operations Oversee endpoint deployment from initial provisioning through retirement. Maintain operating system upgrade strategies and refresh programs. Manage enterprise desktop and laptop standards. Ensure consistent configurations across user populations and business units. Support multi-platform endpoint environments, including Windows and mobile technologies. Deliver Software and Updates Develop application deployment strategies and packaging standards. Manage operating system, security, and application update processes. Coordinate testing, validation, and rollout activities for enterprise releases. Identify opportunities to automate software distribution and maintenance tasks. Minimize business disruption while maintaining current and secure systems. Strengthen Endpoint Security Implement controls that support organizational cybersecurity objectives. Partner with security teams to address vulnerabilities and compliance requirements. Monitor endpoint health, policy enforcement, and device compliance metrics. Support hardening initiatives and security remediation efforts. Participate in incident response and root cause analysis when endpoint systems are involved. Advanced Technical Support Serve as the highest level of escalation for endpoint-related issues. Investigate complex operating system, application, and device management problems. Perform technical analysis and recommend long-term solutions to recurring issues. Mentor support personnel and provide technical guidance across IT teams. Reporting, Analytics, and Process Improvement Create dashboards and reporting that provide visibility into asset health, deployment success, compliance, and software utilization. Analyze trends and recommend improvements to endpoint operations. Document architecture, standards, procedures, and support models. Continuously evaluate emerging technologies and recommend enhancements. Minimum Qualifications Professional Experience Five or more years of experience supporting and engineering enterprise endpoint environments. Demonstrated experience administering modern device management solutions. Experience managing large-scale workstation deployments and operating system migrations. Background supporting structured release, patching, and change management processes. Technical Expertise Experience in several of the following areas: Microsoft Intune Microsoft Endpoint Configuration Manager (MECM/SCCM) Windows endpoint administration Microsoft 365 endpoint technologies Active Directory Group Policy administration Endpoint compliance and security controls Software packaging and deployment Endpoint automation and scripting Education Bachelor's degree in Information Technology, Computer Science, Engineering, or a related discipline; equivalent professional experience may be considered in lieu of a degree. Required Credential Microsoft 365 Certified: Endpoint Administrator Associate Preferred Qualifications Experience with Azure-based device management solutions. Familiarity with identity and access management technologies. Knowledge of networking concepts, including DNS, DHCP, TCP/IP, and VPN technologies. Experience with desktop, application, or virtual desktop virtualization platforms. Exposure to macOS, Linux, and mobile device management environments. Proficiency with PowerShell or similar automation tools. Preferred Certifications CompTIA A+ CompTIA Network+ CompTIA Security+ Microsoft Azure Fundamentals Azure Administrator Associate Success Profile The successful candidate combines deep technical expertise with a continuous-improvement mindset. They are comfortable designing solutions, leading initiatives, resolving complex technical issues, and influencing technology standards across the organization. This individual is passionate about automation, endpoint security, operational excellence, and creating a reliable, modern computing experience for employees. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
Network Engineer DETAILS Location: Chesapeake, VA 23322 (onsite 5-days per week) Position Type: 6M Contract Hourly / Salary: to $60W2 JOB SUMMARY Vaco is currently seeking a Network Engineer for a 6M Contract that is located in Chesapeake, VA (onsite 5-days per week). The Network Engineer will support and enrich the enterprise network infrastructure within a large production environment. The Network Engineer will maintain and troubleshoot Layer 2 and foundational Layer 3 networking technologies, supporting switching, VLAN segmentation, trunking, wireless connectivity, and network access services while ensuring reliable day-to-day operations. The Network Engineer will work closely with existing network teams to assist with network implementation, configuration, troubleshooting, and operational support across wired and wireless environments. The ideal Network Engineer will possess strong switching fundamentals, practical networking experience, and the ability to support enterprise connectivity, security, and infrastructure initiatives while contributing to the overall stability and performance of the network environment. Enterprise Network Operations - Supporting / Maintaining Critical Network Infrastructure via Configuration / Monitoring / Troubleshooting / Resolution of Connectivity Issues Across Switching / Routing / Wireless / Access Layer Technologies Layer 2 Network Administration - Managing VLAN Architecture / Trunking / Spanning Tree / Authentication Services / Switch Configurations Ensuring Secure / Reliable Network Communications Network Troubleshooting / Incident Response - Investigating / Resolving Performance / Availability / Connectivity Issues via Systematic Analysis of Switching / Routing / Wireless / Endpoint Communication Paths Wireless / Access Network Support - Supporting WiFi Connectivity / Access Layer Deployments / Network Access Services Delivering Consistent User / Device Connectivity Across Enterprise Locations Network Implementation / Change Management - Supporting Network Upgrades / Equipment Deployments / Configuration Changes / Infrastructure Enhancements Following Established Change Control Processes Cross-Technology Infrastructure Support - Collaborating with Network / Security / Infrastructure Teams to Support Integrated Solutions Across Routing / Firewalls / Wireless Networking / Network Access Control (NAC) Technologies JOB REQUIREMENTS Enterprise Network Engineering (5+ years hands-on) - Supporting Enterprise Network Infrastructure Across Campus / Branch / Data Center Environments Layer 2 Networking Expertise (strong experience) - VLAN Design / Trunking / Spanning Tree / Port Security / Authentication Services / Switch Provisioning / Enterprise Access Layer Operations Routing / Layer 3 Fundamentals (working knowledge) - Routing Protocols / Technologies (Static Routing / OSPF / Default Routing / Inter-VLAN Routing / Route Redistribution Fundamentals) Cisco Switching Infrastructure - Configuring / Managing / Troubleshooting Cisco Catalyst Switching Platforms in Large Enterprise Environments Wireless Networking Support - Supporting Enterprise Wireless Infrastructure (WLAN Deployments / SSIDs / Authentication Services / Client Connectivity Troubleshooting / RF Fundamentals) Network Troubleshooting / Incident Resolution (advanced) - Troubleshooting Switching / Routing / Wireless / Client Connectivity Issues via Structured Root Cause Analysis Methodologies Network Access Control (NAC) - Supporting NAC Technologies (Authentication / Authorization / Device Access Policies / Endpoint Connectivity Management) Network Security Fundamentals (understanding) - Enterprise Security Concepts (ACLs / Segmentation / Network Access Controls / Secure Connectivity Best Practices) Infrastructure Monitoring / Operations - Utilizing Network Monitoring / Alerting / Performance Management Tools to Maintain Operational Stability / Resolve Infrastructure Issues Proactively Change Management / Network Implementations - Supporting Network Deployments / Hardware Refreshes / Configuration Changes / Infrastructure Upgrades Following Established Change Control Processes Documentation / Operational Standards - Creating / Maintaining Network Documentation (Diagrams / Runbooks / Configuration Standards / Support Procedures) Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/24/2026
Full time
Network Engineer DETAILS Location: Chesapeake, VA 23322 (onsite 5-days per week) Position Type: 6M Contract Hourly / Salary: to $60W2 JOB SUMMARY Vaco is currently seeking a Network Engineer for a 6M Contract that is located in Chesapeake, VA (onsite 5-days per week). The Network Engineer will support and enrich the enterprise network infrastructure within a large production environment. The Network Engineer will maintain and troubleshoot Layer 2 and foundational Layer 3 networking technologies, supporting switching, VLAN segmentation, trunking, wireless connectivity, and network access services while ensuring reliable day-to-day operations. The Network Engineer will work closely with existing network teams to assist with network implementation, configuration, troubleshooting, and operational support across wired and wireless environments. The ideal Network Engineer will possess strong switching fundamentals, practical networking experience, and the ability to support enterprise connectivity, security, and infrastructure initiatives while contributing to the overall stability and performance of the network environment. Enterprise Network Operations - Supporting / Maintaining Critical Network Infrastructure via Configuration / Monitoring / Troubleshooting / Resolution of Connectivity Issues Across Switching / Routing / Wireless / Access Layer Technologies Layer 2 Network Administration - Managing VLAN Architecture / Trunking / Spanning Tree / Authentication Services / Switch Configurations Ensuring Secure / Reliable Network Communications Network Troubleshooting / Incident Response - Investigating / Resolving Performance / Availability / Connectivity Issues via Systematic Analysis of Switching / Routing / Wireless / Endpoint Communication Paths Wireless / Access Network Support - Supporting WiFi Connectivity / Access Layer Deployments / Network Access Services Delivering Consistent User / Device Connectivity Across Enterprise Locations Network Implementation / Change Management - Supporting Network Upgrades / Equipment Deployments / Configuration Changes / Infrastructure Enhancements Following Established Change Control Processes Cross-Technology Infrastructure Support - Collaborating with Network / Security / Infrastructure Teams to Support Integrated Solutions Across Routing / Firewalls / Wireless Networking / Network Access Control (NAC) Technologies JOB REQUIREMENTS Enterprise Network Engineering (5+ years hands-on) - Supporting Enterprise Network Infrastructure Across Campus / Branch / Data Center Environments Layer 2 Networking Expertise (strong experience) - VLAN Design / Trunking / Spanning Tree / Port Security / Authentication Services / Switch Provisioning / Enterprise Access Layer Operations Routing / Layer 3 Fundamentals (working knowledge) - Routing Protocols / Technologies (Static Routing / OSPF / Default Routing / Inter-VLAN Routing / Route Redistribution Fundamentals) Cisco Switching Infrastructure - Configuring / Managing / Troubleshooting Cisco Catalyst Switching Platforms in Large Enterprise Environments Wireless Networking Support - Supporting Enterprise Wireless Infrastructure (WLAN Deployments / SSIDs / Authentication Services / Client Connectivity Troubleshooting / RF Fundamentals) Network Troubleshooting / Incident Resolution (advanced) - Troubleshooting Switching / Routing / Wireless / Client Connectivity Issues via Structured Root Cause Analysis Methodologies Network Access Control (NAC) - Supporting NAC Technologies (Authentication / Authorization / Device Access Policies / Endpoint Connectivity Management) Network Security Fundamentals (understanding) - Enterprise Security Concepts (ACLs / Segmentation / Network Access Controls / Secure Connectivity Best Practices) Infrastructure Monitoring / Operations - Utilizing Network Monitoring / Alerting / Performance Management Tools to Maintain Operational Stability / Resolve Infrastructure Issues Proactively Change Management / Network Implementations - Supporting Network Deployments / Hardware Refreshes / Configuration Changes / Infrastructure Upgrades Following Established Change Control Processes Documentation / Operational Standards - Creating / Maintaining Network Documentation (Diagrams / Runbooks / Configuration Standards / Support Procedures) Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.