Job Description Job Description Here at Appian, our values of Intensity and Excellence define who we are. We set high standards and live up to them, ensuring that everything we do is done with care and quality. We approach every challenge with ambition and commitment, holding ourselves and each other accountable to achieve the best results. When you join Appian, you'll be part of a passionate team dedicated to accomplishing hard things, together. Principal ML Platform Engineer Lead the engineering of software that matters - driving AI automation for the world's largest enterprises. This role is based at our h eadquarters in McLean, Virginia. Appian was built on a culture of in-person collaboration, which we believe is a key driver of our mission to be the best. Employees hired for this position are expected to be in the office 5 days a week to foster that culture and ensure we continue to thrive through shared ideas and teamwork. We believe being in the office provides more opportunities to come together and celebrate working with the exceptional people across Appian. About the Team Appian Engineering spans the full depth of our platform: from the foundational layers that power enterprise scale, to the AI capabilities redefining what automation can do. We operate in a highly collaborative, fast-paced environment focused on technical precision, continuous learning, and high code quality. By joining our team, you will solve real-world problems that directly shape how Appian delivers our AI-Powered Process Automation platform to enterprises around the world. The Opportunity As a Principal Software Engineer, you will serve as a technical linchpin for the team, bringing deep expertise in cloud-native architecture and a track record of influencing engineering direction beyond your immediate scope. Equipped with cutting-edge AI tooling, you will drive the design and delivery of high-complexity engineering solutions, set the technical bar for the team, and lead other engineers towards solutions of real complexity to ensure flawless Enterprise-Grade Orchestration. What You'll Do Develop Clean Software: Architect, build, and optimize high-performance software systems while maintaining a strong personal technical presence on the team. Lead Platform Modernization: Spearhead strategic technological changes and champion code refactoring efforts to keep the core Appian codebase cutting-edge, modern, and performant. Engineer with AI: Use AI coding tools fluently as a force multiplier: generating, reviewing, and critically evaluating AI-assisted code to ship faster without compromising quality or correctness. Lead Architecture & Delivery: Drive technical story breakdowns, acceptance criteria, and architectural design across complex, multi-tier application layers - from feature scoping through implementation. Optimize Performance & Scale: Manage product availability, latency, scalability, and efficiency by engineering deep reliability into our core software systems and performing advanced system tuning. Drive Engineering Excellence: Radiate development best practices across the department, perform meticulous code reviews on design and implementation, and build automation frameworks to prevent problem recurrence. Lead & Grow Engineers: Actively coach and mentor engineers at multiple levels, identify and close skill gaps on the team, and take ownership of accelerating the technical growth of those around you. Influence Technical Documentation: Share your expert domain knowledge regularly across the department, building a reputation as a vital resource and publishing high-quality content to Engineering's permanent documentation site. Required Qualifications Education: Minimum of a Bachelor of Science degree in Computer Science or a related technical/analytical discipline. (Equivalent experience is not accepted in lieu of a degree). Experience: 10+ years of relevant software development experience with a BS (or 8+ years of experience paired with a Master of Science in Computer Science or related field). Technical Mastery: Expert coding, scripting, and debugging proficiency in one or more core enterprise programming languages, specifically Java, Python, or Go. Domain Expertise: Deep working knowledge of distributed systems, cloud infrastructure, and the ability to contribute meaningfully at a senior individual contributor level within that space. Cross-Team Influence: Demonstrated ability to drive technical decisions and shape engineering practices beyond a single team or project scope. AI-Augmented Development: Demonstrated experience using AI coding assistants and a strong ability to evaluate, coach others on, and selectively apply AI-generated code in a production engineering context. Production Mastery: Proven experience developing, optimizing, and maintaining a high-volume, mission-critical production service environment. Communication & Alignment: Exceptional ability to communicate highly technical architectures verbally, visually, and in writing to diverse engineering audiences. Preferred Qualifications Cloud Architecture: Strong experience designing microservices, working with containerization (Docker, Kubernetes), and implementing modern CI/CD pipelines. Cloud Platforms: Deep experience developing and operating infrastructure across public cloud ecosystems, specifically AWS, Azure, and/or GCP. We value experience with enterprise platforms such as Salesforce or ServiceNow, as these skills translate well into our Enterprise-Grade Orchestration environment. What We Equip You With High-Impact Autonomy: A leadership environment where you will have real ownership over your team's direction, the latitude to make meaningful decisions, and participation in broader Engineering discussions. New Hire Orientation: A robust onboarding experience designed to integrate you smoothly into our technology, culture, and leadership model so you can show up for your team from day one. Continuous Enablement: Access to premier learning resources and dedicated learning time focused on both your continued technical growth and your evolution as an engineering leader. Sponsored Certifications: Full corporate sponsorship for professional technical certifications to advance your engineering credentials. The base salary range represents a good faith and reasonable estimate of the range at the time of posting. Actual compensation will be dependent on a number of factors including, but not limited to, the candidate's relevant work experience, qualifications, internal peer equity, and market and business conditions that exist when extending an offer. A discretionary bonus may be awarded in recognition of individual and company performance. In addition, Appian provides generous benefits offerings that include a 401(k) plan with company match, flexible time off, paid parental leave, medical, dental, and vision plans, life insurance, disability insurance, wellness programs, flexible spending accounts, health savings account contributions, an employee referral bonus program, and learning and development resources. Certain positions may be eligible for equity awards. Pay and benefits are subject to change at any time, consistent with the terms of any applicable compensation, commission, bonus, or benefit plans. Base Salary Range $175,000-$325,000 USD Tools and Resources Training and Development: During onboarding, we focus on equipping new hires with the skills and knowledge for success through department-specific training. Continuous learning is a central focus at Appian, with dedicated mentorship and the First-Friend program being widely utilized resources for new hires. Growth Opportunities: Appian provides a diverse array of growth and development opportunities, including our leadership program tailored for new and aspiring managers, a comprehensive library of specialized department training through Appian University, skills based training, and tuition reimbursement for those aiming to advance their education. This commitment ensures that employees have access to a holistic range of development opportunities. Community: We'll immerse you into our community rooted in respect starting on day one. Appian fosters inclusivity through our 8 employee-led affinity groups. These groups help employees build stronger internal and external networks by planning social, educational, and outreach activities to connect with Appianites and larger initiatives throughout the company. Benefits Appian offers a comprehensive benefits package designed to support your health, wellbeing, and financial future. Benefits may include health coverage, Employee Assistance Program (EAP) with free mental health support, life and disability insurance, an Employee Stock Purchase Program (ESPP), a retirement/pension plan, wellness dollars, tuition reimbursement, family-forming benefits and more. Benefits vary by country-please ask your Talent Acquisition contact for details specific to the location you are applying to. About Appian Appian provides AI automation for mission-critical work. We automate complex processes in large enterprises and governments . click apply for full job details
09/24/2026
Full time
Job Description Job Description Here at Appian, our values of Intensity and Excellence define who we are. We set high standards and live up to them, ensuring that everything we do is done with care and quality. We approach every challenge with ambition and commitment, holding ourselves and each other accountable to achieve the best results. When you join Appian, you'll be part of a passionate team dedicated to accomplishing hard things, together. Principal ML Platform Engineer Lead the engineering of software that matters - driving AI automation for the world's largest enterprises. This role is based at our h eadquarters in McLean, Virginia. Appian was built on a culture of in-person collaboration, which we believe is a key driver of our mission to be the best. Employees hired for this position are expected to be in the office 5 days a week to foster that culture and ensure we continue to thrive through shared ideas and teamwork. We believe being in the office provides more opportunities to come together and celebrate working with the exceptional people across Appian. About the Team Appian Engineering spans the full depth of our platform: from the foundational layers that power enterprise scale, to the AI capabilities redefining what automation can do. We operate in a highly collaborative, fast-paced environment focused on technical precision, continuous learning, and high code quality. By joining our team, you will solve real-world problems that directly shape how Appian delivers our AI-Powered Process Automation platform to enterprises around the world. The Opportunity As a Principal Software Engineer, you will serve as a technical linchpin for the team, bringing deep expertise in cloud-native architecture and a track record of influencing engineering direction beyond your immediate scope. Equipped with cutting-edge AI tooling, you will drive the design and delivery of high-complexity engineering solutions, set the technical bar for the team, and lead other engineers towards solutions of real complexity to ensure flawless Enterprise-Grade Orchestration. What You'll Do Develop Clean Software: Architect, build, and optimize high-performance software systems while maintaining a strong personal technical presence on the team. Lead Platform Modernization: Spearhead strategic technological changes and champion code refactoring efforts to keep the core Appian codebase cutting-edge, modern, and performant. Engineer with AI: Use AI coding tools fluently as a force multiplier: generating, reviewing, and critically evaluating AI-assisted code to ship faster without compromising quality or correctness. Lead Architecture & Delivery: Drive technical story breakdowns, acceptance criteria, and architectural design across complex, multi-tier application layers - from feature scoping through implementation. Optimize Performance & Scale: Manage product availability, latency, scalability, and efficiency by engineering deep reliability into our core software systems and performing advanced system tuning. Drive Engineering Excellence: Radiate development best practices across the department, perform meticulous code reviews on design and implementation, and build automation frameworks to prevent problem recurrence. Lead & Grow Engineers: Actively coach and mentor engineers at multiple levels, identify and close skill gaps on the team, and take ownership of accelerating the technical growth of those around you. Influence Technical Documentation: Share your expert domain knowledge regularly across the department, building a reputation as a vital resource and publishing high-quality content to Engineering's permanent documentation site. Required Qualifications Education: Minimum of a Bachelor of Science degree in Computer Science or a related technical/analytical discipline. (Equivalent experience is not accepted in lieu of a degree). Experience: 10+ years of relevant software development experience with a BS (or 8+ years of experience paired with a Master of Science in Computer Science or related field). Technical Mastery: Expert coding, scripting, and debugging proficiency in one or more core enterprise programming languages, specifically Java, Python, or Go. Domain Expertise: Deep working knowledge of distributed systems, cloud infrastructure, and the ability to contribute meaningfully at a senior individual contributor level within that space. Cross-Team Influence: Demonstrated ability to drive technical decisions and shape engineering practices beyond a single team or project scope. AI-Augmented Development: Demonstrated experience using AI coding assistants and a strong ability to evaluate, coach others on, and selectively apply AI-generated code in a production engineering context. Production Mastery: Proven experience developing, optimizing, and maintaining a high-volume, mission-critical production service environment. Communication & Alignment: Exceptional ability to communicate highly technical architectures verbally, visually, and in writing to diverse engineering audiences. Preferred Qualifications Cloud Architecture: Strong experience designing microservices, working with containerization (Docker, Kubernetes), and implementing modern CI/CD pipelines. Cloud Platforms: Deep experience developing and operating infrastructure across public cloud ecosystems, specifically AWS, Azure, and/or GCP. We value experience with enterprise platforms such as Salesforce or ServiceNow, as these skills translate well into our Enterprise-Grade Orchestration environment. What We Equip You With High-Impact Autonomy: A leadership environment where you will have real ownership over your team's direction, the latitude to make meaningful decisions, and participation in broader Engineering discussions. New Hire Orientation: A robust onboarding experience designed to integrate you smoothly into our technology, culture, and leadership model so you can show up for your team from day one. Continuous Enablement: Access to premier learning resources and dedicated learning time focused on both your continued technical growth and your evolution as an engineering leader. Sponsored Certifications: Full corporate sponsorship for professional technical certifications to advance your engineering credentials. The base salary range represents a good faith and reasonable estimate of the range at the time of posting. Actual compensation will be dependent on a number of factors including, but not limited to, the candidate's relevant work experience, qualifications, internal peer equity, and market and business conditions that exist when extending an offer. A discretionary bonus may be awarded in recognition of individual and company performance. In addition, Appian provides generous benefits offerings that include a 401(k) plan with company match, flexible time off, paid parental leave, medical, dental, and vision plans, life insurance, disability insurance, wellness programs, flexible spending accounts, health savings account contributions, an employee referral bonus program, and learning and development resources. Certain positions may be eligible for equity awards. Pay and benefits are subject to change at any time, consistent with the terms of any applicable compensation, commission, bonus, or benefit plans. Base Salary Range $175,000-$325,000 USD Tools and Resources Training and Development: During onboarding, we focus on equipping new hires with the skills and knowledge for success through department-specific training. Continuous learning is a central focus at Appian, with dedicated mentorship and the First-Friend program being widely utilized resources for new hires. Growth Opportunities: Appian provides a diverse array of growth and development opportunities, including our leadership program tailored for new and aspiring managers, a comprehensive library of specialized department training through Appian University, skills based training, and tuition reimbursement for those aiming to advance their education. This commitment ensures that employees have access to a holistic range of development opportunities. Community: We'll immerse you into our community rooted in respect starting on day one. Appian fosters inclusivity through our 8 employee-led affinity groups. These groups help employees build stronger internal and external networks by planning social, educational, and outreach activities to connect with Appianites and larger initiatives throughout the company. Benefits Appian offers a comprehensive benefits package designed to support your health, wellbeing, and financial future. Benefits may include health coverage, Employee Assistance Program (EAP) with free mental health support, life and disability insurance, an Employee Stock Purchase Program (ESPP), a retirement/pension plan, wellness dollars, tuition reimbursement, family-forming benefits and more. Benefits vary by country-please ask your Talent Acquisition contact for details specific to the location you are applying to. About Appian Appian provides AI automation for mission-critical work. We automate complex processes in large enterprises and governments . click apply for full job details
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. We are seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. What You'll Be Doing Be responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. The successful candidate will: Have excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understand Command level Management. Be able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Be able to perform as a section trainer and create lesson plans. Be able to operate within a stressful high speed Operational environment and be able to multi-task. What You Bring Basic Requirements: Must have 1, or more, years of IT experience Must have a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher. Must have an active DoW Secret Security Clearance Desired Requirements: Have experience in metrics-based IT Operations and Maintenance (O&M) teams. Have experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Have previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Have previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Have experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Have knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Have Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Have knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Have Quality Assurance/Quality Control Inspection process knowledge. Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role places you at the operational heart of a 24/7 enterprise network operations center defending the nation's missile defense infrastructure around the clock. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR NYRvODyGdv
09/24/2026
Full time
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. We are seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. What You'll Be Doing Be responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. The successful candidate will: Have excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understand Command level Management. Be able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Be able to perform as a section trainer and create lesson plans. Be able to operate within a stressful high speed Operational environment and be able to multi-task. What You Bring Basic Requirements: Must have 1, or more, years of IT experience Must have a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher. Must have an active DoW Secret Security Clearance Desired Requirements: Have experience in metrics-based IT Operations and Maintenance (O&M) teams. Have experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Have previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Have previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Have experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Have knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Have Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Have knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Have Quality Assurance/Quality Control Inspection process knowledge. Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role places you at the operational heart of a 24/7 enterprise network operations center defending the nation's missile defense infrastructure around the clock. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR NYRvODyGdv
Job Description Job Description The Elevator Pitch Are you ready to own the network and cybersecurity backbone of a company that's redefining security technology? Do you thrive at the intersection of network engineering, cybersecurity operations, and compliance-where your work directly reduces risk and keeps the business resilient against an ever-changing threat landscape? Evolv is seeking a Network & Cybersecurity Engineer to design, implement, and defend our network infrastructure and security tooling. You'll be the technical owner of Evolv's network and security posture-from firewalls and access control to identity governance and threat detection-reporting to the Senior Director of Cybersecurity & Technology. This is a pivotal role in maturing Evolv's security program to meet the evolving demands of the business and our growing compliance obligations. You'll partner closely with the Systems Engineer and the rest of the IT team, and serve as the subject matter expert on networking, enterprise cybersecurity, and compliance tooling. If you're energized by staying ahead of emerging threats and building durable, well-governed security controls, this role is for you. Success in the Role: What are performance outcomes over the first 6-12 months you will work toward completing? In the first 30 days, you will: Get to know the IT and security team and the tools/platforms currently in use Start building relationships with key stakeholders across the company, especially R&D and Legal/Compliance Learn Evolv's compliance commitments and ongoing authorization efforts, and how best to support them Gain familiarity with the current network/security toolstack: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, VPN/ZTNA, identity platforms (Okta, Entra ID), SIEM/EDR/DLP tooling, and the MDR relationship Within 3 months, you will: Begin implementing or improving network and security controls that measurably reduce risk Build trust-based relationships with peers in IT and stakeholders across business units Become the established subject matter expert on network security and compliance tooling at Evolv Take ownership of the MDR relationship and escalated detection response By the end of the first year, you will: Be recognized as the trusted subject matter expert across network infrastructure, and security operations Have driven measurable improvements to Evolv's security posture and compliance readiness Successfully supported compliance requirements and audit readiness, partnering closely with Legal/Compliance and R&D Documented network and security architecture, processes, and runbooks that reduce single points of failure Be seen as the go-to resource for network security questions, escalations, and best-practice guidance The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis? Infrastructure, Security & Compliance: Design, implement, and maintain network infrastructure: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, and VPN/ZTNA solutions Administer identity and access: Okta/Entra ID, Conditional Access policies, MFA enforcement, identity lifecycle management, and IGA Own security tooling and controls: SIEM, EDR, DLP, and vulnerability management, aligned to CIS Controls, NIST CSF, and other relevant compliance frameworks Manage the MDR relationship and respond to escalated detections Drive the IT process and policy redesign required to meet current compliance requirements, and to support additional frameworks as those efforts come online, in partnership with Legal/Compliance Harden AWS/Azure environments from a security perspective: IAM least-privilege, VPC/network security, Azure Policy Provide front-line escalation support and mentoring to IT teammates; maintain runbooks and documentation Assess technology and network risk across the company and recommend remediations Leadership, Team Structure & Culture You will join the IT organization as a direct report to the Senior Director of Cybersecurity & Technology, working alongside a Systems Engineer peer who owns day-to-day systems and endpoint operations. This is a hands-on, collaborative team that takes security and operational excellence seriously. This is a senior individual contributor role focused on deep technical impact-your job is to own and mature Evolv's network security and cybersecurity posture through the systems, controls, and automation you build. You'll have meaningful autonomy over how you approach problems and are actively encouraged to bring creative solutions, identify improvement opportunities, and advocate for better ways of working. You'll work alongside teammates who share your drive for continuous improvement, and you'll have a manager who values initiative, trusts the team to execute, and wants to hear your ideas. Where is the role located? This role is based out of Evolv HQ in Waltham, Massachusetts. This is a hybrid role with an expectation of 3 days per week on-site. Fully remote candidates will not be considered. Compensation and Transparency Statement The base salary range for this full-time position is $102,000-$166,000. In addition to base salary, this role offers a competitive target bonus, equity, and a comprehensive benefits package. This range reflects our commitment to pay transparency and equity, in alignment with applicable state laws. Our compensation ranges are determined based on factors such as role, level, location, market benchmarks, and internal equity. The posted range represents the good-faith estimate of what we expect to pay for this role across U.S. locations. Actual compensation within the range will be based on the candidate's skills, experience, education, and geographic location. In accordance with state and local pay transparency laws-including those in California, Colorado, Massachusetts, New York, New Jersey, and others-we disclose salary ranges in all job postings and provide additional information upon request. During the hiring process, your recruiter will share: •The specific salary range for your preferred location •A general overview of our benefits and equity offerings •Insights into how compensation decisions are made, including factors that influence starting pay We are committed to fair pay practices, and we regularly review our compensation programs to ensure they are competitive, equitable, and aligned with our values. Benefits At Evolv, we're on a mission to help make public spaces safer through innovative security technology. So, we're looking for future teammates who embody our values, people who: Do the right thing, always; Put people first' Own it; Win together; and continue to Be bold, stay curious. Our Benefits Include : Equity as part of your total compensation package Medical, dental, and vision insurance Health Savings Account (HSA) A 401(k) plan (and 2% company match) Flexible Paid Time Off (PTO)- take the time you need to recharge, with manager approval and business needs in mind Quarterly stipend for perks and benefits that matter most to you Tuition reimbursement to support your ongoing learning and development Subscription to Calm Evolv Technology ("Evolv") is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We welcome and encourage diversity in the workplace, and all employment decisions are made without regard to race, color, religion, national, social or ethnic origin, sex (including pregnancy), age, disability, HIV Status, sexual orientation, gender identity and/or expression, veteran status, or any other status protected by law in the locations where we operate. Evolv will not tolerate discrimination or harassment based on any of these characteristics. Evolv is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. If you need a reasonable accommodation as part of the job application process, please connect with us at . Evolv participates in E-verify for all employees after the completion of Form I-9.
09/24/2026
Full time
Job Description Job Description The Elevator Pitch Are you ready to own the network and cybersecurity backbone of a company that's redefining security technology? Do you thrive at the intersection of network engineering, cybersecurity operations, and compliance-where your work directly reduces risk and keeps the business resilient against an ever-changing threat landscape? Evolv is seeking a Network & Cybersecurity Engineer to design, implement, and defend our network infrastructure and security tooling. You'll be the technical owner of Evolv's network and security posture-from firewalls and access control to identity governance and threat detection-reporting to the Senior Director of Cybersecurity & Technology. This is a pivotal role in maturing Evolv's security program to meet the evolving demands of the business and our growing compliance obligations. You'll partner closely with the Systems Engineer and the rest of the IT team, and serve as the subject matter expert on networking, enterprise cybersecurity, and compliance tooling. If you're energized by staying ahead of emerging threats and building durable, well-governed security controls, this role is for you. Success in the Role: What are performance outcomes over the first 6-12 months you will work toward completing? In the first 30 days, you will: Get to know the IT and security team and the tools/platforms currently in use Start building relationships with key stakeholders across the company, especially R&D and Legal/Compliance Learn Evolv's compliance commitments and ongoing authorization efforts, and how best to support them Gain familiarity with the current network/security toolstack: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, VPN/ZTNA, identity platforms (Okta, Entra ID), SIEM/EDR/DLP tooling, and the MDR relationship Within 3 months, you will: Begin implementing or improving network and security controls that measurably reduce risk Build trust-based relationships with peers in IT and stakeholders across business units Become the established subject matter expert on network security and compliance tooling at Evolv Take ownership of the MDR relationship and escalated detection response By the end of the first year, you will: Be recognized as the trusted subject matter expert across network infrastructure, and security operations Have driven measurable improvements to Evolv's security posture and compliance readiness Successfully supported compliance requirements and audit readiness, partnering closely with Legal/Compliance and R&D Documented network and security architecture, processes, and runbooks that reduce single points of failure Be seen as the go-to resource for network security questions, escalations, and best-practice guidance The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis? Infrastructure, Security & Compliance: Design, implement, and maintain network infrastructure: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, and VPN/ZTNA solutions Administer identity and access: Okta/Entra ID, Conditional Access policies, MFA enforcement, identity lifecycle management, and IGA Own security tooling and controls: SIEM, EDR, DLP, and vulnerability management, aligned to CIS Controls, NIST CSF, and other relevant compliance frameworks Manage the MDR relationship and respond to escalated detections Drive the IT process and policy redesign required to meet current compliance requirements, and to support additional frameworks as those efforts come online, in partnership with Legal/Compliance Harden AWS/Azure environments from a security perspective: IAM least-privilege, VPC/network security, Azure Policy Provide front-line escalation support and mentoring to IT teammates; maintain runbooks and documentation Assess technology and network risk across the company and recommend remediations Leadership, Team Structure & Culture You will join the IT organization as a direct report to the Senior Director of Cybersecurity & Technology, working alongside a Systems Engineer peer who owns day-to-day systems and endpoint operations. This is a hands-on, collaborative team that takes security and operational excellence seriously. This is a senior individual contributor role focused on deep technical impact-your job is to own and mature Evolv's network security and cybersecurity posture through the systems, controls, and automation you build. You'll have meaningful autonomy over how you approach problems and are actively encouraged to bring creative solutions, identify improvement opportunities, and advocate for better ways of working. You'll work alongside teammates who share your drive for continuous improvement, and you'll have a manager who values initiative, trusts the team to execute, and wants to hear your ideas. Where is the role located? This role is based out of Evolv HQ in Waltham, Massachusetts. This is a hybrid role with an expectation of 3 days per week on-site. Fully remote candidates will not be considered. Compensation and Transparency Statement The base salary range for this full-time position is $102,000-$166,000. In addition to base salary, this role offers a competitive target bonus, equity, and a comprehensive benefits package. This range reflects our commitment to pay transparency and equity, in alignment with applicable state laws. Our compensation ranges are determined based on factors such as role, level, location, market benchmarks, and internal equity. The posted range represents the good-faith estimate of what we expect to pay for this role across U.S. locations. Actual compensation within the range will be based on the candidate's skills, experience, education, and geographic location. In accordance with state and local pay transparency laws-including those in California, Colorado, Massachusetts, New York, New Jersey, and others-we disclose salary ranges in all job postings and provide additional information upon request. During the hiring process, your recruiter will share: •The specific salary range for your preferred location •A general overview of our benefits and equity offerings •Insights into how compensation decisions are made, including factors that influence starting pay We are committed to fair pay practices, and we regularly review our compensation programs to ensure they are competitive, equitable, and aligned with our values. Benefits At Evolv, we're on a mission to help make public spaces safer through innovative security technology. So, we're looking for future teammates who embody our values, people who: Do the right thing, always; Put people first' Own it; Win together; and continue to Be bold, stay curious. Our Benefits Include : Equity as part of your total compensation package Medical, dental, and vision insurance Health Savings Account (HSA) A 401(k) plan (and 2% company match) Flexible Paid Time Off (PTO)- take the time you need to recharge, with manager approval and business needs in mind Quarterly stipend for perks and benefits that matter most to you Tuition reimbursement to support your ongoing learning and development Subscription to Calm Evolv Technology ("Evolv") is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We welcome and encourage diversity in the workplace, and all employment decisions are made without regard to race, color, religion, national, social or ethnic origin, sex (including pregnancy), age, disability, HIV Status, sexual orientation, gender identity and/or expression, veteran status, or any other status protected by law in the locations where we operate. Evolv will not tolerate discrimination or harassment based on any of these characteristics. Evolv is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. If you need a reasonable accommodation as part of the job application process, please connect with us at . Evolv participates in E-verify for all employees after the completion of Form I-9.
Job Description Job Description Benefits: Competitive salary 6-Month Contract-to-Hire (CTH) Experience Level Senior Level (5 or more years of experience) Role Overview The Network Security Engineer serves as a technical Subject Matter Expert (SME) responsible for designing, deploying, administering, and optimizing enterprise network security infrastructure. This role focuses on architecting and managing Palo Alto Networks Next-Generation Firewalls (NGFWs), Cisco Firepower/ASA firewalls, Cisco ISE (Identity Services Engine), VPN infrastructure, and SD-WAN security to protect network perimeters and secure multi-site data flows across a regulated financial institution. Key Responsibilities Firewall Engineering & Perimeter Defense • Design, deploy, and manage Palo Alto Networks Next-Generation Firewalls (NGFWs) using Panorama, configuring NAT, App-ID, User-ID, Threat Prevention, URL Filtering, and WildFire. • Administer and maintain Cisco ASA and Firepower (FTD/FMC) firewalls, managing access control policies, IPS tuning, and platform lifecycle upgrades. • Lead investigations and incident responses for network-layer security alerts, policy violations, and anomalies. Network Access Control & Secure Connectivity • Administer Cisco Identity Services Engine (ISE) for Network Access Control (NAC), 802.1X authentication, RADIUS/TACACS+, device profiling, and guest access. • Manage and maintain VPN infrastructure (Cisco AnyConnect / Secure Access and site-to-site IPSec tunnels), supporting certificate-based authentication and split-tunnel configurations. • Configure and secure Cisco Catalyst SD-WAN environments, enforcing application-aware policies, traffic segmentation, and encrypted transport. • Administer Cisco Umbrella / Secure Access DNS-layer security, category-based controls, and web filtering policies. Architecture, Compliance, & Change Management • Collaborate with Cloud, Infrastructure, and Information Security teams to implement network segmentation, zero-trust controls, and security standards aligned with PCI-DSS, SOX, and NIST frameworks. • Author, review, and execute ITIL-aligned change management requests, presenting to Change Advisory Boards (CAB) and conducting post-implementation reviews. • Maintain comprehensive technical documentation, including firewall rulesets, network security architecture diagrams, runbooks, and standard operating procedures (SOPs). Required Qualifications • 5 or more years of hands-on experience in network security engineering, enterprise firewall administration, and perimeter security (CCNP Security-level expertise). • 3 or more years of hands-on experience designing, deploying, and managing Palo Alto Networks NGFWs and Panorama. • Solid hands-on experience administering Cisco ASA and Firepower (FTD/FMC) firewall environments, access control policies, and platform upgrades. • Strong working knowledge of Cisco ISE for NAC, 802.1X, RADIUS/TACACS+, and device profiling. • Experience configuring and troubleshooting enterprise VPN solutions (Cisco AnyConnect, Secure Access, IPSec site-to-site tunnels). • Solid understanding of core networking protocols, routing, and security concepts (TCP/IP, BGP, EIGRP, ACLs, NAT, SSL/TLS inspection, network micro-segmentation). • Experience working within an ITIL-based change management framework. • Must be legally authorized to work in the United States without current or future visa sponsorship. Preferred Qualifications • Industry certifications such as Palo Alto Networks Certified Network Security Engineer (PCNSE), Cisco Certified Network Professional Security (CCNP Security), or CCIE Security. • Familiarity with financial regulatory frameworks and compliance standards (e.g., FFIEC, PCI-DSS, SOX, NIST CSF). • Experience with Microsoft Azure networking and cloud security (Azure Firewall, NSGs, Virtual WAN, ExpressRoute). • Experience utilizing automation scripts (e.g., Python, Ansible) for firewall configuration and policy management. Core Skills & Attributes • Exceptional analytical, problem-solving, and root-cause diagnostic abilities for complex network security issues. • High accountability and attention to detail when executing production changes and maintaining documentation. • Excellent interpersonal and communication skills to collaborate with cross-functional IT teams, security leaders, and external auditors. • Self-driven approach to continuous learning and staying current with evolving cybersecurity threats. Flexible work from home options available.
09/24/2026
Full time
Job Description Job Description Benefits: Competitive salary 6-Month Contract-to-Hire (CTH) Experience Level Senior Level (5 or more years of experience) Role Overview The Network Security Engineer serves as a technical Subject Matter Expert (SME) responsible for designing, deploying, administering, and optimizing enterprise network security infrastructure. This role focuses on architecting and managing Palo Alto Networks Next-Generation Firewalls (NGFWs), Cisco Firepower/ASA firewalls, Cisco ISE (Identity Services Engine), VPN infrastructure, and SD-WAN security to protect network perimeters and secure multi-site data flows across a regulated financial institution. Key Responsibilities Firewall Engineering & Perimeter Defense • Design, deploy, and manage Palo Alto Networks Next-Generation Firewalls (NGFWs) using Panorama, configuring NAT, App-ID, User-ID, Threat Prevention, URL Filtering, and WildFire. • Administer and maintain Cisco ASA and Firepower (FTD/FMC) firewalls, managing access control policies, IPS tuning, and platform lifecycle upgrades. • Lead investigations and incident responses for network-layer security alerts, policy violations, and anomalies. Network Access Control & Secure Connectivity • Administer Cisco Identity Services Engine (ISE) for Network Access Control (NAC), 802.1X authentication, RADIUS/TACACS+, device profiling, and guest access. • Manage and maintain VPN infrastructure (Cisco AnyConnect / Secure Access and site-to-site IPSec tunnels), supporting certificate-based authentication and split-tunnel configurations. • Configure and secure Cisco Catalyst SD-WAN environments, enforcing application-aware policies, traffic segmentation, and encrypted transport. • Administer Cisco Umbrella / Secure Access DNS-layer security, category-based controls, and web filtering policies. Architecture, Compliance, & Change Management • Collaborate with Cloud, Infrastructure, and Information Security teams to implement network segmentation, zero-trust controls, and security standards aligned with PCI-DSS, SOX, and NIST frameworks. • Author, review, and execute ITIL-aligned change management requests, presenting to Change Advisory Boards (CAB) and conducting post-implementation reviews. • Maintain comprehensive technical documentation, including firewall rulesets, network security architecture diagrams, runbooks, and standard operating procedures (SOPs). Required Qualifications • 5 or more years of hands-on experience in network security engineering, enterprise firewall administration, and perimeter security (CCNP Security-level expertise). • 3 or more years of hands-on experience designing, deploying, and managing Palo Alto Networks NGFWs and Panorama. • Solid hands-on experience administering Cisco ASA and Firepower (FTD/FMC) firewall environments, access control policies, and platform upgrades. • Strong working knowledge of Cisco ISE for NAC, 802.1X, RADIUS/TACACS+, and device profiling. • Experience configuring and troubleshooting enterprise VPN solutions (Cisco AnyConnect, Secure Access, IPSec site-to-site tunnels). • Solid understanding of core networking protocols, routing, and security concepts (TCP/IP, BGP, EIGRP, ACLs, NAT, SSL/TLS inspection, network micro-segmentation). • Experience working within an ITIL-based change management framework. • Must be legally authorized to work in the United States without current or future visa sponsorship. Preferred Qualifications • Industry certifications such as Palo Alto Networks Certified Network Security Engineer (PCNSE), Cisco Certified Network Professional Security (CCNP Security), or CCIE Security. • Familiarity with financial regulatory frameworks and compliance standards (e.g., FFIEC, PCI-DSS, SOX, NIST CSF). • Experience with Microsoft Azure networking and cloud security (Azure Firewall, NSGs, Virtual WAN, ExpressRoute). • Experience utilizing automation scripts (e.g., Python, Ansible) for firewall configuration and policy management. Core Skills & Attributes • Exceptional analytical, problem-solving, and root-cause diagnostic abilities for complex network security issues. • High accountability and attention to detail when executing production changes and maintaining documentation. • Excellent interpersonal and communication skills to collaborate with cross-functional IT teams, security leaders, and external auditors. • Self-driven approach to continuous learning and staying current with evolving cybersecurity threats. Flexible work from home options available.
Job Description Job Description As a Senior Network Security Engineer at Penumbra, you will play a critical role in determining the company's long term goals. You will be a key member of the Information Security and Compliance team. This is a highly technical, hands-on role. The Sr. Network Engineer will collaborate with Security, IT, Manufacturing, and Engineering teams and be responsible for engineering solutions and supporting operational activities across a hybrid cloud environment. The role responsibilities include ensuring compliance with legal and regulatory requirements and maintaining company security policies, standards, and industry's best practices. What You'll Work On • Ensure the network security of on-premises and cloud-based systems, networks, infrastructure, and services. • Enforce secure design standards and specifications for services, systems, and products. • Responsible for network security solutions, control designs, and enforcement across our environment. • Design and perform security assessments, configuration verification, configuration reporting, and other activities to validate control effectiveness. • Engage and share results of security audits with the Information Security and business partners to promote changes vital to improve risk posture. • Collaborate with cross-functional teams to develop and implement security measures supporting on-prem and cloud systems. • Develop roadmaps, standards, and documentation for technical solutions and existing configurations. Serve as the subject matter expert across the network security environment. • Respond to and lead, as appropriate, incident response activities for security incidents. • Collaborate with IT and line of business teams to integrate security into new and existing systems, processes, and initiatives. • Manage and configure security services, e.g., firewalls, intrusion detection/prevention systems, threat prevention technologies, VPNs, and other network security appliances. • Create and maintain documentation for security procedures, designs, and protocols, conduct security training and awareness for staff as appropriate to the role. • Stay current with emerging security threats and technologies in the security landscape. Ensure compliance with regulatory requirements and industry standards in the Company's environment. What You Contribute • A Bachelor's degree in computer science or related field with 10+ years of related experience, or equivalent combination of education and experience. • Master's degree preferred in Computer Science or Engineering with an emphasis in Computer Security or a related field • Highly analytical and results and process-oriented mindset strongly desired • 10+ years of hands-on design, enforcement and testing/validation of offensive security, defensive security, systems, and solutions engineering in a large enterprise • 5+ years of hands-on security experience with cloud platforms, i.e., Azure, AWS or Google Cloud Platform services, automation, or IaC • 5+ years of hands-on experience network security experience and expert-level knowledge on security technologies such as Palo Alto Firewalls, Cisco ISE, IPS, CASB, VPN management, SAML/OIDC NAC 802.1X, SIEM, SOAR, Radius/TACACS+, directory services • Proficient with network topologies, routing protocols, i.e., OSPF, BGP, ISIS, SDN, and tunneling technologies. • Proficient with diagramming and threat models, ability and competency to design and implement controls at scale based on risks • Proficient in conducting solutions architecture, security design reviews, passionate about security and privacy research, technologies, and methods. • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends • Understanding security and compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment • Outstanding ethical standards and integrity. • Excellent communicator with strong oral, written, and interpersonal communication skills • High degree of accuracy and attention to detail • Proficiency with Microsoft Word, Excel, Visio, and PowerPoint • Excellent organizational skills with the ability to prioritize assignments while handling various projects simultaneously. Working Conditions General office environment. Willingness and ability to work on site. May have business travel up to 10%. Requires some lifting and moving of up to 10 pounds Must be able to move between buildings and floors. Must be able to remain stationary and use a computer or other standard office equipment, such as a printer or copy machine, for an extensive period of time each day. Must be able to read, prepare emails, and produce documents and spreadsheets. Must be able to move within the office and access file cabinets or supplies, as needed. Must be able to communicate and exchange accurate information with employees at all levels on a daily basis. Annual Base Salary Range: $146,000 - $220,000/ year We offer a competitive compensation package plus a benefits and equity program, when applicable. Individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. What We Offer • A collaborative teamwork environment where learning is constant, and performance is rewarded. • The opportunity to be part of the team that is revolutionizing the treatment of some of the world's most devastating diseases. • A generous benefits package for eligible employees that includes medical, dental, vision, life, AD&D, short and long-term disability insurance, 401(k) with employer match, paid parental leave, eleven paid company holidays per year, a minimum of fifteen days of accrued vacation per year, which increases with tenure, and paid sick time in compliance with applicable law(s). Penumbra, Inc., headquartered in Alameda, California, is a global healthcare company focused on innovative therapies. Penumbra designs, develops, manufactures, and markets novel products and has a broad portfolio that addresses challenging medical conditions in markets with significant unmet need. Penumbra sells its products to hospitals and healthcare providers primarily through its direct sales organization in the United States, most of Europe, Canada, and Australia, and through distributors in select international markets. The Penumbra logo is a trademark of Penumbra, Inc. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, age, disability, military or veteran status, or any other characteristic protected by federal, state, or local laws. If you reside in the State of California, please also refer to Penumbra's Privacy Notice for California Residents. For additional information on Penumbra's commitment to being an equal opportunity employer, please see Penumbra's AAP Policy Statement.
09/24/2026
Full time
Job Description Job Description As a Senior Network Security Engineer at Penumbra, you will play a critical role in determining the company's long term goals. You will be a key member of the Information Security and Compliance team. This is a highly technical, hands-on role. The Sr. Network Engineer will collaborate with Security, IT, Manufacturing, and Engineering teams and be responsible for engineering solutions and supporting operational activities across a hybrid cloud environment. The role responsibilities include ensuring compliance with legal and regulatory requirements and maintaining company security policies, standards, and industry's best practices. What You'll Work On • Ensure the network security of on-premises and cloud-based systems, networks, infrastructure, and services. • Enforce secure design standards and specifications for services, systems, and products. • Responsible for network security solutions, control designs, and enforcement across our environment. • Design and perform security assessments, configuration verification, configuration reporting, and other activities to validate control effectiveness. • Engage and share results of security audits with the Information Security and business partners to promote changes vital to improve risk posture. • Collaborate with cross-functional teams to develop and implement security measures supporting on-prem and cloud systems. • Develop roadmaps, standards, and documentation for technical solutions and existing configurations. Serve as the subject matter expert across the network security environment. • Respond to and lead, as appropriate, incident response activities for security incidents. • Collaborate with IT and line of business teams to integrate security into new and existing systems, processes, and initiatives. • Manage and configure security services, e.g., firewalls, intrusion detection/prevention systems, threat prevention technologies, VPNs, and other network security appliances. • Create and maintain documentation for security procedures, designs, and protocols, conduct security training and awareness for staff as appropriate to the role. • Stay current with emerging security threats and technologies in the security landscape. Ensure compliance with regulatory requirements and industry standards in the Company's environment. What You Contribute • A Bachelor's degree in computer science or related field with 10+ years of related experience, or equivalent combination of education and experience. • Master's degree preferred in Computer Science or Engineering with an emphasis in Computer Security or a related field • Highly analytical and results and process-oriented mindset strongly desired • 10+ years of hands-on design, enforcement and testing/validation of offensive security, defensive security, systems, and solutions engineering in a large enterprise • 5+ years of hands-on security experience with cloud platforms, i.e., Azure, AWS or Google Cloud Platform services, automation, or IaC • 5+ years of hands-on experience network security experience and expert-level knowledge on security technologies such as Palo Alto Firewalls, Cisco ISE, IPS, CASB, VPN management, SAML/OIDC NAC 802.1X, SIEM, SOAR, Radius/TACACS+, directory services • Proficient with network topologies, routing protocols, i.e., OSPF, BGP, ISIS, SDN, and tunneling technologies. • Proficient with diagramming and threat models, ability and competency to design and implement controls at scale based on risks • Proficient in conducting solutions architecture, security design reviews, passionate about security and privacy research, technologies, and methods. • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends • Understanding security and compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment • Outstanding ethical standards and integrity. • Excellent communicator with strong oral, written, and interpersonal communication skills • High degree of accuracy and attention to detail • Proficiency with Microsoft Word, Excel, Visio, and PowerPoint • Excellent organizational skills with the ability to prioritize assignments while handling various projects simultaneously. Working Conditions General office environment. Willingness and ability to work on site. May have business travel up to 10%. Requires some lifting and moving of up to 10 pounds Must be able to move between buildings and floors. Must be able to remain stationary and use a computer or other standard office equipment, such as a printer or copy machine, for an extensive period of time each day. Must be able to read, prepare emails, and produce documents and spreadsheets. Must be able to move within the office and access file cabinets or supplies, as needed. Must be able to communicate and exchange accurate information with employees at all levels on a daily basis. Annual Base Salary Range: $146,000 - $220,000/ year We offer a competitive compensation package plus a benefits and equity program, when applicable. Individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. What We Offer • A collaborative teamwork environment where learning is constant, and performance is rewarded. • The opportunity to be part of the team that is revolutionizing the treatment of some of the world's most devastating diseases. • A generous benefits package for eligible employees that includes medical, dental, vision, life, AD&D, short and long-term disability insurance, 401(k) with employer match, paid parental leave, eleven paid company holidays per year, a minimum of fifteen days of accrued vacation per year, which increases with tenure, and paid sick time in compliance with applicable law(s). Penumbra, Inc., headquartered in Alameda, California, is a global healthcare company focused on innovative therapies. Penumbra designs, develops, manufactures, and markets novel products and has a broad portfolio that addresses challenging medical conditions in markets with significant unmet need. Penumbra sells its products to hospitals and healthcare providers primarily through its direct sales organization in the United States, most of Europe, Canada, and Australia, and through distributors in select international markets. The Penumbra logo is a trademark of Penumbra, Inc. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, age, disability, military or veteran status, or any other characteristic protected by federal, state, or local laws. If you reside in the State of California, please also refer to Penumbra's Privacy Notice for California Residents. For additional information on Penumbra's commitment to being an equal opportunity employer, please see Penumbra's AAP Policy Statement.
Job Description Job Description Benefits: HYBRID Competitive salary Opportunity for advancement Network Security Engineer Fort Collins, CO (Hybrid) Type: Contract (C2C) Interview Mode: Virtual Seeking a senior Network Security Engineer to lead firewall modernization, VPN transformation, zero-trust implementation, and enterprise vulnerability management across enterprise lab environments. This role supports secure, scalable, and compliant next-generation infrastructure platforms. Core Responsibilities : Firewall & Network Security Architecture Configure and optimize enterprise firewall platforms (physical and virtual) Design rule sets, traffic policies, and network segmentation Implement micro-segmentation and zero-trust architecture Align firewall policies with modern security frameworks VPN & Secure Access Transformation Replace legacy OpenVPN environments with OKTA/Atmos-based VPN solutions Build and manage Atmos connectors Implement secure authentication workflows Design secure routing and hybrid access policies Vulnerability Management Design and implement enterprise vulnerability scanning programs Deploy and manage tools such as Nessus or Greenbone Configure scan schedules and tune scan noise Deliver actionable security reports Drive remediation workflows with engineering teams Security Segmentation & Compliance Design security-driven network segmentation strategies Enforce access controls aligned to compliance and corporate standards Partner with corporate security teams on policy implementation Linux & Security Automation Deploy Linux-based security tooling platforms Automate scanning, reporting, and remediation workflows Script security processes and integrations Required Skills: Enterprise firewall configuration and optimization VPN technologies and secure remote access solutions Zero-trust and micro-segmentation principles Vulnerability scanning tools (Nessus, Greenbone, or similar) Security compliance scanning and remediation Linux system administration and automation Nice to Have: OKTA integrations and identity-based access systems SIEM and security monitoring platforms Automation frameworks and API integrations Flexible work from home options available.
09/24/2026
Full time
Job Description Job Description Benefits: HYBRID Competitive salary Opportunity for advancement Network Security Engineer Fort Collins, CO (Hybrid) Type: Contract (C2C) Interview Mode: Virtual Seeking a senior Network Security Engineer to lead firewall modernization, VPN transformation, zero-trust implementation, and enterprise vulnerability management across enterprise lab environments. This role supports secure, scalable, and compliant next-generation infrastructure platforms. Core Responsibilities : Firewall & Network Security Architecture Configure and optimize enterprise firewall platforms (physical and virtual) Design rule sets, traffic policies, and network segmentation Implement micro-segmentation and zero-trust architecture Align firewall policies with modern security frameworks VPN & Secure Access Transformation Replace legacy OpenVPN environments with OKTA/Atmos-based VPN solutions Build and manage Atmos connectors Implement secure authentication workflows Design secure routing and hybrid access policies Vulnerability Management Design and implement enterprise vulnerability scanning programs Deploy and manage tools such as Nessus or Greenbone Configure scan schedules and tune scan noise Deliver actionable security reports Drive remediation workflows with engineering teams Security Segmentation & Compliance Design security-driven network segmentation strategies Enforce access controls aligned to compliance and corporate standards Partner with corporate security teams on policy implementation Linux & Security Automation Deploy Linux-based security tooling platforms Automate scanning, reporting, and remediation workflows Script security processes and integrations Required Skills: Enterprise firewall configuration and optimization VPN technologies and secure remote access solutions Zero-trust and micro-segmentation principles Vulnerability scanning tools (Nessus, Greenbone, or similar) Security compliance scanning and remediation Linux system administration and automation Nice to Have: OKTA integrations and identity-based access systems SIEM and security monitoring platforms Automation frameworks and API integrations Flexible work from home options available.
Job Description Job Description CoreWeave is The Essential Cloud for AI . Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at . What You'll Do: CoreWeave's Network Security team ensures network infrastructure is secure, resilient and compliant. Our team partners with engineering, product teams, and partners to build secure network solutions that protect critical infrastructure and continuously improve the security posture to meet the needs of our customers. With our growing reliance on connected technology, the need to keep critical systems secure, reliable, and resilient has never been more important. We are seeking an OT Security Engineer to join our team and play a pivotal role in safeguarding the operational technologies that support our datacenter networks. About the role: This position offers a unique opportunity to work at the crossroads of cyber security, operational technology (OT), engineering, and datacenter operations. As the network security engineer responsible for our operational technology networks, your responsibilities will include identifying and evaluating cybersecurity risks, designing and launching pragmatic security solutions, and embedding security controls directly into the operational systems and technologies supporting our infrastructure. You will work with suppliers and third parties in benchmarking their capabilities against expectations and industry standards. You will also lead efforts in partnering with peer security teams and partners in production engineering as you lead continuous improvement of security posture for operational technology network environments and the devices connected. This role requires both depth in understanding network security, and breadth of knowledge of the unique challenges that face the industry in securing the infrastructure that is the foundation of modern datacenters. You will act as a trusted partner who goes beyond advisory work to roll up your sleeves and deliver. Some things you will work on: Establishing standards for security expectations covering all operational technology networks and devices connected to them. This will include network segmentation, host isolation, network traversal controls, and remote connectivity. Providing solutions to complex security issues, manage multiple tasks, and prioritize effectively in a fast-paced environment. Creating an inventory and risk register that can be used as a baseline in understanding near term and long term objectives. Partnering with production engineering and business development teams evaluating priorities for risk reduction in current deployments, and risk avoidance by evolving standards for future growth. Executing and partnering with other parties in using penetration testing to evaluate effectiveness of existing controls. Coordinating with third parties and internal teams in addressing vulnerabilities via mitigation, isolation or other strategies to protect critical infrastructure in these environments. Researching industry risks and drive change in operational networks to continuously reduce risk Developing and test recovery models and response playbooks to handle compromise scenarios. Presenting technical security information to both technical and non-technical audiences, including external partners. Maintain technical documentation, reports, and security tooling with attention to detail. Who You Are: 5+ Years of experience in network infrastructure security (firewalls, ACLs, architecture, risk management) in a global network environment. Proficiency in at least one programming or scripting language (e.g., Go, Python, C/C++) for automation, code reviews, and tooling. Bachelor's degree in Computer Science or related field. Relevant certifications such as CISSP, CCNP, PCNSE are advantageous. Experience with operational technology networks (factory or industrial systems, building management systems, power, physical security systems, remote access, HVAC, etc.), factory networks or other similar environments. Strong technical knowledge of network firewalls, virtual private networks, network segmentation, and defense in depth. Able to navigate ambiguity, identify root causes, and solve complex security problems. Excellent written and verbal communication skills with strong technical documentation abilities. Capable of working independently while managing multiple priorities in a fast-paced environment. Strong desire to continuously learn and adopt new technologies and security techniques. Preferred: Prior experience with operational technology networks that span global locations Experience with the range of obscure solutions that are often deployed on operational technology networks. Deep understanding of business-wide security best practices and implementation strategies. Experience with network automation, agentic network tooling, and incident response automation. Wondering if you're a good fit? We believe in investing in our people, and value candidates who can bring their own diversified experiences to our teams - even if you aren't a 100% skill or experience match. Here are a few qualities we've found compatible with our team. If some of this describes you, we'd love to talk. You love to solve problems that few others would tackle. You're curious about critical network infrastructure that is the foundation of modern data centers. You're an expert in network security with a passion to explore the more exotic nature of operational technology. Why CoreWeave? At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values: Be Curious at Your Core Act Like an Owner Empower Employees Deliver Best-in-Class Client Experiences Achieve More Together We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organization's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us! The base salary range for this role is $164,000 to $242,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility). What We Offer The range we've posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location. In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include: Medical, dental, and vision insurance - 100% paid for by CoreWeave Company-paid Life Insurance Voluntary supplemental life insurance Short and long-term disability insurance Flexible Spending Account Health Savings Account Tuition Reimbursement Ability to Participate in Employee Stock Purchase Program (ESPP) Mental Wellness Benefits through Spring Health Family-Forming support provided by Carrot Paid Parental Leave Flexible, full-service childcare support with Kinside 401(k) with a generous employer match Flexible PTO Catered lunch each day in our office and data center locations A casual work environment A work culture focused on innovative disruption California Applicants California Consumer Privacy Act Equal Opportunity & Accommodations CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. As part of this commitment and consistent with the Americans with Disabilities Act (ADA) , CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: . . click apply for full job details
09/24/2026
Full time
Job Description Job Description CoreWeave is The Essential Cloud for AI . Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at . What You'll Do: CoreWeave's Network Security team ensures network infrastructure is secure, resilient and compliant. Our team partners with engineering, product teams, and partners to build secure network solutions that protect critical infrastructure and continuously improve the security posture to meet the needs of our customers. With our growing reliance on connected technology, the need to keep critical systems secure, reliable, and resilient has never been more important. We are seeking an OT Security Engineer to join our team and play a pivotal role in safeguarding the operational technologies that support our datacenter networks. About the role: This position offers a unique opportunity to work at the crossroads of cyber security, operational technology (OT), engineering, and datacenter operations. As the network security engineer responsible for our operational technology networks, your responsibilities will include identifying and evaluating cybersecurity risks, designing and launching pragmatic security solutions, and embedding security controls directly into the operational systems and technologies supporting our infrastructure. You will work with suppliers and third parties in benchmarking their capabilities against expectations and industry standards. You will also lead efforts in partnering with peer security teams and partners in production engineering as you lead continuous improvement of security posture for operational technology network environments and the devices connected. This role requires both depth in understanding network security, and breadth of knowledge of the unique challenges that face the industry in securing the infrastructure that is the foundation of modern datacenters. You will act as a trusted partner who goes beyond advisory work to roll up your sleeves and deliver. Some things you will work on: Establishing standards for security expectations covering all operational technology networks and devices connected to them. This will include network segmentation, host isolation, network traversal controls, and remote connectivity. Providing solutions to complex security issues, manage multiple tasks, and prioritize effectively in a fast-paced environment. Creating an inventory and risk register that can be used as a baseline in understanding near term and long term objectives. Partnering with production engineering and business development teams evaluating priorities for risk reduction in current deployments, and risk avoidance by evolving standards for future growth. Executing and partnering with other parties in using penetration testing to evaluate effectiveness of existing controls. Coordinating with third parties and internal teams in addressing vulnerabilities via mitigation, isolation or other strategies to protect critical infrastructure in these environments. Researching industry risks and drive change in operational networks to continuously reduce risk Developing and test recovery models and response playbooks to handle compromise scenarios. Presenting technical security information to both technical and non-technical audiences, including external partners. Maintain technical documentation, reports, and security tooling with attention to detail. Who You Are: 5+ Years of experience in network infrastructure security (firewalls, ACLs, architecture, risk management) in a global network environment. Proficiency in at least one programming or scripting language (e.g., Go, Python, C/C++) for automation, code reviews, and tooling. Bachelor's degree in Computer Science or related field. Relevant certifications such as CISSP, CCNP, PCNSE are advantageous. Experience with operational technology networks (factory or industrial systems, building management systems, power, physical security systems, remote access, HVAC, etc.), factory networks or other similar environments. Strong technical knowledge of network firewalls, virtual private networks, network segmentation, and defense in depth. Able to navigate ambiguity, identify root causes, and solve complex security problems. Excellent written and verbal communication skills with strong technical documentation abilities. Capable of working independently while managing multiple priorities in a fast-paced environment. Strong desire to continuously learn and adopt new technologies and security techniques. Preferred: Prior experience with operational technology networks that span global locations Experience with the range of obscure solutions that are often deployed on operational technology networks. Deep understanding of business-wide security best practices and implementation strategies. Experience with network automation, agentic network tooling, and incident response automation. Wondering if you're a good fit? We believe in investing in our people, and value candidates who can bring their own diversified experiences to our teams - even if you aren't a 100% skill or experience match. Here are a few qualities we've found compatible with our team. If some of this describes you, we'd love to talk. You love to solve problems that few others would tackle. You're curious about critical network infrastructure that is the foundation of modern data centers. You're an expert in network security with a passion to explore the more exotic nature of operational technology. Why CoreWeave? At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values: Be Curious at Your Core Act Like an Owner Empower Employees Deliver Best-in-Class Client Experiences Achieve More Together We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organization's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us! The base salary range for this role is $164,000 to $242,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility). What We Offer The range we've posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location. In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include: Medical, dental, and vision insurance - 100% paid for by CoreWeave Company-paid Life Insurance Voluntary supplemental life insurance Short and long-term disability insurance Flexible Spending Account Health Savings Account Tuition Reimbursement Ability to Participate in Employee Stock Purchase Program (ESPP) Mental Wellness Benefits through Spring Health Family-Forming support provided by Carrot Paid Parental Leave Flexible, full-service childcare support with Kinside 401(k) with a generous employer match Flexible PTO Catered lunch each day in our office and data center locations A casual work environment A work culture focused on innovative disruption California Applicants California Consumer Privacy Act Equal Opportunity & Accommodations CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. As part of this commitment and consistent with the Americans with Disabilities Act (ADA) , CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: . . click apply for full job details
Job Description Job Description Overview We are seeking a CSfC Senior Network Engineer to join our team supporting Network Enterprise Technology Command (NETCOM) in Honolulu, HI. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at . Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Responsibilities RESPONSIBILITIES Assists the PM in the day-to-day management of leading Network Engineers. Must have an in-depth understanding of advanced networking O&M Commercial Solutions for Classified (CSfC) concepts and processes and experience applying these with little to no guidance. Must be able to provide guidance to others. Must be able to perform successfully in complex, unstructured situations. Must be proficient in multivendor networking environments in configuring firewalls, Intrusion Prevention/Detection systems, VPN gateways, routers, and switches (Cisco, Aruba, Juniper, Cisco ASA, etc.) Be able to develop and modify system scripts. Write standardized system documentation, including configuration guides, test procedures, test results, and training materials. Provide onsite training to technical and non-technical users on the daily use, management, and troubleshooting of the solution after installation. Support all Cross-Domain solution requirements Collaborate with other operations departments to design approved infrastructure Serve as the escalation contact during large outages for Tier 2 and 3 systems. Author network Engineering Design Packages to include detailed implementation project plans and procedures. Configures network, software, and hardware components to meet NSA CSfC, NIAP, and DoD requirements Performs network design and systems integration Designs, develops, implements, tests, and maintains complex secure communications networks Configuring/managing PKI Certificate Authorities for CSfC solutions Familiarity with Certificate Authority configuration (ISC CertAgent/MS Windows Server/Red Hat Certificate systems) Document configuration, test procedure, results, and training materials Preparing test reports and configuration documentation according to customer standards. Providing customer on-site training on solution daily use, management, and troubleshooting Provide tier 2 and 3 support as part of a technical team. Identify and recommend hardware and support solutions based on research and analysis of new technologies, interfacing with customers and vendors. Enhance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to the company. Apply DoD STIGs and IAVAs Perform special projects and other duties as assigned. REQUIRED QUALIFICATIONS Top Secret OR Higher OR Secret Clearance level with completed T5 investigation Active Professional Network certification (CCNP-Security, CCNA, HPE Aruba Networking Certified Professional - Switching, etc.) Must have experience with one or more networking vendors: Cisco, Aruba, Juniper, etc. One of the following DoD8140 Certifications : SecurityX/CASP+ CCNA CCNP Security CCSP (Certified Cloud Security Professional) GCED (GIAC Certified Enterprise Defender) GCIA (GIAC Certified Intrusion Analyst) GCLD (GIAC Cloud Security Essentials) GDSA (GIAC Defensible Security Architecture) GFACT (GIAC Foundational Cybersecurity Technologies) 10 or more years of experience in engineering MA/MS= 10 years; BS=12 years Qualifications WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Honolulu, HI Type of environment: Office Noise level: Low Work schedule: CONUS Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 20% PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE United States Citizenship Top Secret Clearance requirement WAGE INFORMATION Target salary range: $133,000.00 - $165,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
09/24/2026
Full time
Job Description Job Description Overview We are seeking a CSfC Senior Network Engineer to join our team supporting Network Enterprise Technology Command (NETCOM) in Honolulu, HI. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at . Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Responsibilities RESPONSIBILITIES Assists the PM in the day-to-day management of leading Network Engineers. Must have an in-depth understanding of advanced networking O&M Commercial Solutions for Classified (CSfC) concepts and processes and experience applying these with little to no guidance. Must be able to provide guidance to others. Must be able to perform successfully in complex, unstructured situations. Must be proficient in multivendor networking environments in configuring firewalls, Intrusion Prevention/Detection systems, VPN gateways, routers, and switches (Cisco, Aruba, Juniper, Cisco ASA, etc.) Be able to develop and modify system scripts. Write standardized system documentation, including configuration guides, test procedures, test results, and training materials. Provide onsite training to technical and non-technical users on the daily use, management, and troubleshooting of the solution after installation. Support all Cross-Domain solution requirements Collaborate with other operations departments to design approved infrastructure Serve as the escalation contact during large outages for Tier 2 and 3 systems. Author network Engineering Design Packages to include detailed implementation project plans and procedures. Configures network, software, and hardware components to meet NSA CSfC, NIAP, and DoD requirements Performs network design and systems integration Designs, develops, implements, tests, and maintains complex secure communications networks Configuring/managing PKI Certificate Authorities for CSfC solutions Familiarity with Certificate Authority configuration (ISC CertAgent/MS Windows Server/Red Hat Certificate systems) Document configuration, test procedure, results, and training materials Preparing test reports and configuration documentation according to customer standards. Providing customer on-site training on solution daily use, management, and troubleshooting Provide tier 2 and 3 support as part of a technical team. Identify and recommend hardware and support solutions based on research and analysis of new technologies, interfacing with customers and vendors. Enhance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to the company. Apply DoD STIGs and IAVAs Perform special projects and other duties as assigned. REQUIRED QUALIFICATIONS Top Secret OR Higher OR Secret Clearance level with completed T5 investigation Active Professional Network certification (CCNP-Security, CCNA, HPE Aruba Networking Certified Professional - Switching, etc.) Must have experience with one or more networking vendors: Cisco, Aruba, Juniper, etc. One of the following DoD8140 Certifications : SecurityX/CASP+ CCNA CCNP Security CCSP (Certified Cloud Security Professional) GCED (GIAC Certified Enterprise Defender) GCIA (GIAC Certified Intrusion Analyst) GCLD (GIAC Cloud Security Essentials) GDSA (GIAC Defensible Security Architecture) GFACT (GIAC Foundational Cybersecurity Technologies) 10 or more years of experience in engineering MA/MS= 10 years; BS=12 years Qualifications WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Honolulu, HI Type of environment: Office Noise level: Low Work schedule: CONUS Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 20% PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE United States Citizenship Top Secret Clearance requirement WAGE INFORMATION Target salary range: $133,000.00 - $165,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
Job Description Job Description Job Description ACTIVE SECURITY CLEARANCE AT THE TS/SCI POLYGRAPH LEVEL IS REQUIRED We are seeking an aggressive, hands-on Red Team / Cyber Assessment Engineer to join our technical assessment team in Annapolis Junction, MD, with periodic OCONUS travel requirements. In this role, you will execute adversarial assessments, emulate real-world threat actors, and evaluate complex network architectures to identify vulnerabilities before adversaries can exploit them. You won't just run automated scanners-you will conduct full-scope Red Team engagements, perform deep network anomaly analysis, leverage the MITRE ATTCK framework, and author comprehensive mitigation reports to harden critical infrastructure. If you thrive on offensive cyber operations, analyzing raw telemetry for Indicators of Compromise (IOCs), and delivering high-impact security assessments, you'll fit right in with Team Nyla. The annual base salary range for this role is $176,000-$208,000 (USD) , which does not include discretionary bonus compensation or our comprehensive benefits package. Actual compensation offered to the successful candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level, among other things. , Required Skills Red Team Assessment Experience: Proven track record conducting offensive security assessments, adversarial emulations, and technical vulnerability evaluations. Assessment Mitigation Reporting: Demonstrated capability to author detailed assessment findings, technical threat reports, and actionable remediation plans. Network Threat Analysis: Strong expertise in network traffic analysis, anomaly detection, IOC identification, and multi-source telemetry evaluation. Security Frameworks: Deep working knowledge of the MITRE ATTCK framework, NIST cybersecurity controls, and ISO 27001 standards. Operational Mobility: Willingness and ability to undertake periodic OCONUS travel for on-site assessment operations. Education: Bachelor's Degree in Cybersecurity, Computer Science, Computer Engineering, or a related technical discipline, PLUS 7+ years of professional cybersecurity and Red Team assessment experience OR Master's Degree in a related technical field, PLUS 5+ years of specialized offensive security and threat assessment experience OR High School Diploma / GED, PLUS 11+ years of hands-on technical experience in cybersecurity operations, network assessment, and Red Teaming in lieu of a degree. , Desired Skills Offensive Certifications: Industry certifications such as OSCP, CRTP, CRTE, CRTO, or equivalent penetration testing credentials. Penetration Testing Exploitation: Practical experience with ethical hacking, exploit development, post-exploitation techniques, and manual penetration testing. Zero Trust Concepts: Understanding of Zero Trust architecture and modern network infrastructure hardening. Blue/Purple Team Collaboration: Experience supporting defensive monitoring, detection engineering, or joint Purple Team exercises. Python Scripting: Basic proficiency in Python for automated parsing, custom payload delivery, or quick assessment scripting. , About Nyla Technology Solutions Nyla Technology Solutions delivers exceptional Artificial Intelligence (AI), Data Science, and Software Engineering services for the U.S. Government. Nyla embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the industry. We have a passion for developing solutions that have a quick and immediate impact on mission. Headquartered in Columbia, Maryland, our customers love how we tackle their most challenging problems and get things done. If you have the unique experience and expertise we are seeking, along with the desire and determination to invest your time and energy as a part of Nyla's team, Taking Care of All of You Nyla provides a top-of-market compensation and benefits package. And through our unique Nyla FLEX program, we custom tailor these benefits to best fit your lifestyle. The Nyla FLEX benefit program is designed to offer you flexibility in the 3 biggest areas of your life: your pay, your leave, and your schedule. PAY - Nyla starts with 4 weeks of Annual Leave plus 11 holidays and an additional day of Annual Leave for each year you're at the company. You have the flexibility to cash out your annual leave hours, opt out of other Nyla benefits, and/or arrange for additional hours on contract (over 40 hrs/week). There's even an option to earn 1.3 times your hourly rate once you work over 1880 hours on contract! LEAVE - Want to spend more time with the family? Want more time to travel the world? You can BUY additional annual leave for a total of 6 weeks of annual leave. That's up to 240 hours of leave plus 11 holidays! That's not even including paid anniversary leave! SCHEDULE - Does the traditional 40-hour workweek no longer fit your lifestyle? With Nyla FLEX, you have the freedom to scale down to 30-32 hours while still enjoying the top-notch Nyla benefits you know and love. It's flexibility that works for you without compromising the perks! WHAT ABOUT OTHER BENEFITS? Nyla's health care (medical, dental, and vision) is 100% covered by the company. We provide 10% 401k matching - with full vesting day 1! Our Professional Development offers $5,000 per year to be used towards fees, tuition, or time off for your continued growth. We even have a student loan repayment program and we provide 8 hours of volunteering annually so you can support your community, making your world a better place. To learn more about Nyla's culture and our exceptional benefit packages click here. Nyla is an equal opportunity employer.
09/24/2026
Full time
Job Description Job Description Job Description ACTIVE SECURITY CLEARANCE AT THE TS/SCI POLYGRAPH LEVEL IS REQUIRED We are seeking an aggressive, hands-on Red Team / Cyber Assessment Engineer to join our technical assessment team in Annapolis Junction, MD, with periodic OCONUS travel requirements. In this role, you will execute adversarial assessments, emulate real-world threat actors, and evaluate complex network architectures to identify vulnerabilities before adversaries can exploit them. You won't just run automated scanners-you will conduct full-scope Red Team engagements, perform deep network anomaly analysis, leverage the MITRE ATTCK framework, and author comprehensive mitigation reports to harden critical infrastructure. If you thrive on offensive cyber operations, analyzing raw telemetry for Indicators of Compromise (IOCs), and delivering high-impact security assessments, you'll fit right in with Team Nyla. The annual base salary range for this role is $176,000-$208,000 (USD) , which does not include discretionary bonus compensation or our comprehensive benefits package. Actual compensation offered to the successful candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level, among other things. , Required Skills Red Team Assessment Experience: Proven track record conducting offensive security assessments, adversarial emulations, and technical vulnerability evaluations. Assessment Mitigation Reporting: Demonstrated capability to author detailed assessment findings, technical threat reports, and actionable remediation plans. Network Threat Analysis: Strong expertise in network traffic analysis, anomaly detection, IOC identification, and multi-source telemetry evaluation. Security Frameworks: Deep working knowledge of the MITRE ATTCK framework, NIST cybersecurity controls, and ISO 27001 standards. Operational Mobility: Willingness and ability to undertake periodic OCONUS travel for on-site assessment operations. Education: Bachelor's Degree in Cybersecurity, Computer Science, Computer Engineering, or a related technical discipline, PLUS 7+ years of professional cybersecurity and Red Team assessment experience OR Master's Degree in a related technical field, PLUS 5+ years of specialized offensive security and threat assessment experience OR High School Diploma / GED, PLUS 11+ years of hands-on technical experience in cybersecurity operations, network assessment, and Red Teaming in lieu of a degree. , Desired Skills Offensive Certifications: Industry certifications such as OSCP, CRTP, CRTE, CRTO, or equivalent penetration testing credentials. Penetration Testing Exploitation: Practical experience with ethical hacking, exploit development, post-exploitation techniques, and manual penetration testing. Zero Trust Concepts: Understanding of Zero Trust architecture and modern network infrastructure hardening. Blue/Purple Team Collaboration: Experience supporting defensive monitoring, detection engineering, or joint Purple Team exercises. Python Scripting: Basic proficiency in Python for automated parsing, custom payload delivery, or quick assessment scripting. , About Nyla Technology Solutions Nyla Technology Solutions delivers exceptional Artificial Intelligence (AI), Data Science, and Software Engineering services for the U.S. Government. Nyla embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the industry. We have a passion for developing solutions that have a quick and immediate impact on mission. Headquartered in Columbia, Maryland, our customers love how we tackle their most challenging problems and get things done. If you have the unique experience and expertise we are seeking, along with the desire and determination to invest your time and energy as a part of Nyla's team, Taking Care of All of You Nyla provides a top-of-market compensation and benefits package. And through our unique Nyla FLEX program, we custom tailor these benefits to best fit your lifestyle. The Nyla FLEX benefit program is designed to offer you flexibility in the 3 biggest areas of your life: your pay, your leave, and your schedule. PAY - Nyla starts with 4 weeks of Annual Leave plus 11 holidays and an additional day of Annual Leave for each year you're at the company. You have the flexibility to cash out your annual leave hours, opt out of other Nyla benefits, and/or arrange for additional hours on contract (over 40 hrs/week). There's even an option to earn 1.3 times your hourly rate once you work over 1880 hours on contract! LEAVE - Want to spend more time with the family? Want more time to travel the world? You can BUY additional annual leave for a total of 6 weeks of annual leave. That's up to 240 hours of leave plus 11 holidays! That's not even including paid anniversary leave! SCHEDULE - Does the traditional 40-hour workweek no longer fit your lifestyle? With Nyla FLEX, you have the freedom to scale down to 30-32 hours while still enjoying the top-notch Nyla benefits you know and love. It's flexibility that works for you without compromising the perks! WHAT ABOUT OTHER BENEFITS? Nyla's health care (medical, dental, and vision) is 100% covered by the company. We provide 10% 401k matching - with full vesting day 1! Our Professional Development offers $5,000 per year to be used towards fees, tuition, or time off for your continued growth. We even have a student loan repayment program and we provide 8 hours of volunteering annually so you can support your community, making your world a better place. To learn more about Nyla's culture and our exceptional benefit packages click here. Nyla is an equal opportunity employer.
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $160,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
09/24/2026
Full time
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $160,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116. Our direct client has an opening for an Senior Network Security Engineer (807471) This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116. Please send rates and a resume. Corp to Corp or w2 allowed. Enterprise Networking (Required 8 Years) Enterprise Security (Required 5 Years) Azure Networking (Required 3 Years) WAF/NGFW (Required 3 Years) Supporting environments with 300+ Network Devices (Desired 3 Years) Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor (Required) Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) (Required) Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def Required. Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates Required. Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles (Required) Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS Required. Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP (Required) Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages. (Required) Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers. (Required) Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700).(Required)
09/24/2026
Full time
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116. Our direct client has an opening for an Senior Network Security Engineer (807471) This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116. Please send rates and a resume. Corp to Corp or w2 allowed. Enterprise Networking (Required 8 Years) Enterprise Security (Required 5 Years) Azure Networking (Required 3 Years) WAF/NGFW (Required 3 Years) Supporting environments with 300+ Network Devices (Desired 3 Years) Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor (Required) Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) (Required) Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def Required. Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates Required. Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles (Required) Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS Required. Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP (Required) Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages. (Required) Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers. (Required) Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700).(Required)
Job Description Job Description Network Security EngineerOneida Technical Solutions (OTS), headquartered in Oneida, New York, is a tribally-owned, dynamic, and growth-oriented firm focused on serving the Information Technology (IT) and Cybersecurity needs of the U.S. Department of Defense (DoD). We are seeking qualified Network Engineers to join our team serving the United States Military Academy (USMA) at West Point, NY. The role is onsite at USMA.The selected candidate will support the USMA Networking Service Branch's mission and strategic direction by providing knowledge, techniques, and expertise in configuring and administering a Cisco Networking environment across the USMA campus.Target Salary Range: $105,000 - $120,000Job Description:Overview: Under general supervision, the Network Security Engineer will be responsible for the acquisition, installation, maintenance, and operation of USMA's local area network (LAN). This is a critical role tasked with managing network performance and ensuring the security of network infrastructure.Primary Duties & Responsibilities:Acquire, install, and maintain all network hardware and software components, ensuring optimal performance and security.Manage network performance by monitoring and analyzing traffic, identifying issues, and implementing solutions.Ensure that security procedures are implemented, enforced, and regularly updated to align with industry standards.Evaluate, develop, and maintain telecommunications systems to support organizational operations.Troubleshoot and resolve network problems, ensuring minimal disruption to services.Establish and implement network policies, procedures, and standards that conform to information systems and organizational objectives.Train users on network operations and security best practices to enhance overall network security awareness.Report frequently to the assigned Support Manager and/or Senior Network Administrator on network performance and security status.Evaluate DoD and NIST security controls, determining their applicability to the environment while assessing potential impacts.Implement security controls as directed by the customer's Cybersecurity branch to enhance the security posture of the organization.Investigate and recommend new and emerging security paradigms to continuously improve network security.Collaboration with other USMA and OTS functions (Cyber, IT support, Enterprise Services, etc.) to resolve network related issues. The nature of the position involves actively participating in multiple working groups and disseminating information across all levels of the organization.Additional duties may include:Installation/Replacement/Management of Uninterruptible Power Supply (UPS) devices.Minimum Qualifications:Cisco Certified Network Associate (CCNA) certification.Expertise in Internet Protocol version 6 (IPv6) design, implementation, management, and monitoring.Strong understanding of Zero Trust Architectures (ZTA) including enterprise implementation, configuration, management, monitoring, troubleshooting, and technology integration.Must meet minimum standards for DoD8140 certification for advanced-level work roles.Must be fluent in the principles and requirements of the CCIE Security and Cisco Certified Design Expert (CCDE) material, however certifications to CCIE and CCDE are not required.Proficient in network security concepts and technologies.Excellent problem-solving skills and attention to detail.Strong communication skills for effective user training and reporting.Ability to work collaboratively in a team-oriented environment.Preferred Qualifications:Advanced Certifications: Possession of advanced networking and security certifications such as Cisco Certified Network Professional (CCNP) or Cisco Certified Internetwork Expert (CCIE) is highly preferred, demonstrating a deeper level of expertise in network security and infrastructure.Experience with Network Security Frameworks: Proven experience with security frameworks and standards such as NIST Cybersecurity Framework, ISO 27001, and DoD RMF (Risk Management Framework) to ensure compliance and best practices in network security management.Proficiency in Network Management Tools: Familiarity with advanced network monitoring and management tools (e.g., SolarWinds, Wireshark, Nagios) for traffic analysis and performance optimization.Hands-on Experience with Firewall and IDS/IPS Technologies: Demonstrated experience in configuring and managing firewalls, intrusion detection systems (IDS), and intrusion prevention systems (IPS) to enhance network security.Knowledge of Cloud Security: Understanding of security protocols and practices related to cloud services and architectures (e.g., AWS, Azure) that support organizational operations.Scripting and Automation Skills: Proficiency in scripting languages (e.g., Python, PowerShell) to automate network tasks and enhance operational efficiency.Strong Analytical Skills: Ability to analyze complex network issues and provide clear, actionable recommendations to improve network performance and security.Oneida Technical Solutions is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics. Job Posted by ApplicantPro
09/24/2026
Full time
Job Description Job Description Network Security EngineerOneida Technical Solutions (OTS), headquartered in Oneida, New York, is a tribally-owned, dynamic, and growth-oriented firm focused on serving the Information Technology (IT) and Cybersecurity needs of the U.S. Department of Defense (DoD). We are seeking qualified Network Engineers to join our team serving the United States Military Academy (USMA) at West Point, NY. The role is onsite at USMA.The selected candidate will support the USMA Networking Service Branch's mission and strategic direction by providing knowledge, techniques, and expertise in configuring and administering a Cisco Networking environment across the USMA campus.Target Salary Range: $105,000 - $120,000Job Description:Overview: Under general supervision, the Network Security Engineer will be responsible for the acquisition, installation, maintenance, and operation of USMA's local area network (LAN). This is a critical role tasked with managing network performance and ensuring the security of network infrastructure.Primary Duties & Responsibilities:Acquire, install, and maintain all network hardware and software components, ensuring optimal performance and security.Manage network performance by monitoring and analyzing traffic, identifying issues, and implementing solutions.Ensure that security procedures are implemented, enforced, and regularly updated to align with industry standards.Evaluate, develop, and maintain telecommunications systems to support organizational operations.Troubleshoot and resolve network problems, ensuring minimal disruption to services.Establish and implement network policies, procedures, and standards that conform to information systems and organizational objectives.Train users on network operations and security best practices to enhance overall network security awareness.Report frequently to the assigned Support Manager and/or Senior Network Administrator on network performance and security status.Evaluate DoD and NIST security controls, determining their applicability to the environment while assessing potential impacts.Implement security controls as directed by the customer's Cybersecurity branch to enhance the security posture of the organization.Investigate and recommend new and emerging security paradigms to continuously improve network security.Collaboration with other USMA and OTS functions (Cyber, IT support, Enterprise Services, etc.) to resolve network related issues. The nature of the position involves actively participating in multiple working groups and disseminating information across all levels of the organization.Additional duties may include:Installation/Replacement/Management of Uninterruptible Power Supply (UPS) devices.Minimum Qualifications:Cisco Certified Network Associate (CCNA) certification.Expertise in Internet Protocol version 6 (IPv6) design, implementation, management, and monitoring.Strong understanding of Zero Trust Architectures (ZTA) including enterprise implementation, configuration, management, monitoring, troubleshooting, and technology integration.Must meet minimum standards for DoD8140 certification for advanced-level work roles.Must be fluent in the principles and requirements of the CCIE Security and Cisco Certified Design Expert (CCDE) material, however certifications to CCIE and CCDE are not required.Proficient in network security concepts and technologies.Excellent problem-solving skills and attention to detail.Strong communication skills for effective user training and reporting.Ability to work collaboratively in a team-oriented environment.Preferred Qualifications:Advanced Certifications: Possession of advanced networking and security certifications such as Cisco Certified Network Professional (CCNP) or Cisco Certified Internetwork Expert (CCIE) is highly preferred, demonstrating a deeper level of expertise in network security and infrastructure.Experience with Network Security Frameworks: Proven experience with security frameworks and standards such as NIST Cybersecurity Framework, ISO 27001, and DoD RMF (Risk Management Framework) to ensure compliance and best practices in network security management.Proficiency in Network Management Tools: Familiarity with advanced network monitoring and management tools (e.g., SolarWinds, Wireshark, Nagios) for traffic analysis and performance optimization.Hands-on Experience with Firewall and IDS/IPS Technologies: Demonstrated experience in configuring and managing firewalls, intrusion detection systems (IDS), and intrusion prevention systems (IPS) to enhance network security.Knowledge of Cloud Security: Understanding of security protocols and practices related to cloud services and architectures (e.g., AWS, Azure) that support organizational operations.Scripting and Automation Skills: Proficiency in scripting languages (e.g., Python, PowerShell) to automate network tasks and enhance operational efficiency.Strong Analytical Skills: Ability to analyze complex network issues and provide clear, actionable recommendations to improve network performance and security.Oneida Technical Solutions is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics. Job Posted by ApplicantPro
Job Description Job Description Fortinet NSE Certification is Must Rate: $52/hr on W2 or $60/hr on C2C we have an opening for an Expert Network Administrator HBITS-07-14631 DURATION: 30 Months LOCATION: New York, NY - Hybrid Locals ONLY with Local ID required Supporting the Department's hybrid security infrastructure. Qualifications Network Administrator- Maintains computer infrastructures with emphasis on networking. Key areas of expertise are with on-site servers, software-network interactions and network integrity/resilience. Expert- 84+ months: Candidate is able to provide guidance to large teams and/or has extensive industry experience and is considered at the top of his/her field. 84 months of Administration & Engineering experience with Enterprise firewalls 84 months of experience with Implementing security solutions covering Threat Prevention, URL Filtering, and SSL Decryption 84 months of experience with firewall management systems 84 months of experience with Intrusion protection and prevention systems. 84 months of experience with configuring routes and encrypted tunnels between remote locations 84 months of experience with developing and deploying BGP routing solutions. 84 months of experience with high availability network technologies and configurations 84 months of experience with written communications skills. Including creating network diagrams, and documenting changes and composing orders of operations for tasks. 84 months of experience implementing, and integrating network solutions based on Cisco LAN/WAN. 84 months of experience configuring and installing various network devices and services (e.g., routers, switches, firewalls, VPN). 84 months of network experience and understanding of: Local Area Networks, Wide Area Networks, TCP/IP, switching and routing protocols. 84 months of experience mentoring staff Fortinet NSE Certification Day-to-Day tasks Install, configure, and manage firewall Security appliances in a high availability architecture. Patch and maintain the appliance with all relevant security and upgrade software. Implement changes to address new initiatives or application requirements as needed. Monitor and support the VPN solution to ensure high availability in a secure manner. Configure and Manage Azure based networking and security. Create Firewall rules, Vnets, express routes as required. Monitor security center for compliance for all relevant security benchmarks and standards. Assist in creating ARM as needed. Produce network diagrams and documentation as well as document standards, policies, and procedures. Mentor staff Powered by JazzHR HZ7aXNvYRD
09/24/2026
Full time
Job Description Job Description Fortinet NSE Certification is Must Rate: $52/hr on W2 or $60/hr on C2C we have an opening for an Expert Network Administrator HBITS-07-14631 DURATION: 30 Months LOCATION: New York, NY - Hybrid Locals ONLY with Local ID required Supporting the Department's hybrid security infrastructure. Qualifications Network Administrator- Maintains computer infrastructures with emphasis on networking. Key areas of expertise are with on-site servers, software-network interactions and network integrity/resilience. Expert- 84+ months: Candidate is able to provide guidance to large teams and/or has extensive industry experience and is considered at the top of his/her field. 84 months of Administration & Engineering experience with Enterprise firewalls 84 months of experience with Implementing security solutions covering Threat Prevention, URL Filtering, and SSL Decryption 84 months of experience with firewall management systems 84 months of experience with Intrusion protection and prevention systems. 84 months of experience with configuring routes and encrypted tunnels between remote locations 84 months of experience with developing and deploying BGP routing solutions. 84 months of experience with high availability network technologies and configurations 84 months of experience with written communications skills. Including creating network diagrams, and documenting changes and composing orders of operations for tasks. 84 months of experience implementing, and integrating network solutions based on Cisco LAN/WAN. 84 months of experience configuring and installing various network devices and services (e.g., routers, switches, firewalls, VPN). 84 months of network experience and understanding of: Local Area Networks, Wide Area Networks, TCP/IP, switching and routing protocols. 84 months of experience mentoring staff Fortinet NSE Certification Day-to-Day tasks Install, configure, and manage firewall Security appliances in a high availability architecture. Patch and maintain the appliance with all relevant security and upgrade software. Implement changes to address new initiatives or application requirements as needed. Monitor and support the VPN solution to ensure high availability in a secure manner. Configure and Manage Azure based networking and security. Create Firewall rules, Vnets, express routes as required. Monitor security center for compliance for all relevant security benchmarks and standards. Assist in creating ARM as needed. Produce network diagrams and documentation as well as document standards, policies, and procedures. Mentor staff Powered by JazzHR HZ7aXNvYRD
Job Description Job Description About Zedcor Inc. Zedcor Inc. (TSX-V:ZDC) is disrupting the traditional physical security industry through its proprietary MobileyeZ security towers by providing turnkey and customized mobile surveillance and live monitoring solutions to blue-chip customers across North America. The Company continues to expand its established platform of over 1,200 MobileyeZ towers in Canada and the United States, with emphasis on industry leading service levels, data-supported efficiency outcomes, and continued innovation. Zedcor services the Canadian market through equipment and service centers currently located in British Columbia, Alberta, Manitoba, and Ontario. The Company continues to advance its U.S. expansion which now has the capacity to service markets throughout the Midwest with locations throughout Texas Colorado, Arizona, Nevada and Florida. For more information, check out . Position Overview The Senior Network / Firewall Engineer to design, build, secure, and maintain a large-scale hybrid network environment. This is not an entry-level role. The successful candidate must be able to solve complex technical problems under pressure and operate with cybersecurity, uptime, encryption, monitoring, and compliance in mind. The environment includes Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint routers, switches, Wi-Fi, F5 BIG-IP, Azure WAF, Azure Application Gateway, Azure Front Door, centralized logging, centralized monitoring, and internal PKI. Key Responsibilities Design, build, maintain, and troubleshoot IPsec and SSL VPN networks. Manage and support a Cradlepoint environment of 20,000+ devices. Manage Sophos firewalls or become proficient with Sophos within the first 30 days if experienced with another major firewall platform. Ensure DNS and DHCP are centrally managed, monitored, logged, secured, and not hosted directly on firewalls. Patch, monitor, log, audit, and secure network infrastructure. Ensure network links, management access, VPNs, and sensitive data flows are encrypted. Document network designs, firewall rules, routing policies, VPN configurations, standards, and runbooks. Support incident response, change management, vulnerability remediation, disaster recovery, SOC 2, FedRAMP, and StateRAMP readiness. Use Zedcor's internal PKI solution for device identity, certificates, authentication, encryption, and secure management. Maintain centralized logging, centralized audit logging, centralized authentication, centralized monitoring, and alerting. Ensure firewalls are used as security enforcement points, not as core infrastructure service providers. Support F5 BIG-IP, Azure WAF, Azure Application Gateway, and Azure Front Door. Configure and troubleshoot dynamic routing, including internal BGP. Support Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint, switches, Wi-Fi, WAF, and load-balancing platforms. Qualifications & Requirements Key Responsibilities Design, build, maintain, and troubleshoot IPsec and SSL VPN networks. Manage and support a Cradlepoint environment of 20,000+ devices. Manage Sophos firewalls or become proficient with Sophos within the first 30 days if experienced with another major firewall platform. Ensure DNS and DHCP are centrally managed, monitored, logged, secured, and not hosted directly on firewalls. Patch, monitor, log, audit, and secure network infrastructure. Ensure network links, management access, VPNs, and sensitive data flows are encrypted. Document network designs, firewall rules, routing policies, VPN configurations, standards, and runbooks. Support incident response, change management, vulnerability remediation, disaster recovery, SOC 2, FedRAMP, and StateRAMP readiness. Use Zedcor's internal PKI solution for device identity, certificates, authentication, encryption, and secure management. Maintain centralized logging, centralized audit logging, centralized authentication, centralized monitoring, and alerting. Ensure firewalls are used as security enforcement points, not as core infrastructure service providers. Support F5 BIG-IP, Azure WAF, Azure Application Gateway, and Azure Front Door. Configure and troubleshoot dynamic routing, including internal BGP. Support Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint, switches, Wi-Fi, WAF, and load-balancing platforms. Minimum Qualifications 5+ years of hands-on network engineering, firewall engineering, or network security engineering experience. Strong Azure Networking experience, including Azure VPN Gateway, virtual networks, routing, NSGs, private connectivity, and hybrid networking. Strong knowledge of IPsec VPNs, SSL VPNs, routing, switching, segmentation, firewall policies, NAT, high availability, and secure remote access. Solid understanding of DNS and DHCP design, troubleshooting, and security best practices. Strong understanding of encryption, PKI, certificate-based authentication, secure management access, and network security best practices. Ability to work full-time on-site in Houston, Texas. Ability to troubleshoot complex production issues under pressure. Understanding of why DNS and DHCP should not be hosted directly on firewalls, including separation of duties, availability, scalability, logging, auditability, and change-control risks. Hands-on experience with BGP and dynamic routing. Strong experience with Sophos or another major enterprise firewall platform such as Fortinet, Palo Alto, Cisco, or Check Point. Local Houston-area candidate able to work in office 5 days per week. Preferred Qualifications Sophos firewall experience. F5 BIG-IP, WAF, load-balancing, Azure WAF, Azure Application Gateway, or Azure Front Door experience. Enterprise PKI and certificate lifecycle experience. Certifications such as CCNP, CCNA, NSE, PCNSE, Sophos, Azure Network Engineer Associate, Security+, CISSP, or equivalent practical experience. Azure Monitor, Microsoft Sentinel, Defender for Cloud, Intune, or similar monitoring/security tooling experience. Cradlepoint or large-scale cellular router experience. Why Join Zedcor? At Zedcor, you won't just maintain systems, you'll help build and shape the future of security technology. We provide the tools, mentorship, and the environment to help you thrive and grow in your career. If you're looking to take your skills to the next level, Zedcor offers a dynamic and rewarding opportunity. Zedcor Inc. is an Equal Opportunity Employer and maintains the policy of recruiting and retaining the best-qualified personnel who demonstrate the ability to perform competently and work well with others. It is the policy of Zedcor to provide equal employment opportunity regardless of race (including traits historically or culturally associated with race, such as hair texture and protective hairstyles), religion (including religious dress and religious grooming), color, age (40 and over), genetic information, disability (mental and physical), medical condition (as defined under state law), national origin (including language use restrictions and possession of a driver's license issued under section 12801.9 of the California Vehicle Code), ancestry, sex (including gender, gender identity, gender expression), sexual orientation, marital status, familial status, parental status, domestic partner status, citizenship status, pregnancy (including perceived pregnancy, childbirth, lactation, or pregnancy-related conditions), military caregiver status, military status, veteran status, or any other status protected by federal, state, or local law. This policy of nondiscrimination is applied to all aspects of the employment relationship. The Company complies with the Americans with Disabilities Act (ADA) and applicable state and local laws in ensuring equal opportunity and employment for qualified persons with disabilities. We also consider qualified applicants with criminal histories, consistent with legal requirements. The following link provides more information regarding the Federal laws prohibiting discrimination in employment: EEO is the Law - Notice of Applicant Rights Under the Law.
09/24/2026
Full time
Job Description Job Description About Zedcor Inc. Zedcor Inc. (TSX-V:ZDC) is disrupting the traditional physical security industry through its proprietary MobileyeZ security towers by providing turnkey and customized mobile surveillance and live monitoring solutions to blue-chip customers across North America. The Company continues to expand its established platform of over 1,200 MobileyeZ towers in Canada and the United States, with emphasis on industry leading service levels, data-supported efficiency outcomes, and continued innovation. Zedcor services the Canadian market through equipment and service centers currently located in British Columbia, Alberta, Manitoba, and Ontario. The Company continues to advance its U.S. expansion which now has the capacity to service markets throughout the Midwest with locations throughout Texas Colorado, Arizona, Nevada and Florida. For more information, check out . Position Overview The Senior Network / Firewall Engineer to design, build, secure, and maintain a large-scale hybrid network environment. This is not an entry-level role. The successful candidate must be able to solve complex technical problems under pressure and operate with cybersecurity, uptime, encryption, monitoring, and compliance in mind. The environment includes Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint routers, switches, Wi-Fi, F5 BIG-IP, Azure WAF, Azure Application Gateway, Azure Front Door, centralized logging, centralized monitoring, and internal PKI. Key Responsibilities Design, build, maintain, and troubleshoot IPsec and SSL VPN networks. Manage and support a Cradlepoint environment of 20,000+ devices. Manage Sophos firewalls or become proficient with Sophos within the first 30 days if experienced with another major firewall platform. Ensure DNS and DHCP are centrally managed, monitored, logged, secured, and not hosted directly on firewalls. Patch, monitor, log, audit, and secure network infrastructure. Ensure network links, management access, VPNs, and sensitive data flows are encrypted. Document network designs, firewall rules, routing policies, VPN configurations, standards, and runbooks. Support incident response, change management, vulnerability remediation, disaster recovery, SOC 2, FedRAMP, and StateRAMP readiness. Use Zedcor's internal PKI solution for device identity, certificates, authentication, encryption, and secure management. Maintain centralized logging, centralized audit logging, centralized authentication, centralized monitoring, and alerting. Ensure firewalls are used as security enforcement points, not as core infrastructure service providers. Support F5 BIG-IP, Azure WAF, Azure Application Gateway, and Azure Front Door. Configure and troubleshoot dynamic routing, including internal BGP. Support Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint, switches, Wi-Fi, WAF, and load-balancing platforms. Qualifications & Requirements Key Responsibilities Design, build, maintain, and troubleshoot IPsec and SSL VPN networks. Manage and support a Cradlepoint environment of 20,000+ devices. Manage Sophos firewalls or become proficient with Sophos within the first 30 days if experienced with another major firewall platform. Ensure DNS and DHCP are centrally managed, monitored, logged, secured, and not hosted directly on firewalls. Patch, monitor, log, audit, and secure network infrastructure. Ensure network links, management access, VPNs, and sensitive data flows are encrypted. Document network designs, firewall rules, routing policies, VPN configurations, standards, and runbooks. Support incident response, change management, vulnerability remediation, disaster recovery, SOC 2, FedRAMP, and StateRAMP readiness. Use Zedcor's internal PKI solution for device identity, certificates, authentication, encryption, and secure management. Maintain centralized logging, centralized audit logging, centralized authentication, centralized monitoring, and alerting. Ensure firewalls are used as security enforcement points, not as core infrastructure service providers. Support F5 BIG-IP, Azure WAF, Azure Application Gateway, and Azure Front Door. Configure and troubleshoot dynamic routing, including internal BGP. Support Azure VPN Gateway, Azure Networking, Sophos firewalls, Cradlepoint, switches, Wi-Fi, WAF, and load-balancing platforms. Minimum Qualifications 5+ years of hands-on network engineering, firewall engineering, or network security engineering experience. Strong Azure Networking experience, including Azure VPN Gateway, virtual networks, routing, NSGs, private connectivity, and hybrid networking. Strong knowledge of IPsec VPNs, SSL VPNs, routing, switching, segmentation, firewall policies, NAT, high availability, and secure remote access. Solid understanding of DNS and DHCP design, troubleshooting, and security best practices. Strong understanding of encryption, PKI, certificate-based authentication, secure management access, and network security best practices. Ability to work full-time on-site in Houston, Texas. Ability to troubleshoot complex production issues under pressure. Understanding of why DNS and DHCP should not be hosted directly on firewalls, including separation of duties, availability, scalability, logging, auditability, and change-control risks. Hands-on experience with BGP and dynamic routing. Strong experience with Sophos or another major enterprise firewall platform such as Fortinet, Palo Alto, Cisco, or Check Point. Local Houston-area candidate able to work in office 5 days per week. Preferred Qualifications Sophos firewall experience. F5 BIG-IP, WAF, load-balancing, Azure WAF, Azure Application Gateway, or Azure Front Door experience. Enterprise PKI and certificate lifecycle experience. Certifications such as CCNP, CCNA, NSE, PCNSE, Sophos, Azure Network Engineer Associate, Security+, CISSP, or equivalent practical experience. Azure Monitor, Microsoft Sentinel, Defender for Cloud, Intune, or similar monitoring/security tooling experience. Cradlepoint or large-scale cellular router experience. Why Join Zedcor? At Zedcor, you won't just maintain systems, you'll help build and shape the future of security technology. We provide the tools, mentorship, and the environment to help you thrive and grow in your career. If you're looking to take your skills to the next level, Zedcor offers a dynamic and rewarding opportunity. Zedcor Inc. is an Equal Opportunity Employer and maintains the policy of recruiting and retaining the best-qualified personnel who demonstrate the ability to perform competently and work well with others. It is the policy of Zedcor to provide equal employment opportunity regardless of race (including traits historically or culturally associated with race, such as hair texture and protective hairstyles), religion (including religious dress and religious grooming), color, age (40 and over), genetic information, disability (mental and physical), medical condition (as defined under state law), national origin (including language use restrictions and possession of a driver's license issued under section 12801.9 of the California Vehicle Code), ancestry, sex (including gender, gender identity, gender expression), sexual orientation, marital status, familial status, parental status, domestic partner status, citizenship status, pregnancy (including perceived pregnancy, childbirth, lactation, or pregnancy-related conditions), military caregiver status, military status, veteran status, or any other status protected by federal, state, or local law. This policy of nondiscrimination is applied to all aspects of the employment relationship. The Company complies with the Americans with Disabilities Act (ADA) and applicable state and local laws in ensuring equal opportunity and employment for qualified persons with disabilities. We also consider qualified applicants with criminal histories, consistent with legal requirements. The following link provides more information regarding the Federal laws prohibiting discrimination in employment: EEO is the Law - Notice of Applicant Rights Under the Law.
Job Description Job Description Global Software Firm seeks a Sr Network Security Engineer. We're looking for an engineer with strong Palo Alto, F5, and WAF experience. Experience in threat hunting and pen testing would be a plus. This is a permanent direct hire opportunity. Hybrid schedule with potential for fully remote if the hired candidate doesn't live within a reasonable commute of the data center. Compensation is competitive including: base, bonus, equity, 401k, unlimited pto, tuition reimbursement and much more! Role: The Network Security Engineer will help identify, research and evaluate security solutions and emerging technologies that align with the company's strategic direction. This person should have a strong knowledge of security, including HTTP compliance, application level security, and end-point protections. The engineer will be tasked with deploying new security technologies as well as maintaining current security infrastructure. A strong troubleshooting background is needed, as well as knowledge in APIs. Candidates should also have a strong ability to interface with other parts of the business and be able to coordinate work with multiple teams. Skills: Network routing and switching Firewall concepts and functions WAF and IPS F5: ASM, DNS, APM, AFM. Knowledge of iRules. Proxy and user access VPN access, both site-to-site and end user. GSLB, and server load balancing TLS knowledge and experience Knowledge of HTTP protocol Tier 3 operational support Preferred Experience: Routing: BGP, OSPF and EIGRP Firewall: ASA, PaloAlto and Juniper SRX Router and Switch: Cisco CCNP level knowledge Experience in reverse proxy solutions (Kemp/NGINX/HA Proxy) Experience in user proxy technologies Experience with Cloud Based DDoS and WAF solutions. Experience with NAC implementations (ClearPass, ISE) Familiarity with REST APIs and automation Anticipated base salary in the 150-180k range, + bonus
09/24/2026
Full time
Job Description Job Description Global Software Firm seeks a Sr Network Security Engineer. We're looking for an engineer with strong Palo Alto, F5, and WAF experience. Experience in threat hunting and pen testing would be a plus. This is a permanent direct hire opportunity. Hybrid schedule with potential for fully remote if the hired candidate doesn't live within a reasonable commute of the data center. Compensation is competitive including: base, bonus, equity, 401k, unlimited pto, tuition reimbursement and much more! Role: The Network Security Engineer will help identify, research and evaluate security solutions and emerging technologies that align with the company's strategic direction. This person should have a strong knowledge of security, including HTTP compliance, application level security, and end-point protections. The engineer will be tasked with deploying new security technologies as well as maintaining current security infrastructure. A strong troubleshooting background is needed, as well as knowledge in APIs. Candidates should also have a strong ability to interface with other parts of the business and be able to coordinate work with multiple teams. Skills: Network routing and switching Firewall concepts and functions WAF and IPS F5: ASM, DNS, APM, AFM. Knowledge of iRules. Proxy and user access VPN access, both site-to-site and end user. GSLB, and server load balancing TLS knowledge and experience Knowledge of HTTP protocol Tier 3 operational support Preferred Experience: Routing: BGP, OSPF and EIGRP Firewall: ASA, PaloAlto and Juniper SRX Router and Switch: Cisco CCNP level knowledge Experience in reverse proxy solutions (Kemp/NGINX/HA Proxy) Experience in user proxy technologies Experience with Cloud Based DDoS and WAF solutions. Experience with NAC implementations (ClearPass, ISE) Familiarity with REST APIs and automation Anticipated base salary in the 150-180k range, + bonus
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116 Our direct client has an opening for an Senior Network Security Engineer (807471) This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116 Please send rates and a resume. Corp to Corp or w2 allowed. Enterprise Networking Required 8 Years Enterprise Security Required 5 Years Azure Networking Required 3 Years WAF/NGFW Required 3 Years Supporting environments with 300+ Network Devices Desired 3 Years Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor Required Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) Required Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def Required Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates Required Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles Required Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS Required Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP Required Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages Required Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers. Required Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700), Required
09/24/2026
Full time
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116 Our direct client has an opening for an Senior Network Security Engineer (807471) This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116 Please send rates and a resume. Corp to Corp or w2 allowed. Enterprise Networking Required 8 Years Enterprise Security Required 5 Years Azure Networking Required 3 Years WAF/NGFW Required 3 Years Supporting environments with 300+ Network Devices Desired 3 Years Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor Required Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) Required Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def Required Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates Required Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles Required Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS Required Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP Required Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages Required Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers. Required Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700), Required
Job Description Job Description Description: US CITIZENSHIP, DoD SECRET SECURITY CLEARANCE IS REQUIRED. If your resume does not clearly state that you have an active DoD Secret security clearance, auto-filtering tools will reject/remove your application. EXPERIENCE for Senior Security Network Engineer position: Eight (8) years' experience in network security, demonstrating strong experience with Cisco Prime Infrastructure, understanding of IEEE 802.11 protocols, familiarity with TCP/IP (specifically Layers 3/4), and switching and routing protocols (internet standards and general architecture) and associated hardware. ReadSeal Experience Cisco ASA Cisco Firepower Switching and Troubleshooting Cisco Wireless LAN Controller Cisco DNA Center Bluecoat Proxy RSA Server Cisco ISE This is a Cyber Security Workforce IAT II position- Must hold one of the following active certifications: IAT Level III CISSP/CCNP-Routing or CCNP Security Requirements: EDUCATION for Senior Security Network Engineer: Minimum Education: Bachelor's degree in Information Technology, Computer Science, or an equivalent technical degree from an accredited college or university. Benefits for a Senior Security Network Engineer: As a team member of EHS Technologies, you'll have available benefits including Bonus Eligibility, No Cost Full Coverage Health Insurance, available Pet Insurance, industry high 401k matching among many other excellent benefits and up to 26 days of holiday and PTO EHS Technologies is an Equal Opportunity Employer.
09/24/2026
Full time
Job Description Job Description Description: US CITIZENSHIP, DoD SECRET SECURITY CLEARANCE IS REQUIRED. If your resume does not clearly state that you have an active DoD Secret security clearance, auto-filtering tools will reject/remove your application. EXPERIENCE for Senior Security Network Engineer position: Eight (8) years' experience in network security, demonstrating strong experience with Cisco Prime Infrastructure, understanding of IEEE 802.11 protocols, familiarity with TCP/IP (specifically Layers 3/4), and switching and routing protocols (internet standards and general architecture) and associated hardware. ReadSeal Experience Cisco ASA Cisco Firepower Switching and Troubleshooting Cisco Wireless LAN Controller Cisco DNA Center Bluecoat Proxy RSA Server Cisco ISE This is a Cyber Security Workforce IAT II position- Must hold one of the following active certifications: IAT Level III CISSP/CCNP-Routing or CCNP Security Requirements: EDUCATION for Senior Security Network Engineer: Minimum Education: Bachelor's degree in Information Technology, Computer Science, or an equivalent technical degree from an accredited college or university. Benefits for a Senior Security Network Engineer: As a team member of EHS Technologies, you'll have available benefits including Bonus Eligibility, No Cost Full Coverage Health Insurance, available Pet Insurance, industry high 401k matching among many other excellent benefits and up to 26 days of holiday and PTO EHS Technologies is an Equal Opportunity Employer.
EHS TECHNOLOGIES CORPORATION
Indian Head, Maryland
Job Description Job Description Description: Target Education: Bachelor's degree in information technology, computer science, or an equivalent technical degree from an accredited college or university. Target Experience: Eight (8) years' experience in network security (CCNP-Routing or CCNP Security), demonstrating strong experience with Cisco Prime Infrastructure, understanding of IEEE 802.11 protocols, familiarity with TCP/IP (specifically Layers 3/4), and switching and routing protocols (internet standards and general architecture) and associated hardware. Applicant must be a US citizen and hold a DoD Secret clearance. Requirements:
09/24/2026
Full time
Job Description Job Description Description: Target Education: Bachelor's degree in information technology, computer science, or an equivalent technical degree from an accredited college or university. Target Experience: Eight (8) years' experience in network security (CCNP-Routing or CCNP Security), demonstrating strong experience with Cisco Prime Infrastructure, understanding of IEEE 802.11 protocols, familiarity with TCP/IP (specifically Layers 3/4), and switching and routing protocols (internet standards and general architecture) and associated hardware. Applicant must be a US citizen and hold a DoD Secret clearance. Requirements:
Job Description Job Description About Us: NPO Torino is a specialized Digital Transformation company, recently acquired by the Fondo Italiano d'Investimento (Italian Investment Fund). With our headquarters in Turin and an operational presence in the United States and Brazil, we support companies in their technological evolution journey by combining consulting expertise with advanced IT solutions. We offer services in cloud computing, cybersecurity, AI for business, FinOps, system integration, and IT governance, featuring a customized and results-driven approach. Our mission is to simplify digital complexity and transform it into strategic value for enterprises. Backed by the Fondo Italiano d'Investimento , NPO Torino is accelerating its growth as a partner of choice for companies looking to tackle innovation challenges with vision, pragmatism, and sustainability. Salary range $80K to $92K. Work is partially remote with occasional travel to USA, and in Canada. Role Description: We are looking for a highly qualified Senior Network Security Engineer to join our Network & Security Business Unit. The professional will be responsible for the design, implementation, maintenance, and troubleshooting of complex network security infrastructures. The ideal candidate has deep, vertical expertise with leading security vendors (Fortinet, Palo Alto Networks, Cisco, F5) and a proven track record of managing modern architectures, including SASE solutions. Key Responsibilities: Design and manage security architectures based on Next-Generation Firewalls (NGFW). Implement and manage SASE (Secure Access Service Edge) solutions for distributed environments. Perform configuration , policy management, and advanced troubleshooting on multi-vendor equipment. Manage perimeter and internal security within Enterprise environments. Conduct log analysis, incident management, and system hardening. Provide technical mentoring for junior team members (optional, if required). Fundamental Technical Requirements (Must-Have) The candidate must demonstrate practical, in-depth, hands-on experience with the following technologies: Palo Alto Networks: Advanced configuration and management of NGFW (PA Series). Solid experience with Panorama for centralized management. Proven experience with SASE solutions (Prisma Access) and GlobalProtect. Fortinet: Advanced management of FortiGate (including VDOM, SD-WAN, SSL Inspection). Experience with the wider Fortinet ecosystem (FortiManager, FortiAnalyzer). Cisco Security: Experience with Cisco Security solutions (Firepower/FTD, ASA). Knowledge of Cisco ISE (Identity Services Engine) and TrustSec architectures is a strong plus. F5 Networks: Implementation and management of F5 BIG-IP solutions. Strong configuration and troubleshooting skills on LTM (Local Traffic Manager) and/or APM (Access Policy Manager) / AWAF modules. Soft Skills & Additional Requirements: Minimum of 5+ years of experience in Network Security Engineering roles. Excellent troubleshooting and problem-solving skills under pressure. Preferred Certifications (Nice-to-Have): Palo Alto: PCNSE (Palo Alto Networks Certified Network Security Engineer). Fortinet: NSE 4 / NSE 7. Cisco: CCNP Security or CCIE Security. F5: F5 Certified Administrator (F5-CA) or Technology Specialist (F5-CTS). Introduce Yourself (Screening Questions): "Do you have direct implementation experience with Prisma Access? Can you briefly describe a SASE architecture you have managed?" "Have you ever managed migrations between these vendors (e.g., from Cisco to Fortinet or vice versa)?" What We Offer: Salary commensurate with experience. Structured training and certification plans. Corporate benefits: Welfare Plan, Smart Working.
09/24/2026
Full time
Job Description Job Description About Us: NPO Torino is a specialized Digital Transformation company, recently acquired by the Fondo Italiano d'Investimento (Italian Investment Fund). With our headquarters in Turin and an operational presence in the United States and Brazil, we support companies in their technological evolution journey by combining consulting expertise with advanced IT solutions. We offer services in cloud computing, cybersecurity, AI for business, FinOps, system integration, and IT governance, featuring a customized and results-driven approach. Our mission is to simplify digital complexity and transform it into strategic value for enterprises. Backed by the Fondo Italiano d'Investimento , NPO Torino is accelerating its growth as a partner of choice for companies looking to tackle innovation challenges with vision, pragmatism, and sustainability. Salary range $80K to $92K. Work is partially remote with occasional travel to USA, and in Canada. Role Description: We are looking for a highly qualified Senior Network Security Engineer to join our Network & Security Business Unit. The professional will be responsible for the design, implementation, maintenance, and troubleshooting of complex network security infrastructures. The ideal candidate has deep, vertical expertise with leading security vendors (Fortinet, Palo Alto Networks, Cisco, F5) and a proven track record of managing modern architectures, including SASE solutions. Key Responsibilities: Design and manage security architectures based on Next-Generation Firewalls (NGFW). Implement and manage SASE (Secure Access Service Edge) solutions for distributed environments. Perform configuration , policy management, and advanced troubleshooting on multi-vendor equipment. Manage perimeter and internal security within Enterprise environments. Conduct log analysis, incident management, and system hardening. Provide technical mentoring for junior team members (optional, if required). Fundamental Technical Requirements (Must-Have) The candidate must demonstrate practical, in-depth, hands-on experience with the following technologies: Palo Alto Networks: Advanced configuration and management of NGFW (PA Series). Solid experience with Panorama for centralized management. Proven experience with SASE solutions (Prisma Access) and GlobalProtect. Fortinet: Advanced management of FortiGate (including VDOM, SD-WAN, SSL Inspection). Experience with the wider Fortinet ecosystem (FortiManager, FortiAnalyzer). Cisco Security: Experience with Cisco Security solutions (Firepower/FTD, ASA). Knowledge of Cisco ISE (Identity Services Engine) and TrustSec architectures is a strong plus. F5 Networks: Implementation and management of F5 BIG-IP solutions. Strong configuration and troubleshooting skills on LTM (Local Traffic Manager) and/or APM (Access Policy Manager) / AWAF modules. Soft Skills & Additional Requirements: Minimum of 5+ years of experience in Network Security Engineering roles. Excellent troubleshooting and problem-solving skills under pressure. Preferred Certifications (Nice-to-Have): Palo Alto: PCNSE (Palo Alto Networks Certified Network Security Engineer). Fortinet: NSE 4 / NSE 7. Cisco: CCNP Security or CCIE Security. F5: F5 Certified Administrator (F5-CA) or Technology Specialist (F5-CTS). Introduce Yourself (Screening Questions): "Do you have direct implementation experience with Prisma Access? Can you briefly describe a SASE architecture you have managed?" "Have you ever managed migrations between these vendors (e.g., from Cisco to Fortinet or vice versa)?" What We Offer: Salary commensurate with experience. Structured training and certification plans. Corporate benefits: Welfare Plan, Smart Working.
Job Description Job Description Company and Vision PlanetArt's vision is to be the leading seller of personalized and make-on-demand products worldwide. We provide consumers with unmatched tools and content and an unparalleled end-to-end customer experience that result in high-quality, meaningful finished products and memorable celebrations of live events. The company's brands include the popular FreePrints and FreePrints Photobooks apps and the industry leading SimplytoImpress card and stationery site, as well as Personal Creations, CafePress and ISeeMe! Visit to learn more about our brands. We have more than 500 team members across multiple offices, primarily in Calabasas CA, San Diego CA, Woodridge IL, Minneapolis, MN and Pleasanton, CA. We also have team members in two company-owned offices in China, as well as in Europe. Job Overview PlanetArt is seeking a Principal Staff Engineer-Web Platform to serve as a senior technical leader within our engineering organization and a key partner to the VP of Engineering. This is a highly hands-on role focused on building, operating, and scaling high-traffic ecommerce web platforms in a fast-moving production environment. Reporting directly to the VP of Engineering, this engineer will play a critical role in architecting, developing, troubleshooting, and maintaining our LAMP-based web applications and AWS infrastructure. The ideal candidate is equally comfortable writing production code, diagnosing complex site reliability issues, managing cloud infrastructure, and leading technical problem-solving during high-severity incidents. This role requires strong operational judgment and the ability to independently own production challenges across application, database, infrastructure, and deployment layers. The engineer will collaborate closely with our China-based development organization, serving as a senior US-based technical lead responsible for cross-team coordination, code quality, architectural guidance, and production stability. This is an ideal opportunity for an experienced engineer who thrives in high-scale ecommerce environments and enjoys combining deep application engineering with modern cloud operations and production ownership. PLEASE NOTE: Candidates much be local to or willing to relocate to the Calabasas area as we operate on a hybrid work model (3 days onsite, 2 remote) What You'll Do Key Responsibilities Full-Stack Platform Engineering: Design, develop, and maintain scalable features and services across our LAMP-based ecommerce platform, with a strong focus on reliability, performance, maintainability, and operational excellence. Production Operations & Incident Response : Act as a senior technical escalation point for complex production incidents, troubleshooting issues across application, infrastructure, networking, database, CDN, and deployment layers. Lead root cause analysis and drive long-term stability improvements. AWS Infrastructure Ownership : Manage and optimize AWS infrastructure, including deployment architecture, scaling strategies, observability, security, disaster recovery, and cost efficiency. Partner closely with DevOps and engineering leadership on operational best practices. High-Scale Performance Optimization : Monitor and improve application, database, and infrastructure performance for high-traffic consumer web applications. Identify bottlenecks and implement scalable solutions to improve uptime, latency, and system resilience. Cross-Functional Technical Leadership: Partner with Product, Design, Operations, and Customer Experience teams to translate business requirements into scalable technical solutions and ensure successful project execution. Global Engineering Collaboration : Work closely with the China-based engineering team to coordinate development efforts, conduct code reviews, align on architectural direction, manage releases, and maintain strong engineering communication across time zones. Code Quality & Engineering Standards : Champion high engineering standards through code reviews, testing strategies, documentation, observability, and operational best practices. Drive continuous improvement in system reliability and development processes. Technical Mentorship & Leadership : Provide technical mentorship and architectural guidance across the engineering organization. Influence technical direction through hands-on leadership, strong execution, and collaborative problem-solving. Requirements What You Should Have Skills, Qualifications, and Requirements Senior-Level Full-Stack Engineering Experience: 5+ years of professional experience building and operating large-scale web applications, including substantial hands-on experience with the LAMP stack (Linux, Apache, MySQL, PHP). Strong AWS & Cloud Operations Expertise : Deep hands-on experience with AWS services and production cloud environments, including EC2, RDS, S3, Lambda, CloudWatch, networking, scaling, monitoring, and infrastructure troubleshooting. Ecommerce & High-Traffic Website Experience : Experience supporting high-volume consumer-facing websites or ecommerce platforms, with a strong understanding of scalability, uptime, performance optimization, and operational reliability. Production Troubleshooting Expertise : Demonstrated ability to diagnose and resolve complex production issues under pressure, including database replication issues, performance degradation, infrastructure failures, deployment issues, and site outages. Distributed Systems & Database Knowledge : Strong understanding of distributed web architectures, database performance tuning, replication strategies, caching, queuing systems, and fault-tolerant system design. Global Team Collaboration: Experience working effectively with offshore or globally distributed engineering teams, with strong communication, coordination, and cross-cultural collaboration skills. Chinese Language Skills: Ability to communicate in Mandarin (spoken or written) is highly desirable to facilitate collaboration with our China-based engineering team. Engineering Best Practices: Strong understanding of software engineering fundamentals including Git workflows, CI/CD pipelines, automated testing, observability, code review practices, and secure development standards. Ownership Mentality: Self-directed engineer with strong operational instincts, excellent judgment, and the ability to independently own critical technical initiatives from design through production support. Technical Leadership: Demonstrated ability to influence engineering direction, mentor developers, and drive technical excellence through hands-on leadership rather than direct people management. What You Can Expect Working Conditions Work is performed in an office environment with low to moderate noise levels. Position requires regular, continuous use of computer. Position requires regular sitting and standing. Position requires regular interaction with team members through the following methods: in-person, phone, Zoom, Slack, or email. May require occasional travel. This is a hybrid position; employees are expected to be in the office three days per week (Monday, Tuesday, and Thursday) with the option of working remotely two days (Wednesday and Friday). Benefits The compensation range for this position is $130,000-$220,000 annual salary. PlanetArt offers a comprehensive benefits package, including: Health, Dental, and Vision Insurance Life Insurance Pet Insurance Mental Health Insurance 401(k) with matching Comprehensive Time Off Program including Paid Time Off, Sick Days, Paid Holidays, and Floating Holidays Employee Product Discounts
09/24/2026
Full time
Job Description Job Description Company and Vision PlanetArt's vision is to be the leading seller of personalized and make-on-demand products worldwide. We provide consumers with unmatched tools and content and an unparalleled end-to-end customer experience that result in high-quality, meaningful finished products and memorable celebrations of live events. The company's brands include the popular FreePrints and FreePrints Photobooks apps and the industry leading SimplytoImpress card and stationery site, as well as Personal Creations, CafePress and ISeeMe! Visit to learn more about our brands. We have more than 500 team members across multiple offices, primarily in Calabasas CA, San Diego CA, Woodridge IL, Minneapolis, MN and Pleasanton, CA. We also have team members in two company-owned offices in China, as well as in Europe. Job Overview PlanetArt is seeking a Principal Staff Engineer-Web Platform to serve as a senior technical leader within our engineering organization and a key partner to the VP of Engineering. This is a highly hands-on role focused on building, operating, and scaling high-traffic ecommerce web platforms in a fast-moving production environment. Reporting directly to the VP of Engineering, this engineer will play a critical role in architecting, developing, troubleshooting, and maintaining our LAMP-based web applications and AWS infrastructure. The ideal candidate is equally comfortable writing production code, diagnosing complex site reliability issues, managing cloud infrastructure, and leading technical problem-solving during high-severity incidents. This role requires strong operational judgment and the ability to independently own production challenges across application, database, infrastructure, and deployment layers. The engineer will collaborate closely with our China-based development organization, serving as a senior US-based technical lead responsible for cross-team coordination, code quality, architectural guidance, and production stability. This is an ideal opportunity for an experienced engineer who thrives in high-scale ecommerce environments and enjoys combining deep application engineering with modern cloud operations and production ownership. PLEASE NOTE: Candidates much be local to or willing to relocate to the Calabasas area as we operate on a hybrid work model (3 days onsite, 2 remote) What You'll Do Key Responsibilities Full-Stack Platform Engineering: Design, develop, and maintain scalable features and services across our LAMP-based ecommerce platform, with a strong focus on reliability, performance, maintainability, and operational excellence. Production Operations & Incident Response : Act as a senior technical escalation point for complex production incidents, troubleshooting issues across application, infrastructure, networking, database, CDN, and deployment layers. Lead root cause analysis and drive long-term stability improvements. AWS Infrastructure Ownership : Manage and optimize AWS infrastructure, including deployment architecture, scaling strategies, observability, security, disaster recovery, and cost efficiency. Partner closely with DevOps and engineering leadership on operational best practices. High-Scale Performance Optimization : Monitor and improve application, database, and infrastructure performance for high-traffic consumer web applications. Identify bottlenecks and implement scalable solutions to improve uptime, latency, and system resilience. Cross-Functional Technical Leadership: Partner with Product, Design, Operations, and Customer Experience teams to translate business requirements into scalable technical solutions and ensure successful project execution. Global Engineering Collaboration : Work closely with the China-based engineering team to coordinate development efforts, conduct code reviews, align on architectural direction, manage releases, and maintain strong engineering communication across time zones. Code Quality & Engineering Standards : Champion high engineering standards through code reviews, testing strategies, documentation, observability, and operational best practices. Drive continuous improvement in system reliability and development processes. Technical Mentorship & Leadership : Provide technical mentorship and architectural guidance across the engineering organization. Influence technical direction through hands-on leadership, strong execution, and collaborative problem-solving. Requirements What You Should Have Skills, Qualifications, and Requirements Senior-Level Full-Stack Engineering Experience: 5+ years of professional experience building and operating large-scale web applications, including substantial hands-on experience with the LAMP stack (Linux, Apache, MySQL, PHP). Strong AWS & Cloud Operations Expertise : Deep hands-on experience with AWS services and production cloud environments, including EC2, RDS, S3, Lambda, CloudWatch, networking, scaling, monitoring, and infrastructure troubleshooting. Ecommerce & High-Traffic Website Experience : Experience supporting high-volume consumer-facing websites or ecommerce platforms, with a strong understanding of scalability, uptime, performance optimization, and operational reliability. Production Troubleshooting Expertise : Demonstrated ability to diagnose and resolve complex production issues under pressure, including database replication issues, performance degradation, infrastructure failures, deployment issues, and site outages. Distributed Systems & Database Knowledge : Strong understanding of distributed web architectures, database performance tuning, replication strategies, caching, queuing systems, and fault-tolerant system design. Global Team Collaboration: Experience working effectively with offshore or globally distributed engineering teams, with strong communication, coordination, and cross-cultural collaboration skills. Chinese Language Skills: Ability to communicate in Mandarin (spoken or written) is highly desirable to facilitate collaboration with our China-based engineering team. Engineering Best Practices: Strong understanding of software engineering fundamentals including Git workflows, CI/CD pipelines, automated testing, observability, code review practices, and secure development standards. Ownership Mentality: Self-directed engineer with strong operational instincts, excellent judgment, and the ability to independently own critical technical initiatives from design through production support. Technical Leadership: Demonstrated ability to influence engineering direction, mentor developers, and drive technical excellence through hands-on leadership rather than direct people management. What You Can Expect Working Conditions Work is performed in an office environment with low to moderate noise levels. Position requires regular, continuous use of computer. Position requires regular sitting and standing. Position requires regular interaction with team members through the following methods: in-person, phone, Zoom, Slack, or email. May require occasional travel. This is a hybrid position; employees are expected to be in the office three days per week (Monday, Tuesday, and Thursday) with the option of working remotely two days (Wednesday and Friday). Benefits The compensation range for this position is $130,000-$220,000 annual salary. PlanetArt offers a comprehensive benefits package, including: Health, Dental, and Vision Insurance Life Insurance Pet Insurance Mental Health Insurance 401(k) with matching Comprehensive Time Off Program including Paid Time Off, Sick Days, Paid Holidays, and Floating Holidays Employee Product Discounts