This position requires that the candidate selected be a US Citizen and must currently possess and maintain an active TS/SCI security clearance with polygraph. This is a hands-on technical role that requires an advanced software/systems engineering background. Coding/automation and design/architecture skills are required! The Amazon Web Services Professional Services (ProServe) team is seeking a skilled Delivery Consultant to join our team at AWS. ProServe is a global organization of experts that help customers realize their desired business outcomes when utilizing AWS. We work together with customer teams and the AWS Partner Network (APN) to execute enterprise cloud computing initiatives. Our team provides assistance through a collection of offerings which help customers achieve specific outcomes related to enterprise cloud adoption. We also deliver focused guidance through our global specialty practices, which cover a variety of solutions, technologies, and industries. As a Delivery Consultant, you will work closely with customers to design, implement, and manage AWS solutions that meet their technical requirements and business objectives. You'll be a key player in driving customer success throughout their cloud journey, providing technical expertise and best practices across the project lifecycle. You'll collaborate closely with stakeholders to gather requirements, assess current infrastructure, and propose effective migration strategies to AWS. As an experienced technology professional, you will be responsible for: • Designing and implementing complex, scalable, and secure AWS solutions tailored to customer needs • Providing technical guidance and troubleshooting support throughout project delivery • Collaborating with stakeholders to gather requirements and propose effective migration strategies • Acting as a trusted advisor to customers on industry trends and emerging technologies • Sharing knowledge within the organization through mentoring, training, and creating reusable artifacts About the team About AWS AWS values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying. Why AWS? Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses. Inclusive Team Culture Here at AWS, it's in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon conferences, inspire us to never stop embracing our uniqueness. Mentorship & Career Growth We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud. BASIC QUALIFICATIONS- Bachelor's degree in Computer Science, Engineering, or a related field - 5+ years of work with software development lifecycle from conception to delivery experience - Experience working with Enterprise Application Modernization and Migration technologies, including, but not limited to, Mainframe, Serverless, Containers, or Cloud Operations - 5+ years of external or internal customer facing, complex and large scale project management experience - Current, active US Government Security Clearance of TS/SCI with Polygraph PREFERRED QUALIFICATIONS- Experience communicating technical concepts to diverse audiences in pre-sales environments - Knowledge of AWS services including compute, storage, networking, security, databases, machine learning, and serverless technologies - Experience in database (eg. SQL, NoSQL, Hadoop, Spark, Kafka, Kinesis) - Experience in scripting for automation (e.g. Python) and advanced SQL skills. - Experience in performance optimization and cost management for cloud environments - Knowledge of security and compliance standards including HIPAA and GDPR - Experience with AWS data/file transfer solutions including AWS Application Migration Service (MGN), AWS Database Migration Service (DMS), and/or AWS DataSync Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner. The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at . USA, MD, Jessup - 153 800.00 USD annually
09/24/2026
Full time
This position requires that the candidate selected be a US Citizen and must currently possess and maintain an active TS/SCI security clearance with polygraph. This is a hands-on technical role that requires an advanced software/systems engineering background. Coding/automation and design/architecture skills are required! The Amazon Web Services Professional Services (ProServe) team is seeking a skilled Delivery Consultant to join our team at AWS. ProServe is a global organization of experts that help customers realize their desired business outcomes when utilizing AWS. We work together with customer teams and the AWS Partner Network (APN) to execute enterprise cloud computing initiatives. Our team provides assistance through a collection of offerings which help customers achieve specific outcomes related to enterprise cloud adoption. We also deliver focused guidance through our global specialty practices, which cover a variety of solutions, technologies, and industries. As a Delivery Consultant, you will work closely with customers to design, implement, and manage AWS solutions that meet their technical requirements and business objectives. You'll be a key player in driving customer success throughout their cloud journey, providing technical expertise and best practices across the project lifecycle. You'll collaborate closely with stakeholders to gather requirements, assess current infrastructure, and propose effective migration strategies to AWS. As an experienced technology professional, you will be responsible for: • Designing and implementing complex, scalable, and secure AWS solutions tailored to customer needs • Providing technical guidance and troubleshooting support throughout project delivery • Collaborating with stakeholders to gather requirements and propose effective migration strategies • Acting as a trusted advisor to customers on industry trends and emerging technologies • Sharing knowledge within the organization through mentoring, training, and creating reusable artifacts About the team About AWS AWS values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying. Why AWS? Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses. Inclusive Team Culture Here at AWS, it's in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon conferences, inspire us to never stop embracing our uniqueness. Mentorship & Career Growth We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud. BASIC QUALIFICATIONS- Bachelor's degree in Computer Science, Engineering, or a related field - 5+ years of work with software development lifecycle from conception to delivery experience - Experience working with Enterprise Application Modernization and Migration technologies, including, but not limited to, Mainframe, Serverless, Containers, or Cloud Operations - 5+ years of external or internal customer facing, complex and large scale project management experience - Current, active US Government Security Clearance of TS/SCI with Polygraph PREFERRED QUALIFICATIONS- Experience communicating technical concepts to diverse audiences in pre-sales environments - Knowledge of AWS services including compute, storage, networking, security, databases, machine learning, and serverless technologies - Experience in database (eg. SQL, NoSQL, Hadoop, Spark, Kafka, Kinesis) - Experience in scripting for automation (e.g. Python) and advanced SQL skills. - Experience in performance optimization and cost management for cloud environments - Knowledge of security and compliance standards including HIPAA and GDPR - Experience with AWS data/file transfer solutions including AWS Application Migration Service (MGN), AWS Database Migration Service (DMS), and/or AWS DataSync Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner. The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at . USA, MD, Jessup - 153 800.00 USD annually
Job Description Job Description Here at Appian, our values of Intensity and Excellence define who we are. We set high standards and live up to them, ensuring that everything we do is done with care and quality. We approach every challenge with ambition and commitment, holding ourselves and each other accountable to achieve the best results. When you join Appian, you'll be part of a passionate team dedicated to accomplishing hard things, together. Principal ML Platform Engineer Lead the engineering of software that matters - driving AI automation for the world's largest enterprises. This role is based at our h eadquarters in McLean, Virginia. Appian was built on a culture of in-person collaboration, which we believe is a key driver of our mission to be the best. Employees hired for this position are expected to be in the office 5 days a week to foster that culture and ensure we continue to thrive through shared ideas and teamwork. We believe being in the office provides more opportunities to come together and celebrate working with the exceptional people across Appian. About the Team Appian Engineering spans the full depth of our platform: from the foundational layers that power enterprise scale, to the AI capabilities redefining what automation can do. We operate in a highly collaborative, fast-paced environment focused on technical precision, continuous learning, and high code quality. By joining our team, you will solve real-world problems that directly shape how Appian delivers our AI-Powered Process Automation platform to enterprises around the world. The Opportunity As a Principal Software Engineer, you will serve as a technical linchpin for the team, bringing deep expertise in cloud-native architecture and a track record of influencing engineering direction beyond your immediate scope. Equipped with cutting-edge AI tooling, you will drive the design and delivery of high-complexity engineering solutions, set the technical bar for the team, and lead other engineers towards solutions of real complexity to ensure flawless Enterprise-Grade Orchestration. What You'll Do Develop Clean Software: Architect, build, and optimize high-performance software systems while maintaining a strong personal technical presence on the team. Lead Platform Modernization: Spearhead strategic technological changes and champion code refactoring efforts to keep the core Appian codebase cutting-edge, modern, and performant. Engineer with AI: Use AI coding tools fluently as a force multiplier: generating, reviewing, and critically evaluating AI-assisted code to ship faster without compromising quality or correctness. Lead Architecture & Delivery: Drive technical story breakdowns, acceptance criteria, and architectural design across complex, multi-tier application layers - from feature scoping through implementation. Optimize Performance & Scale: Manage product availability, latency, scalability, and efficiency by engineering deep reliability into our core software systems and performing advanced system tuning. Drive Engineering Excellence: Radiate development best practices across the department, perform meticulous code reviews on design and implementation, and build automation frameworks to prevent problem recurrence. Lead & Grow Engineers: Actively coach and mentor engineers at multiple levels, identify and close skill gaps on the team, and take ownership of accelerating the technical growth of those around you. Influence Technical Documentation: Share your expert domain knowledge regularly across the department, building a reputation as a vital resource and publishing high-quality content to Engineering's permanent documentation site. Required Qualifications Education: Minimum of a Bachelor of Science degree in Computer Science or a related technical/analytical discipline. (Equivalent experience is not accepted in lieu of a degree). Experience: 10+ years of relevant software development experience with a BS (or 8+ years of experience paired with a Master of Science in Computer Science or related field). Technical Mastery: Expert coding, scripting, and debugging proficiency in one or more core enterprise programming languages, specifically Java, Python, or Go. Domain Expertise: Deep working knowledge of distributed systems, cloud infrastructure, and the ability to contribute meaningfully at a senior individual contributor level within that space. Cross-Team Influence: Demonstrated ability to drive technical decisions and shape engineering practices beyond a single team or project scope. AI-Augmented Development: Demonstrated experience using AI coding assistants and a strong ability to evaluate, coach others on, and selectively apply AI-generated code in a production engineering context. Production Mastery: Proven experience developing, optimizing, and maintaining a high-volume, mission-critical production service environment. Communication & Alignment: Exceptional ability to communicate highly technical architectures verbally, visually, and in writing to diverse engineering audiences. Preferred Qualifications Cloud Architecture: Strong experience designing microservices, working with containerization (Docker, Kubernetes), and implementing modern CI/CD pipelines. Cloud Platforms: Deep experience developing and operating infrastructure across public cloud ecosystems, specifically AWS, Azure, and/or GCP. We value experience with enterprise platforms such as Salesforce or ServiceNow, as these skills translate well into our Enterprise-Grade Orchestration environment. What We Equip You With High-Impact Autonomy: A leadership environment where you will have real ownership over your team's direction, the latitude to make meaningful decisions, and participation in broader Engineering discussions. New Hire Orientation: A robust onboarding experience designed to integrate you smoothly into our technology, culture, and leadership model so you can show up for your team from day one. Continuous Enablement: Access to premier learning resources and dedicated learning time focused on both your continued technical growth and your evolution as an engineering leader. Sponsored Certifications: Full corporate sponsorship for professional technical certifications to advance your engineering credentials. The base salary range represents a good faith and reasonable estimate of the range at the time of posting. Actual compensation will be dependent on a number of factors including, but not limited to, the candidate's relevant work experience, qualifications, internal peer equity, and market and business conditions that exist when extending an offer. A discretionary bonus may be awarded in recognition of individual and company performance. In addition, Appian provides generous benefits offerings that include a 401(k) plan with company match, flexible time off, paid parental leave, medical, dental, and vision plans, life insurance, disability insurance, wellness programs, flexible spending accounts, health savings account contributions, an employee referral bonus program, and learning and development resources. Certain positions may be eligible for equity awards. Pay and benefits are subject to change at any time, consistent with the terms of any applicable compensation, commission, bonus, or benefit plans. Base Salary Range $175,000-$325,000 USD Tools and Resources Training and Development: During onboarding, we focus on equipping new hires with the skills and knowledge for success through department-specific training. Continuous learning is a central focus at Appian, with dedicated mentorship and the First-Friend program being widely utilized resources for new hires. Growth Opportunities: Appian provides a diverse array of growth and development opportunities, including our leadership program tailored for new and aspiring managers, a comprehensive library of specialized department training through Appian University, skills based training, and tuition reimbursement for those aiming to advance their education. This commitment ensures that employees have access to a holistic range of development opportunities. Community: We'll immerse you into our community rooted in respect starting on day one. Appian fosters inclusivity through our 8 employee-led affinity groups. These groups help employees build stronger internal and external networks by planning social, educational, and outreach activities to connect with Appianites and larger initiatives throughout the company. Benefits Appian offers a comprehensive benefits package designed to support your health, wellbeing, and financial future. Benefits may include health coverage, Employee Assistance Program (EAP) with free mental health support, life and disability insurance, an Employee Stock Purchase Program (ESPP), a retirement/pension plan, wellness dollars, tuition reimbursement, family-forming benefits and more. Benefits vary by country-please ask your Talent Acquisition contact for details specific to the location you are applying to. About Appian Appian provides AI automation for mission-critical work. We automate complex processes in large enterprises and governments . click apply for full job details
09/24/2026
Full time
Job Description Job Description Here at Appian, our values of Intensity and Excellence define who we are. We set high standards and live up to them, ensuring that everything we do is done with care and quality. We approach every challenge with ambition and commitment, holding ourselves and each other accountable to achieve the best results. When you join Appian, you'll be part of a passionate team dedicated to accomplishing hard things, together. Principal ML Platform Engineer Lead the engineering of software that matters - driving AI automation for the world's largest enterprises. This role is based at our h eadquarters in McLean, Virginia. Appian was built on a culture of in-person collaboration, which we believe is a key driver of our mission to be the best. Employees hired for this position are expected to be in the office 5 days a week to foster that culture and ensure we continue to thrive through shared ideas and teamwork. We believe being in the office provides more opportunities to come together and celebrate working with the exceptional people across Appian. About the Team Appian Engineering spans the full depth of our platform: from the foundational layers that power enterprise scale, to the AI capabilities redefining what automation can do. We operate in a highly collaborative, fast-paced environment focused on technical precision, continuous learning, and high code quality. By joining our team, you will solve real-world problems that directly shape how Appian delivers our AI-Powered Process Automation platform to enterprises around the world. The Opportunity As a Principal Software Engineer, you will serve as a technical linchpin for the team, bringing deep expertise in cloud-native architecture and a track record of influencing engineering direction beyond your immediate scope. Equipped with cutting-edge AI tooling, you will drive the design and delivery of high-complexity engineering solutions, set the technical bar for the team, and lead other engineers towards solutions of real complexity to ensure flawless Enterprise-Grade Orchestration. What You'll Do Develop Clean Software: Architect, build, and optimize high-performance software systems while maintaining a strong personal technical presence on the team. Lead Platform Modernization: Spearhead strategic technological changes and champion code refactoring efforts to keep the core Appian codebase cutting-edge, modern, and performant. Engineer with AI: Use AI coding tools fluently as a force multiplier: generating, reviewing, and critically evaluating AI-assisted code to ship faster without compromising quality or correctness. Lead Architecture & Delivery: Drive technical story breakdowns, acceptance criteria, and architectural design across complex, multi-tier application layers - from feature scoping through implementation. Optimize Performance & Scale: Manage product availability, latency, scalability, and efficiency by engineering deep reliability into our core software systems and performing advanced system tuning. Drive Engineering Excellence: Radiate development best practices across the department, perform meticulous code reviews on design and implementation, and build automation frameworks to prevent problem recurrence. Lead & Grow Engineers: Actively coach and mentor engineers at multiple levels, identify and close skill gaps on the team, and take ownership of accelerating the technical growth of those around you. Influence Technical Documentation: Share your expert domain knowledge regularly across the department, building a reputation as a vital resource and publishing high-quality content to Engineering's permanent documentation site. Required Qualifications Education: Minimum of a Bachelor of Science degree in Computer Science or a related technical/analytical discipline. (Equivalent experience is not accepted in lieu of a degree). Experience: 10+ years of relevant software development experience with a BS (or 8+ years of experience paired with a Master of Science in Computer Science or related field). Technical Mastery: Expert coding, scripting, and debugging proficiency in one or more core enterprise programming languages, specifically Java, Python, or Go. Domain Expertise: Deep working knowledge of distributed systems, cloud infrastructure, and the ability to contribute meaningfully at a senior individual contributor level within that space. Cross-Team Influence: Demonstrated ability to drive technical decisions and shape engineering practices beyond a single team or project scope. AI-Augmented Development: Demonstrated experience using AI coding assistants and a strong ability to evaluate, coach others on, and selectively apply AI-generated code in a production engineering context. Production Mastery: Proven experience developing, optimizing, and maintaining a high-volume, mission-critical production service environment. Communication & Alignment: Exceptional ability to communicate highly technical architectures verbally, visually, and in writing to diverse engineering audiences. Preferred Qualifications Cloud Architecture: Strong experience designing microservices, working with containerization (Docker, Kubernetes), and implementing modern CI/CD pipelines. Cloud Platforms: Deep experience developing and operating infrastructure across public cloud ecosystems, specifically AWS, Azure, and/or GCP. We value experience with enterprise platforms such as Salesforce or ServiceNow, as these skills translate well into our Enterprise-Grade Orchestration environment. What We Equip You With High-Impact Autonomy: A leadership environment where you will have real ownership over your team's direction, the latitude to make meaningful decisions, and participation in broader Engineering discussions. New Hire Orientation: A robust onboarding experience designed to integrate you smoothly into our technology, culture, and leadership model so you can show up for your team from day one. Continuous Enablement: Access to premier learning resources and dedicated learning time focused on both your continued technical growth and your evolution as an engineering leader. Sponsored Certifications: Full corporate sponsorship for professional technical certifications to advance your engineering credentials. The base salary range represents a good faith and reasonable estimate of the range at the time of posting. Actual compensation will be dependent on a number of factors including, but not limited to, the candidate's relevant work experience, qualifications, internal peer equity, and market and business conditions that exist when extending an offer. A discretionary bonus may be awarded in recognition of individual and company performance. In addition, Appian provides generous benefits offerings that include a 401(k) plan with company match, flexible time off, paid parental leave, medical, dental, and vision plans, life insurance, disability insurance, wellness programs, flexible spending accounts, health savings account contributions, an employee referral bonus program, and learning and development resources. Certain positions may be eligible for equity awards. Pay and benefits are subject to change at any time, consistent with the terms of any applicable compensation, commission, bonus, or benefit plans. Base Salary Range $175,000-$325,000 USD Tools and Resources Training and Development: During onboarding, we focus on equipping new hires with the skills and knowledge for success through department-specific training. Continuous learning is a central focus at Appian, with dedicated mentorship and the First-Friend program being widely utilized resources for new hires. Growth Opportunities: Appian provides a diverse array of growth and development opportunities, including our leadership program tailored for new and aspiring managers, a comprehensive library of specialized department training through Appian University, skills based training, and tuition reimbursement for those aiming to advance their education. This commitment ensures that employees have access to a holistic range of development opportunities. Community: We'll immerse you into our community rooted in respect starting on day one. Appian fosters inclusivity through our 8 employee-led affinity groups. These groups help employees build stronger internal and external networks by planning social, educational, and outreach activities to connect with Appianites and larger initiatives throughout the company. Benefits Appian offers a comprehensive benefits package designed to support your health, wellbeing, and financial future. Benefits may include health coverage, Employee Assistance Program (EAP) with free mental health support, life and disability insurance, an Employee Stock Purchase Program (ESPP), a retirement/pension plan, wellness dollars, tuition reimbursement, family-forming benefits and more. Benefits vary by country-please ask your Talent Acquisition contact for details specific to the location you are applying to. About Appian Appian provides AI automation for mission-critical work. We automate complex processes in large enterprises and governments . click apply for full job details
Tlingit Haida Tribal Business Corporation
Alexandria, Virginia
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
09/24/2026
Full time
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
Job Description Job Description As a Senior Network Security Engineer at Penumbra, you will play a critical role in determining the company's long term goals. You will be a key member of the Information Security and Compliance team. This is a highly technical, hands-on role. The Sr. Network Engineer will collaborate with Security, IT, Manufacturing, and Engineering teams and be responsible for engineering solutions and supporting operational activities across a hybrid cloud environment. The role responsibilities include ensuring compliance with legal and regulatory requirements and maintaining company security policies, standards, and industry's best practices. What You'll Work On • Ensure the network security of on-premises and cloud-based systems, networks, infrastructure, and services. • Enforce secure design standards and specifications for services, systems, and products. • Responsible for network security solutions, control designs, and enforcement across our environment. • Design and perform security assessments, configuration verification, configuration reporting, and other activities to validate control effectiveness. • Engage and share results of security audits with the Information Security and business partners to promote changes vital to improve risk posture. • Collaborate with cross-functional teams to develop and implement security measures supporting on-prem and cloud systems. • Develop roadmaps, standards, and documentation for technical solutions and existing configurations. Serve as the subject matter expert across the network security environment. • Respond to and lead, as appropriate, incident response activities for security incidents. • Collaborate with IT and line of business teams to integrate security into new and existing systems, processes, and initiatives. • Manage and configure security services, e.g., firewalls, intrusion detection/prevention systems, threat prevention technologies, VPNs, and other network security appliances. • Create and maintain documentation for security procedures, designs, and protocols, conduct security training and awareness for staff as appropriate to the role. • Stay current with emerging security threats and technologies in the security landscape. Ensure compliance with regulatory requirements and industry standards in the Company's environment. What You Contribute • A Bachelor's degree in computer science or related field with 10+ years of related experience, or equivalent combination of education and experience. • Master's degree preferred in Computer Science or Engineering with an emphasis in Computer Security or a related field • Highly analytical and results and process-oriented mindset strongly desired • 10+ years of hands-on design, enforcement and testing/validation of offensive security, defensive security, systems, and solutions engineering in a large enterprise • 5+ years of hands-on security experience with cloud platforms, i.e., Azure, AWS or Google Cloud Platform services, automation, or IaC • 5+ years of hands-on experience network security experience and expert-level knowledge on security technologies such as Palo Alto Firewalls, Cisco ISE, IPS, CASB, VPN management, SAML/OIDC NAC 802.1X, SIEM, SOAR, Radius/TACACS+, directory services • Proficient with network topologies, routing protocols, i.e., OSPF, BGP, ISIS, SDN, and tunneling technologies. • Proficient with diagramming and threat models, ability and competency to design and implement controls at scale based on risks • Proficient in conducting solutions architecture, security design reviews, passionate about security and privacy research, technologies, and methods. • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends • Understanding security and compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment • Outstanding ethical standards and integrity. • Excellent communicator with strong oral, written, and interpersonal communication skills • High degree of accuracy and attention to detail • Proficiency with Microsoft Word, Excel, Visio, and PowerPoint • Excellent organizational skills with the ability to prioritize assignments while handling various projects simultaneously. Working Conditions General office environment. Willingness and ability to work on site. May have business travel up to 10%. Requires some lifting and moving of up to 10 pounds Must be able to move between buildings and floors. Must be able to remain stationary and use a computer or other standard office equipment, such as a printer or copy machine, for an extensive period of time each day. Must be able to read, prepare emails, and produce documents and spreadsheets. Must be able to move within the office and access file cabinets or supplies, as needed. Must be able to communicate and exchange accurate information with employees at all levels on a daily basis. Annual Base Salary Range: $146,000 - $220,000/ year We offer a competitive compensation package plus a benefits and equity program, when applicable. Individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. What We Offer • A collaborative teamwork environment where learning is constant, and performance is rewarded. • The opportunity to be part of the team that is revolutionizing the treatment of some of the world's most devastating diseases. • A generous benefits package for eligible employees that includes medical, dental, vision, life, AD&D, short and long-term disability insurance, 401(k) with employer match, paid parental leave, eleven paid company holidays per year, a minimum of fifteen days of accrued vacation per year, which increases with tenure, and paid sick time in compliance with applicable law(s). Penumbra, Inc., headquartered in Alameda, California, is a global healthcare company focused on innovative therapies. Penumbra designs, develops, manufactures, and markets novel products and has a broad portfolio that addresses challenging medical conditions in markets with significant unmet need. Penumbra sells its products to hospitals and healthcare providers primarily through its direct sales organization in the United States, most of Europe, Canada, and Australia, and through distributors in select international markets. The Penumbra logo is a trademark of Penumbra, Inc. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, age, disability, military or veteran status, or any other characteristic protected by federal, state, or local laws. If you reside in the State of California, please also refer to Penumbra's Privacy Notice for California Residents. For additional information on Penumbra's commitment to being an equal opportunity employer, please see Penumbra's AAP Policy Statement.
09/24/2026
Full time
Job Description Job Description As a Senior Network Security Engineer at Penumbra, you will play a critical role in determining the company's long term goals. You will be a key member of the Information Security and Compliance team. This is a highly technical, hands-on role. The Sr. Network Engineer will collaborate with Security, IT, Manufacturing, and Engineering teams and be responsible for engineering solutions and supporting operational activities across a hybrid cloud environment. The role responsibilities include ensuring compliance with legal and regulatory requirements and maintaining company security policies, standards, and industry's best practices. What You'll Work On • Ensure the network security of on-premises and cloud-based systems, networks, infrastructure, and services. • Enforce secure design standards and specifications for services, systems, and products. • Responsible for network security solutions, control designs, and enforcement across our environment. • Design and perform security assessments, configuration verification, configuration reporting, and other activities to validate control effectiveness. • Engage and share results of security audits with the Information Security and business partners to promote changes vital to improve risk posture. • Collaborate with cross-functional teams to develop and implement security measures supporting on-prem and cloud systems. • Develop roadmaps, standards, and documentation for technical solutions and existing configurations. Serve as the subject matter expert across the network security environment. • Respond to and lead, as appropriate, incident response activities for security incidents. • Collaborate with IT and line of business teams to integrate security into new and existing systems, processes, and initiatives. • Manage and configure security services, e.g., firewalls, intrusion detection/prevention systems, threat prevention technologies, VPNs, and other network security appliances. • Create and maintain documentation for security procedures, designs, and protocols, conduct security training and awareness for staff as appropriate to the role. • Stay current with emerging security threats and technologies in the security landscape. Ensure compliance with regulatory requirements and industry standards in the Company's environment. What You Contribute • A Bachelor's degree in computer science or related field with 10+ years of related experience, or equivalent combination of education and experience. • Master's degree preferred in Computer Science or Engineering with an emphasis in Computer Security or a related field • Highly analytical and results and process-oriented mindset strongly desired • 10+ years of hands-on design, enforcement and testing/validation of offensive security, defensive security, systems, and solutions engineering in a large enterprise • 5+ years of hands-on security experience with cloud platforms, i.e., Azure, AWS or Google Cloud Platform services, automation, or IaC • 5+ years of hands-on experience network security experience and expert-level knowledge on security technologies such as Palo Alto Firewalls, Cisco ISE, IPS, CASB, VPN management, SAML/OIDC NAC 802.1X, SIEM, SOAR, Radius/TACACS+, directory services • Proficient with network topologies, routing protocols, i.e., OSPF, BGP, ISIS, SDN, and tunneling technologies. • Proficient with diagramming and threat models, ability and competency to design and implement controls at scale based on risks • Proficient in conducting solutions architecture, security design reviews, passionate about security and privacy research, technologies, and methods. • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends • Understanding security and compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment • Outstanding ethical standards and integrity. • Excellent communicator with strong oral, written, and interpersonal communication skills • High degree of accuracy and attention to detail • Proficiency with Microsoft Word, Excel, Visio, and PowerPoint • Excellent organizational skills with the ability to prioritize assignments while handling various projects simultaneously. Working Conditions General office environment. Willingness and ability to work on site. May have business travel up to 10%. Requires some lifting and moving of up to 10 pounds Must be able to move between buildings and floors. Must be able to remain stationary and use a computer or other standard office equipment, such as a printer or copy machine, for an extensive period of time each day. Must be able to read, prepare emails, and produce documents and spreadsheets. Must be able to move within the office and access file cabinets or supplies, as needed. Must be able to communicate and exchange accurate information with employees at all levels on a daily basis. Annual Base Salary Range: $146,000 - $220,000/ year We offer a competitive compensation package plus a benefits and equity program, when applicable. Individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. What We Offer • A collaborative teamwork environment where learning is constant, and performance is rewarded. • The opportunity to be part of the team that is revolutionizing the treatment of some of the world's most devastating diseases. • A generous benefits package for eligible employees that includes medical, dental, vision, life, AD&D, short and long-term disability insurance, 401(k) with employer match, paid parental leave, eleven paid company holidays per year, a minimum of fifteen days of accrued vacation per year, which increases with tenure, and paid sick time in compliance with applicable law(s). Penumbra, Inc., headquartered in Alameda, California, is a global healthcare company focused on innovative therapies. Penumbra designs, develops, manufactures, and markets novel products and has a broad portfolio that addresses challenging medical conditions in markets with significant unmet need. Penumbra sells its products to hospitals and healthcare providers primarily through its direct sales organization in the United States, most of Europe, Canada, and Australia, and through distributors in select international markets. The Penumbra logo is a trademark of Penumbra, Inc. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, age, disability, military or veteran status, or any other characteristic protected by federal, state, or local laws. If you reside in the State of California, please also refer to Penumbra's Privacy Notice for California Residents. For additional information on Penumbra's commitment to being an equal opportunity employer, please see Penumbra's AAP Policy Statement.
Tlingit Haida Tribal Business Corporation
Arlington, Virginia
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
09/24/2026
Full time
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
Tlingit Haida Tribal Business Corporation
Washington, Washington DC
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
09/24/2026
Full time
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
Tlingit Haida Tribal Business Corporation
Bethesda, Maryland
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
09/24/2026
Full time
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
Job Description Job Description Our mission is to create the Experience of a Lifetime for our employees, so they can, in turn, create the Experience of a Lifetime for our guests. We own and operate the most renowned destination resorts in the world as well as regional and local ski areas outside major cities, and connect them all through one unrivaled network. We are looking for ambitious leaders, innovators and creators to join our talented team. If you're ready to pursue your fullest potential, we want to get to know you! Candidates for year-round positions are reviewed on a rolling basis. Applications will be accepted up to 90 days after the posting date, or until the position is filled (whichever is first). Job Summary: We are looking for a curious, driven, innovative machine learning engineer who takes initiative to solve problems and create environments that accelerate the development, deployment, and usage of data science models and AI to drive greater organizational impact. The Data Science & Data Engineering team within the Enterprise Analytics organization builds data assets, predictive models, analytical applications, and platforms across the organization. Our team collaborates with business stakeholders, analysts, and technology teams to tackle high-impact use cases with state-of-the-art models and tools to grow the business, streamline costs, and improve guest experiences. Job Specifications: Starting Wage: $140,000 - $185,000 + Annual Bonus Employment Type: Year Round Shift Type: Full Time hours Minimum Age: At least 18 years of age Housing Availability: No Job Responsibilities: Productionize ML models developed by data science into reliable, monitored, maintainable systems. Build model data foundations that ensure training, inference, monitoring, and analytics data are trustworthy and scalable. Architect ML platform patterns in Databricks that bring reliability, consistency, governance, performance, and cost discipline to ML and data workflows. Identify and scope opportunities for ML engineering across the business for high-impact. Develop reusable tools , libraries, standards, documentation, and production-readiness practices to enable data science and data engineering teams. Develop analytical and model-powered applications that turn data and ML outputs into usable business workflows for end users. Prepare the platform for future AI engineering , including LLM and agent-based systems, as the organization matures. Provide technical leadership and mentoring across engineering, architecture, and development including design and code reviews. Job Requirements: Technical Skills: Quantitative Foundation : B.S. degree in a quantitative field (e.g., Computer Science, Mathematics, Statistics, Economics, Operations Research, Engineering). Software Engineering Fundamentals: write clean, modular, testable, maintainable code and understand how to structure production-grade systems rather than one-off notebooks or scripts. Python and SQL Proficiency: strong in Python and SQL for building data pipelines, automation, model integrations, analytical workflows, and production services. Data Modeling and Pipeline Design: understand how to design reliable, well-structured data assets, including curated tables, feature datasets, batch pipelines, orchestration, data quality checks, and lineage. ML Lifecycle Fluency: understand the full model lifecycle: data collection, exploration, model development, validation, deployment, monitoring, retraining, and retirement. Production ML Patterns: understand core MLOps patterns such as model registries, feature/data versioning, reproducible environments, testing/validation, monitoring, and rollback. Cloud and Platform Engineering: You are comfortable working in cloud-based data and ML environments and understand the foundations of permissions, environments, jobs, services, storage, networking, and cost-aware architecture. Databricks Expertise : You're familiar and experienced with the core parts of Spark, Unity Catalog, Delta Lake, Databricks Workflows, MLflow, model registry patterns, job/cluster optimization, and governance. DevOps Practices: You use modern engineering practices such as Git, CI/CD, automated testing, code review, dependency management, environment management, and observability. Application Development : You can build applications, APIs, dashboards, or workflow tools that sit on top of data and model outputs. System Design: You can reason through tradeoffs across reliability, latency, scale, cost, governance, maintainability, and ease of use. Soft Skills: Curious : bring intellectual curiosity, an inquisitive nature, and a desire to deepen your knowledge and continue learning. Ownership : take responsibility to proactively advance projects, contribute to the organization, and develop the best solutions. Communication: explain technical concepts, risks, tradeoffs, and recommendations clearly to technical and non-technical audiences. Collaboration: work effectively cross-functionally with data scientists, data engineers, analysts, application engineers, product partners, and business stakeholders. Pragmatism : You know how to balance ideal architecture with business urgency, team maturity, operational constraints, and the need to ship. Preferred qualifications: A graduate degree (Masters or PhD) in a quantitative field Experience with dbt (Core) for modular data modeling, including testing, documentation, and dependency management Experience with AI engineer to use, build, and monitor agentic solutions The expected Total Compensation for this role is $140,000 - $185,000 + Annual Bonus. Individual compensation decisions are based on a variety of factors. Job Benefits Ski/Mountain Perks! Free passes for employees, employee discounted lift tickets for friends and family AND free ski lessons MORE employee discounts on lodging, food, gear, and mountain shuttles 401(k) Retirement Plan Employee Assistance Program Excellent training and professional development Full Time roles are eligible for the above, plus: Health Insurance; Medical Insurance, Dental Insurance, and Vision Insurance plans (for eligible seasonal employees after working 500 hours) Free ski passes for dependents Critical Illness and Accident plans Employees can work remotely from British Columbia, Washington D.C., and the 16 U.S. states in which we currently operate. This includes: California, Colorado, Indiana, Michigan, Minnesota, Missouri, New Hampshire, New York, Nevada, Ohio, Pennsylvania, Utah, Vermont, Washington State, Wisconsin, and Wyoming. Please note that the ability to work in person or off-site, and the particulars related to such work, are subject to change at any time; and, accordingly, the Company reserves the right to change its policies and/or require in-person/in-office work or off-site work at any time in its sole discretion. In completing this application, and when submitting related documentation, applicants may redact information that identifies their age, date of birth, and/or dates of attendance at or graduation from an educational institution. We follow all federal, state, and local laws including restrictions on child/minor labor. Minors hired into this position will not be asked or permitted to engage in any activities restricted to adult workers. Vail Resorts is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, protected veteran status or any other status protected by applicable law. Requisition ID 517322 Reference Date: 09/05/2026 Job Code Function: Data Science
09/24/2026
Full time
Job Description Job Description Our mission is to create the Experience of a Lifetime for our employees, so they can, in turn, create the Experience of a Lifetime for our guests. We own and operate the most renowned destination resorts in the world as well as regional and local ski areas outside major cities, and connect them all through one unrivaled network. We are looking for ambitious leaders, innovators and creators to join our talented team. If you're ready to pursue your fullest potential, we want to get to know you! Candidates for year-round positions are reviewed on a rolling basis. Applications will be accepted up to 90 days after the posting date, or until the position is filled (whichever is first). Job Summary: We are looking for a curious, driven, innovative machine learning engineer who takes initiative to solve problems and create environments that accelerate the development, deployment, and usage of data science models and AI to drive greater organizational impact. The Data Science & Data Engineering team within the Enterprise Analytics organization builds data assets, predictive models, analytical applications, and platforms across the organization. Our team collaborates with business stakeholders, analysts, and technology teams to tackle high-impact use cases with state-of-the-art models and tools to grow the business, streamline costs, and improve guest experiences. Job Specifications: Starting Wage: $140,000 - $185,000 + Annual Bonus Employment Type: Year Round Shift Type: Full Time hours Minimum Age: At least 18 years of age Housing Availability: No Job Responsibilities: Productionize ML models developed by data science into reliable, monitored, maintainable systems. Build model data foundations that ensure training, inference, monitoring, and analytics data are trustworthy and scalable. Architect ML platform patterns in Databricks that bring reliability, consistency, governance, performance, and cost discipline to ML and data workflows. Identify and scope opportunities for ML engineering across the business for high-impact. Develop reusable tools , libraries, standards, documentation, and production-readiness practices to enable data science and data engineering teams. Develop analytical and model-powered applications that turn data and ML outputs into usable business workflows for end users. Prepare the platform for future AI engineering , including LLM and agent-based systems, as the organization matures. Provide technical leadership and mentoring across engineering, architecture, and development including design and code reviews. Job Requirements: Technical Skills: Quantitative Foundation : B.S. degree in a quantitative field (e.g., Computer Science, Mathematics, Statistics, Economics, Operations Research, Engineering). Software Engineering Fundamentals: write clean, modular, testable, maintainable code and understand how to structure production-grade systems rather than one-off notebooks or scripts. Python and SQL Proficiency: strong in Python and SQL for building data pipelines, automation, model integrations, analytical workflows, and production services. Data Modeling and Pipeline Design: understand how to design reliable, well-structured data assets, including curated tables, feature datasets, batch pipelines, orchestration, data quality checks, and lineage. ML Lifecycle Fluency: understand the full model lifecycle: data collection, exploration, model development, validation, deployment, monitoring, retraining, and retirement. Production ML Patterns: understand core MLOps patterns such as model registries, feature/data versioning, reproducible environments, testing/validation, monitoring, and rollback. Cloud and Platform Engineering: You are comfortable working in cloud-based data and ML environments and understand the foundations of permissions, environments, jobs, services, storage, networking, and cost-aware architecture. Databricks Expertise : You're familiar and experienced with the core parts of Spark, Unity Catalog, Delta Lake, Databricks Workflows, MLflow, model registry patterns, job/cluster optimization, and governance. DevOps Practices: You use modern engineering practices such as Git, CI/CD, automated testing, code review, dependency management, environment management, and observability. Application Development : You can build applications, APIs, dashboards, or workflow tools that sit on top of data and model outputs. System Design: You can reason through tradeoffs across reliability, latency, scale, cost, governance, maintainability, and ease of use. Soft Skills: Curious : bring intellectual curiosity, an inquisitive nature, and a desire to deepen your knowledge and continue learning. Ownership : take responsibility to proactively advance projects, contribute to the organization, and develop the best solutions. Communication: explain technical concepts, risks, tradeoffs, and recommendations clearly to technical and non-technical audiences. Collaboration: work effectively cross-functionally with data scientists, data engineers, analysts, application engineers, product partners, and business stakeholders. Pragmatism : You know how to balance ideal architecture with business urgency, team maturity, operational constraints, and the need to ship. Preferred qualifications: A graduate degree (Masters or PhD) in a quantitative field Experience with dbt (Core) for modular data modeling, including testing, documentation, and dependency management Experience with AI engineer to use, build, and monitor agentic solutions The expected Total Compensation for this role is $140,000 - $185,000 + Annual Bonus. Individual compensation decisions are based on a variety of factors. Job Benefits Ski/Mountain Perks! Free passes for employees, employee discounted lift tickets for friends and family AND free ski lessons MORE employee discounts on lodging, food, gear, and mountain shuttles 401(k) Retirement Plan Employee Assistance Program Excellent training and professional development Full Time roles are eligible for the above, plus: Health Insurance; Medical Insurance, Dental Insurance, and Vision Insurance plans (for eligible seasonal employees after working 500 hours) Free ski passes for dependents Critical Illness and Accident plans Employees can work remotely from British Columbia, Washington D.C., and the 16 U.S. states in which we currently operate. This includes: California, Colorado, Indiana, Michigan, Minnesota, Missouri, New Hampshire, New York, Nevada, Ohio, Pennsylvania, Utah, Vermont, Washington State, Wisconsin, and Wyoming. Please note that the ability to work in person or off-site, and the particulars related to such work, are subject to change at any time; and, accordingly, the Company reserves the right to change its policies and/or require in-person/in-office work or off-site work at any time in its sole discretion. In completing this application, and when submitting related documentation, applicants may redact information that identifies their age, date of birth, and/or dates of attendance at or graduation from an educational institution. We follow all federal, state, and local laws including restrictions on child/minor labor. Minors hired into this position will not be asked or permitted to engage in any activities restricted to adult workers. Vail Resorts is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, protected veteran status or any other status protected by applicable law. Requisition ID 517322 Reference Date: 09/05/2026 Job Code Function: Data Science
Job Description Job Description Overview We are seeking a CSfC Senior Network Engineer to join our team supporting Network Enterprise Technology Command (NETCOM) in Honolulu, HI. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at . Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Responsibilities RESPONSIBILITIES Assists the PM in the day-to-day management of leading Network Engineers. Must have an in-depth understanding of advanced networking O&M Commercial Solutions for Classified (CSfC) concepts and processes and experience applying these with little to no guidance. Must be able to provide guidance to others. Must be able to perform successfully in complex, unstructured situations. Must be proficient in multivendor networking environments in configuring firewalls, Intrusion Prevention/Detection systems, VPN gateways, routers, and switches (Cisco, Aruba, Juniper, Cisco ASA, etc.) Be able to develop and modify system scripts. Write standardized system documentation, including configuration guides, test procedures, test results, and training materials. Provide onsite training to technical and non-technical users on the daily use, management, and troubleshooting of the solution after installation. Support all Cross-Domain solution requirements Collaborate with other operations departments to design approved infrastructure Serve as the escalation contact during large outages for Tier 2 and 3 systems. Author network Engineering Design Packages to include detailed implementation project plans and procedures. Configures network, software, and hardware components to meet NSA CSfC, NIAP, and DoD requirements Performs network design and systems integration Designs, develops, implements, tests, and maintains complex secure communications networks Configuring/managing PKI Certificate Authorities for CSfC solutions Familiarity with Certificate Authority configuration (ISC CertAgent/MS Windows Server/Red Hat Certificate systems) Document configuration, test procedure, results, and training materials Preparing test reports and configuration documentation according to customer standards. Providing customer on-site training on solution daily use, management, and troubleshooting Provide tier 2 and 3 support as part of a technical team. Identify and recommend hardware and support solutions based on research and analysis of new technologies, interfacing with customers and vendors. Enhance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to the company. Apply DoD STIGs and IAVAs Perform special projects and other duties as assigned. REQUIRED QUALIFICATIONS Top Secret OR Higher OR Secret Clearance level with completed T5 investigation Active Professional Network certification (CCNP-Security, CCNA, HPE Aruba Networking Certified Professional - Switching, etc.) Must have experience with one or more networking vendors: Cisco, Aruba, Juniper, etc. One of the following DoD8140 Certifications : SecurityX/CASP+ CCNA CCNP Security CCSP (Certified Cloud Security Professional) GCED (GIAC Certified Enterprise Defender) GCIA (GIAC Certified Intrusion Analyst) GCLD (GIAC Cloud Security Essentials) GDSA (GIAC Defensible Security Architecture) GFACT (GIAC Foundational Cybersecurity Technologies) 10 or more years of experience in engineering MA/MS= 10 years; BS=12 years Qualifications WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Honolulu, HI Type of environment: Office Noise level: Low Work schedule: CONUS Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 20% PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE United States Citizenship Top Secret Clearance requirement WAGE INFORMATION Target salary range: $133,000.00 - $165,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
09/24/2026
Full time
Job Description Job Description Overview We are seeking a CSfC Senior Network Engineer to join our team supporting Network Enterprise Technology Command (NETCOM) in Honolulu, HI. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at . Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Responsibilities RESPONSIBILITIES Assists the PM in the day-to-day management of leading Network Engineers. Must have an in-depth understanding of advanced networking O&M Commercial Solutions for Classified (CSfC) concepts and processes and experience applying these with little to no guidance. Must be able to provide guidance to others. Must be able to perform successfully in complex, unstructured situations. Must be proficient in multivendor networking environments in configuring firewalls, Intrusion Prevention/Detection systems, VPN gateways, routers, and switches (Cisco, Aruba, Juniper, Cisco ASA, etc.) Be able to develop and modify system scripts. Write standardized system documentation, including configuration guides, test procedures, test results, and training materials. Provide onsite training to technical and non-technical users on the daily use, management, and troubleshooting of the solution after installation. Support all Cross-Domain solution requirements Collaborate with other operations departments to design approved infrastructure Serve as the escalation contact during large outages for Tier 2 and 3 systems. Author network Engineering Design Packages to include detailed implementation project plans and procedures. Configures network, software, and hardware components to meet NSA CSfC, NIAP, and DoD requirements Performs network design and systems integration Designs, develops, implements, tests, and maintains complex secure communications networks Configuring/managing PKI Certificate Authorities for CSfC solutions Familiarity with Certificate Authority configuration (ISC CertAgent/MS Windows Server/Red Hat Certificate systems) Document configuration, test procedure, results, and training materials Preparing test reports and configuration documentation according to customer standards. Providing customer on-site training on solution daily use, management, and troubleshooting Provide tier 2 and 3 support as part of a technical team. Identify and recommend hardware and support solutions based on research and analysis of new technologies, interfacing with customers and vendors. Enhance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to the company. Apply DoD STIGs and IAVAs Perform special projects and other duties as assigned. REQUIRED QUALIFICATIONS Top Secret OR Higher OR Secret Clearance level with completed T5 investigation Active Professional Network certification (CCNP-Security, CCNA, HPE Aruba Networking Certified Professional - Switching, etc.) Must have experience with one or more networking vendors: Cisco, Aruba, Juniper, etc. One of the following DoD8140 Certifications : SecurityX/CASP+ CCNA CCNP Security CCSP (Certified Cloud Security Professional) GCED (GIAC Certified Enterprise Defender) GCIA (GIAC Certified Intrusion Analyst) GCLD (GIAC Cloud Security Essentials) GDSA (GIAC Defensible Security Architecture) GFACT (GIAC Foundational Cybersecurity Technologies) 10 or more years of experience in engineering MA/MS= 10 years; BS=12 years Qualifications WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Honolulu, HI Type of environment: Office Noise level: Low Work schedule: CONUS Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 20% PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE United States Citizenship Top Secret Clearance requirement WAGE INFORMATION Target salary range: $133,000.00 - $165,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
Job Description Job Description Job Description ACTIVE SECURITY CLEARANCE AT THE TS/SCI POLYGRAPH LEVEL IS REQUIRED We are seeking an aggressive, hands-on Red Team / Cyber Assessment Engineer to join our technical assessment team in Annapolis Junction, MD, with periodic OCONUS travel requirements. In this role, you will execute adversarial assessments, emulate real-world threat actors, and evaluate complex network architectures to identify vulnerabilities before adversaries can exploit them. You won't just run automated scanners-you will conduct full-scope Red Team engagements, perform deep network anomaly analysis, leverage the MITRE ATTCK framework, and author comprehensive mitigation reports to harden critical infrastructure. If you thrive on offensive cyber operations, analyzing raw telemetry for Indicators of Compromise (IOCs), and delivering high-impact security assessments, you'll fit right in with Team Nyla. The annual base salary range for this role is $176,000-$208,000 (USD) , which does not include discretionary bonus compensation or our comprehensive benefits package. Actual compensation offered to the successful candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level, among other things. , Required Skills Red Team Assessment Experience: Proven track record conducting offensive security assessments, adversarial emulations, and technical vulnerability evaluations. Assessment Mitigation Reporting: Demonstrated capability to author detailed assessment findings, technical threat reports, and actionable remediation plans. Network Threat Analysis: Strong expertise in network traffic analysis, anomaly detection, IOC identification, and multi-source telemetry evaluation. Security Frameworks: Deep working knowledge of the MITRE ATTCK framework, NIST cybersecurity controls, and ISO 27001 standards. Operational Mobility: Willingness and ability to undertake periodic OCONUS travel for on-site assessment operations. Education: Bachelor's Degree in Cybersecurity, Computer Science, Computer Engineering, or a related technical discipline, PLUS 7+ years of professional cybersecurity and Red Team assessment experience OR Master's Degree in a related technical field, PLUS 5+ years of specialized offensive security and threat assessment experience OR High School Diploma / GED, PLUS 11+ years of hands-on technical experience in cybersecurity operations, network assessment, and Red Teaming in lieu of a degree. , Desired Skills Offensive Certifications: Industry certifications such as OSCP, CRTP, CRTE, CRTO, or equivalent penetration testing credentials. Penetration Testing Exploitation: Practical experience with ethical hacking, exploit development, post-exploitation techniques, and manual penetration testing. Zero Trust Concepts: Understanding of Zero Trust architecture and modern network infrastructure hardening. Blue/Purple Team Collaboration: Experience supporting defensive monitoring, detection engineering, or joint Purple Team exercises. Python Scripting: Basic proficiency in Python for automated parsing, custom payload delivery, or quick assessment scripting. , About Nyla Technology Solutions Nyla Technology Solutions delivers exceptional Artificial Intelligence (AI), Data Science, and Software Engineering services for the U.S. Government. Nyla embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the industry. We have a passion for developing solutions that have a quick and immediate impact on mission. Headquartered in Columbia, Maryland, our customers love how we tackle their most challenging problems and get things done. If you have the unique experience and expertise we are seeking, along with the desire and determination to invest your time and energy as a part of Nyla's team, Taking Care of All of You Nyla provides a top-of-market compensation and benefits package. And through our unique Nyla FLEX program, we custom tailor these benefits to best fit your lifestyle. The Nyla FLEX benefit program is designed to offer you flexibility in the 3 biggest areas of your life: your pay, your leave, and your schedule. PAY - Nyla starts with 4 weeks of Annual Leave plus 11 holidays and an additional day of Annual Leave for each year you're at the company. You have the flexibility to cash out your annual leave hours, opt out of other Nyla benefits, and/or arrange for additional hours on contract (over 40 hrs/week). There's even an option to earn 1.3 times your hourly rate once you work over 1880 hours on contract! LEAVE - Want to spend more time with the family? Want more time to travel the world? You can BUY additional annual leave for a total of 6 weeks of annual leave. That's up to 240 hours of leave plus 11 holidays! That's not even including paid anniversary leave! SCHEDULE - Does the traditional 40-hour workweek no longer fit your lifestyle? With Nyla FLEX, you have the freedom to scale down to 30-32 hours while still enjoying the top-notch Nyla benefits you know and love. It's flexibility that works for you without compromising the perks! WHAT ABOUT OTHER BENEFITS? Nyla's health care (medical, dental, and vision) is 100% covered by the company. We provide 10% 401k matching - with full vesting day 1! Our Professional Development offers $5,000 per year to be used towards fees, tuition, or time off for your continued growth. We even have a student loan repayment program and we provide 8 hours of volunteering annually so you can support your community, making your world a better place. To learn more about Nyla's culture and our exceptional benefit packages click here. Nyla is an equal opportunity employer.
09/24/2026
Full time
Job Description Job Description Job Description ACTIVE SECURITY CLEARANCE AT THE TS/SCI POLYGRAPH LEVEL IS REQUIRED We are seeking an aggressive, hands-on Red Team / Cyber Assessment Engineer to join our technical assessment team in Annapolis Junction, MD, with periodic OCONUS travel requirements. In this role, you will execute adversarial assessments, emulate real-world threat actors, and evaluate complex network architectures to identify vulnerabilities before adversaries can exploit them. You won't just run automated scanners-you will conduct full-scope Red Team engagements, perform deep network anomaly analysis, leverage the MITRE ATTCK framework, and author comprehensive mitigation reports to harden critical infrastructure. If you thrive on offensive cyber operations, analyzing raw telemetry for Indicators of Compromise (IOCs), and delivering high-impact security assessments, you'll fit right in with Team Nyla. The annual base salary range for this role is $176,000-$208,000 (USD) , which does not include discretionary bonus compensation or our comprehensive benefits package. Actual compensation offered to the successful candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level, among other things. , Required Skills Red Team Assessment Experience: Proven track record conducting offensive security assessments, adversarial emulations, and technical vulnerability evaluations. Assessment Mitigation Reporting: Demonstrated capability to author detailed assessment findings, technical threat reports, and actionable remediation plans. Network Threat Analysis: Strong expertise in network traffic analysis, anomaly detection, IOC identification, and multi-source telemetry evaluation. Security Frameworks: Deep working knowledge of the MITRE ATTCK framework, NIST cybersecurity controls, and ISO 27001 standards. Operational Mobility: Willingness and ability to undertake periodic OCONUS travel for on-site assessment operations. Education: Bachelor's Degree in Cybersecurity, Computer Science, Computer Engineering, or a related technical discipline, PLUS 7+ years of professional cybersecurity and Red Team assessment experience OR Master's Degree in a related technical field, PLUS 5+ years of specialized offensive security and threat assessment experience OR High School Diploma / GED, PLUS 11+ years of hands-on technical experience in cybersecurity operations, network assessment, and Red Teaming in lieu of a degree. , Desired Skills Offensive Certifications: Industry certifications such as OSCP, CRTP, CRTE, CRTO, or equivalent penetration testing credentials. Penetration Testing Exploitation: Practical experience with ethical hacking, exploit development, post-exploitation techniques, and manual penetration testing. Zero Trust Concepts: Understanding of Zero Trust architecture and modern network infrastructure hardening. Blue/Purple Team Collaboration: Experience supporting defensive monitoring, detection engineering, or joint Purple Team exercises. Python Scripting: Basic proficiency in Python for automated parsing, custom payload delivery, or quick assessment scripting. , About Nyla Technology Solutions Nyla Technology Solutions delivers exceptional Artificial Intelligence (AI), Data Science, and Software Engineering services for the U.S. Government. Nyla embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the industry. We have a passion for developing solutions that have a quick and immediate impact on mission. Headquartered in Columbia, Maryland, our customers love how we tackle their most challenging problems and get things done. If you have the unique experience and expertise we are seeking, along with the desire and determination to invest your time and energy as a part of Nyla's team, Taking Care of All of You Nyla provides a top-of-market compensation and benefits package. And through our unique Nyla FLEX program, we custom tailor these benefits to best fit your lifestyle. The Nyla FLEX benefit program is designed to offer you flexibility in the 3 biggest areas of your life: your pay, your leave, and your schedule. PAY - Nyla starts with 4 weeks of Annual Leave plus 11 holidays and an additional day of Annual Leave for each year you're at the company. You have the flexibility to cash out your annual leave hours, opt out of other Nyla benefits, and/or arrange for additional hours on contract (over 40 hrs/week). There's even an option to earn 1.3 times your hourly rate once you work over 1880 hours on contract! LEAVE - Want to spend more time with the family? Want more time to travel the world? You can BUY additional annual leave for a total of 6 weeks of annual leave. That's up to 240 hours of leave plus 11 holidays! That's not even including paid anniversary leave! SCHEDULE - Does the traditional 40-hour workweek no longer fit your lifestyle? With Nyla FLEX, you have the freedom to scale down to 30-32 hours while still enjoying the top-notch Nyla benefits you know and love. It's flexibility that works for you without compromising the perks! WHAT ABOUT OTHER BENEFITS? Nyla's health care (medical, dental, and vision) is 100% covered by the company. We provide 10% 401k matching - with full vesting day 1! Our Professional Development offers $5,000 per year to be used towards fees, tuition, or time off for your continued growth. We even have a student loan repayment program and we provide 8 hours of volunteering annually so you can support your community, making your world a better place. To learn more about Nyla's culture and our exceptional benefit packages click here. Nyla is an equal opportunity employer.
Job Description Job Description PALO ALTO FIREWALL ENGINEER Position Description Description This is an opening for a Firewall Engineer/Team Lead to support a Department of State (DoS) Bureau of Diplomatic Technology (DT) program. This program provides transparent, interconnected systems and security supporting the DoS in successfully carrying out its U.S. foreign policy mission. DT provides enterprise architecture design, engineering, operations and maintenance support services for servers, networks, firewalls, and enterprise applications across the Department. Program is named "Vanguard" and is an IT consolidation consisting of the Department's servers, mainframes, network devices, network perimeter, anti-virus engineering, public key infrastructure (PKI)/biometrics/encryption, monitoring tools, telephony, mobile computing platform, virtual environment, and enclave design/security engineering. This is a firewall engineer position within the Vanguard 2025 program, providing general Tier II monitoring, configuration, and support to multiple firewalls and perimeter security systems. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally. This is a hybrid position based out of Beltsville, MD with 3 days on-site. Shift is MIDs (11:00pm-7:30am), Sun-Thurs after training. During the 6-8 week training period, it will be 5 days on-site Mon-Fri (7:00am-3:30pm). Your responsibilities will include: Provides Tier 2 support in the monitoring, management, and troubleshooting of perimeter devices to include firewalls, proxies, and mail transport agents. Along with being a Team Lead for the MID shift. As the Lead you will be expectant to give a turnover of events for the past shift, create weekly Quad Chart, and be able to direct work to other firewall operations staff. Must be able to guide other staff on tasks assigned to the team. Review request for time off and stay in touch with the manager on all events happening on the shift. Monitor Service Now application for Firewall Operations incident and service requests. Implements firewall rules and policies, perform troubleshoots of firewall, email, and Proxy platforms for performance issues. Analyzes network traffic captures. Escalates issues as required to Tier 3 staff and monitors issues throughout a problem's life cycle. Performs recurring maintenance activities such as device reboots and software upgrades on perimeter devices. Records and reports on firewall operations, utilization, and maintenance. Collaborate across Bureaus and Agencies to implement and repair network changes as they relate to perimeter security devices. Support Diplomatic Security Computer Incident Response Team (CIRT) by implementing block requests for IP's, Websites, and Email addresses. Update architecture diagrams using Visio. Monitor and perform health checks on multiple perimeter security devices. Draft, coordinate and publish outage notifications as required. Update shift logs and provide reports to leadership daily. Maintain standard operating procedures (SOP), work instructions, and other working documents. Attend weekly teleconferences, onsite meetings, and participate in working groups as required. Qualifications Required Education & Experience BA degree and 6 years of experience; may accept additional experience in lieu of degree. In Depth experience using Palo Alto Firewalls and Panorama monitoring tools to troubleshoot and configure a Firewall infrastructure. Strong understanding of networking, proxy, and packet filtering technologies. Minimum 5 years IT Customer Support experience (Tier I and/or Tier II). First-hand experience with supporting the monitoring and configuration of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (StoneGate, Palo Alto, FortiGate, Azure Firewall, Cloudflare, Cisco Email Security Appliances (ESA), A10 proxy devices). CLI experience preferred. Experienced in utilizing network monitoring tools such as Nagios and NeuralStar. Basic Microsoft Windows Server 2016 implementation and troubleshooting from a security/firewall perspective. Experienced with TCP/IP network implementation and troubleshooting. Required Clearance US Citizenship. An Interim Secret clearance is required to start work and requires eligibility to obtain a Top Secret clearance. Powered by JazzHR ZpLPHj5F0L
09/24/2026
Full time
Job Description Job Description PALO ALTO FIREWALL ENGINEER Position Description Description This is an opening for a Firewall Engineer/Team Lead to support a Department of State (DoS) Bureau of Diplomatic Technology (DT) program. This program provides transparent, interconnected systems and security supporting the DoS in successfully carrying out its U.S. foreign policy mission. DT provides enterprise architecture design, engineering, operations and maintenance support services for servers, networks, firewalls, and enterprise applications across the Department. Program is named "Vanguard" and is an IT consolidation consisting of the Department's servers, mainframes, network devices, network perimeter, anti-virus engineering, public key infrastructure (PKI)/biometrics/encryption, monitoring tools, telephony, mobile computing platform, virtual environment, and enclave design/security engineering. This is a firewall engineer position within the Vanguard 2025 program, providing general Tier II monitoring, configuration, and support to multiple firewalls and perimeter security systems. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally. This is a hybrid position based out of Beltsville, MD with 3 days on-site. Shift is MIDs (11:00pm-7:30am), Sun-Thurs after training. During the 6-8 week training period, it will be 5 days on-site Mon-Fri (7:00am-3:30pm). Your responsibilities will include: Provides Tier 2 support in the monitoring, management, and troubleshooting of perimeter devices to include firewalls, proxies, and mail transport agents. Along with being a Team Lead for the MID shift. As the Lead you will be expectant to give a turnover of events for the past shift, create weekly Quad Chart, and be able to direct work to other firewall operations staff. Must be able to guide other staff on tasks assigned to the team. Review request for time off and stay in touch with the manager on all events happening on the shift. Monitor Service Now application for Firewall Operations incident and service requests. Implements firewall rules and policies, perform troubleshoots of firewall, email, and Proxy platforms for performance issues. Analyzes network traffic captures. Escalates issues as required to Tier 3 staff and monitors issues throughout a problem's life cycle. Performs recurring maintenance activities such as device reboots and software upgrades on perimeter devices. Records and reports on firewall operations, utilization, and maintenance. Collaborate across Bureaus and Agencies to implement and repair network changes as they relate to perimeter security devices. Support Diplomatic Security Computer Incident Response Team (CIRT) by implementing block requests for IP's, Websites, and Email addresses. Update architecture diagrams using Visio. Monitor and perform health checks on multiple perimeter security devices. Draft, coordinate and publish outage notifications as required. Update shift logs and provide reports to leadership daily. Maintain standard operating procedures (SOP), work instructions, and other working documents. Attend weekly teleconferences, onsite meetings, and participate in working groups as required. Qualifications Required Education & Experience BA degree and 6 years of experience; may accept additional experience in lieu of degree. In Depth experience using Palo Alto Firewalls and Panorama monitoring tools to troubleshoot and configure a Firewall infrastructure. Strong understanding of networking, proxy, and packet filtering technologies. Minimum 5 years IT Customer Support experience (Tier I and/or Tier II). First-hand experience with supporting the monitoring and configuration of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (StoneGate, Palo Alto, FortiGate, Azure Firewall, Cloudflare, Cisco Email Security Appliances (ESA), A10 proxy devices). CLI experience preferred. Experienced in utilizing network monitoring tools such as Nagios and NeuralStar. Basic Microsoft Windows Server 2016 implementation and troubleshooting from a security/firewall perspective. Experienced with TCP/IP network implementation and troubleshooting. Required Clearance US Citizenship. An Interim Secret clearance is required to start work and requires eligibility to obtain a Top Secret clearance. Powered by JazzHR ZpLPHj5F0L
Job Description Job Description Network Operations - Firewall Operations Engineer Position Description Description This is an opening for a Firewall Engineer to support a Department of State (DoS) Bureau of Diplomatic Technology (DT) program. This program provides transparent, interconnected systems and security supporting the DoS in successfully carrying out its U.S. foreign policy mission. DT provides enterprise architecture design, engineering, operations and maintenance support services for servers, networks, firewalls, and enterprise applications across the Department. This is a firewall engineer position, providing general Tier 2 monitoring, configuration, and support to multiple firewalls and perimeter security systems. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally. This is a hybrid position based out of Beltsville, MD with 3 days on-site. Shift is Day's (7:00am-3:30pm), Tuesday-Saturday after training. During the 6-8-week training period, it will be 5 days on-site Mon-Fri (7:00am-3:30pm). Your responsibilities will include: Provides Tier 2 support in the monitoring, management, and troubleshooting of perimeter devices to include firewalls, proxies, and mail transport agents. Monitor Service Now application for Firewall Operations (FWOPS) incident and service requests. Implements firewall rules and policies, perform troubleshooting of firewalls (Palo Alto, Cloud Palo Alto, and FortiGate), CISCO Email Security Appliance (ESA), A10 (load balancer), Proxy platforms, URL filtering across platforms, and analyzing network traffic captures. Escalates issues as required to Tier 3 staff and monitors issues throughout a problem's life cycle. Performs recurring maintenance activities such as device reboots and software upgrades on all devices underneath the Firewall Operations Team. Records and reports on firewall operations, utilization, and maintenance. Collaborate across Bureaus and Agencies to implement and repair network changes as they relate to perimeter security devices. Support Diplomatic Security Computer Incident Response Team (CIRT) by implementing block requests for IP's, Websites, and Email addresses. Update architecture diagrams using Visio. Monitor and perform health checks on multiple perimeter security devices. Draft, coordinate and publish outage notifications as required. Update shift logs and provide reports to leadership as needed. Maintain standard operating procedures (SOP), work instructions, and other working documents. Attend calls requiring a FWOPS team to attend, to include troubleshooting calls. Required Education & Experience: BA degree and 2-4 years of experience, may accept additional experience in lieu of degree. In Depth experience using Palo Alto Firewalls and Panorama monitoring tools to troubleshoot and configure a Firewall infrastructure. Strong understanding of networking, proxy, and packet filtering technologies. Minimum 3-5 years of IT Customer Support experience (Tier I and/or Tier II). First-hand experience with supporting the monitoring and configuration of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (Palo Alto, Palo Alto virtual FW (cloud), FortiGate, Azure Firewall, Cloudflare, Cisco Email Security Appliances (ESA), A10 (Load Balancer), and proxy devices. CLI experience preferred. Experienced in utilizing network monitoring tools such as NeuralStar. Experienced with TCP/IP network implementation and troubleshooting. Required Clearance US Citizenship. An Interim Secret clearance is required to start work and requires eligibility to obtain a Top-Secret clearance. Powered by JazzHR 2IrLa6mmdU
09/24/2026
Full time
Job Description Job Description Network Operations - Firewall Operations Engineer Position Description Description This is an opening for a Firewall Engineer to support a Department of State (DoS) Bureau of Diplomatic Technology (DT) program. This program provides transparent, interconnected systems and security supporting the DoS in successfully carrying out its U.S. foreign policy mission. DT provides enterprise architecture design, engineering, operations and maintenance support services for servers, networks, firewalls, and enterprise applications across the Department. This is a firewall engineer position, providing general Tier 2 monitoring, configuration, and support to multiple firewalls and perimeter security systems. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally. This is a hybrid position based out of Beltsville, MD with 3 days on-site. Shift is Day's (7:00am-3:30pm), Tuesday-Saturday after training. During the 6-8-week training period, it will be 5 days on-site Mon-Fri (7:00am-3:30pm). Your responsibilities will include: Provides Tier 2 support in the monitoring, management, and troubleshooting of perimeter devices to include firewalls, proxies, and mail transport agents. Monitor Service Now application for Firewall Operations (FWOPS) incident and service requests. Implements firewall rules and policies, perform troubleshooting of firewalls (Palo Alto, Cloud Palo Alto, and FortiGate), CISCO Email Security Appliance (ESA), A10 (load balancer), Proxy platforms, URL filtering across platforms, and analyzing network traffic captures. Escalates issues as required to Tier 3 staff and monitors issues throughout a problem's life cycle. Performs recurring maintenance activities such as device reboots and software upgrades on all devices underneath the Firewall Operations Team. Records and reports on firewall operations, utilization, and maintenance. Collaborate across Bureaus and Agencies to implement and repair network changes as they relate to perimeter security devices. Support Diplomatic Security Computer Incident Response Team (CIRT) by implementing block requests for IP's, Websites, and Email addresses. Update architecture diagrams using Visio. Monitor and perform health checks on multiple perimeter security devices. Draft, coordinate and publish outage notifications as required. Update shift logs and provide reports to leadership as needed. Maintain standard operating procedures (SOP), work instructions, and other working documents. Attend calls requiring a FWOPS team to attend, to include troubleshooting calls. Required Education & Experience: BA degree and 2-4 years of experience, may accept additional experience in lieu of degree. In Depth experience using Palo Alto Firewalls and Panorama monitoring tools to troubleshoot and configure a Firewall infrastructure. Strong understanding of networking, proxy, and packet filtering technologies. Minimum 3-5 years of IT Customer Support experience (Tier I and/or Tier II). First-hand experience with supporting the monitoring and configuration of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (Palo Alto, Palo Alto virtual FW (cloud), FortiGate, Azure Firewall, Cloudflare, Cisco Email Security Appliances (ESA), A10 (Load Balancer), and proxy devices. CLI experience preferred. Experienced in utilizing network monitoring tools such as NeuralStar. Experienced with TCP/IP network implementation and troubleshooting. Required Clearance US Citizenship. An Interim Secret clearance is required to start work and requires eligibility to obtain a Top-Secret clearance. Powered by JazzHR 2IrLa6mmdU
Job Description Job Description Founded in 2007 and headquartered in Columbia, Maryland, Synergy ECP is a leading provider of cybersecurity, software and systems engineering and IT services to the U.S. intelligence and defense communities. The company leverages its expertise in data transport solutions, software and systems engineering, and other solutions to deliver critical and innovative capabilities to high-level decision makers that enhance our nation's security. In an ultra-competitive environment, Synergy ECP has thrived by adhering to our name, making sure excellence is displayed by our Employees, to our Customers and by Improving Performance (ECP). It's what sets us apart, enabling us to be an autonomous yet agile business that delivers huge results-showing we're ready to meet our customers' evolving demands. Synergy ECP has earned a client list that includes numerous Fortune 100 companies, in addition to multiple branches of the US government and military services. Description: Provide engineering expertise to analyze complex systems, architecture, network design and other technical hardware issues. Procure and perform acceptance testing on equipment. Provide hardware maintenance support, both preventative and remedial. Deploy, install, and implement hardware at Continental United States (CONUS) and Outside Continental United States (OCONUS). Prepare specifications for hardware by analyzing documented and derived system requirements. Conduct site surveys. Prepare engineering plans and site Technical Design Packages. Organize and direct hardware installations. Configure (and document configuration of) computers, networking devices and various peripheral equipment. Prepare site installation and test 1repm1s. Ensure that problems have been properly identified and solutions will satisfy the user's requirements. Prepare reports and recommendations concerning existing and emerging hardware technologies. Provide specific input to the hardware components of system design to include end-user devices, servers, networking devices, data storage devices, and specialized processors. Capabilities: Conduct site surveys; assesses and documents current site network configuration and site unique requirements Organize and direct hardware installations across multiple sites Analyze and recommend hardware specifications for project-unique or modified commercial hardware Assist with building simulations of proposed systems and provide hardware throughput analyses to system engineers Design and verify test harnesses/simulated interfaces for all test and integration phases Prepare Mean-Time-Between-Failure and Mean-Time-To-Repair analyses Analyze operational data to identify choke points, failure modes, and other data for design or maintainability improvements Review proposed systems, and support of network communications, including LAN/WAN systems Evaluate current systems and annotate system vulnerabilities Research and analyze data of various products to include COTS/GOTS components and GFE to determine feasibility of design or application Provide skilled technical assistance in network planning, engineering, and architecture Assist in the development of technical standards and interface applications, identify and evaluate new products, and provide resolution for network problems Provide evaluations of systems, networks and information systems to ensure designs meet applicable governmental security specifications Assist with the development of security system documentation on both new and fielded information systems Develop, analyze, and provide feedback on wired and wireless network systems Plan large and small-scale systems system vendor comparison, cost studies, and security Plan and evaluate complex existing network systems and make recommendations for resources required to maintain and/or expand service levels Independently develop technical standards and interface applications, identify and evaluate new products, and provide resolution for network problems Independently develop security system documentation of both new and fielded information systems Analyze, identify, describe, and brief system weaknesses and provide proposed system improvements Qualifications: Ten (10) years' experience as a Network Security Engineer analyzing complex hardware systems for SIGINT solutions is required. Bachelor's degree in Communications Engineering, Computer Engineering, Computer Science, Electrical Engineering, Information Systems, Mathematics, or related discipline from an accredited college or university is required. Five (5) years of additional Network Security engineering experience may be substituted for a Bachelor's degree. Must meet DoD approved 8570 Baseline Ce1tification for IAT Level II and possess at least 2 of the following vendor certifications: Palo Alto Networks Certified Network Security Administrator (PCNSA), Sonicwall Network Security Administrator (SNSA), Sonicwall Network Security Professional (SNSP), Symantec ProxySG 6.7 Technical Specialist or Cisco CCNA or higher. CLEARANCE REQUIRED: TS/SCI w/ Polygraph Other Requirements: U.S. Citizenship Compensation Spotlight: For this role, our typical salary range starts at $200,000 and stretches up to $275,000. But here's the deal - we're not about capping your potential. We're committed to snapping up the best and brightest, and we're ready to put our money where our mouth is. So, if you're one of the rare exceptions to the status quo with the education, experience, and that extra something special, we're not afraid to go above and beyond to secure your talent. Because for us, it's not just about a salary. It's about the complete rewards package, the culture, and the opportunity to make a real impact. Taking Care of the People Who Take Care of The Nation Compensation: We offer highly competitive compensation that is consistently recognized by our employees as being generous! Health & Retirement: We offer a comprehensive Health Benefits package and 401K Retirement plan so you can take care of yourself and your family both now and in the future. Other health-related benefits include People Partners who will help you navigate both personal and professional worlds, as well as strong wellness related resources offered through our healthcare provider. Education: Individual growth is a priority at Synergy ECP. Employees are encouraged to take advantage of our company-sponsored continuing education program so they can get their degree or that next certification needed to propel them towards the next level. Not sure what's best for your career plans, we'll help you navigate it all! Work/Life Balance: A healthy work/life balance is essential for building and executing your work effectively at Synergy ECP, but it's also necessary to allow you the room to pursue everything you want to develop in your personal life. We offer a generous Paid Time Off benefit and 11 paid holidays a year. Synergy ECP also provides flexible work options that work with your schedule and lifestyle. Philanthropy: With the help of our amazing employees, Synergy ECP participates annually in building awareness, volunteering and contributing to dozens of organizations. We believe that giving back creates a sense of purpose, engagement, and fulfillment. Have a cause you are passionate about? We bet you'll find others here that care about it just as much! Great Corporate Facilities: Come by our corporate office and enjoy a weekly happy hour, take a drive to nearby restaurants, grab a snack or coffee in our café, or utilize our collaborative office space and conference rooms. SkillBridge: Our SkillBridge Program takes the incredible experience our servicemembers already have and shows them how to apply it within corporate environments. We are fanatical about helping our Military! Synergy ECP is committed to providing equal employment opportunities to all qualified individuals. Employment decisions are based on merit, qualifications, and business needs. We do not discriminate on the basis of race, color, sex, national origin, religion, age, disability, or any other status protected by applicable law. We welcome candidates from all backgrounds and are dedicated to maintaining a professional and respectful workplace where every employee can succeed.
09/24/2026
Full time
Job Description Job Description Founded in 2007 and headquartered in Columbia, Maryland, Synergy ECP is a leading provider of cybersecurity, software and systems engineering and IT services to the U.S. intelligence and defense communities. The company leverages its expertise in data transport solutions, software and systems engineering, and other solutions to deliver critical and innovative capabilities to high-level decision makers that enhance our nation's security. In an ultra-competitive environment, Synergy ECP has thrived by adhering to our name, making sure excellence is displayed by our Employees, to our Customers and by Improving Performance (ECP). It's what sets us apart, enabling us to be an autonomous yet agile business that delivers huge results-showing we're ready to meet our customers' evolving demands. Synergy ECP has earned a client list that includes numerous Fortune 100 companies, in addition to multiple branches of the US government and military services. Description: Provide engineering expertise to analyze complex systems, architecture, network design and other technical hardware issues. Procure and perform acceptance testing on equipment. Provide hardware maintenance support, both preventative and remedial. Deploy, install, and implement hardware at Continental United States (CONUS) and Outside Continental United States (OCONUS). Prepare specifications for hardware by analyzing documented and derived system requirements. Conduct site surveys. Prepare engineering plans and site Technical Design Packages. Organize and direct hardware installations. Configure (and document configuration of) computers, networking devices and various peripheral equipment. Prepare site installation and test 1repm1s. Ensure that problems have been properly identified and solutions will satisfy the user's requirements. Prepare reports and recommendations concerning existing and emerging hardware technologies. Provide specific input to the hardware components of system design to include end-user devices, servers, networking devices, data storage devices, and specialized processors. Capabilities: Conduct site surveys; assesses and documents current site network configuration and site unique requirements Organize and direct hardware installations across multiple sites Analyze and recommend hardware specifications for project-unique or modified commercial hardware Assist with building simulations of proposed systems and provide hardware throughput analyses to system engineers Design and verify test harnesses/simulated interfaces for all test and integration phases Prepare Mean-Time-Between-Failure and Mean-Time-To-Repair analyses Analyze operational data to identify choke points, failure modes, and other data for design or maintainability improvements Review proposed systems, and support of network communications, including LAN/WAN systems Evaluate current systems and annotate system vulnerabilities Research and analyze data of various products to include COTS/GOTS components and GFE to determine feasibility of design or application Provide skilled technical assistance in network planning, engineering, and architecture Assist in the development of technical standards and interface applications, identify and evaluate new products, and provide resolution for network problems Provide evaluations of systems, networks and information systems to ensure designs meet applicable governmental security specifications Assist with the development of security system documentation on both new and fielded information systems Develop, analyze, and provide feedback on wired and wireless network systems Plan large and small-scale systems system vendor comparison, cost studies, and security Plan and evaluate complex existing network systems and make recommendations for resources required to maintain and/or expand service levels Independently develop technical standards and interface applications, identify and evaluate new products, and provide resolution for network problems Independently develop security system documentation of both new and fielded information systems Analyze, identify, describe, and brief system weaknesses and provide proposed system improvements Qualifications: Ten (10) years' experience as a Network Security Engineer analyzing complex hardware systems for SIGINT solutions is required. Bachelor's degree in Communications Engineering, Computer Engineering, Computer Science, Electrical Engineering, Information Systems, Mathematics, or related discipline from an accredited college or university is required. Five (5) years of additional Network Security engineering experience may be substituted for a Bachelor's degree. Must meet DoD approved 8570 Baseline Ce1tification for IAT Level II and possess at least 2 of the following vendor certifications: Palo Alto Networks Certified Network Security Administrator (PCNSA), Sonicwall Network Security Administrator (SNSA), Sonicwall Network Security Professional (SNSP), Symantec ProxySG 6.7 Technical Specialist or Cisco CCNA or higher. CLEARANCE REQUIRED: TS/SCI w/ Polygraph Other Requirements: U.S. Citizenship Compensation Spotlight: For this role, our typical salary range starts at $200,000 and stretches up to $275,000. But here's the deal - we're not about capping your potential. We're committed to snapping up the best and brightest, and we're ready to put our money where our mouth is. So, if you're one of the rare exceptions to the status quo with the education, experience, and that extra something special, we're not afraid to go above and beyond to secure your talent. Because for us, it's not just about a salary. It's about the complete rewards package, the culture, and the opportunity to make a real impact. Taking Care of the People Who Take Care of The Nation Compensation: We offer highly competitive compensation that is consistently recognized by our employees as being generous! Health & Retirement: We offer a comprehensive Health Benefits package and 401K Retirement plan so you can take care of yourself and your family both now and in the future. Other health-related benefits include People Partners who will help you navigate both personal and professional worlds, as well as strong wellness related resources offered through our healthcare provider. Education: Individual growth is a priority at Synergy ECP. Employees are encouraged to take advantage of our company-sponsored continuing education program so they can get their degree or that next certification needed to propel them towards the next level. Not sure what's best for your career plans, we'll help you navigate it all! Work/Life Balance: A healthy work/life balance is essential for building and executing your work effectively at Synergy ECP, but it's also necessary to allow you the room to pursue everything you want to develop in your personal life. We offer a generous Paid Time Off benefit and 11 paid holidays a year. Synergy ECP also provides flexible work options that work with your schedule and lifestyle. Philanthropy: With the help of our amazing employees, Synergy ECP participates annually in building awareness, volunteering and contributing to dozens of organizations. We believe that giving back creates a sense of purpose, engagement, and fulfillment. Have a cause you are passionate about? We bet you'll find others here that care about it just as much! Great Corporate Facilities: Come by our corporate office and enjoy a weekly happy hour, take a drive to nearby restaurants, grab a snack or coffee in our café, or utilize our collaborative office space and conference rooms. SkillBridge: Our SkillBridge Program takes the incredible experience our servicemembers already have and shows them how to apply it within corporate environments. We are fanatical about helping our Military! Synergy ECP is committed to providing equal employment opportunities to all qualified individuals. Employment decisions are based on merit, qualifications, and business needs. We do not discriminate on the basis of race, color, sex, national origin, religion, age, disability, or any other status protected by applicable law. We welcome candidates from all backgrounds and are dedicated to maintaining a professional and respectful workplace where every employee can succeed.
Job Description Job Description About Etched Etched is building hardware for frontier intelligence. We co-design chips, racks, software, and manufacturing to deliver best-in-class throughput and latency across both prefill and decode workloads. Our first products are heavily focused on inference . Backed by hundreds of millions from top-tier investors and staffed by leading engineers, Etched is redefining the infrastructure layer for the fastest growing industry in history. Job Summary Etched's infrastructure spans some of the most sensitive compute environments in the industry: bare-metal HPC clusters running proprietary ASIC workloads, hybrid on-prem/cloud deployments, and internal toolchains that house irreplaceable chip design IP. As we scale from early silicon to production, securing these environments is foundational - not an afterthought. As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden our physical and virtual networks, enforce least-privilege access to chip design environments, and build the detection and response capabilities that keep our most sensitive assets safe. This is a high-ownership role for someone who wants to shape security architecture at a company building the compute infrastructure for the next decade of AI - not maintain someone else's stack. Key Responsibilities Design and implement a zero-trust network architecture across on-prem datacenters, multiple office locations, and multi-cloud platforms, including secure remote access that eliminates VPN sprawl without sacrificing engineer usability and speed Define and enforce network segmentation policies that isolate sensitive ASIC development workflows from general infrastructure, customer access, validation labs, and manufacturing infrastructure Balancing prevention and detection, deploy, tune, and operate NDR, IDS/IPS, and next-generation firewalls across our physical and virtual network fabric; build automation to continuously assess and enforce firewall rules, ACLs, and routing policies - treating network security configuration as code Integrate and operate EDR/XDR, MDM/MAM, SASE, and CASB tooling in partnership with end-user and IT teams, enforcing unified DLP policies and device compliance posture across endpoint, cloud, and network control planes to eliminate data exfiltration risk Own our vulnerability management process for network-layer exposure: scanning, prioritization, and remediation tracking in partnership with infrastructure engineers Lead incident response for network-layer security events: detection, containment, root-cause analysis, and post-incident hardening Partner with legal, compliance, and leadership to support regulatory requirements and customer security reviews as they arise Architect and deploy network segmentation for our HPC clusters, isolating EDA tool traffic, ASIC simulation workloads, and CI pipelines from each other and from the corporate network Architect and deploy a ZTNA-based corporate network that eliminates VPN sprawl and ensures end-user devices maintain a consistent security posture and seamless access to sensitive development environments - whether engineers are on-site, remote, or traveling - replacing location-dependent trust with continuous identity and device health verification Design and implement a scalable NDR pipeline that ingests flow data across bare-metal switches and cloud VPCs, feeds a centralized SIEM, and generates actionable alerts with low false-positive rates Develop runbooks and automated playbooks for the highest-probability incident scenarios - credential compromise, lateral movement, and exfiltration from IP-sensitive environments Integrate EDR/XDR telemetry with SASE enforcement and CASB inline controls to build a unified DLP detection and response pipeline spanning endpoints, cloud SaaS, and the corporate network Partner with end-user and IT teams to roll out MDM/MAM policies that containerize sensitive IP on engineer devices and enforce compliance-based conditional access across managed and unmanaged environments You may be a good fit if you have (Must-have qualifications) Bring deep, broad networking expertise - from low-level packet analysis and firewall log forensics to BGP configuration, multi-cloud networking, and CASB/SASE integration across a diverse SaaS landscape Have hands-on experience with the Fortinet ecosystem - firewalls, FortiSASE, FortiAPs, and switches - and are comfortable with Arista switch platforms, including configuration, EOS automation, and integration into a broader security architecture Treat security as an engineering discipline: you write code and automation rather than relying on point-and-click tooling, version-control your configurations, and develop intent-driven network automation Have experience securing high-value compute environments - datacenters, HPC clusters, semiconductor design environments, or similar settings where the cost of a breach is extremely high Have deployed and integrated EDR/XDR, MDM/MAM, SASE, and CASB tooling, and understand how to stitch them together into a unified DLP and access control framework that spans endpoints, cloud, and the network Have built or operated ZTNA-based access models and understand how to enforce consistent security posture across on-site, remote, and traveling users without degrading the experience for engineers Are comfortable owning your domain with minimal oversight: you can independently scope a project, identify the right tooling, and drive it to completion Have strong Linux fundamentals and understand how OS-level networking (iptables/nftables, network namespaces, eBPF) interacts with physical and virtual network security controls Have built or operated network security monitoring at scale - you know the difference between a good alert and noise, and you can architect a detection pipeline that surfaces real signal Can communicate risk clearly to both technical peers and non-technical leadership, and can translate security requirements into actionable infrastructure changes Strong candidates may also have experience with (Nice-to-have qualifications) Experience with EDA environments or semiconductor IP security Familiarity with cloud-native network security controls on AWS, GCP, or Azure (security groups, VPC flow logs, cloud firewalls, CSPM) Background in or exposure to NIST, SOC 2, or ISO 27001 frameworks Experience with eBPF-based network observability and security tooling Benefits Medical, dental, and vision packages with generous premium coverage $500 per month credit for waiving medical benefits Housing subsidy of $2k per month for those living within walking distance of the office Relocation support for those moving to San Jose (Santana Row) Various wellness benefits covering fitness, mental health, and more Daily lunch and dinner in our office Unlimited compute budget subject to ROI justification How we're different Etched believes in the Bitter Lesson. We are the first inference-focused frontier AI system. Our addressable market is the entirety of inference, unlike many of our competitors. We are a fully in-person team in San Jose (Santana Row), and greatly value engineering skills. We do not have boundaries between engineering and research, and we expect all of our technical staff to contribute to both and work across disciplines as needed. Compensation Range: $175K - $275K
09/24/2026
Full time
Job Description Job Description About Etched Etched is building hardware for frontier intelligence. We co-design chips, racks, software, and manufacturing to deliver best-in-class throughput and latency across both prefill and decode workloads. Our first products are heavily focused on inference . Backed by hundreds of millions from top-tier investors and staffed by leading engineers, Etched is redefining the infrastructure layer for the fastest growing industry in history. Job Summary Etched's infrastructure spans some of the most sensitive compute environments in the industry: bare-metal HPC clusters running proprietary ASIC workloads, hybrid on-prem/cloud deployments, and internal toolchains that house irreplaceable chip design IP. As we scale from early silicon to production, securing these environments is foundational - not an afterthought. As our first dedicated Network Security Engineer, you will own the design and implementation of Etched's network security posture end to end. You'll work alongside the infrastructure team to harden our physical and virtual networks, enforce least-privilege access to chip design environments, and build the detection and response capabilities that keep our most sensitive assets safe. This is a high-ownership role for someone who wants to shape security architecture at a company building the compute infrastructure for the next decade of AI - not maintain someone else's stack. Key Responsibilities Design and implement a zero-trust network architecture across on-prem datacenters, multiple office locations, and multi-cloud platforms, including secure remote access that eliminates VPN sprawl without sacrificing engineer usability and speed Define and enforce network segmentation policies that isolate sensitive ASIC development workflows from general infrastructure, customer access, validation labs, and manufacturing infrastructure Balancing prevention and detection, deploy, tune, and operate NDR, IDS/IPS, and next-generation firewalls across our physical and virtual network fabric; build automation to continuously assess and enforce firewall rules, ACLs, and routing policies - treating network security configuration as code Integrate and operate EDR/XDR, MDM/MAM, SASE, and CASB tooling in partnership with end-user and IT teams, enforcing unified DLP policies and device compliance posture across endpoint, cloud, and network control planes to eliminate data exfiltration risk Own our vulnerability management process for network-layer exposure: scanning, prioritization, and remediation tracking in partnership with infrastructure engineers Lead incident response for network-layer security events: detection, containment, root-cause analysis, and post-incident hardening Partner with legal, compliance, and leadership to support regulatory requirements and customer security reviews as they arise Architect and deploy network segmentation for our HPC clusters, isolating EDA tool traffic, ASIC simulation workloads, and CI pipelines from each other and from the corporate network Architect and deploy a ZTNA-based corporate network that eliminates VPN sprawl and ensures end-user devices maintain a consistent security posture and seamless access to sensitive development environments - whether engineers are on-site, remote, or traveling - replacing location-dependent trust with continuous identity and device health verification Design and implement a scalable NDR pipeline that ingests flow data across bare-metal switches and cloud VPCs, feeds a centralized SIEM, and generates actionable alerts with low false-positive rates Develop runbooks and automated playbooks for the highest-probability incident scenarios - credential compromise, lateral movement, and exfiltration from IP-sensitive environments Integrate EDR/XDR telemetry with SASE enforcement and CASB inline controls to build a unified DLP detection and response pipeline spanning endpoints, cloud SaaS, and the corporate network Partner with end-user and IT teams to roll out MDM/MAM policies that containerize sensitive IP on engineer devices and enforce compliance-based conditional access across managed and unmanaged environments You may be a good fit if you have (Must-have qualifications) Bring deep, broad networking expertise - from low-level packet analysis and firewall log forensics to BGP configuration, multi-cloud networking, and CASB/SASE integration across a diverse SaaS landscape Have hands-on experience with the Fortinet ecosystem - firewalls, FortiSASE, FortiAPs, and switches - and are comfortable with Arista switch platforms, including configuration, EOS automation, and integration into a broader security architecture Treat security as an engineering discipline: you write code and automation rather than relying on point-and-click tooling, version-control your configurations, and develop intent-driven network automation Have experience securing high-value compute environments - datacenters, HPC clusters, semiconductor design environments, or similar settings where the cost of a breach is extremely high Have deployed and integrated EDR/XDR, MDM/MAM, SASE, and CASB tooling, and understand how to stitch them together into a unified DLP and access control framework that spans endpoints, cloud, and the network Have built or operated ZTNA-based access models and understand how to enforce consistent security posture across on-site, remote, and traveling users without degrading the experience for engineers Are comfortable owning your domain with minimal oversight: you can independently scope a project, identify the right tooling, and drive it to completion Have strong Linux fundamentals and understand how OS-level networking (iptables/nftables, network namespaces, eBPF) interacts with physical and virtual network security controls Have built or operated network security monitoring at scale - you know the difference between a good alert and noise, and you can architect a detection pipeline that surfaces real signal Can communicate risk clearly to both technical peers and non-technical leadership, and can translate security requirements into actionable infrastructure changes Strong candidates may also have experience with (Nice-to-have qualifications) Experience with EDA environments or semiconductor IP security Familiarity with cloud-native network security controls on AWS, GCP, or Azure (security groups, VPC flow logs, cloud firewalls, CSPM) Background in or exposure to NIST, SOC 2, or ISO 27001 frameworks Experience with eBPF-based network observability and security tooling Benefits Medical, dental, and vision packages with generous premium coverage $500 per month credit for waiving medical benefits Housing subsidy of $2k per month for those living within walking distance of the office Relocation support for those moving to San Jose (Santana Row) Various wellness benefits covering fitness, mental health, and more Daily lunch and dinner in our office Unlimited compute budget subject to ROI justification How we're different Etched believes in the Bitter Lesson. We are the first inference-focused frontier AI system. Our addressable market is the entirety of inference, unlike many of our competitors. We are a fully in-person team in San Jose (Santana Row), and greatly value engineering skills. We do not have boundaries between engineering and research, and we expect all of our technical staff to contribute to both and work across disciplines as needed. Compensation Range: $175K - $275K
Job Description Job Description We are a healthcare technology company that provides platforms and solutions to improve the management and access of cost-effective pharmacy benefits. Our technology helps enterprise and partnership clients simplify their businesses and helps consumers save on prescriptions. As a leader in SaaS technology for healthcare, we offer innovative solutions with integrated intelligence on a single enterprise platform that connects the pharmacy ecosystem. With our expertise and modern, modular platform, our partners use real-time data to transform their business performance and optimize their innovative models in the marketplace. Position Summary The Principal Platform Engineer owns the core engineering platform that every product team at RxSense builds on. As a direct report to the VP, Infrastructure Engineering, this role is accountable for the cloud infrastructure, CI/CD systems, developer tooling, and reliability practices that determine how confidently and how fast RxSense engineering can ship. This is a hands-on-keyboard, architect-level role, partnering with software engineers, AI engineers, security, and finance to build a platform that teams choose to build on rather than one they are required to use. Essential Duties and Responsibilities Design, build, and operate the core cloud infrastructure that supports RxSense engineering, including compute, networking, identity and access management, and container orchestration on AWS. Own the CI/CD platform used across engineering teams, including build pipelines, artifact management, environment promotion, progressive rollout, and rollback. Build and maintain the observability stack across the organization, including logging, metrics, distributed tracing, alerting, and the SLIs and SLOs that define reliable service. Drive infrastructure as code practices across the organization and manage the Kubernetes clusters, custom controllers, and operators that back production workloads. Partner with security and compliance to manage secrets, network policy, and access controls appropriate to a regulated healthcare and pharmacy benefits environment. Design self-service developer tooling and platform APIs and set the abstractions that let product and AI engineering teams' provision, deploy, and operate services without handholding. Own incident response tooling, on-call practices, and reliability engineering standards, and lead or support major incident response across the platform. Partner with engineering leadership and finance on infrastructure cost visibility, capacity planning, and cost optimization. Write documentation, runbooks, and clear interfaces so the platform is adoptable by other engineering teams without handholding. Participate in code review and promote collaboration and best practices, including simplicity, automation, sound design patterns, test coverage, and reusability. Work normal day business hours in the Eastern US time zone Education, Experience, and Competencies BS (or higher, e.g., MS or Ph.D.) in Computer Science or a related technical field involving coding, or equivalent technical experience. 8+ years of platform, infrastructure, or site reliability engineering experience, with demonstrated Staff, Principal, or Architect-level scope, such as owning platform architecture end to end or being accountable for critical production systems. We evaluate candidates on the scope and impact of their work rather than years of experience alone. Deep, hands-on experience designing and operating CI/CD pipelines for high-velocity engineering organizations, including artifact management, environment promotion, and progressive rollout. Strong AWS background, comfortable down to the IAM, networking, and container orchestration layers, including production Kubernetes experience. Experience with GitHub and GitHub actions. Proven track record building internal developer platforms or tools that other engineering teams adopted by choice, not by mandate. Hands-on coding fluency in Python, Go, or TypeScript. This is a keyboard role, not an architecture-only role. Comfortable operating in a polyglot environment. The RxSense engineering stack spans Python, .NET, and TypeScript, and you will support services across all three. Practical experience with infrastructure as code (such as Terraform, CloudFormation, or Pulumi) and modern observability tooling (such as Prometheus, New Relic, Grafana, Datadog, or Open Telemetry). Comfortable owning the cost and reliability conversation with both engineering leadership and finance partners. Strong written communication and a bias toward documentation, runbooks, and clear interfaces. Proven analytical thinking and problem-solving skills. Excellent communication skills, both verbal and written. Bonus Qualifications Experience supporting infrastructure for AI or LLM-powered workloads, including GPU provisioning, model serving, or agent runtime infrastructure. Background in healthcare, PBM, pharmacy, or another regulated data environment. Kubernetes operator experience or comfort building custom controllers. FinOps experience, particularly attributing infrastructure spend to features, teams, or business units. Familiarity with distributed systems tooling such as Kafka, gRPC, or Dragonfly and Redis. Experience with Agile development methodologies, preferably both Scrum and Kanban. Experience with code scanning, security, and quality checks as part of the CICD. Salary Range: $190,000 - $235,000 RxSense believes that a diverse workforce is a more talented and productive workforce. As such, we are an Equal Opportunity and Affirmative Action employer. Our recruitment process is free from discriminatory hiring practices and all qualified applicants are considered for employment without regard to race, color, religion, sex, gender, sexual orientation, gender identity, ancestry, age, or national origin. Neither will qualified applicants be discriminated against on the basis of disability or protected veteran status. We believe in the strength of the collaboration, creativity and sense of community a diverse workforce brings.
09/24/2026
Full time
Job Description Job Description We are a healthcare technology company that provides platforms and solutions to improve the management and access of cost-effective pharmacy benefits. Our technology helps enterprise and partnership clients simplify their businesses and helps consumers save on prescriptions. As a leader in SaaS technology for healthcare, we offer innovative solutions with integrated intelligence on a single enterprise platform that connects the pharmacy ecosystem. With our expertise and modern, modular platform, our partners use real-time data to transform their business performance and optimize their innovative models in the marketplace. Position Summary The Principal Platform Engineer owns the core engineering platform that every product team at RxSense builds on. As a direct report to the VP, Infrastructure Engineering, this role is accountable for the cloud infrastructure, CI/CD systems, developer tooling, and reliability practices that determine how confidently and how fast RxSense engineering can ship. This is a hands-on-keyboard, architect-level role, partnering with software engineers, AI engineers, security, and finance to build a platform that teams choose to build on rather than one they are required to use. Essential Duties and Responsibilities Design, build, and operate the core cloud infrastructure that supports RxSense engineering, including compute, networking, identity and access management, and container orchestration on AWS. Own the CI/CD platform used across engineering teams, including build pipelines, artifact management, environment promotion, progressive rollout, and rollback. Build and maintain the observability stack across the organization, including logging, metrics, distributed tracing, alerting, and the SLIs and SLOs that define reliable service. Drive infrastructure as code practices across the organization and manage the Kubernetes clusters, custom controllers, and operators that back production workloads. Partner with security and compliance to manage secrets, network policy, and access controls appropriate to a regulated healthcare and pharmacy benefits environment. Design self-service developer tooling and platform APIs and set the abstractions that let product and AI engineering teams' provision, deploy, and operate services without handholding. Own incident response tooling, on-call practices, and reliability engineering standards, and lead or support major incident response across the platform. Partner with engineering leadership and finance on infrastructure cost visibility, capacity planning, and cost optimization. Write documentation, runbooks, and clear interfaces so the platform is adoptable by other engineering teams without handholding. Participate in code review and promote collaboration and best practices, including simplicity, automation, sound design patterns, test coverage, and reusability. Work normal day business hours in the Eastern US time zone Education, Experience, and Competencies BS (or higher, e.g., MS or Ph.D.) in Computer Science or a related technical field involving coding, or equivalent technical experience. 8+ years of platform, infrastructure, or site reliability engineering experience, with demonstrated Staff, Principal, or Architect-level scope, such as owning platform architecture end to end or being accountable for critical production systems. We evaluate candidates on the scope and impact of their work rather than years of experience alone. Deep, hands-on experience designing and operating CI/CD pipelines for high-velocity engineering organizations, including artifact management, environment promotion, and progressive rollout. Strong AWS background, comfortable down to the IAM, networking, and container orchestration layers, including production Kubernetes experience. Experience with GitHub and GitHub actions. Proven track record building internal developer platforms or tools that other engineering teams adopted by choice, not by mandate. Hands-on coding fluency in Python, Go, or TypeScript. This is a keyboard role, not an architecture-only role. Comfortable operating in a polyglot environment. The RxSense engineering stack spans Python, .NET, and TypeScript, and you will support services across all three. Practical experience with infrastructure as code (such as Terraform, CloudFormation, or Pulumi) and modern observability tooling (such as Prometheus, New Relic, Grafana, Datadog, or Open Telemetry). Comfortable owning the cost and reliability conversation with both engineering leadership and finance partners. Strong written communication and a bias toward documentation, runbooks, and clear interfaces. Proven analytical thinking and problem-solving skills. Excellent communication skills, both verbal and written. Bonus Qualifications Experience supporting infrastructure for AI or LLM-powered workloads, including GPU provisioning, model serving, or agent runtime infrastructure. Background in healthcare, PBM, pharmacy, or another regulated data environment. Kubernetes operator experience or comfort building custom controllers. FinOps experience, particularly attributing infrastructure spend to features, teams, or business units. Familiarity with distributed systems tooling such as Kafka, gRPC, or Dragonfly and Redis. Experience with Agile development methodologies, preferably both Scrum and Kanban. Experience with code scanning, security, and quality checks as part of the CICD. Salary Range: $190,000 - $235,000 RxSense believes that a diverse workforce is a more talented and productive workforce. As such, we are an Equal Opportunity and Affirmative Action employer. Our recruitment process is free from discriminatory hiring practices and all qualified applicants are considered for employment without regard to race, color, religion, sex, gender, sexual orientation, gender identity, ancestry, age, or national origin. Neither will qualified applicants be discriminated against on the basis of disability or protected veteran status. We believe in the strength of the collaboration, creativity and sense of community a diverse workforce brings.
Job Description Job Description Network Security EngineerOneida Technical Solutions (OTS), headquartered in Oneida, New York, is a tribally-owned, dynamic, and growth-oriented firm focused on serving the Information Technology (IT) and Cybersecurity needs of the U.S. Department of Defense (DoD). We are seeking qualified Network Engineers to join our team serving the United States Military Academy (USMA) at West Point, NY. The role is onsite at USMA.The selected candidate will support the USMA Networking Service Branch's mission and strategic direction by providing knowledge, techniques, and expertise in configuring and administering a Cisco Networking environment across the USMA campus.Target Salary Range: $105,000 - $120,000Job Description:Overview: Under general supervision, the Network Security Engineer will be responsible for the acquisition, installation, maintenance, and operation of USMA's local area network (LAN). This is a critical role tasked with managing network performance and ensuring the security of network infrastructure.Primary Duties & Responsibilities:Acquire, install, and maintain all network hardware and software components, ensuring optimal performance and security.Manage network performance by monitoring and analyzing traffic, identifying issues, and implementing solutions.Ensure that security procedures are implemented, enforced, and regularly updated to align with industry standards.Evaluate, develop, and maintain telecommunications systems to support organizational operations.Troubleshoot and resolve network problems, ensuring minimal disruption to services.Establish and implement network policies, procedures, and standards that conform to information systems and organizational objectives.Train users on network operations and security best practices to enhance overall network security awareness.Report frequently to the assigned Support Manager and/or Senior Network Administrator on network performance and security status.Evaluate DoD and NIST security controls, determining their applicability to the environment while assessing potential impacts.Implement security controls as directed by the customer's Cybersecurity branch to enhance the security posture of the organization.Investigate and recommend new and emerging security paradigms to continuously improve network security.Collaboration with other USMA and OTS functions (Cyber, IT support, Enterprise Services, etc.) to resolve network related issues. The nature of the position involves actively participating in multiple working groups and disseminating information across all levels of the organization.Additional duties may include:Installation/Replacement/Management of Uninterruptible Power Supply (UPS) devices.Minimum Qualifications:Cisco Certified Network Associate (CCNA) certification.Expertise in Internet Protocol version 6 (IPv6) design, implementation, management, and monitoring.Strong understanding of Zero Trust Architectures (ZTA) including enterprise implementation, configuration, management, monitoring, troubleshooting, and technology integration.Must meet minimum standards for DoD8140 certification for advanced-level work roles.Must be fluent in the principles and requirements of the CCIE Security and Cisco Certified Design Expert (CCDE) material, however certifications to CCIE and CCDE are not required.Proficient in network security concepts and technologies.Excellent problem-solving skills and attention to detail.Strong communication skills for effective user training and reporting.Ability to work collaboratively in a team-oriented environment.Preferred Qualifications:Advanced Certifications: Possession of advanced networking and security certifications such as Cisco Certified Network Professional (CCNP) or Cisco Certified Internetwork Expert (CCIE) is highly preferred, demonstrating a deeper level of expertise in network security and infrastructure.Experience with Network Security Frameworks: Proven experience with security frameworks and standards such as NIST Cybersecurity Framework, ISO 27001, and DoD RMF (Risk Management Framework) to ensure compliance and best practices in network security management.Proficiency in Network Management Tools: Familiarity with advanced network monitoring and management tools (e.g., SolarWinds, Wireshark, Nagios) for traffic analysis and performance optimization.Hands-on Experience with Firewall and IDS/IPS Technologies: Demonstrated experience in configuring and managing firewalls, intrusion detection systems (IDS), and intrusion prevention systems (IPS) to enhance network security.Knowledge of Cloud Security: Understanding of security protocols and practices related to cloud services and architectures (e.g., AWS, Azure) that support organizational operations.Scripting and Automation Skills: Proficiency in scripting languages (e.g., Python, PowerShell) to automate network tasks and enhance operational efficiency.Strong Analytical Skills: Ability to analyze complex network issues and provide clear, actionable recommendations to improve network performance and security.Oneida Technical Solutions is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics. Job Posted by ApplicantPro
09/24/2026
Full time
Job Description Job Description Network Security EngineerOneida Technical Solutions (OTS), headquartered in Oneida, New York, is a tribally-owned, dynamic, and growth-oriented firm focused on serving the Information Technology (IT) and Cybersecurity needs of the U.S. Department of Defense (DoD). We are seeking qualified Network Engineers to join our team serving the United States Military Academy (USMA) at West Point, NY. The role is onsite at USMA.The selected candidate will support the USMA Networking Service Branch's mission and strategic direction by providing knowledge, techniques, and expertise in configuring and administering a Cisco Networking environment across the USMA campus.Target Salary Range: $105,000 - $120,000Job Description:Overview: Under general supervision, the Network Security Engineer will be responsible for the acquisition, installation, maintenance, and operation of USMA's local area network (LAN). This is a critical role tasked with managing network performance and ensuring the security of network infrastructure.Primary Duties & Responsibilities:Acquire, install, and maintain all network hardware and software components, ensuring optimal performance and security.Manage network performance by monitoring and analyzing traffic, identifying issues, and implementing solutions.Ensure that security procedures are implemented, enforced, and regularly updated to align with industry standards.Evaluate, develop, and maintain telecommunications systems to support organizational operations.Troubleshoot and resolve network problems, ensuring minimal disruption to services.Establish and implement network policies, procedures, and standards that conform to information systems and organizational objectives.Train users on network operations and security best practices to enhance overall network security awareness.Report frequently to the assigned Support Manager and/or Senior Network Administrator on network performance and security status.Evaluate DoD and NIST security controls, determining their applicability to the environment while assessing potential impacts.Implement security controls as directed by the customer's Cybersecurity branch to enhance the security posture of the organization.Investigate and recommend new and emerging security paradigms to continuously improve network security.Collaboration with other USMA and OTS functions (Cyber, IT support, Enterprise Services, etc.) to resolve network related issues. The nature of the position involves actively participating in multiple working groups and disseminating information across all levels of the organization.Additional duties may include:Installation/Replacement/Management of Uninterruptible Power Supply (UPS) devices.Minimum Qualifications:Cisco Certified Network Associate (CCNA) certification.Expertise in Internet Protocol version 6 (IPv6) design, implementation, management, and monitoring.Strong understanding of Zero Trust Architectures (ZTA) including enterprise implementation, configuration, management, monitoring, troubleshooting, and technology integration.Must meet minimum standards for DoD8140 certification for advanced-level work roles.Must be fluent in the principles and requirements of the CCIE Security and Cisco Certified Design Expert (CCDE) material, however certifications to CCIE and CCDE are not required.Proficient in network security concepts and technologies.Excellent problem-solving skills and attention to detail.Strong communication skills for effective user training and reporting.Ability to work collaboratively in a team-oriented environment.Preferred Qualifications:Advanced Certifications: Possession of advanced networking and security certifications such as Cisco Certified Network Professional (CCNP) or Cisco Certified Internetwork Expert (CCIE) is highly preferred, demonstrating a deeper level of expertise in network security and infrastructure.Experience with Network Security Frameworks: Proven experience with security frameworks and standards such as NIST Cybersecurity Framework, ISO 27001, and DoD RMF (Risk Management Framework) to ensure compliance and best practices in network security management.Proficiency in Network Management Tools: Familiarity with advanced network monitoring and management tools (e.g., SolarWinds, Wireshark, Nagios) for traffic analysis and performance optimization.Hands-on Experience with Firewall and IDS/IPS Technologies: Demonstrated experience in configuring and managing firewalls, intrusion detection systems (IDS), and intrusion prevention systems (IPS) to enhance network security.Knowledge of Cloud Security: Understanding of security protocols and practices related to cloud services and architectures (e.g., AWS, Azure) that support organizational operations.Scripting and Automation Skills: Proficiency in scripting languages (e.g., Python, PowerShell) to automate network tasks and enhance operational efficiency.Strong Analytical Skills: Ability to analyze complex network issues and provide clear, actionable recommendations to improve network performance and security.Oneida Technical Solutions is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics. Job Posted by ApplicantPro
Job Description Job Description Fortinet NSE Certification is Must Rate: $52/hr on W2 or $60/hr on C2C we have an opening for an Expert Network Administrator HBITS-07-14631 DURATION: 30 Months LOCATION: New York, NY - Hybrid Locals ONLY with Local ID required Supporting the Department's hybrid security infrastructure. Qualifications Network Administrator- Maintains computer infrastructures with emphasis on networking. Key areas of expertise are with on-site servers, software-network interactions and network integrity/resilience. Expert- 84+ months: Candidate is able to provide guidance to large teams and/or has extensive industry experience and is considered at the top of his/her field. 84 months of Administration & Engineering experience with Enterprise firewalls 84 months of experience with Implementing security solutions covering Threat Prevention, URL Filtering, and SSL Decryption 84 months of experience with firewall management systems 84 months of experience with Intrusion protection and prevention systems. 84 months of experience with configuring routes and encrypted tunnels between remote locations 84 months of experience with developing and deploying BGP routing solutions. 84 months of experience with high availability network technologies and configurations 84 months of experience with written communications skills. Including creating network diagrams, and documenting changes and composing orders of operations for tasks. 84 months of experience implementing, and integrating network solutions based on Cisco LAN/WAN. 84 months of experience configuring and installing various network devices and services (e.g., routers, switches, firewalls, VPN). 84 months of network experience and understanding of: Local Area Networks, Wide Area Networks, TCP/IP, switching and routing protocols. 84 months of experience mentoring staff Fortinet NSE Certification Day-to-Day tasks Install, configure, and manage firewall Security appliances in a high availability architecture. Patch and maintain the appliance with all relevant security and upgrade software. Implement changes to address new initiatives or application requirements as needed. Monitor and support the VPN solution to ensure high availability in a secure manner. Configure and Manage Azure based networking and security. Create Firewall rules, Vnets, express routes as required. Monitor security center for compliance for all relevant security benchmarks and standards. Assist in creating ARM as needed. Produce network diagrams and documentation as well as document standards, policies, and procedures. Mentor staff Powered by JazzHR HZ7aXNvYRD
09/24/2026
Full time
Job Description Job Description Fortinet NSE Certification is Must Rate: $52/hr on W2 or $60/hr on C2C we have an opening for an Expert Network Administrator HBITS-07-14631 DURATION: 30 Months LOCATION: New York, NY - Hybrid Locals ONLY with Local ID required Supporting the Department's hybrid security infrastructure. Qualifications Network Administrator- Maintains computer infrastructures with emphasis on networking. Key areas of expertise are with on-site servers, software-network interactions and network integrity/resilience. Expert- 84+ months: Candidate is able to provide guidance to large teams and/or has extensive industry experience and is considered at the top of his/her field. 84 months of Administration & Engineering experience with Enterprise firewalls 84 months of experience with Implementing security solutions covering Threat Prevention, URL Filtering, and SSL Decryption 84 months of experience with firewall management systems 84 months of experience with Intrusion protection and prevention systems. 84 months of experience with configuring routes and encrypted tunnels between remote locations 84 months of experience with developing and deploying BGP routing solutions. 84 months of experience with high availability network technologies and configurations 84 months of experience with written communications skills. Including creating network diagrams, and documenting changes and composing orders of operations for tasks. 84 months of experience implementing, and integrating network solutions based on Cisco LAN/WAN. 84 months of experience configuring and installing various network devices and services (e.g., routers, switches, firewalls, VPN). 84 months of network experience and understanding of: Local Area Networks, Wide Area Networks, TCP/IP, switching and routing protocols. 84 months of experience mentoring staff Fortinet NSE Certification Day-to-Day tasks Install, configure, and manage firewall Security appliances in a high availability architecture. Patch and maintain the appliance with all relevant security and upgrade software. Implement changes to address new initiatives or application requirements as needed. Monitor and support the VPN solution to ensure high availability in a secure manner. Configure and Manage Azure based networking and security. Create Firewall rules, Vnets, express routes as required. Monitor security center for compliance for all relevant security benchmarks and standards. Assist in creating ARM as needed. Produce network diagrams and documentation as well as document standards, policies, and procedures. Mentor staff Powered by JazzHR HZ7aXNvYRD
Job Description Job Description Zoox's Network Security team architects and defends the digital borders of the company - from corporate offices to engineering labs and product/mission environments. As a Network Security Engineer, you will design, implement, and operate security controls across Zoox's enterprise, OT networks, and cloud infrastructure spanning on-premises data centers and public cloud environments (AWS, GCP), partnering closely with Network Engineering, IT, Product Security, and Software Engineering teams. In This Role, You Will Design, implement, and maintain secure hybrid/multi-cloud network architectures (AWS/GCP, CloudWAN); enforce zero-trust access controls and network segmentation across corporate, data center, lab, and edge environments; develop and maintain related policies, standards, and architecture diagrams Own and operate next-generation firewall platforms (Palo Alto Networks, Fortinet), managing policy architecture, segmentation, NAT, URL filtering, SSL/TLS decryption, and threat prevention tuning Architect, operate, and own the lifecycle of secure remote access solutions (VPN, ZTNA, site-to-site tunnels), ensuring high availability, certificate-based authentication, and integration with identity providers (SAML, Entra ID) Drive automation and Infrastructure-as-Code (IaC) using Terraform, Python, CI/CD, and REST APIs for configuration management, firewall policies, and security baselines; integrate LLM-based tools to streamline operational tasks and reduce manual toil Oversee security operations including 24/7 network security monitoring, traffic analysis, threat detection, vulnerability assessments, and remediation; support compliance requirements by conducting security reviews for new projects and infrastructure changes Drive 802.1X/certificate-based Network Access Control (NAC) initiatives across wired and wireless environments Collaborate with team members and contribute to cross-functional security initiatives with Product Security, SRE, IT, and Software Engineering teams Qualifications 6+ years of network security engineering experience securing enterprise, cloud, and OT/lab environments Platform Expertise: Deep, hands-on expertise in next-gen firewalls (Palo Alto, Fortinet), AWS NFW, WAFs, IDS/IPS, NAC/802.1X, PKI, VPN, and ZTNA solutions (Zscaler, Netskope, Prisma Access, or equivalent) Technical Knowledge: Strong understanding of core network protocols (TCP/IP, BGP, OSPF, VLAN, 802.1X, TLS/PKI) and cloud networking security principles (AWS, GCP, or Azure) Automation: Hands-on experience with IaC and automation tooling including Terraform, Python, CI/CD pipelines, and REST APIs Security Operations: Experience with network security monitoring, threat detection, and security operations tooling (SIEM, IDS/IPS, vulnerability management platforms), including integration with network controls Compliance: Proven experience supporting major compliance initiatives (NIST 800-53, CSF 2.0, ISO 27001), including control implementation and evidence collection Bonus Qualifications Experience in autonomous vehicle, robotics, IT/OT or automotive environments Certifications: PCNSE, AWS Security Specialty, CCNA Experience experimenting with or deploying AI/ML-based security capabilities (e.g., anomaly detection, behavioral analytics, LLM-driven copilots) in network or cloud security workflows There are three major components to compensation for this position: salary, Amazon Restricted Stock Units (RSUs), and Zoox Stock Appreciation Rights. A sign-on bonus may be offered as part of the compensation package. The listed range applies only to the base salary. Compensation will vary based on geographic location and level. Leveling, as well as positioning within a level, is determined by a range of factors, including, but not limited to, a candidate's relevant years of experience, domain knowledge, and interview performance. The salary range listed in this posting is representative of the range of levels Zoox is considering for this position. Zoox also offers a comprehensive package of benefits, including paid time off (e.g. sick leave, vacation, bereavement), unpaid time off, Zoox Stock Appreciation Rights, Amazon RSUs, health insurance, long-term care insurance, long-term and short-term disability insurance, and life insurance. About Zoox Zoox is developing the first ground-up, fully autonomous vehicle fleet and the supporting ecosystem required to bring this technology to market. Sitting at the intersection of robotics, machine learning, and design, Zoox aims to provide the next generation of mobility-as-a-service in urban environments. We're looking for top talent that shares our passion and wants to be part of a fast-moving and highly execution-oriented team. Follow us on LinkedIn Accommodations If you need an accommodation to participate in the application or interview process please reach out to or your assigned recruiter. A Final Note: You do not need to match every listed expectation to apply for this position. Here at Zoox, we know that diverse perspectives foster the innovation we need to be successful, and we are committed to building a team that encompasses a variety of backgrounds, experiences, and skills. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
09/24/2026
Full time
Job Description Job Description Zoox's Network Security team architects and defends the digital borders of the company - from corporate offices to engineering labs and product/mission environments. As a Network Security Engineer, you will design, implement, and operate security controls across Zoox's enterprise, OT networks, and cloud infrastructure spanning on-premises data centers and public cloud environments (AWS, GCP), partnering closely with Network Engineering, IT, Product Security, and Software Engineering teams. In This Role, You Will Design, implement, and maintain secure hybrid/multi-cloud network architectures (AWS/GCP, CloudWAN); enforce zero-trust access controls and network segmentation across corporate, data center, lab, and edge environments; develop and maintain related policies, standards, and architecture diagrams Own and operate next-generation firewall platforms (Palo Alto Networks, Fortinet), managing policy architecture, segmentation, NAT, URL filtering, SSL/TLS decryption, and threat prevention tuning Architect, operate, and own the lifecycle of secure remote access solutions (VPN, ZTNA, site-to-site tunnels), ensuring high availability, certificate-based authentication, and integration with identity providers (SAML, Entra ID) Drive automation and Infrastructure-as-Code (IaC) using Terraform, Python, CI/CD, and REST APIs for configuration management, firewall policies, and security baselines; integrate LLM-based tools to streamline operational tasks and reduce manual toil Oversee security operations including 24/7 network security monitoring, traffic analysis, threat detection, vulnerability assessments, and remediation; support compliance requirements by conducting security reviews for new projects and infrastructure changes Drive 802.1X/certificate-based Network Access Control (NAC) initiatives across wired and wireless environments Collaborate with team members and contribute to cross-functional security initiatives with Product Security, SRE, IT, and Software Engineering teams Qualifications 6+ years of network security engineering experience securing enterprise, cloud, and OT/lab environments Platform Expertise: Deep, hands-on expertise in next-gen firewalls (Palo Alto, Fortinet), AWS NFW, WAFs, IDS/IPS, NAC/802.1X, PKI, VPN, and ZTNA solutions (Zscaler, Netskope, Prisma Access, or equivalent) Technical Knowledge: Strong understanding of core network protocols (TCP/IP, BGP, OSPF, VLAN, 802.1X, TLS/PKI) and cloud networking security principles (AWS, GCP, or Azure) Automation: Hands-on experience with IaC and automation tooling including Terraform, Python, CI/CD pipelines, and REST APIs Security Operations: Experience with network security monitoring, threat detection, and security operations tooling (SIEM, IDS/IPS, vulnerability management platforms), including integration with network controls Compliance: Proven experience supporting major compliance initiatives (NIST 800-53, CSF 2.0, ISO 27001), including control implementation and evidence collection Bonus Qualifications Experience in autonomous vehicle, robotics, IT/OT or automotive environments Certifications: PCNSE, AWS Security Specialty, CCNA Experience experimenting with or deploying AI/ML-based security capabilities (e.g., anomaly detection, behavioral analytics, LLM-driven copilots) in network or cloud security workflows There are three major components to compensation for this position: salary, Amazon Restricted Stock Units (RSUs), and Zoox Stock Appreciation Rights. A sign-on bonus may be offered as part of the compensation package. The listed range applies only to the base salary. Compensation will vary based on geographic location and level. Leveling, as well as positioning within a level, is determined by a range of factors, including, but not limited to, a candidate's relevant years of experience, domain knowledge, and interview performance. The salary range listed in this posting is representative of the range of levels Zoox is considering for this position. Zoox also offers a comprehensive package of benefits, including paid time off (e.g. sick leave, vacation, bereavement), unpaid time off, Zoox Stock Appreciation Rights, Amazon RSUs, health insurance, long-term care insurance, long-term and short-term disability insurance, and life insurance. About Zoox Zoox is developing the first ground-up, fully autonomous vehicle fleet and the supporting ecosystem required to bring this technology to market. Sitting at the intersection of robotics, machine learning, and design, Zoox aims to provide the next generation of mobility-as-a-service in urban environments. We're looking for top talent that shares our passion and wants to be part of a fast-moving and highly execution-oriented team. Follow us on LinkedIn Accommodations If you need an accommodation to participate in the application or interview process please reach out to or your assigned recruiter. A Final Note: You do not need to match every listed expectation to apply for this position. Here at Zoox, we know that diverse perspectives foster the innovation we need to be successful, and we are committed to building a team that encompasses a variety of backgrounds, experiences, and skills. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Georgia System Operations Corporation
Tucker, Georgia
Job Description Job Description Network Security EngineerEngineer Secure, Resilient Network Services That Support Mission-Critical OperationsGeorgia System Operations Corporation (GSOC) is seeking a Network Security Engineer to design, implement, secure, and operate corporate network services and cybersecurity tools that enable reliable, protected business operations.This hands-on role combines enterprise network engineering and cybersecurity expertise across datacenter, campus, remote-site, internet-edge, and approved cloud environments. The Network Security Engineer helps safeguard availability, performance, secure access, and security visibility while advancing resilient, supportable, and automated network and security services.This opportunity is ideal for an experienced network and security professional who enjoys solving complex technical problems, strengthening controls, supporting incident response, mentoring peers, and collaborating across infrastructure, cybersecurity, application, service desk, and vendor teams. This is an onsite position and it is not eligible for visa sponsorshipWhat You'll DoAs a Network Security Engineer, you will engineer and support the network and network-focused security services that connect and protect enterprise users, systems, and sites.You will:Design, deploy, and support datacenter and campus switching, routing, VLANs, VRFs, high availability, capacity planning, and network segmentation.Administer next-generation firewalls, security zones, NAT, threat-prevention services, firewall policy lifecycle, and least-privilege access controls.Engineer WAN, internet-edge, remote-site, remote-access VPN, and site-to-site VPN connectivity, including integrations with identity, MFA, and device-trust services.Design and support corporate and guest wireless, controllers, access points, RF performance, 802.1X, network access control, device profiling, and secure authentication.Configure load balancers, virtual servers, pools, health monitors, persistence, TLS termination, and high-availability services.Manage the network-facing certificate lifecycle and PKI integrations.Engineer and operate secure web and DNS controls, network detection and response, security logging, SIEM integrations, and security-control health monitoring.Partner with the Security Operations Center on alert tuning, investigations, evidence gathering, and operational security use cases.Support secure DNS, DHCP, and IP address management and maintain telemetry, flow data, logging, alerting, packet analysis, and service dashboards.Maintain secure configuration baselines, backups, firmware and software lifecycle, and remediation of network-device and security-tool vulnerabilities.Automate repeatable work using APIs, scripting, and infrastructure-as-code practices.Develop and test network and security-platform recovery and failover capabilities.Prepare change and rollback plans and provide incident escalation, containment support, root-cause analysis, and vendor coordination. This role also:Works independently within established standards and change processes.Provides technical leadership for projects and mentors peers.Participates in technology evaluations, proof-of-concepts, cross-functional initiatives, backup support, and knowledge transfer. What You BringBachelor's degree in Information Technology, Computer Science, Engineering, Cybersecurity, or a related field. Equivalent combination of education, training, and directly related work experience may be considered.Ideally 5+ years of progressive experience supporting enterprise network and network-security infrastructure, including switching, routing, firewall administration, VPN, wireless, and troubleshooting.Strong knowledge of enterprise LAN/WAN, datacenter switching, routing, firewalls, VPN, wireless, NAC, load balancing, PKI and certificates, DNS, DHCP, IPAM, and secure configuration management.Hands-on experience operating cybersecurity tooling such as secure web and DNS services, network detection and response, vulnerability management, SIEM and logging integrations, and security monitoring.Experience with network and security automation using Python, PowerShell, Ansible, Terraform, APIs, or comparable tools.Working knowledge of NIST CSF, CIS Controls, incident-response practices, and applicable regulatory or industry requirements, including NERC CIP where relevant to the IT environment.Strong analytical, troubleshooting, documentation, communication, collaboration, and customer-service skills. Preferred QualificationsEnterprise Network EngineeringExperience engineering highly available datacenter, campus, WAN, internet-edge, remote-site, wireless, and VPN services.Experience with segmentation, least-privilege access, identity and MFA integrations, device trust, and network access control.Experience with load balancing, TLS termination, application delivery, certificate lifecycle management, and PKI integrations.Network Security & DetectionExperience operating next-generation firewalls, threat-prevention services, secure web or DNS controls, network detection and response, and vulnerability-management processes.Experience integrating network-security telemetry with SIEM, logging, alerting, dashboards, and incident-response workflows.Experience partnering with a SOC on investigation, tuning, containment, evidence, or root-cause activities.Automation, Resilience & OperationsExperience automating network or security operations through scripting, APIs, Ansible, Terraform, or infrastructure as code.Experience developing recovery, failover, configuration-backup, firmware-lifecycle, and vulnerability-remediation practices.Experience preparing changes, rollback plans, technical documentation, performance measures, and vendor-supported resolutions.CertificationsRelevant credentials such as CCNA, CCNP, ACP, PCNSE or equivalent firewall-vendor certification, CWNA, Security+, CISSP, AZ-700, or similar certifications are preferred. Advantages of Working at GSOCWorking at GSOC means more than just a job it's an opportunity to contribute to work that truly matters. Mission-Driven ImpactYour work supports secure, reliable corporate network services and cybersecurity capabilities used across GSOC's enterprise environment. Network Engineering & Cybersecurity DepthApply both network engineering and hands-on security expertise across switching, routing, wireless, firewalls, VPN, application delivery, monitoring, automation, and incident support. Technical Leadership & Continuous ImprovementLead technical projects, mentor peers, evaluate new technologies, automate repeatable work, and strengthen resilience, visibility, and operational supportability. Strong Values and Professional StandardsWork in an environment grounded in accountability, collaboration, integrity, security, compliance, and continuous improvement. Work Environment & BenefitsGSOC offers a professional, collaborative work environment with competitive compensation, comprehensive benefits, and a commitment to creating a respectful and inclusive workplace.Participation in an on-call rotation, emergency support, and scheduled maintenance outside normal business hours is required. Why Join GSOCAt GSOC, you will help engineer the network and security services that enable dependable business operations, secure access, security visibility, and resilient enterprise technology.You'll collaborate across infrastructure, cybersecurity, applications, service desk, and vendor teams while expanding your technical leadership and automation capabilities. Apply TodayIf you're ready to combine enterprise network engineering and cybersecurity expertise in a hands-on role supporting reliable, protected operations, we encourage you to apply. GSOC does not accept unsolicited resumes or candidate submissions from staffing agencies, search firms, or third-party recruiters. Any unsolicited resumes submitted without a valid, executed agreement will become the property of GSOC, and no placement fee will be paid. Job Posted by ApplicantPro
09/24/2026
Full time
Job Description Job Description Network Security EngineerEngineer Secure, Resilient Network Services That Support Mission-Critical OperationsGeorgia System Operations Corporation (GSOC) is seeking a Network Security Engineer to design, implement, secure, and operate corporate network services and cybersecurity tools that enable reliable, protected business operations.This hands-on role combines enterprise network engineering and cybersecurity expertise across datacenter, campus, remote-site, internet-edge, and approved cloud environments. The Network Security Engineer helps safeguard availability, performance, secure access, and security visibility while advancing resilient, supportable, and automated network and security services.This opportunity is ideal for an experienced network and security professional who enjoys solving complex technical problems, strengthening controls, supporting incident response, mentoring peers, and collaborating across infrastructure, cybersecurity, application, service desk, and vendor teams. This is an onsite position and it is not eligible for visa sponsorshipWhat You'll DoAs a Network Security Engineer, you will engineer and support the network and network-focused security services that connect and protect enterprise users, systems, and sites.You will:Design, deploy, and support datacenter and campus switching, routing, VLANs, VRFs, high availability, capacity planning, and network segmentation.Administer next-generation firewalls, security zones, NAT, threat-prevention services, firewall policy lifecycle, and least-privilege access controls.Engineer WAN, internet-edge, remote-site, remote-access VPN, and site-to-site VPN connectivity, including integrations with identity, MFA, and device-trust services.Design and support corporate and guest wireless, controllers, access points, RF performance, 802.1X, network access control, device profiling, and secure authentication.Configure load balancers, virtual servers, pools, health monitors, persistence, TLS termination, and high-availability services.Manage the network-facing certificate lifecycle and PKI integrations.Engineer and operate secure web and DNS controls, network detection and response, security logging, SIEM integrations, and security-control health monitoring.Partner with the Security Operations Center on alert tuning, investigations, evidence gathering, and operational security use cases.Support secure DNS, DHCP, and IP address management and maintain telemetry, flow data, logging, alerting, packet analysis, and service dashboards.Maintain secure configuration baselines, backups, firmware and software lifecycle, and remediation of network-device and security-tool vulnerabilities.Automate repeatable work using APIs, scripting, and infrastructure-as-code practices.Develop and test network and security-platform recovery and failover capabilities.Prepare change and rollback plans and provide incident escalation, containment support, root-cause analysis, and vendor coordination. This role also:Works independently within established standards and change processes.Provides technical leadership for projects and mentors peers.Participates in technology evaluations, proof-of-concepts, cross-functional initiatives, backup support, and knowledge transfer. What You BringBachelor's degree in Information Technology, Computer Science, Engineering, Cybersecurity, or a related field. Equivalent combination of education, training, and directly related work experience may be considered.Ideally 5+ years of progressive experience supporting enterprise network and network-security infrastructure, including switching, routing, firewall administration, VPN, wireless, and troubleshooting.Strong knowledge of enterprise LAN/WAN, datacenter switching, routing, firewalls, VPN, wireless, NAC, load balancing, PKI and certificates, DNS, DHCP, IPAM, and secure configuration management.Hands-on experience operating cybersecurity tooling such as secure web and DNS services, network detection and response, vulnerability management, SIEM and logging integrations, and security monitoring.Experience with network and security automation using Python, PowerShell, Ansible, Terraform, APIs, or comparable tools.Working knowledge of NIST CSF, CIS Controls, incident-response practices, and applicable regulatory or industry requirements, including NERC CIP where relevant to the IT environment.Strong analytical, troubleshooting, documentation, communication, collaboration, and customer-service skills. Preferred QualificationsEnterprise Network EngineeringExperience engineering highly available datacenter, campus, WAN, internet-edge, remote-site, wireless, and VPN services.Experience with segmentation, least-privilege access, identity and MFA integrations, device trust, and network access control.Experience with load balancing, TLS termination, application delivery, certificate lifecycle management, and PKI integrations.Network Security & DetectionExperience operating next-generation firewalls, threat-prevention services, secure web or DNS controls, network detection and response, and vulnerability-management processes.Experience integrating network-security telemetry with SIEM, logging, alerting, dashboards, and incident-response workflows.Experience partnering with a SOC on investigation, tuning, containment, evidence, or root-cause activities.Automation, Resilience & OperationsExperience automating network or security operations through scripting, APIs, Ansible, Terraform, or infrastructure as code.Experience developing recovery, failover, configuration-backup, firmware-lifecycle, and vulnerability-remediation practices.Experience preparing changes, rollback plans, technical documentation, performance measures, and vendor-supported resolutions.CertificationsRelevant credentials such as CCNA, CCNP, ACP, PCNSE or equivalent firewall-vendor certification, CWNA, Security+, CISSP, AZ-700, or similar certifications are preferred. Advantages of Working at GSOCWorking at GSOC means more than just a job it's an opportunity to contribute to work that truly matters. Mission-Driven ImpactYour work supports secure, reliable corporate network services and cybersecurity capabilities used across GSOC's enterprise environment. Network Engineering & Cybersecurity DepthApply both network engineering and hands-on security expertise across switching, routing, wireless, firewalls, VPN, application delivery, monitoring, automation, and incident support. Technical Leadership & Continuous ImprovementLead technical projects, mentor peers, evaluate new technologies, automate repeatable work, and strengthen resilience, visibility, and operational supportability. Strong Values and Professional StandardsWork in an environment grounded in accountability, collaboration, integrity, security, compliance, and continuous improvement. Work Environment & BenefitsGSOC offers a professional, collaborative work environment with competitive compensation, comprehensive benefits, and a commitment to creating a respectful and inclusive workplace.Participation in an on-call rotation, emergency support, and scheduled maintenance outside normal business hours is required. Why Join GSOCAt GSOC, you will help engineer the network and security services that enable dependable business operations, secure access, security visibility, and resilient enterprise technology.You'll collaborate across infrastructure, cybersecurity, applications, service desk, and vendor teams while expanding your technical leadership and automation capabilities. Apply TodayIf you're ready to combine enterprise network engineering and cybersecurity expertise in a hands-on role supporting reliable, protected operations, we encourage you to apply. GSOC does not accept unsolicited resumes or candidate submissions from staffing agencies, search firms, or third-party recruiters. Any unsolicited resumes submitted without a valid, executed agreement will become the property of GSOC, and no placement fee will be paid. Job Posted by ApplicantPro
Tlingit Haida Tribal Business Corporation
Falls Church, Virginia
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.
09/24/2026
Full time
Job Description Job Description At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description-it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one. For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow - One Mission, One Team - With a Commitment to Serve Subsidiary: T&H Services Job Title: FRCS Network Security Engineer Work Location: Washington Navy Yard, Washington D.C. Labor Category: Full-Time Exempt Travel Requirement: Up to 25% Annual Salary: $130,000 - $140,000 About the Role The FRCS Network Security Engineer provides technical support for Government-owned Facility-Related Control Systems (FRCS), Operational Technology (OT), and associated IT infrastructure. The position is responsible for maintaining the security, reliability, configuration, and operation of networked, isolated, and standalone control systems. What You'll Be Doing Establish and maintain the FRCS Cybersecurity Program in accordance with UFC 4-010-06, applicable DoD requirements, and Government cybersecurity standards. Manage, maintain, program, monitor, troubleshoot, repair, and support Government-owned FRCS, OT, and associated IT systems, including BCS, DDC, EMCS, UCS, SCADA, plant controls, advanced metering, and related platforms. Troubleshoot, repair, replace, maintain, and calibrate control system equipment and components, including pneumatic devices, control cabling, wiring, relays, transformers, switches, fuses, and related equipment. Research, coordinate, test, and implement approved software, firmware, hardware, programming, and configuration changes in accordance with Government configuration management requirements. Implement cybersecurity requirements, conduct vulnerability assessments, support remediation, and perform activities necessary to maintain system accreditation and operational readiness. Monitor system logs, network traffic, alarms, events, and other security data; immediately report suspected access violations, cybersecurity events, or network intrusions to appropriate Government personnel. Configure and maintain cybersecurity technologies, including antivirus, HIPS, IDS/IPS, SIEM, and related security tools, and develop detection signatures using YARA, Snort, Suricata, or similar technologies. Identify and document FRCS operating in override, bypass, manual mode, or other conditions that prevent normal automatic operation and provide required daily status reporting. Perform root-cause analysis for repetitive or critical FRCS failures and document findings and recommended corrective actions. Support applicable control systems, including Automatic Transfer of Standby Power Programs (ATSPP), Master Load-Shed Controls (MLSC), Automated Demand Response (ADR), Fire Alarm Systems (FAS), and Mass Notification Systems (MNS). Coordinate with Government personnel, vendors, OEMs, and contractors on system integration, testing, certification, maintenance, repairs, upgrades, and operational validation. Maintain FRCS inventory, asset accountability, system configuration, and required technical documentation. What We're Looking For Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent combination of education and relevant experience. Minimum of four (4) years of relevant experience in network engineering, cybersecurity, control systems integration, or a related field. Experience with FRCS, OT, and IT environments, including BCS, DDC, EMCS, UCS, SCADA, or similar control systems. Working knowledge of TCP/IP, network protocols, traffic analysis, system administration, network security, and defense-in-depth principles. Experience with vulnerability management, IDS/IPS, SIEM, network or host-based forensics, and cybersecurity incident response. Experience with Windows and Unix/Linux environments and virtualization technologies such as VMware. ISA Certified Control Systems Technician (CCST) certification and applicable OEM control system certification, as required by the contract. Must possess a DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or an approved equivalent. Advanced cybersecurity certification such as CISSP, CASP+, GIAC/GCIA/GCIH, or applicable SIEM certification preferred. Must maintain eligibility and authorization to access the Government worksite. Must possess and maintain a valid state driver's license and a safe driving record, in accordance with company policy, to operate vehicles or equipment as required for the position. Physical Demands & Work Environment: Ability to sit or stand for extended periods and regularly work at a computer or technical workstation. Ability to lift and carry up to 50 pounds and perform occasional bending, stooping, reaching, pushing, and pulling associated with equipment installation and maintenance. Must be able to work on-call, alternate, or extended schedules when necessary to meet mission requirements, including weekends and holidays. Work may be performed indoors or outdoors and may require access to mechanical spaces, confined spaces, elevated areas, or other operational environments while using appropriate PPE. US Pay Range $130,000-$140,000 USD Why Us? At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional services-we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people. We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow. Join us and be part of a team where your work matters. Benefits We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include: Medical, Dental, and Vision coverage TRICARE Supplemental Critical Illness insurance Company-Paid Life and Short-Term Disability insurance Optional Long-Term Disability Paid Leave 401(k) Retirement Plan Identity Theft Protection Employee Discounts Wellness Seminars For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement. Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws. Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law. Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.