Solution Architect / Principal Consultant (NW / DC / Security) DETAILS Location: Remote Position Type: 6M+ Contract (w/ likely extensions) Hourly / Salary: to $90W2+ (based on experience level) JOB SUMMARY Vaco is currently seeking a Solution Architect / Principal Engineer for a 6M+ Contract (w/ likely extensions) that is remote. The Solution Architect / Principal Engineer will lead the design and delivery of enterprise-scale network and security solutions for a large Fortune 10 environment. The Solution Architect / Principal Engineer will own technical strategy across data center, WAN/LAN, cloud, and hybrid infrastructures, guiding multiple concurrent initiatives while ensuring solutions align with business objectives, security standards, and enterprise architecture requirements. The Solution Architect / Principal Engineer will serve as the technical leader and escalation point for complex networking and security challenges, driving architecture decisions, overseeing engineering teams, and providing governance from design through deployment. The ideal Solution Architect / Principal Engineer will possess deep networking expertise, broad cross-domain architecture knowledge, and the ability to influence stakeholders while delivering large-scale transformation and modernization initiatives. Enterprise Network / Security Architecture - Leading Design of Scalable / Resilient / Secure Infrastructure Solutions Across Data Center / Campus / Cloud / Hybrid Environments Aligning with Long-Term Business / Technology Strategies Technical Leadership / Solution Governance - Providing Architectural Oversight Across Multiple Concurrent Initiatives via Design Standards / Technical Validation / Governance of Solution Delivery Stakeholder Engagement / Solution Alignment - Partnering with Infrastructure / Security / Cloud / Business Teams Translating Complex Requirements into Actionable Technical Solutions Building Consensus Across Technical / Executive Stakeholders Engineering Leadership / Mentorship - Guiding / Mentoring Network / Security Engineers via Delegation / Technical Reviews / Quality Assurance and Adherence to Architectural Standards Architecture Documentation / Design Reviews - Developing / Presenting High-Level / Detailed Solution Designs / Technical Roadmaps / Implementation Plans Leading Architecture Reviews / Executive Briefings Strategic Advisory / Escalation Leadership - Serving as Senior Escalation Point for Complex Infrastructure / Security Challenges via Risk Identification / Strategic Recommendations / Enterprise Technology Leadership JOB REQUIREMENTS Enterprise Infrastructure / Architecture Experience (9+ years) - Enterprise Infrastructure Experience Network Architect / Security Architect / Solution Architect / Principal Consultant (5+ years) Enterprise Network Architecture (expertise) - Designing / Implementing Enterprise Networking Solutions Across Data Center / Campus / WAN / LAN / SD-WAN / Hybrid Cloud Environments Network Security Architecture (strong architecture-level knowledge) - Next-Generation Firewalls / Network Segmentation / Zero Trust / Identity Integration / Security Policy Governance Architecture Documentation / Executive Advisory - Developing / Presenting High-Level Designs (HLDs) / Low-Level Designs (LLDs) / Technical Roadmaps / Executive Architecture Recommendations Program Leadership / Multi-Project Management - Leading Multiple Large-Scale Infrastructure / Security Initiatives Simultaneously Managing Priorities / Dependencies / Risks / Stakeholder Expectations Enterprise Networking Technologies (hands-on) - Industry-Leading Networking Platforms (Cisco / Arista / Palo Alto and Similar Technologies) Cloud Networking / Security - Applying Strong Understanding of Cloud Networking and Security Principles Across AWS / Azure / Hybrid Cloud Environments Technical Leadership / Governance - Providing Design Oversight / Mentorship / Implementation Governance / Quality Assurance for Engineering Teams Senior Escalation / Strategic Problem Solving - Serving as Senior Escalation Point for Complex Network / Security / Infrastructure Challenges Within Large Enterprise Environments Executive Communication / Influence - Excellent Communication / Presentation Skills Influencing Technical Teams / Business Stakeholders / Executive Leadership Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/25/2026
Full time
Solution Architect / Principal Consultant (NW / DC / Security) DETAILS Location: Remote Position Type: 6M+ Contract (w/ likely extensions) Hourly / Salary: to $90W2+ (based on experience level) JOB SUMMARY Vaco is currently seeking a Solution Architect / Principal Engineer for a 6M+ Contract (w/ likely extensions) that is remote. The Solution Architect / Principal Engineer will lead the design and delivery of enterprise-scale network and security solutions for a large Fortune 10 environment. The Solution Architect / Principal Engineer will own technical strategy across data center, WAN/LAN, cloud, and hybrid infrastructures, guiding multiple concurrent initiatives while ensuring solutions align with business objectives, security standards, and enterprise architecture requirements. The Solution Architect / Principal Engineer will serve as the technical leader and escalation point for complex networking and security challenges, driving architecture decisions, overseeing engineering teams, and providing governance from design through deployment. The ideal Solution Architect / Principal Engineer will possess deep networking expertise, broad cross-domain architecture knowledge, and the ability to influence stakeholders while delivering large-scale transformation and modernization initiatives. Enterprise Network / Security Architecture - Leading Design of Scalable / Resilient / Secure Infrastructure Solutions Across Data Center / Campus / Cloud / Hybrid Environments Aligning with Long-Term Business / Technology Strategies Technical Leadership / Solution Governance - Providing Architectural Oversight Across Multiple Concurrent Initiatives via Design Standards / Technical Validation / Governance of Solution Delivery Stakeholder Engagement / Solution Alignment - Partnering with Infrastructure / Security / Cloud / Business Teams Translating Complex Requirements into Actionable Technical Solutions Building Consensus Across Technical / Executive Stakeholders Engineering Leadership / Mentorship - Guiding / Mentoring Network / Security Engineers via Delegation / Technical Reviews / Quality Assurance and Adherence to Architectural Standards Architecture Documentation / Design Reviews - Developing / Presenting High-Level / Detailed Solution Designs / Technical Roadmaps / Implementation Plans Leading Architecture Reviews / Executive Briefings Strategic Advisory / Escalation Leadership - Serving as Senior Escalation Point for Complex Infrastructure / Security Challenges via Risk Identification / Strategic Recommendations / Enterprise Technology Leadership JOB REQUIREMENTS Enterprise Infrastructure / Architecture Experience (9+ years) - Enterprise Infrastructure Experience Network Architect / Security Architect / Solution Architect / Principal Consultant (5+ years) Enterprise Network Architecture (expertise) - Designing / Implementing Enterprise Networking Solutions Across Data Center / Campus / WAN / LAN / SD-WAN / Hybrid Cloud Environments Network Security Architecture (strong architecture-level knowledge) - Next-Generation Firewalls / Network Segmentation / Zero Trust / Identity Integration / Security Policy Governance Architecture Documentation / Executive Advisory - Developing / Presenting High-Level Designs (HLDs) / Low-Level Designs (LLDs) / Technical Roadmaps / Executive Architecture Recommendations Program Leadership / Multi-Project Management - Leading Multiple Large-Scale Infrastructure / Security Initiatives Simultaneously Managing Priorities / Dependencies / Risks / Stakeholder Expectations Enterprise Networking Technologies (hands-on) - Industry-Leading Networking Platforms (Cisco / Arista / Palo Alto and Similar Technologies) Cloud Networking / Security - Applying Strong Understanding of Cloud Networking and Security Principles Across AWS / Azure / Hybrid Cloud Environments Technical Leadership / Governance - Providing Design Oversight / Mentorship / Implementation Governance / Quality Assurance for Engineering Teams Senior Escalation / Strategic Problem Solving - Serving as Senior Escalation Point for Complex Network / Security / Infrastructure Challenges Within Large Enterprise Environments Executive Communication / Influence - Excellent Communication / Presentation Skills Influencing Technical Teams / Business Stakeholders / Executive Leadership Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
About Us Visa is a world leader in payments technology, facilitating transactions between consumers, merchants, financial institutions and government entities across more than 200 countries and territories, dedicated to uplifting everyone, everywhere by being the best way to pay and be paid. At Visa, you'll have the opportunity to create impact at scale - tackling meaningful challenges, growing your skills and seeing your contributions impact lives around the world. Join Visa and do work that matters - to you, to your community, and to the world. Progress starts with you. Job Description Visa's Cyber Product Development team is looking for a DevSecOps focused Software engineer with a passion for GenAI/Agentic development,Open source & Automation solutioning,and desire to apply development skills to solve problems via and integrated approach. You will be responsible for working with stakeholders to collect detailed requirements and develop solutions through coding to further Cyber Security initiatives. In this position, you are a passionate and talented engineer/developer who will independently drive deliverablesand utilize complex problem-solving abilities and coding/testing/debugging skillswithin a team environment. You must be dedicated to working with stakeholders, adhering to timelines & delivering production-ready code in short timeframes and willing to go beyond the routine. Essential Functions: Use modern GenAI coding tools and agentic development patterns to rapidly design, build, test, and deliver cybersecurity automation solutions. AgenticDesign Patterns & Methods creating and using agents, sub agents, agent swarms, memory, context and prompt refinement. Develop with Python to create agents and sub-agents for alert triage, evidence collection, enrichment, investigation summarization, remediation recommendations, and analyst workflow automation. Delivery production ready code using cutting edge development tools and harnesses (Codex, Claude Code, CLINE etc) focusing on developing with supervisor-agent workflows that coordinate planning, coding, validation. Comfortable &highlyproficient with Codex, Claude Code or CLINE. Develop and release cybersecurity investigation agents with safe tool use, clear execution boundaries, and auditability across existing large tool bases. Create GenAI-enabled MCP, A2A, & Tool based REST APIs integrations. Work in both relational (SQL), non-relational databases (Elastic) & Cloudbased data storage systems. Build production-ready Python, Django, Linux web-stack, and containerized applications for secure internal tools, APIs, dashboards, and cybersecurity automation services. Apply SQL, Elastic Stack, Lucene-based search, and large-scale data analysis to correlate security signals and support cybersecurity investigations. Design, containerize, deploy, and operationalize solutions using CI/CD, automated testing, validation, monitoring, and quality assurance practices. Validate agentic systems through unit testing, integration testing, regression testing, security testing, tool-call review, generated-code review, and agent behavior evaluation. Troubleshoot and optimize Python applications, Linux environments, containers, APIs, web services, and cybersecurity automation workflows. Work with stakeholders to clarify requirements, iterate on designs, deliver working solutions, document outcomes, and support production deployments. Communicate clearly and collaborate effectively across cybersecurity, engineering, operations, and product teams in a fast-moving delivery environment. Visa requires at least 3 days in office, expectations of these days will be confirmed by your Hiring Manager. Qualifications Basic Qualifications: 2+ years of relevant work experience and a Bachelors degree, OR 5+ years of relevant work experience Product Development Experience Agent Development experience Strong understanding of Cybersecurity Incident Response concepts Agentic Design Patterns & Methods - using Generative AI models via function calling, specialized prompting. Comfortable with concepts of Langchain/smith, Crew ai/Camel ai and other GenAI agent & tool based solutions. Preferred Qualifications: 3 or more years of work experience with a Bachelor's Degree or more than 2 years of work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD) Masters graduates must have 2+ years of relevant work experience to qualify. Minimum Bachelor's degree required from an accredited institution. Hands on experience in developing & coding GenAI Agentic solutions using GenAI design patterns and concepts using Python across a large code base. Experience standard software development practices, usage of source control, CI/CD pipelines & strong coding background. Strong understanding of Cybersecurity Incident Response concepts Agentic Design Patterns & Methods - using Generative AI models via function calling, specialized prompting. Comfortable with concepts of Langchain/smith, Crew ai/Camel ai and other GenAI agent & tool based solutions. Linux - Strong Linux and systems engineering knowledge. Python - Expert level experience with Python, Python web frameworks, Web Front End - Django/Angular/React and/or Java Script experience. Independent - no micromanaging here, but you must be able to communicate via continuous documentation, JIRA Ticketing updates Experience in Project life cycle activities on development and maintenance projects. Including CI/CD and tools development. 4+ years in Python or other similar development technology. Strong customer centric mindset. Proactive sense of urgency and 'can do' attitude Strategic thinker who can balance big picture strategy with detailed, flawless execution Financial services and card payments experience is a plus Excellent communication skills Excellent team player Anthropic Claude, OpenAI Codex, OSCP (Offensive Security Certified Professional), or similar AI engineering and cybersecurity certifications are a plus. Desired Skills: Python development experience for cybersecurity automation, investigation workflows, API integrations, and production support. Cybersecurity incident response experience, including alert triage, evidence collection, enrichment, containment, remediation tracking, and analyst workflow improvement. AI development design-pattern experience, including agentic workflows, tool-calling, supervisor agents, sub-agents, planning agents, validation agents, and context management. SOAR and security platform experience, SIEM tools, WAF, firewall, endpoint, cloud security, or threat-intelligence platforms. Information for US Applicants For roles located in the US, the estimated salary range for this position is $116,800.00 to $ 180,600.00 USD per year, which may include potential sales incentive payments (if applicable). Salary may vary depending on job-related factors which may include knowledge, skills, experience, and location. In addition, this position may be eligible for bonus and equity.Visa has a comprehensive benefits package for which this position may be eligible that includes Medical, Dental, Vision, 401(k), FSA/HSA, Life Insurance, Paid Time Off, and Wellness Program. Work Hours Varies upon the needs of the department. Travel Requirements This position requires travel 5-10% of the time. Mental/Physical Requirements This position will be performed in an office setting. The position will require the incumbent to sit and stand at a desk, communicate in person and by telephone, frequently operate standard office equipment, such as telephones and computers. Visa is an EEO Employer Qualified applicants will receive consideration for employment without regard to race, color religion, sex, national origin, sexual orientation, gender identity, disability or protect veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with the EEOC guidelines and applicable local law.
09/25/2026
Full time
About Us Visa is a world leader in payments technology, facilitating transactions between consumers, merchants, financial institutions and government entities across more than 200 countries and territories, dedicated to uplifting everyone, everywhere by being the best way to pay and be paid. At Visa, you'll have the opportunity to create impact at scale - tackling meaningful challenges, growing your skills and seeing your contributions impact lives around the world. Join Visa and do work that matters - to you, to your community, and to the world. Progress starts with you. Job Description Visa's Cyber Product Development team is looking for a DevSecOps focused Software engineer with a passion for GenAI/Agentic development,Open source & Automation solutioning,and desire to apply development skills to solve problems via and integrated approach. You will be responsible for working with stakeholders to collect detailed requirements and develop solutions through coding to further Cyber Security initiatives. In this position, you are a passionate and talented engineer/developer who will independently drive deliverablesand utilize complex problem-solving abilities and coding/testing/debugging skillswithin a team environment. You must be dedicated to working with stakeholders, adhering to timelines & delivering production-ready code in short timeframes and willing to go beyond the routine. Essential Functions: Use modern GenAI coding tools and agentic development patterns to rapidly design, build, test, and deliver cybersecurity automation solutions. AgenticDesign Patterns & Methods creating and using agents, sub agents, agent swarms, memory, context and prompt refinement. Develop with Python to create agents and sub-agents for alert triage, evidence collection, enrichment, investigation summarization, remediation recommendations, and analyst workflow automation. Delivery production ready code using cutting edge development tools and harnesses (Codex, Claude Code, CLINE etc) focusing on developing with supervisor-agent workflows that coordinate planning, coding, validation. Comfortable &highlyproficient with Codex, Claude Code or CLINE. Develop and release cybersecurity investigation agents with safe tool use, clear execution boundaries, and auditability across existing large tool bases. Create GenAI-enabled MCP, A2A, & Tool based REST APIs integrations. Work in both relational (SQL), non-relational databases (Elastic) & Cloudbased data storage systems. Build production-ready Python, Django, Linux web-stack, and containerized applications for secure internal tools, APIs, dashboards, and cybersecurity automation services. Apply SQL, Elastic Stack, Lucene-based search, and large-scale data analysis to correlate security signals and support cybersecurity investigations. Design, containerize, deploy, and operationalize solutions using CI/CD, automated testing, validation, monitoring, and quality assurance practices. Validate agentic systems through unit testing, integration testing, regression testing, security testing, tool-call review, generated-code review, and agent behavior evaluation. Troubleshoot and optimize Python applications, Linux environments, containers, APIs, web services, and cybersecurity automation workflows. Work with stakeholders to clarify requirements, iterate on designs, deliver working solutions, document outcomes, and support production deployments. Communicate clearly and collaborate effectively across cybersecurity, engineering, operations, and product teams in a fast-moving delivery environment. Visa requires at least 3 days in office, expectations of these days will be confirmed by your Hiring Manager. Qualifications Basic Qualifications: 2+ years of relevant work experience and a Bachelors degree, OR 5+ years of relevant work experience Product Development Experience Agent Development experience Strong understanding of Cybersecurity Incident Response concepts Agentic Design Patterns & Methods - using Generative AI models via function calling, specialized prompting. Comfortable with concepts of Langchain/smith, Crew ai/Camel ai and other GenAI agent & tool based solutions. Preferred Qualifications: 3 or more years of work experience with a Bachelor's Degree or more than 2 years of work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD) Masters graduates must have 2+ years of relevant work experience to qualify. Minimum Bachelor's degree required from an accredited institution. Hands on experience in developing & coding GenAI Agentic solutions using GenAI design patterns and concepts using Python across a large code base. Experience standard software development practices, usage of source control, CI/CD pipelines & strong coding background. Strong understanding of Cybersecurity Incident Response concepts Agentic Design Patterns & Methods - using Generative AI models via function calling, specialized prompting. Comfortable with concepts of Langchain/smith, Crew ai/Camel ai and other GenAI agent & tool based solutions. Linux - Strong Linux and systems engineering knowledge. Python - Expert level experience with Python, Python web frameworks, Web Front End - Django/Angular/React and/or Java Script experience. Independent - no micromanaging here, but you must be able to communicate via continuous documentation, JIRA Ticketing updates Experience in Project life cycle activities on development and maintenance projects. Including CI/CD and tools development. 4+ years in Python or other similar development technology. Strong customer centric mindset. Proactive sense of urgency and 'can do' attitude Strategic thinker who can balance big picture strategy with detailed, flawless execution Financial services and card payments experience is a plus Excellent communication skills Excellent team player Anthropic Claude, OpenAI Codex, OSCP (Offensive Security Certified Professional), or similar AI engineering and cybersecurity certifications are a plus. Desired Skills: Python development experience for cybersecurity automation, investigation workflows, API integrations, and production support. Cybersecurity incident response experience, including alert triage, evidence collection, enrichment, containment, remediation tracking, and analyst workflow improvement. AI development design-pattern experience, including agentic workflows, tool-calling, supervisor agents, sub-agents, planning agents, validation agents, and context management. SOAR and security platform experience, SIEM tools, WAF, firewall, endpoint, cloud security, or threat-intelligence platforms. Information for US Applicants For roles located in the US, the estimated salary range for this position is $116,800.00 to $ 180,600.00 USD per year, which may include potential sales incentive payments (if applicable). Salary may vary depending on job-related factors which may include knowledge, skills, experience, and location. In addition, this position may be eligible for bonus and equity.Visa has a comprehensive benefits package for which this position may be eligible that includes Medical, Dental, Vision, 401(k), FSA/HSA, Life Insurance, Paid Time Off, and Wellness Program. Work Hours Varies upon the needs of the department. Travel Requirements This position requires travel 5-10% of the time. Mental/Physical Requirements This position will be performed in an office setting. The position will require the incumbent to sit and stand at a desk, communicate in person and by telephone, frequently operate standard office equipment, such as telephones and computers. Visa is an EEO Employer Qualified applicants will receive consideration for employment without regard to race, color religion, sex, national origin, sexual orientation, gender identity, disability or protect veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with the EEOC guidelines and applicable local law.
on a mission to unleash the power of content you in? We've got the brands, we've got the stars, we've got thepowerto achieve our mission to entertain the planet - now all we're missing is YOU! Becoming a part of Paramount means joining a team of passionate people who not only recognize the power of content but also enjoy a touch of fun and uniqueness. Together, we co-create moments that matter - both for our audiences and our employees - and aim to leave a positive mark on culture. Overview and Responsibilities: The Senior Network Engineer role focuses on the implementation and support of reliable, scalable network solutions supporting media and corporate systems. This position is primarily hands-on and technical, working within the broader network architecture and engineering organization to deliver and maintain high-performance, mission critical network services. The role participates in network projects across the full lifecycle and collaborates closely with peer engineers, operations teams, and cross functional partners. Responsibilities Include: Design, implement, and support scalable, highly available routing and switching solutions for media and corporate network environments. Participate in the evaluation and testing of new networking technologies and platforms; provide technical input and recommendations. Work with vendors and internal teams to troubleshoot issues and support hardware/software lifecycle activities. Implement approved network changes following established change management processes, including maintenance windows and validation. Serve as a technical resource for network operations teams, assisting with troubleshooting, incident resolution, and root cause analysis. Create and maintain accurate network documentation, diagrams, and configuration standards. Participate in peer design reviews and technical discussions, contributing feedback and best practices. Collaborate with Level 2 and Level 3 teams to resolve complex routing, switching, firewall, and connectivity issues. Assist with knowledge sharing and technical guidance for junior and mid level engineers during new deployments or upgrades. Escalate issues as needed and work with senior engineers or architects on complex or high impact problems. Basic Qualifications: Bachelor's degree in Computer Science, Engineering, or a related technical field, or equivalent professional experience. Strong experience in IP networking and IP security design and implementation (5-7 years preferred). Hands on experience with major networking vendors such as Cisco, Arista, Palo Alto, NetScaler, or equivalent platforms. Solid understanding of routing and switching protocols (e.g., BGP, OSPF, MPLS). Working knowledge of IP multicast and QoS concepts. Experience using network monitoring and management tools. Experience supporting medium to large enterprise or corporate network environments. Experience in Media, Entertainment, Broadcast, Hosting, or ISP environments is a plus. Experience with Optical Transport networks such as Ciena is a plus. Additional Qualifications : Strong collaboration skills and ability to work effectively within a team environment. Good verbal and written communication skills, with the ability to clearly document technical work. Proven troubleshooting and problem solving skills in production environments. Ability to manage multiple tasks and priorities in a fast paced operational setting. Demonstrated interest in learning new technologies and adapting to evolving network environments. Detail oriented, organized, and committed to producing high quality technical work. Paramount Skydance Corporation (NASDAQ: PSKY) is a leading global media and entertainment company that creates premium content and experiences for audiences worldwide. Driven by iconic studios, networks and streaming services, Paramount's portfolio of consumer brands includes CBS, Showtime Networks, Paramount Pictures, Nickelodeon, MTV, Comedy Central, BET, Paramount+, and Pluto TV, among others. Paramount delivers the largest share of the U.S. television audience and boasts one of the industry's most important and extensive libraries of TV and film titles. In addition to offering innovative streaming services and digital video products, the company provides powerful capabilities in production, distribution and advertising solutions. ADDITIONAL INFORMATION Hiring Salary Range: $98 000.00. The hiring salary range for this position applies to New York City, California, Colorado, Washington state, and most other geographies. Starting pay for the successful applicant depends on a variety of job-related factors, including but not limited to geographic location, market demands, experience, training, and education. The benefits available for this position include medical, dental, vision, 401(k) plan, life insurance coverage, disability benefits, tuition assistance program and PTO or, if applicable, as otherwise dictated by the appropriate Collective Bargaining Agreement. This position is bonus eligible. What We Offer: Attractive compensation and comprehensive benefits packages. Check out our full list of benefits here: Generous paid time off. An exciting and fulfilling opportunity to be part of one of Paramount's most dynamic teams. Opportunities for both on-site and virtual engagement events. Unique opportunities to make meaningful connections and build a vibrant community, both inside and outside the workplace. Explore life at Paramount: Paramount is an equal opportunity employer (EOE) including disability/vet. At Paramount, the spirit of inclusion feeds into everything that we do, on-screen and off. From the programming and movies we create to employee benefits/programs and social impact outreach initiatives, we believe that opportunity, access, resources and rewards should be available to and for the benefit of all. Paramount is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, creed, sex, national origin, sexual orientation, age, citizenship status, marital status, disability, gender identity, gender expression, and Veteran status. If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access as a result of your disability. You can request reasonable accommodations by calling or by sending an email to . Only messages left for this purpose will be returned.
09/25/2026
Full time
on a mission to unleash the power of content you in? We've got the brands, we've got the stars, we've got thepowerto achieve our mission to entertain the planet - now all we're missing is YOU! Becoming a part of Paramount means joining a team of passionate people who not only recognize the power of content but also enjoy a touch of fun and uniqueness. Together, we co-create moments that matter - both for our audiences and our employees - and aim to leave a positive mark on culture. Overview and Responsibilities: The Senior Network Engineer role focuses on the implementation and support of reliable, scalable network solutions supporting media and corporate systems. This position is primarily hands-on and technical, working within the broader network architecture and engineering organization to deliver and maintain high-performance, mission critical network services. The role participates in network projects across the full lifecycle and collaborates closely with peer engineers, operations teams, and cross functional partners. Responsibilities Include: Design, implement, and support scalable, highly available routing and switching solutions for media and corporate network environments. Participate in the evaluation and testing of new networking technologies and platforms; provide technical input and recommendations. Work with vendors and internal teams to troubleshoot issues and support hardware/software lifecycle activities. Implement approved network changes following established change management processes, including maintenance windows and validation. Serve as a technical resource for network operations teams, assisting with troubleshooting, incident resolution, and root cause analysis. Create and maintain accurate network documentation, diagrams, and configuration standards. Participate in peer design reviews and technical discussions, contributing feedback and best practices. Collaborate with Level 2 and Level 3 teams to resolve complex routing, switching, firewall, and connectivity issues. Assist with knowledge sharing and technical guidance for junior and mid level engineers during new deployments or upgrades. Escalate issues as needed and work with senior engineers or architects on complex or high impact problems. Basic Qualifications: Bachelor's degree in Computer Science, Engineering, or a related technical field, or equivalent professional experience. Strong experience in IP networking and IP security design and implementation (5-7 years preferred). Hands on experience with major networking vendors such as Cisco, Arista, Palo Alto, NetScaler, or equivalent platforms. Solid understanding of routing and switching protocols (e.g., BGP, OSPF, MPLS). Working knowledge of IP multicast and QoS concepts. Experience using network monitoring and management tools. Experience supporting medium to large enterprise or corporate network environments. Experience in Media, Entertainment, Broadcast, Hosting, or ISP environments is a plus. Experience with Optical Transport networks such as Ciena is a plus. Additional Qualifications : Strong collaboration skills and ability to work effectively within a team environment. Good verbal and written communication skills, with the ability to clearly document technical work. Proven troubleshooting and problem solving skills in production environments. Ability to manage multiple tasks and priorities in a fast paced operational setting. Demonstrated interest in learning new technologies and adapting to evolving network environments. Detail oriented, organized, and committed to producing high quality technical work. Paramount Skydance Corporation (NASDAQ: PSKY) is a leading global media and entertainment company that creates premium content and experiences for audiences worldwide. Driven by iconic studios, networks and streaming services, Paramount's portfolio of consumer brands includes CBS, Showtime Networks, Paramount Pictures, Nickelodeon, MTV, Comedy Central, BET, Paramount+, and Pluto TV, among others. Paramount delivers the largest share of the U.S. television audience and boasts one of the industry's most important and extensive libraries of TV and film titles. In addition to offering innovative streaming services and digital video products, the company provides powerful capabilities in production, distribution and advertising solutions. ADDITIONAL INFORMATION Hiring Salary Range: $98 000.00. The hiring salary range for this position applies to New York City, California, Colorado, Washington state, and most other geographies. Starting pay for the successful applicant depends on a variety of job-related factors, including but not limited to geographic location, market demands, experience, training, and education. The benefits available for this position include medical, dental, vision, 401(k) plan, life insurance coverage, disability benefits, tuition assistance program and PTO or, if applicable, as otherwise dictated by the appropriate Collective Bargaining Agreement. This position is bonus eligible. What We Offer: Attractive compensation and comprehensive benefits packages. Check out our full list of benefits here: Generous paid time off. An exciting and fulfilling opportunity to be part of one of Paramount's most dynamic teams. Opportunities for both on-site and virtual engagement events. Unique opportunities to make meaningful connections and build a vibrant community, both inside and outside the workplace. Explore life at Paramount: Paramount is an equal opportunity employer (EOE) including disability/vet. At Paramount, the spirit of inclusion feeds into everything that we do, on-screen and off. From the programming and movies we create to employee benefits/programs and social impact outreach initiatives, we believe that opportunity, access, resources and rewards should be available to and for the benefit of all. Paramount is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, creed, sex, national origin, sexual orientation, age, citizenship status, marital status, disability, gender identity, gender expression, and Veteran status. If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access as a result of your disability. You can request reasonable accommodations by calling or by sending an email to . Only messages left for this purpose will be returned.
SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
09/25/2026
Full time
SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
09/25/2026
Full time
SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
09/25/2026
Full time
SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
09/25/2026
Full time
SpaceXAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a seasoned Senior Network Security Engineer to join our dynamic security team. The ideal candidate will possess deep expertise in network security technologies, focusing on switching and routing systems within cloud-native and AI-focused infrastructure. You will thrive in a fast-paced, challenging environment, demonstrating adaptability, excellent multitasking skills, and the drive to tackle complex security issues independently while ensuring robust protection for our innovative technologies. RESPONSIBILITIES: Serve as a subject matter expert in network security, particularly firewalls, VPNs, IDS/IPS, routing protocols (e.g., BGP, OSPF), and switching technologies. Manage and update firewall configurations across our enterprise network to align with operational and security needs. Deploy new firewalls, switches, routers, and network security devices in response to evolving threats and demands. Develop and propose innovative network security solutions to address operational challenges in routing and switching environments. Enhance security processes through thorough documentation and change management. Act as the primary resolver for complex network security issues, including escalation support. Ensure network security systems, switches, and routers are up-to-date with patches, firmware, and maintenance. Monitor and respond to security events in cloud environments (e.g., AWS, GCP, Azure, Datacenter), with emphasis on network traffic analysis. BASIC QUALIFICATIONS: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. 4+ years of experience in network security engineering, with hands-on focus on switching and routing. Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred. Strong understanding of network security principles, protocols (e.g., TCP/IP, VLANs, ACLs), and best practices for secure routing and switching. Proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its network security services (e.g., VPCs, Security Groups). Experience with network analysis tools such as Wireshark, tcpdump; and vendors including Cisco, Juniper, Palo Alto Networks. Familiarity with scripting languages (e.g., Python, Bash) for automation of network security tasks. PREFERRED SKILLS AND EXPERIENCE: Relevant network-specific certifications (e.g., CCNP Security, CCIE Security, JNCIP-SEC, PCNSE). Experience in multi-cloud environments and Infrastructure as Code tools like Terraform for network provisioning. Knowledge of DevSecOps practices tailored to network security integration. Experience building custom tools or integrations for enhancing network security operations. Interest in leveraging AI for network threat detection and automation. Contributions to open-source projects in network security or related tools. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
Amentum is seeking a highly experienced Senior Systems/Infrastructure Engineer with advanced technical expertise supporting complex enterprise environments to join our team and support our McLean, VA customer. We are looking for team members who are passionate about making a difference by working on critical efforts we manage as a premier government contractor. Here at Amentum, we are purpose-driven with a fierce commitment to deliver on our promises. We create trailblazing solutions, have unwavering integrity, and embrace inclusion and collaboration. Our team is excited to help customers solve todays and tomorrow's problems, giving confidence and reassurance that together we'll accomplish mission success. Must possess and maintain a TS/SCI with Polygraph government security clearance. Note: U.S. citizenship is required to maintain a TS/SCI with Polygraph clearance. Purpose/ Scope: The ideal candidate must have advanced systems engineering experience in a Microsoft-based infrastructure, with high-level experience in Microsoft SQL Server, Microsoft Exchange, Active Directory, enterprise backup solutions, and Cisco networking. This position requires a senior-level technical professional capable of designing, implementing, maintaining, securing, documenting, and troubleshooting mission-critical systems in a highly regulated enterprise or government environment. Essential Responsibilities: Designing, implementing, maintaining, and supporting enterprise Microsoft infrastructure. Administering and troubleshooting Active Directory, Exchange, SQL Server, backup platforms, and Cisco network infrastructure. Creating secure system baseline configurations and maintaining compliance requirements through technical assessments, auditing, and continuous monitoring Documentation generation of processes and system artifacts for internal and customer review. Managing enterprise patching and system maintenance activities and supporting vulnerability remediation (POA&Ms) and risk reduction efforts Supporting disaster recovery and business continuity planning through backups and restores Mentoring junior administrators and engineers and serving as senior technical escalation resource for complex infrastructure problems Coordinating with cybersecurity, networking, database, server, and management teams. Ensuring infrastructure remains secure, available, properly documented, and compliant. Required Technical Experience: Microsoft Infrastructure Engineering: Candidate must have advanced experience with engineering, administering, securing, and troubleshooting Microsoft enterprise (Windows 10/11 and Server 2019/2022, Exchange, MS SQL) in both physical and virtualized environments. Candidate must be able to design, maintain, and support secure Microsoft environments using Group Policy Management, WSUS deployment, scripting and automation to hardened STIGs for compliance requirements in supporting mission-critical operations. Active Directory: Candidate must possess expert-level knowledge of Active Directory Domain Services. Mastery working with forest and domain architecture, administration of Domain Controllers, OU and GPOs, DNS integration with AD with AD replication, backup, and recovery, trust relationships and PKI/certificate services. Candidate must be capable of troubleshooting complex replication, authentication, permission, GPO, and domain controller issues. Microsoft Exchange: Candidate must have advanced experience in engineering, administering, maintaining, and supporting a Microsoft Exchange 2019 environment with securing, patching, and performing backup/recovery. Candidate must be able to troubleshoot complex messaging issues, database health issues, mail flow problems, and Exchange service outages. Microsoft SQL Server: Candidate must have high-level SQL Server administration and engineering experience in a Microsoft SQL Server 2019/2022 environment. Responsible for the installation, configuration (including security compliance and access permissions), maintenance updates, optimization & tuning, and report generation/monitoring. Candidate must be able to support mission-critical SQL environments and troubleshoot performance, connectivity, perform backups & restores, and other database availability issues. Enterprise Backup and Recovery: Candidate must have advanced experience with enterprise backup and disaster recovery solutions with the design, configuration, scheduling, validation, and restore/recovery for both physical & virtual machines and application software (Exchange, SQL) Candidate must be capable of ensuring critical systems are properly backed up, recoverable, and tested in accordance with organizational requirements. Cisco Networking and General Networking: Candidate must have high-level networking experience with strong Cisco administration skills with network segmentation, VLANs, VPN, ACLs, routing/switching, port security, and firewalls. Candidate must be able to troubleshoot network connectivity, routing, switching, DNS, DHCP, segmentation, and performance issues across enterprise environments. Additional core technical competencies for this position requires experience with virtualization (ex. Hyper-V, VMware), security hardening (ex. NIST 800-53, RMF, STIGs), patch management & deployment (ex. WSUS, SCCM), vulnerability management & remediation (ex. Rapid7, Nessus, POA&M), compliance reporting & auditing , and documentation & artifact generation/management (ex. SOP, SSP, change control, etc.) Minimum Requirements: Minimum 10+ years of enterprise IT infrastructure experience. Minimum 7+ years of systems engineering experience in a Microsoft enterprise environment. Advanced experience supporting large-scale server, workstation, database, messaging, backup, and network environments. Strong understanding of cybersecurity, system hardening, compliance, audit readiness, and vulnerability management. Ability to work independently as a senior technical escalation resource. Strong written and verbal communication skills. Ability to create professional technical documentation, reports, system diagrams, procedures, and audit artifacts. Must possess and maintain a TS/SCI with Polygraph government security clearance. Note: U.S. citizenship is required to maintain a TS/SCI with Polygraph clearance. Preferred Qualifications: BA/BS Degree Microsoft Certified Systems Engineer Cisco CCNA/P Must have a Top-Secret Clearance with polygraph Must be able to read, speak, write, and understand the English language Excellent oral and written communication skills Ability to interact and relay security technical requirements at all levels of leadership and workforce Ability to work both independently and as a member of a team Work Environment, Physical Demands, and Mental Demands: Typical office environment with no unusual hazards, occasional lifting to 20 pounds, constant sitting while using the computer terminal, constant use of sight abilities while reviewing documents, constant use of speech/hearing abilities for communication, constant mental alertness, must possess planning/organizing skills, and must be able to work under deadlines. Other Responsibilities: Safety - Amentum enforces a safety culture whereby all employees have the responsibility for continuously developing and maintaining a safe work environment. As appropriate, each employee is responsible for completing all training requirements and fulfilling all self-aid/buddy aid responsibilities, participating in emergency response tasks and serving on safety committees and teams. Quality - Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Policy and carry out job activities in compliance with applicable Amentum Quality System documents and customer contracts. Each employee must read and understand his/her Quality Management and Customer Satisfaction responsibilities Procedure Compliance - Each employee must read, understand and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to his/her job. Compensation Details: $140,000 - $160,000 The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws. Benefits Overview: Our health and welfare benefits are designed to support you and your priorities. Offerings include: Health, dental, and vision insurance Paid time off and holidays Retirement benefits (including 401(k) matching) Educational reimbursement Parental leave Employee stock purchase plan Tax-saving options Disability and life insurance Pet insurance Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA) . click apply for full job details
09/25/2026
Full time
Amentum is seeking a highly experienced Senior Systems/Infrastructure Engineer with advanced technical expertise supporting complex enterprise environments to join our team and support our McLean, VA customer. We are looking for team members who are passionate about making a difference by working on critical efforts we manage as a premier government contractor. Here at Amentum, we are purpose-driven with a fierce commitment to deliver on our promises. We create trailblazing solutions, have unwavering integrity, and embrace inclusion and collaboration. Our team is excited to help customers solve todays and tomorrow's problems, giving confidence and reassurance that together we'll accomplish mission success. Must possess and maintain a TS/SCI with Polygraph government security clearance. Note: U.S. citizenship is required to maintain a TS/SCI with Polygraph clearance. Purpose/ Scope: The ideal candidate must have advanced systems engineering experience in a Microsoft-based infrastructure, with high-level experience in Microsoft SQL Server, Microsoft Exchange, Active Directory, enterprise backup solutions, and Cisco networking. This position requires a senior-level technical professional capable of designing, implementing, maintaining, securing, documenting, and troubleshooting mission-critical systems in a highly regulated enterprise or government environment. Essential Responsibilities: Designing, implementing, maintaining, and supporting enterprise Microsoft infrastructure. Administering and troubleshooting Active Directory, Exchange, SQL Server, backup platforms, and Cisco network infrastructure. Creating secure system baseline configurations and maintaining compliance requirements through technical assessments, auditing, and continuous monitoring Documentation generation of processes and system artifacts for internal and customer review. Managing enterprise patching and system maintenance activities and supporting vulnerability remediation (POA&Ms) and risk reduction efforts Supporting disaster recovery and business continuity planning through backups and restores Mentoring junior administrators and engineers and serving as senior technical escalation resource for complex infrastructure problems Coordinating with cybersecurity, networking, database, server, and management teams. Ensuring infrastructure remains secure, available, properly documented, and compliant. Required Technical Experience: Microsoft Infrastructure Engineering: Candidate must have advanced experience with engineering, administering, securing, and troubleshooting Microsoft enterprise (Windows 10/11 and Server 2019/2022, Exchange, MS SQL) in both physical and virtualized environments. Candidate must be able to design, maintain, and support secure Microsoft environments using Group Policy Management, WSUS deployment, scripting and automation to hardened STIGs for compliance requirements in supporting mission-critical operations. Active Directory: Candidate must possess expert-level knowledge of Active Directory Domain Services. Mastery working with forest and domain architecture, administration of Domain Controllers, OU and GPOs, DNS integration with AD with AD replication, backup, and recovery, trust relationships and PKI/certificate services. Candidate must be capable of troubleshooting complex replication, authentication, permission, GPO, and domain controller issues. Microsoft Exchange: Candidate must have advanced experience in engineering, administering, maintaining, and supporting a Microsoft Exchange 2019 environment with securing, patching, and performing backup/recovery. Candidate must be able to troubleshoot complex messaging issues, database health issues, mail flow problems, and Exchange service outages. Microsoft SQL Server: Candidate must have high-level SQL Server administration and engineering experience in a Microsoft SQL Server 2019/2022 environment. Responsible for the installation, configuration (including security compliance and access permissions), maintenance updates, optimization & tuning, and report generation/monitoring. Candidate must be able to support mission-critical SQL environments and troubleshoot performance, connectivity, perform backups & restores, and other database availability issues. Enterprise Backup and Recovery: Candidate must have advanced experience with enterprise backup and disaster recovery solutions with the design, configuration, scheduling, validation, and restore/recovery for both physical & virtual machines and application software (Exchange, SQL) Candidate must be capable of ensuring critical systems are properly backed up, recoverable, and tested in accordance with organizational requirements. Cisco Networking and General Networking: Candidate must have high-level networking experience with strong Cisco administration skills with network segmentation, VLANs, VPN, ACLs, routing/switching, port security, and firewalls. Candidate must be able to troubleshoot network connectivity, routing, switching, DNS, DHCP, segmentation, and performance issues across enterprise environments. Additional core technical competencies for this position requires experience with virtualization (ex. Hyper-V, VMware), security hardening (ex. NIST 800-53, RMF, STIGs), patch management & deployment (ex. WSUS, SCCM), vulnerability management & remediation (ex. Rapid7, Nessus, POA&M), compliance reporting & auditing , and documentation & artifact generation/management (ex. SOP, SSP, change control, etc.) Minimum Requirements: Minimum 10+ years of enterprise IT infrastructure experience. Minimum 7+ years of systems engineering experience in a Microsoft enterprise environment. Advanced experience supporting large-scale server, workstation, database, messaging, backup, and network environments. Strong understanding of cybersecurity, system hardening, compliance, audit readiness, and vulnerability management. Ability to work independently as a senior technical escalation resource. Strong written and verbal communication skills. Ability to create professional technical documentation, reports, system diagrams, procedures, and audit artifacts. Must possess and maintain a TS/SCI with Polygraph government security clearance. Note: U.S. citizenship is required to maintain a TS/SCI with Polygraph clearance. Preferred Qualifications: BA/BS Degree Microsoft Certified Systems Engineer Cisco CCNA/P Must have a Top-Secret Clearance with polygraph Must be able to read, speak, write, and understand the English language Excellent oral and written communication skills Ability to interact and relay security technical requirements at all levels of leadership and workforce Ability to work both independently and as a member of a team Work Environment, Physical Demands, and Mental Demands: Typical office environment with no unusual hazards, occasional lifting to 20 pounds, constant sitting while using the computer terminal, constant use of sight abilities while reviewing documents, constant use of speech/hearing abilities for communication, constant mental alertness, must possess planning/organizing skills, and must be able to work under deadlines. Other Responsibilities: Safety - Amentum enforces a safety culture whereby all employees have the responsibility for continuously developing and maintaining a safe work environment. As appropriate, each employee is responsible for completing all training requirements and fulfilling all self-aid/buddy aid responsibilities, participating in emergency response tasks and serving on safety committees and teams. Quality - Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Policy and carry out job activities in compliance with applicable Amentum Quality System documents and customer contracts. Each employee must read and understand his/her Quality Management and Customer Satisfaction responsibilities Procedure Compliance - Each employee must read, understand and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to his/her job. Compensation Details: $140,000 - $160,000 The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws. Benefits Overview: Our health and welfare benefits are designed to support you and your priorities. Offerings include: Health, dental, and vision insurance Paid time off and holidays Retirement benefits (including 401(k) matching) Educational reimbursement Parental leave Employee stock purchase plan Tax-saving options Disability and life insurance Pet insurance Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA) . click apply for full job details
Who we are Neros is a defense technology company rebuilding America's drone industrial base. We design and manufacture high-performance unmanned systems that are tested in combat, iterated at startup speed, and built at massive scale. Our team culture is fast, hands-on, and obsessed with closing the gap between design and deployment. As drones transform the character of warfare, Neros is delivering the systems the West needs to compete on the modern battlefield and deter the adversaries of democracy. We're hiring engineers, operators, and builders who want to move fast, take on extreme ownership, and get capability into the hands of warfighters in months, not years. What you will be doing Join Neros as a Senior Cybersecurity Engineer and take ownership of the security program that protects our defense technology platforms. You'll build and mature our cybersecurity capabilities from the ground up - architecting detection and response systems, engineering security controls across cloud and endpoint environments, and ensuring compliance with NIST, ISO, and CIS frameworks. This is a high-impact, hands-on role at a fast-moving defense tech startup for a security professional who thrives as both architect and operator. Responsibilities Build and operationalize the enterprise cybersecurity program, owning security architecture, detection and response, governance, and automation Engineer and manage the security technology stack including Microsoft Defender XDR, endpoint protection platforms, SIEM/MDR solutions, and Azure/M365 security controls Lead incident response operations - containment, investigation, remediation - and coordinate with leadership and stakeholders on findings and risk posture Perform security audits, vulnerability assessments, and penetration testing to identify and remediate weaknesses across infrastructure, applications, and cloud environments Develop and enforce security policies, procedures, and compliance programs aligned to NIST 800-171 and ITAR controls. Automate security workflows and build detection logic to improve alert fidelity, operational efficiency, and coverage across the environment Establish change control processes, security baselines, and security awareness training programs You should have the following 8+ years of progressive experience in cybersecurity engineering, with demonstrated ability to build and operate security programs - not just maintain existing ones Deep hands-on expertise with the Microsoft security ecosystem including Defender XDR (Endpoint, M365, Identity, Cloud Apps), Entra ID Protection, and Azure/M365 security controls Proven experience deploying and managing MDR/SIEM solutions for 24/7 threat monitoring and SOC operations (e.g., Rapid7, Secureworks Taegis XDR, or equivalent) Strong background in incident response - containment, investigation, remediation, forensic preservation, and stakeholder communication Working knowledge of compliance frameworks including NIST 800-171, NIST CSF, CIS benchmarks, and PCI DSS, with hands-on experience performing audits and control assessments Experience conducting vulnerability assessments and penetration testing across infrastructure, applications, and cloud environments Proficiency with endpoint protection platforms, Microsoft security baseline configuration, and change control programs Demonstrated ability to automate security workflows using AI-assisted tooling, XDR automation, or scripting Strong communication skills - able to translate security risks and technical findings for non-technical leadership and cross-functional teams Relevant certifications preferred: MCSA, CISSP (in progress acceptable), CompTIA Security+/CySA+, or equivalent Nice to have Experience building a cybersecurity program from scratch at a startup or early-stage company Familiarity with ISO standards, 27001 in particular Familiarity with network segmentation tools (e.g., Illumio) and next-gen firewall administration (Palo Alto, Zscaler) Experience with security awareness platforms (KnowBe4 or equivalent) and phishing simulation programs Background in systems administration (Active Directory, Citrix, SCCM, Intune) providing depth of understanding of the environments being secured Experience with Tenable.ot or OT security in operational technology environments CISSP, SANS GIAC, or advanced Microsoft security certifications Eligibility or willingness to obtain a security clearance for potential future classified work US Salary Range $98,000 - $137,500 USD The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are considered part of Neros' total compensation package. We're an equal opportunity employer. We welcome all applicants without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
09/25/2026
Full time
Who we are Neros is a defense technology company rebuilding America's drone industrial base. We design and manufacture high-performance unmanned systems that are tested in combat, iterated at startup speed, and built at massive scale. Our team culture is fast, hands-on, and obsessed with closing the gap between design and deployment. As drones transform the character of warfare, Neros is delivering the systems the West needs to compete on the modern battlefield and deter the adversaries of democracy. We're hiring engineers, operators, and builders who want to move fast, take on extreme ownership, and get capability into the hands of warfighters in months, not years. What you will be doing Join Neros as a Senior Cybersecurity Engineer and take ownership of the security program that protects our defense technology platforms. You'll build and mature our cybersecurity capabilities from the ground up - architecting detection and response systems, engineering security controls across cloud and endpoint environments, and ensuring compliance with NIST, ISO, and CIS frameworks. This is a high-impact, hands-on role at a fast-moving defense tech startup for a security professional who thrives as both architect and operator. Responsibilities Build and operationalize the enterprise cybersecurity program, owning security architecture, detection and response, governance, and automation Engineer and manage the security technology stack including Microsoft Defender XDR, endpoint protection platforms, SIEM/MDR solutions, and Azure/M365 security controls Lead incident response operations - containment, investigation, remediation - and coordinate with leadership and stakeholders on findings and risk posture Perform security audits, vulnerability assessments, and penetration testing to identify and remediate weaknesses across infrastructure, applications, and cloud environments Develop and enforce security policies, procedures, and compliance programs aligned to NIST 800-171 and ITAR controls. Automate security workflows and build detection logic to improve alert fidelity, operational efficiency, and coverage across the environment Establish change control processes, security baselines, and security awareness training programs You should have the following 8+ years of progressive experience in cybersecurity engineering, with demonstrated ability to build and operate security programs - not just maintain existing ones Deep hands-on expertise with the Microsoft security ecosystem including Defender XDR (Endpoint, M365, Identity, Cloud Apps), Entra ID Protection, and Azure/M365 security controls Proven experience deploying and managing MDR/SIEM solutions for 24/7 threat monitoring and SOC operations (e.g., Rapid7, Secureworks Taegis XDR, or equivalent) Strong background in incident response - containment, investigation, remediation, forensic preservation, and stakeholder communication Working knowledge of compliance frameworks including NIST 800-171, NIST CSF, CIS benchmarks, and PCI DSS, with hands-on experience performing audits and control assessments Experience conducting vulnerability assessments and penetration testing across infrastructure, applications, and cloud environments Proficiency with endpoint protection platforms, Microsoft security baseline configuration, and change control programs Demonstrated ability to automate security workflows using AI-assisted tooling, XDR automation, or scripting Strong communication skills - able to translate security risks and technical findings for non-technical leadership and cross-functional teams Relevant certifications preferred: MCSA, CISSP (in progress acceptable), CompTIA Security+/CySA+, or equivalent Nice to have Experience building a cybersecurity program from scratch at a startup or early-stage company Familiarity with ISO standards, 27001 in particular Familiarity with network segmentation tools (e.g., Illumio) and next-gen firewall administration (Palo Alto, Zscaler) Experience with security awareness platforms (KnowBe4 or equivalent) and phishing simulation programs Background in systems administration (Active Directory, Citrix, SCCM, Intune) providing depth of understanding of the environments being secured Experience with Tenable.ot or OT security in operational technology environments CISSP, SANS GIAC, or advanced Microsoft security certifications Eligibility or willingness to obtain a security clearance for potential future classified work US Salary Range $98,000 - $137,500 USD The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are considered part of Neros' total compensation package. We're an equal opportunity employer. We welcome all applicants without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
General Dynamics Information Technology
Herndon, Virginia
Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret SCI + Polygraph Clearance Level Must Be Able to Obtain: None Public Trust/Other Required: None Job Family: IT Infrastructure and Operations Job Qualifications: Skills: Complex Systems, DevOps, Software Systems Engineering Certifications: None Experience: 10 + years of related experience US Citizenship Required: Yes Job Description: We are seeking a hands-on Systems Engineer with deep, practical experience across infrastructure, platforms, cloud, and application ecosystems. This role suits a technical leader who can analyze current-state environments, design future-state architectures, and execute complex system implementations end to end. What You'll Do: Perform full-stack systems engineering across network, compute, storage, OS, middleware, databases, and applications Document "as-is" architectures and develop detailed "to-be" designs Lead cloud and on prem implementations, migrations, upgrades, and modernization initiatives Ensure system availability, scalability, performance, security, and compliance Integrate systems and platforms with DevOps/DevSecOps pipelines Troubleshoot complex, cross-domain issues Collaborate with infrastructure, platform, software, DevOps, and data teams Produce technical documentation, diagrams, standards, and runbooks Serve as an escalation point and technical authority Communicate effectively with executives and cross-organizational partners Required Technical Skills: Enterprise networking, firewalls, load balancers, DNS SAN/NAS/Object storage Kubernetes, Docker Linux (RHEL/CentOS) administration, hardening, automation PKI and identity management Cloud platforms: AWS, Azure, or GCP Hybrid and on prem integration, cloud networking/security/cost optimization Relational & NoSQL databases (Oracle, PostgreSQL, MySQL, SQL Server, MongoDB, Cassandra, DynamoDB, Redis) APIs, web services, middleware, SDLC fundamentals Event messaging (SQS, SNS, RabbitMQ) IaC, automation, and scripting (Terraform, Ansible, Python, Bash, PowerShell, CloudFormation) CI/CD tools (Jenkins, GitLab CI/CD, GitHub Actions, ArgoCD) Security best practices and system hardening Monitoring/observability tools (Prometheus, Grafana, Splunk, ELK, CloudWatch) Ability to produce "as-is" and "to-be" architectures plus implementation/migration plans Preferred Skills: Zero Trust architectures AI/ML or data platform exposure Big data platforms (Hadoop, Databricks, Snowflake, BigQuery) Experience supporting mission-critical systems ITIL or agile delivery experience Cloud, security, or architecture certifications (AWS SA/DevOps, Azure Admin, CKA/CKAD, ITIL) What You'll Need to Succeed: Education: Bachelor's degree in Computer Science, Engineering, or a related technical discipline, or the equivalent combination of education, technical certifications or training, or work experience. Location: Herndon, VA Hours: Contract core hours, 9am - 3pm Security Clearance: TS/SCI with Polygraph US Citizenship Required GDIT IS YOUR PLACE: 401K with company match Comprehensive health and wellness packages Internal mobility team dedicated to helping you own your career Professional growth opportunities including paid education and certifications Cutting-edge technology you can learn from Rest and recharge with paid vacation and holidays The likely salary range for this position is $162,037 - $219,227. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours: 40 Travel Required: None Telecommuting Options: Onsite Work Location: USA VA Herndon Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. Our Identity Verification Process: As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes. About Our Work: We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.Join our Talent Community to stay up to date on our career opportunities and events at Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
09/25/2026
Full time
Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret SCI + Polygraph Clearance Level Must Be Able to Obtain: None Public Trust/Other Required: None Job Family: IT Infrastructure and Operations Job Qualifications: Skills: Complex Systems, DevOps, Software Systems Engineering Certifications: None Experience: 10 + years of related experience US Citizenship Required: Yes Job Description: We are seeking a hands-on Systems Engineer with deep, practical experience across infrastructure, platforms, cloud, and application ecosystems. This role suits a technical leader who can analyze current-state environments, design future-state architectures, and execute complex system implementations end to end. What You'll Do: Perform full-stack systems engineering across network, compute, storage, OS, middleware, databases, and applications Document "as-is" architectures and develop detailed "to-be" designs Lead cloud and on prem implementations, migrations, upgrades, and modernization initiatives Ensure system availability, scalability, performance, security, and compliance Integrate systems and platforms with DevOps/DevSecOps pipelines Troubleshoot complex, cross-domain issues Collaborate with infrastructure, platform, software, DevOps, and data teams Produce technical documentation, diagrams, standards, and runbooks Serve as an escalation point and technical authority Communicate effectively with executives and cross-organizational partners Required Technical Skills: Enterprise networking, firewalls, load balancers, DNS SAN/NAS/Object storage Kubernetes, Docker Linux (RHEL/CentOS) administration, hardening, automation PKI and identity management Cloud platforms: AWS, Azure, or GCP Hybrid and on prem integration, cloud networking/security/cost optimization Relational & NoSQL databases (Oracle, PostgreSQL, MySQL, SQL Server, MongoDB, Cassandra, DynamoDB, Redis) APIs, web services, middleware, SDLC fundamentals Event messaging (SQS, SNS, RabbitMQ) IaC, automation, and scripting (Terraform, Ansible, Python, Bash, PowerShell, CloudFormation) CI/CD tools (Jenkins, GitLab CI/CD, GitHub Actions, ArgoCD) Security best practices and system hardening Monitoring/observability tools (Prometheus, Grafana, Splunk, ELK, CloudWatch) Ability to produce "as-is" and "to-be" architectures plus implementation/migration plans Preferred Skills: Zero Trust architectures AI/ML or data platform exposure Big data platforms (Hadoop, Databricks, Snowflake, BigQuery) Experience supporting mission-critical systems ITIL or agile delivery experience Cloud, security, or architecture certifications (AWS SA/DevOps, Azure Admin, CKA/CKAD, ITIL) What You'll Need to Succeed: Education: Bachelor's degree in Computer Science, Engineering, or a related technical discipline, or the equivalent combination of education, technical certifications or training, or work experience. Location: Herndon, VA Hours: Contract core hours, 9am - 3pm Security Clearance: TS/SCI with Polygraph US Citizenship Required GDIT IS YOUR PLACE: 401K with company match Comprehensive health and wellness packages Internal mobility team dedicated to helping you own your career Professional growth opportunities including paid education and certifications Cutting-edge technology you can learn from Rest and recharge with paid vacation and holidays The likely salary range for this position is $162,037 - $219,227. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours: 40 Travel Required: None Telecommuting Options: Onsite Work Location: USA VA Herndon Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. Our Identity Verification Process: As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes. About Our Work: We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.Join our Talent Community to stay up to date on our career opportunities and events at Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Company Overview: Over the past 15 years, eTel has delivered essential solutions for the federal government by securing and managing data, providing scalable identity access, modernizing legacy systems, and building high-performance platforms. By integrating new technologies and ensuring reliable operations we help agencies stay prepared for future challenges As a premier technology solutions and services company to the US federal government, eTel possesses longstanding relationships across the federal civilian marketplace. Other customers include the broader Treasury Department, Commerce Department, and State Department. eTel offers integrated CMMI Level 3 processes, tools, and techniques with innovative, cost-efficient, and secure solutions to address complex challenges. eTel also holds ISO 9001:2015, ISO/IEC 27001:2013, and ISO/IEC 20000-1:2018 certifications, and offers dedicated subject matter experts (SMEs) and thought leaders that possess a deep understanding of customers' environments and challenges. Work Location and On-Site/Telework Requirements: Hybrid - NIH, Bethesda, MD. On site for workshops and pilots (typically 1-2 days/week during the first 120 days, then as scheduled). Citizenship: U.S. Citizenship required Clearance: All staff must obtain NIH suitability and a PIV credential and be fluent in English. Anyone doing risk or vulnerability testing needs a current T2 (BI) or higher investigation. Salary Range: $130,000-$140,000 yearly salary Overview : You will co-author the cloud, network, and identity design patterns behind NIH's Future State ZTA under the NIH Governance, Risk & Compliance (GRC) Zero Trust Architecture (ZTA) Support Services task order for the NIH Office of the Chief Information Officer (OCIO). You will work in the Architecture Pod on Tasks 2, 3, and 4. This is a design and advisory role: you will produce reference architectures, patterns, and control mappings for NIH teams to implement, not operate NIH production systems. Deep hands-on engineering experience is still essential. Responsibilities : Co-author the cloud, on-premises, and hybrid reference architectures (Subtask 2.2) with the Senior ZT Architect, as reusable design patterns with NIST SP 800-53 Rev 5 control mappings. Design microsegmentation and workload-identity patterns (NIST SP 800-207A, CISA and NSA Zero Trust guidance), software-defined perimeter for HPC clusters, and isolated VLANs with brokered remote access for laboratory instruments. Document how centrally provided network, endpoint, and logging services are inherited, as input to the Centrally Provided Services Matrix. Define technical policy anchors for the network and device pillars (segmentation policy in the controller, compliance policy in endpoint management). Map controls to telemetry so continuous-monitoring evidence is collected rather than written by hand. Support Task 3 network use cases: flow baselining to generate and validate microsegmentation policy, and lateral-movement anomaly detection. Support the Task 4 gap assessment for the network, device, and cloud pillars, and the evidence expectations in the ZTA Overlay. Validate patterns with IC engineering teams (CIT, HPC, and clinical platform owners). Tools & Technology Environment : AWS and Azure (including GovCloud), cloud-native IAM and CSPM; SSE/ZTNA (e.g., Zscaler, Palo Alto); microsegmentation platforms (e.g., Illumio); Palo Alto/Fortinet/Cisco firewalls; Microsoft Defender, CrowdStrike, Forescout; Splunk/Microsoft Sentinel; Terraform/IaC; Git. Required Qualifications : Bachelor's degree plus 7+ years of network and/or cloud security engineering. Hands-on experience with identity-aware access, microsegmentation, and cloud security patterns in enterprise environments. Experience with firewalls, SSE/ZTNA, and native AWS or Azure security services. Security+ or a higher security certification. Ability to obtain an NIH suitability determination and PIV credential; fluent in English. Preferred Qualifications : A cloud security certification (AWS Security Specialty, AZ-500, or CCSP); PCNSE or CCNP Security. Experience in FedRAMP-authorized or GovCloud environments. Experience with research networks, HPC (Linux/Slurm), or operational technology/IoT device segmentation. Infrastructure-as-code (Terraform, CloudFormation) and experience writing security patterns as code. Current National Institutes of Health (NIH) or U.S. Department of Health and Human Services (HHS) experience is highly preferred. Commitment to Diversity - eTelligent Group provides equal employment opportunities (EEO) to all applicants without regard to race, color, religion, gender, sexual orientation, gender identity, nations origin, age, disability, genetic information, marital status, amnesty, status as a covered veteran, and any other characteristic provided in accordance with applicable, federal, state and local laws.
09/25/2026
Full time
Company Overview: Over the past 15 years, eTel has delivered essential solutions for the federal government by securing and managing data, providing scalable identity access, modernizing legacy systems, and building high-performance platforms. By integrating new technologies and ensuring reliable operations we help agencies stay prepared for future challenges As a premier technology solutions and services company to the US federal government, eTel possesses longstanding relationships across the federal civilian marketplace. Other customers include the broader Treasury Department, Commerce Department, and State Department. eTel offers integrated CMMI Level 3 processes, tools, and techniques with innovative, cost-efficient, and secure solutions to address complex challenges. eTel also holds ISO 9001:2015, ISO/IEC 27001:2013, and ISO/IEC 20000-1:2018 certifications, and offers dedicated subject matter experts (SMEs) and thought leaders that possess a deep understanding of customers' environments and challenges. Work Location and On-Site/Telework Requirements: Hybrid - NIH, Bethesda, MD. On site for workshops and pilots (typically 1-2 days/week during the first 120 days, then as scheduled). Citizenship: U.S. Citizenship required Clearance: All staff must obtain NIH suitability and a PIV credential and be fluent in English. Anyone doing risk or vulnerability testing needs a current T2 (BI) or higher investigation. Salary Range: $130,000-$140,000 yearly salary Overview : You will co-author the cloud, network, and identity design patterns behind NIH's Future State ZTA under the NIH Governance, Risk & Compliance (GRC) Zero Trust Architecture (ZTA) Support Services task order for the NIH Office of the Chief Information Officer (OCIO). You will work in the Architecture Pod on Tasks 2, 3, and 4. This is a design and advisory role: you will produce reference architectures, patterns, and control mappings for NIH teams to implement, not operate NIH production systems. Deep hands-on engineering experience is still essential. Responsibilities : Co-author the cloud, on-premises, and hybrid reference architectures (Subtask 2.2) with the Senior ZT Architect, as reusable design patterns with NIST SP 800-53 Rev 5 control mappings. Design microsegmentation and workload-identity patterns (NIST SP 800-207A, CISA and NSA Zero Trust guidance), software-defined perimeter for HPC clusters, and isolated VLANs with brokered remote access for laboratory instruments. Document how centrally provided network, endpoint, and logging services are inherited, as input to the Centrally Provided Services Matrix. Define technical policy anchors for the network and device pillars (segmentation policy in the controller, compliance policy in endpoint management). Map controls to telemetry so continuous-monitoring evidence is collected rather than written by hand. Support Task 3 network use cases: flow baselining to generate and validate microsegmentation policy, and lateral-movement anomaly detection. Support the Task 4 gap assessment for the network, device, and cloud pillars, and the evidence expectations in the ZTA Overlay. Validate patterns with IC engineering teams (CIT, HPC, and clinical platform owners). Tools & Technology Environment : AWS and Azure (including GovCloud), cloud-native IAM and CSPM; SSE/ZTNA (e.g., Zscaler, Palo Alto); microsegmentation platforms (e.g., Illumio); Palo Alto/Fortinet/Cisco firewalls; Microsoft Defender, CrowdStrike, Forescout; Splunk/Microsoft Sentinel; Terraform/IaC; Git. Required Qualifications : Bachelor's degree plus 7+ years of network and/or cloud security engineering. Hands-on experience with identity-aware access, microsegmentation, and cloud security patterns in enterprise environments. Experience with firewalls, SSE/ZTNA, and native AWS or Azure security services. Security+ or a higher security certification. Ability to obtain an NIH suitability determination and PIV credential; fluent in English. Preferred Qualifications : A cloud security certification (AWS Security Specialty, AZ-500, or CCSP); PCNSE or CCNP Security. Experience in FedRAMP-authorized or GovCloud environments. Experience with research networks, HPC (Linux/Slurm), or operational technology/IoT device segmentation. Infrastructure-as-code (Terraform, CloudFormation) and experience writing security patterns as code. Current National Institutes of Health (NIH) or U.S. Department of Health and Human Services (HHS) experience is highly preferred. Commitment to Diversity - eTelligent Group provides equal employment opportunities (EEO) to all applicants without regard to race, color, religion, gender, sexual orientation, gender identity, nations origin, age, disability, genetic information, marital status, amnesty, status as a covered veteran, and any other characteristic provided in accordance with applicable, federal, state and local laws.
Job DescriptionJob Description Why we're different: ITRCC's efficiency relies on our team members; at the ITRCC you won't just be part of a company, you will be part of a family who respects their members and strives to cultivate sustainability. We are actively involved in the community, care for the wellbeing of our team members and understand the importance of work/life balance. Summary: The incumbent is responsible for safeguarding the organization's information systems by monitoring, analyzing, and remediating security events. The incumbent also supports the implementation and maintenance of cybersecurity strategies and tools. Relationships: • Internal Directly report to the Head of Cyber Security. • Direct interactions to work with and support the internal IT team. • Direct interaction with employees from various departments, including supervisors and managers. • Direct interaction with security vendors and regulatory entities. Responsibilities: • General: o Performs all tasks safely, complies with all internal and external safety requirements, supports ITRCC's safety culture, attends all safety training, and completes all compliance trainings as required by ITRCC. o Upholds ITRCC's core values: Community, Actions, Reliability, Excellence and Safety (CARES). • Level 1(including General): o Monitor and analyze events from security tools (e.g., SIEM, IDS/IPS, EDR) to detect and respond to cybersecurity threats. o Assist in conducting vulnerability scans, analyzing results, and supporting remediation efforts. o Configure and manage basic settings of security tools, such as antivirus software and endpoint protection systems. o Conduct initial security awareness training and support ongoing educational efforts for employees. o Participate in incident investigations by collecting and analyzing data. o Collaborate with cross-functional teams to address security concerns and support secure system configurations. o All other duties as assigned. • Level 2 (including level 1): o Collaborate with internal and external stakeholders, such as auditors and regulatory bodies, to ensure compliance with relevant security requirements, standards, and regulations. o Collaborate with cross-functional teams to design and implement secure network architectures, systems, and applications. o Configure and manage security tools such as intrusion detection/prevention systems, antivirus software, and endpoint protection solutions. • Level 3 (including level 2): o Serves as an industry leader in Cyber Security with at Least three relevant certifications. o Manage and oversee contracts and identifies performance issues and resolve such performance issues. o Design and implement network systems, identify KPIs and develop plans to monitor the network. o Manages PCI or NIST compliance with audits and achieves requires compliance and certifications. o Tier changes can happen if the employee meets the qualifications during the next review period. Qualifications: • Foundational knowledge of cybersecurity principles and tools • Basic experience in monitoring and responding to security events • Exposure to network troubleshooting and operating systems administration • Basic proficiency with security tools like SIEM and endpoint protection systems • Fundamental understanding of networking concepts (IP addressing, protocols like TCP/IP, and basic firewall rules) • Familiarity with operating systems (Windows, macOS, Linux). Strong analytical and problem-solving skills Desirable Experience:• Level 1: 1-2 years of relevant work experience • Level 2: 3-9 years of relevant work experience • Level 3: 10+ years of relevant work experience Working Conditions: This position requires: (Frequent est. 5 hrs. per shift) Frequent sitting, walking and standing Occasional talking and hearing Light physical effort Heavy computer usage Minimum 3 days in office or designated field office per week
09/24/2026
Full time
Job DescriptionJob Description Why we're different: ITRCC's efficiency relies on our team members; at the ITRCC you won't just be part of a company, you will be part of a family who respects their members and strives to cultivate sustainability. We are actively involved in the community, care for the wellbeing of our team members and understand the importance of work/life balance. Summary: The incumbent is responsible for safeguarding the organization's information systems by monitoring, analyzing, and remediating security events. The incumbent also supports the implementation and maintenance of cybersecurity strategies and tools. Relationships: • Internal Directly report to the Head of Cyber Security. • Direct interactions to work with and support the internal IT team. • Direct interaction with employees from various departments, including supervisors and managers. • Direct interaction with security vendors and regulatory entities. Responsibilities: • General: o Performs all tasks safely, complies with all internal and external safety requirements, supports ITRCC's safety culture, attends all safety training, and completes all compliance trainings as required by ITRCC. o Upholds ITRCC's core values: Community, Actions, Reliability, Excellence and Safety (CARES). • Level 1(including General): o Monitor and analyze events from security tools (e.g., SIEM, IDS/IPS, EDR) to detect and respond to cybersecurity threats. o Assist in conducting vulnerability scans, analyzing results, and supporting remediation efforts. o Configure and manage basic settings of security tools, such as antivirus software and endpoint protection systems. o Conduct initial security awareness training and support ongoing educational efforts for employees. o Participate in incident investigations by collecting and analyzing data. o Collaborate with cross-functional teams to address security concerns and support secure system configurations. o All other duties as assigned. • Level 2 (including level 1): o Collaborate with internal and external stakeholders, such as auditors and regulatory bodies, to ensure compliance with relevant security requirements, standards, and regulations. o Collaborate with cross-functional teams to design and implement secure network architectures, systems, and applications. o Configure and manage security tools such as intrusion detection/prevention systems, antivirus software, and endpoint protection solutions. • Level 3 (including level 2): o Serves as an industry leader in Cyber Security with at Least three relevant certifications. o Manage and oversee contracts and identifies performance issues and resolve such performance issues. o Design and implement network systems, identify KPIs and develop plans to monitor the network. o Manages PCI or NIST compliance with audits and achieves requires compliance and certifications. o Tier changes can happen if the employee meets the qualifications during the next review period. Qualifications: • Foundational knowledge of cybersecurity principles and tools • Basic experience in monitoring and responding to security events • Exposure to network troubleshooting and operating systems administration • Basic proficiency with security tools like SIEM and endpoint protection systems • Fundamental understanding of networking concepts (IP addressing, protocols like TCP/IP, and basic firewall rules) • Familiarity with operating systems (Windows, macOS, Linux). Strong analytical and problem-solving skills Desirable Experience:• Level 1: 1-2 years of relevant work experience • Level 2: 3-9 years of relevant work experience • Level 3: 10+ years of relevant work experience Working Conditions: This position requires: (Frequent est. 5 hrs. per shift) Frequent sitting, walking and standing Occasional talking and hearing Light physical effort Heavy computer usage Minimum 3 days in office or designated field office per week
Security Architect DETAILS Location: Remote Position Type: 12M+ Contract Hourly / Salary: to 120W2+ (based on experience level) JOB SUMMARY Vaco is currently seeking a Security Architect for a 12M+ Contract opportunity that is remote. The Security Architect will lead Enterprise Security Architecture initiatives focused on strengthening the organization's security posture across applications, cloud platforms, infrastructure, APIs, and data environments. The Security Architect will partner with engineering, infrastructure, and business teams to embed secure-by-design principles throughout the solution lifecycle by conducting security architecture reviews, cloud and data security assessments, and application security evaluations. The Security Architect will define and recommend security controls spanning identity and access management, network security, vulnerability management, API protection, and data governance while developing security standards, reference architectures, and best practices that improve resilience, reduce risk, and ensure compliance with organizational and industry security requirements. Security Architecture Reviews - Conducting End-to-End Security Architecture Reviews for Applications / SaaS Platforms / Infrastructure Projects Evaluating Designs Against Established Security Standards / Identifying Security Gaps / Recommending Practical Risk Mitigations / Applying Secure-by-Design Principles Early in the Solution Lifecycle Data Risk / Protection - Assessing Data Flows / Storage / Access Patterns / Sensitive Data Controls Recommending Improvements to Encryption / Data Masking / Access Governance / Monitoring / Databricks Security Configurations / Varonis Data Classification / Access Auditing / Insider Threat Monitoring Cloud Security Assessments - Leading Security Assessments Across Cloud Environments / Workloads Evaluating Configurations / Network Segmentation / Identity Boundaries / Logging / Workload Protections / Recommending Hardening Measures Aligned with Cloud Provider Best Practices / Organizational Cloud Security Frameworks Application / API Security - Providing Architectural Oversight for Penetration Testing / SAST / DAST Activities Reviewing Findings / Recommending Remediation Strategies / Validating Secure Development Practices / Assessing API Authentication / Authorization / Rate Limiting / API Key / Secret / Token Management Identity / Access / Endpoint Security - Applying IAM / PAM Principles Supporting Least Privilege / Separation of Duties / Strong Authentication Championing Phishing-Resistant MFA Using FIDO2 / Hardware-Backed Authenticators / Guiding MDM / MAM Strategies for Secure Mobile / Endpoint Access Network Security / Vulnerability Management - Evaluating Network Architectures / Segmentation Strategies / Perimeter Controls / Zero-Trust Controls Partnering with Infrastructure / Operations Teams to Prioritize Vulnerability Remediation / Recommend Architectural Changes Reducing Security Exposure Security Advisory / Governance - Serving as a Trusted Advisor on Enterprise Security Architecture Documenting Architectural Decisions / Maintaining Reference Architectures / Developing Reusable Security Patterns / Contributing to Security Standards / Policies JOB REQUIREMENTS Security Architecture Reviews - Performing Security Architecture Reviews Across Applications / SaaS Solutions / Infrastructure Environments Data Security - Conducting Data Flow Analysis / Data Risk Assessments / Sensitive Data Protection using Databricks / Varonis Cloud Security - Assessing Cloud Environments / Cloud-Native Security Controls / Cloud Security Best Practices API Security - Designing Secure API Architectures / Authentication / Authorization / API Key / Secret / Token Management IAM / PAM - Applying IAM / PAM Concepts Supporting Authentication / Authorization / Privilege Management / Identity Governance Modern Authentication - Implementing Phishing-Resistant MFA / FIDO2 / Modern Authentication Standards Mobile / Endpoint Security - Supporting MDM / MAM Platforms / Secure Mobile / Endpoint Management Strategies Network Security - Applying TCP/IP / Network Segmentation / Firewalls / Proxies / DNS / Vulnerability Remediation Practices Application Security - Supporting Penetration Testing / SAST / DAST Processes / Secure Application Development Practices Cyber Resilience / Disaster Recovery - Supporting Cyber Resilience Capabilities / Disaster Recovery Technologies / Business Continuity Strategies PREFERRED (not required) Security Certifications - CISSP / CCSP / SABSA / AWS Security / MS Azure Security / Google Cloud Security Certifications, etc. Security Frameworks - Applying NIST CSF / ISO 27001 / CIS Controls / Zero-Trust Reference Models to Security Architecture Initiatives Regulatory Compliance - Supporting Security Architecture within HIPAA / PCI / SOX / GDPR, etc. Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring . click apply for full job details
09/24/2026
Full time
Security Architect DETAILS Location: Remote Position Type: 12M+ Contract Hourly / Salary: to 120W2+ (based on experience level) JOB SUMMARY Vaco is currently seeking a Security Architect for a 12M+ Contract opportunity that is remote. The Security Architect will lead Enterprise Security Architecture initiatives focused on strengthening the organization's security posture across applications, cloud platforms, infrastructure, APIs, and data environments. The Security Architect will partner with engineering, infrastructure, and business teams to embed secure-by-design principles throughout the solution lifecycle by conducting security architecture reviews, cloud and data security assessments, and application security evaluations. The Security Architect will define and recommend security controls spanning identity and access management, network security, vulnerability management, API protection, and data governance while developing security standards, reference architectures, and best practices that improve resilience, reduce risk, and ensure compliance with organizational and industry security requirements. Security Architecture Reviews - Conducting End-to-End Security Architecture Reviews for Applications / SaaS Platforms / Infrastructure Projects Evaluating Designs Against Established Security Standards / Identifying Security Gaps / Recommending Practical Risk Mitigations / Applying Secure-by-Design Principles Early in the Solution Lifecycle Data Risk / Protection - Assessing Data Flows / Storage / Access Patterns / Sensitive Data Controls Recommending Improvements to Encryption / Data Masking / Access Governance / Monitoring / Databricks Security Configurations / Varonis Data Classification / Access Auditing / Insider Threat Monitoring Cloud Security Assessments - Leading Security Assessments Across Cloud Environments / Workloads Evaluating Configurations / Network Segmentation / Identity Boundaries / Logging / Workload Protections / Recommending Hardening Measures Aligned with Cloud Provider Best Practices / Organizational Cloud Security Frameworks Application / API Security - Providing Architectural Oversight for Penetration Testing / SAST / DAST Activities Reviewing Findings / Recommending Remediation Strategies / Validating Secure Development Practices / Assessing API Authentication / Authorization / Rate Limiting / API Key / Secret / Token Management Identity / Access / Endpoint Security - Applying IAM / PAM Principles Supporting Least Privilege / Separation of Duties / Strong Authentication Championing Phishing-Resistant MFA Using FIDO2 / Hardware-Backed Authenticators / Guiding MDM / MAM Strategies for Secure Mobile / Endpoint Access Network Security / Vulnerability Management - Evaluating Network Architectures / Segmentation Strategies / Perimeter Controls / Zero-Trust Controls Partnering with Infrastructure / Operations Teams to Prioritize Vulnerability Remediation / Recommend Architectural Changes Reducing Security Exposure Security Advisory / Governance - Serving as a Trusted Advisor on Enterprise Security Architecture Documenting Architectural Decisions / Maintaining Reference Architectures / Developing Reusable Security Patterns / Contributing to Security Standards / Policies JOB REQUIREMENTS Security Architecture Reviews - Performing Security Architecture Reviews Across Applications / SaaS Solutions / Infrastructure Environments Data Security - Conducting Data Flow Analysis / Data Risk Assessments / Sensitive Data Protection using Databricks / Varonis Cloud Security - Assessing Cloud Environments / Cloud-Native Security Controls / Cloud Security Best Practices API Security - Designing Secure API Architectures / Authentication / Authorization / API Key / Secret / Token Management IAM / PAM - Applying IAM / PAM Concepts Supporting Authentication / Authorization / Privilege Management / Identity Governance Modern Authentication - Implementing Phishing-Resistant MFA / FIDO2 / Modern Authentication Standards Mobile / Endpoint Security - Supporting MDM / MAM Platforms / Secure Mobile / Endpoint Management Strategies Network Security - Applying TCP/IP / Network Segmentation / Firewalls / Proxies / DNS / Vulnerability Remediation Practices Application Security - Supporting Penetration Testing / SAST / DAST Processes / Secure Application Development Practices Cyber Resilience / Disaster Recovery - Supporting Cyber Resilience Capabilities / Disaster Recovery Technologies / Business Continuity Strategies PREFERRED (not required) Security Certifications - CISSP / CCSP / SABSA / AWS Security / MS Azure Security / Google Cloud Security Certifications, etc. Security Frameworks - Applying NIST CSF / ISO 27001 / CIS Controls / Zero-Trust Reference Models to Security Architecture Initiatives Regulatory Compliance - Supporting Security Architecture within HIPAA / PCI / SOX / GDPR, etc. Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring . click apply for full job details
Key Responsibilities Design, develop, program, and commission OT equipment commonly found in industrial control systems. Design and maintain OT network architectures. Implement OT cybersecurity best practices and standards. Lead automation and controls projects from concept through implementation. Identify opportunities to improve system reliability, productivity, and efficiency. Create and maintain network architecture diagrams. Design and configure VLANs and firewall rules to properly segment and connect OT and IT networks. Configure switches, firewalls, and servers on site once electricians have pulled and terminated wiring. Test and validate communications between OT and IT networks. Ensure builds follow EPA/cybersecurity standards within budget and timeline constraints. Technical Skills Firewalls, managed switches, servers Network Architecture Diagram Generation EtherNet/IP, Modbus TCP/IP, OPC UA, Profinet, MQTT Strong general IT networking background: network architecture/diagram creation, firewall configuration, VLAN setup and segmentation. Comfortable with managed switches, servers, and firewalls. Cisco, Fortinet, or similar platform Preferred Qualifications 4 year college degree in any related field 3-5 years experience OT Cybersecurity Certification Work Environment Office, industrial facilities, and field environments 10-40% travel may be required By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/24/2026
Full time
Key Responsibilities Design, develop, program, and commission OT equipment commonly found in industrial control systems. Design and maintain OT network architectures. Implement OT cybersecurity best practices and standards. Lead automation and controls projects from concept through implementation. Identify opportunities to improve system reliability, productivity, and efficiency. Create and maintain network architecture diagrams. Design and configure VLANs and firewall rules to properly segment and connect OT and IT networks. Configure switches, firewalls, and servers on site once electricians have pulled and terminated wiring. Test and validate communications between OT and IT networks. Ensure builds follow EPA/cybersecurity standards within budget and timeline constraints. Technical Skills Firewalls, managed switches, servers Network Architecture Diagram Generation EtherNet/IP, Modbus TCP/IP, OPC UA, Profinet, MQTT Strong general IT networking background: network architecture/diagram creation, firewall configuration, VLAN setup and segmentation. Comfortable with managed switches, servers, and firewalls. Cisco, Fortinet, or similar platform Preferred Qualifications 4 year college degree in any related field 3-5 years experience OT Cybersecurity Certification Work Environment Office, industrial facilities, and field environments 10-40% travel may be required By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
Senior Network Engineer (Fortinet / Cisco) DETAILS Location: Irving, TX 75039 (hybrid 4days M-TH per week onsite) Position Type: Direct-Hire Hourly / Salary: to $150K (based on experience) JOB SUMMARY Vaco is currently seeking a Senior Network Engineer (Fortinet / Cisco) for a Direct-Hire opportunity that is located in Irving, TX 75039 (onsite 5-days per week). The Senior Network Engineer (Fortinet / Cisco) will primarily focus on supporting the integration of acquired companies into the established enterprise network configuration, including assessment, standardization, and migration activities across network and security environments. The Senior Network Engineer (Fortinet / Cisco) will manage and optimize a large-scale enterprise network and security infrastructure and will design, implement, maintain and troubleshoot LAN / WAN, wireless, and data center networks, while ensuring high availability, performance, and security. Additionally, the Senior Network Engineer (Fortinet / Cisco) will resolve escalated technical issues, mentor junior engineers, lead network projects, perform capacity planning, maintain comprehensive documentation, and drive continuous process and systems improvements. Enterprise Network / Security Operations - Managing Enterprise Network / Security Infrastructure Supporting Availability / Integrity / Stability / Performance Across Large-Scale Environments LAN / WAN / Wireless Networks / Routing / Switching Consistency / Routers / Firewalls / Switches / IP-Based Communication Systems Network Engineering / Administration - Designing / Implementing / Maintaining Enterprise Network Infrastructure Supporting Performance Monitoring / Bottleneck Resolution / Capacity Planning / Infrastructure Scalability / Global Connectivity / Operational Stability Technical Support / Operations - Resolving Escalated Network Issues Managing Monitoring / Alerting / Incident Activities / Enterprise Ticketing Processes / Operational Issue Resolution / Incident Documentation Providing Advanced Troubleshooting Support Security / Governance - Maintaining Security Controls (Firewalls / Access Controls / Intrusion Detection) Supporting Change Management / Operational Governance / Process Improvements / Enterprise Standards Alignment Infrastructure Delivery / Cross-Functional Collaboration - Managing Infrastructure Software / Hardware Initiatives / Technical Analytics / Reporting / Documentation / Knowledge Base Contributions Coordinating Cross-Functional Resources Supporting Technology Projects / Enterprise Implementations M&A Network Integration - Supporting Acquired Company Network Integration / Infrastructure Standardization / Migration Activities Aligning Legacy Environments to Enterprise Standards Documentation / Continuous Improvement - Developing Technical Documentation (Diagrams / Procedures / Configurations) Supporting Technology Modernization / Process Enhancements / Operational Visibility / Long-Term Infrastructure Scalability About the Project: The core mission is to lead the migration and standardization of a large, acquired network into an established enterprise "golden configuration." This involves assessing the acquired environment, performing gap analysis, designing migration strategies, and executing large-scale cutovers across Cisco (Nexus 7k/9k / Catalyst) and Fortinet (FortiGate / SD-WAN / FortiManager) environments while maintaining HA and security. This role will require a combination of deep technical expertise in Cisco Routing / Switching and Fortinet Security with strong integration leadership to consolidate hundreds of sites into one standardized, high-performing network. This is a high-impact role blending hands-on engineering, project leadership, and cross-team coordination during a critical growth phase, with the ultimate goal of unifying 2 large networks into one best-in-class enterprise infrastructure. JOB REQUIREMENTS Enterprise Network Engineering (9+ years) - Data Center Infrastructure (advanced) / Cisco / Fortinet Cisco Networking (9+ years hands-on) - Design / Configuration / Troubleshooting Cisco Nexus 7K/9K / Catalyst Routing/Switching Platforms Fortinet Security (5+ years) - Supporting FortiGate / FortiManager / FortiAnalyzer / Fortinet SD-WAN Routing / Network Architecture (deep expertise) - Across Routing Protocols (BGP / OSPF / EIGRP / Route Redistribution / Policy-Based Routing) M&A Network Integration - Network Integration / Consolidation / Standardization Initiatives Following Enterprise Mergers and Acquisitions Enterprise Network Transformation - Delivering Large-Scale Network Migrations into Standardized Enterprise "Golden Configuration" Models Preserving Availability / Reducing Operational Disruption Network Assessment / Migration Strategy - Conducting Network Assessments / Gap Analysis / Migration Planning / Roadmap Development for Acquired Enterprise Environments PREFERRED (not required) Fortinet Security Ecosystem (advanced) - FortiGate HA Clusters / Security Fabric / FortiSwitch / FortiAP / Integrated Security Components Network Access Control (NAC) - Implementing / Managing Cisco ISE for Enterprise Network Access Control / Policy Enforcement Enterprise Wireless Management - Supporting Ruckus Wireless Solutions for Large-Scale WiFi Infrastructure Network Monitoring / Observability - Utilizing SolarWinds for Network Monitoring / Performance Management / Reporting / Operational Visibility VPN / Secure Connectivity - Designing / Supporting Site-to-Site IPsec VPN / SSL VPN Solutions Enterprise-wide M&A Network Integration - Executing Large-Scale NW Integration / Post-Acquisition Consolidation Initiatives Network Standardization (Multi-Site) - Leading Multi-Site Network Standardization Across Distributed Enterprise Environments Ensuring Consistency and Compliance Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies . click apply for full job details
09/24/2026
Full time
Senior Network Engineer (Fortinet / Cisco) DETAILS Location: Irving, TX 75039 (hybrid 4days M-TH per week onsite) Position Type: Direct-Hire Hourly / Salary: to $150K (based on experience) JOB SUMMARY Vaco is currently seeking a Senior Network Engineer (Fortinet / Cisco) for a Direct-Hire opportunity that is located in Irving, TX 75039 (onsite 5-days per week). The Senior Network Engineer (Fortinet / Cisco) will primarily focus on supporting the integration of acquired companies into the established enterprise network configuration, including assessment, standardization, and migration activities across network and security environments. The Senior Network Engineer (Fortinet / Cisco) will manage and optimize a large-scale enterprise network and security infrastructure and will design, implement, maintain and troubleshoot LAN / WAN, wireless, and data center networks, while ensuring high availability, performance, and security. Additionally, the Senior Network Engineer (Fortinet / Cisco) will resolve escalated technical issues, mentor junior engineers, lead network projects, perform capacity planning, maintain comprehensive documentation, and drive continuous process and systems improvements. Enterprise Network / Security Operations - Managing Enterprise Network / Security Infrastructure Supporting Availability / Integrity / Stability / Performance Across Large-Scale Environments LAN / WAN / Wireless Networks / Routing / Switching Consistency / Routers / Firewalls / Switches / IP-Based Communication Systems Network Engineering / Administration - Designing / Implementing / Maintaining Enterprise Network Infrastructure Supporting Performance Monitoring / Bottleneck Resolution / Capacity Planning / Infrastructure Scalability / Global Connectivity / Operational Stability Technical Support / Operations - Resolving Escalated Network Issues Managing Monitoring / Alerting / Incident Activities / Enterprise Ticketing Processes / Operational Issue Resolution / Incident Documentation Providing Advanced Troubleshooting Support Security / Governance - Maintaining Security Controls (Firewalls / Access Controls / Intrusion Detection) Supporting Change Management / Operational Governance / Process Improvements / Enterprise Standards Alignment Infrastructure Delivery / Cross-Functional Collaboration - Managing Infrastructure Software / Hardware Initiatives / Technical Analytics / Reporting / Documentation / Knowledge Base Contributions Coordinating Cross-Functional Resources Supporting Technology Projects / Enterprise Implementations M&A Network Integration - Supporting Acquired Company Network Integration / Infrastructure Standardization / Migration Activities Aligning Legacy Environments to Enterprise Standards Documentation / Continuous Improvement - Developing Technical Documentation (Diagrams / Procedures / Configurations) Supporting Technology Modernization / Process Enhancements / Operational Visibility / Long-Term Infrastructure Scalability About the Project: The core mission is to lead the migration and standardization of a large, acquired network into an established enterprise "golden configuration." This involves assessing the acquired environment, performing gap analysis, designing migration strategies, and executing large-scale cutovers across Cisco (Nexus 7k/9k / Catalyst) and Fortinet (FortiGate / SD-WAN / FortiManager) environments while maintaining HA and security. This role will require a combination of deep technical expertise in Cisco Routing / Switching and Fortinet Security with strong integration leadership to consolidate hundreds of sites into one standardized, high-performing network. This is a high-impact role blending hands-on engineering, project leadership, and cross-team coordination during a critical growth phase, with the ultimate goal of unifying 2 large networks into one best-in-class enterprise infrastructure. JOB REQUIREMENTS Enterprise Network Engineering (9+ years) - Data Center Infrastructure (advanced) / Cisco / Fortinet Cisco Networking (9+ years hands-on) - Design / Configuration / Troubleshooting Cisco Nexus 7K/9K / Catalyst Routing/Switching Platforms Fortinet Security (5+ years) - Supporting FortiGate / FortiManager / FortiAnalyzer / Fortinet SD-WAN Routing / Network Architecture (deep expertise) - Across Routing Protocols (BGP / OSPF / EIGRP / Route Redistribution / Policy-Based Routing) M&A Network Integration - Network Integration / Consolidation / Standardization Initiatives Following Enterprise Mergers and Acquisitions Enterprise Network Transformation - Delivering Large-Scale Network Migrations into Standardized Enterprise "Golden Configuration" Models Preserving Availability / Reducing Operational Disruption Network Assessment / Migration Strategy - Conducting Network Assessments / Gap Analysis / Migration Planning / Roadmap Development for Acquired Enterprise Environments PREFERRED (not required) Fortinet Security Ecosystem (advanced) - FortiGate HA Clusters / Security Fabric / FortiSwitch / FortiAP / Integrated Security Components Network Access Control (NAC) - Implementing / Managing Cisco ISE for Enterprise Network Access Control / Policy Enforcement Enterprise Wireless Management - Supporting Ruckus Wireless Solutions for Large-Scale WiFi Infrastructure Network Monitoring / Observability - Utilizing SolarWinds for Network Monitoring / Performance Management / Reporting / Operational Visibility VPN / Secure Connectivity - Designing / Supporting Site-to-Site IPsec VPN / SSL VPN Solutions Enterprise-wide M&A Network Integration - Executing Large-Scale NW Integration / Post-Acquisition Consolidation Initiatives Network Standardization (Multi-Site) - Leading Multi-Site Network Standardization Across Distributed Enterprise Environments Ensuring Consistency and Compliance Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies . click apply for full job details
Manager, Infrastructure Location: San Antonio, TX Employment Type: Full-Time, Direct Hire Work Authorization: No sponsorship available Position Overview We are seeking an experienced Manager, Infrastructure to lead and support an enterprise IT infrastructure environment. This position will be responsible for the strategy, reliability, security, and day-to-day operation of core infrastructure while leading and developing a technical team. The ideal candidate is a strong people leader who remains technically hands-on and can serve as an escalation point for complex infrastructure issues. Key Responsibilities Lead and develop the infrastructure team while providing technical direction and mentorship. Oversee enterprise networking, servers, cloud platforms, virtualization, storage, and related infrastructure. Manage and support Microsoft technologies including Azure, Microsoft 365, Intune, and Entra ID. Support virtualized environments utilizing technologies such as VMware, Hyper-V, and Nutanix. Ensure infrastructure environments are secure, reliable, scalable, and highly available. Lead infrastructure upgrades, migrations, implementations, and modernization initiatives. Support disaster recovery, business continuity, incident response, and infrastructure security initiatives. Partner with security, application, and business teams on technology projects and organizational priorities. Identify opportunities to improve infrastructure through automation and scripting. Manage vendors, technology partners, licensing, and infrastructure-related services. Qualifications 8+ years of experience in infrastructure, systems, network engineering, or a related technology discipline. 3+ years of experience leading or managing technical teams. Strong knowledge of enterprise networking, systems, cloud, virtualization, and storage. Experience with Microsoft Azure and Microsoft 365 technologies. Experience with enterprise virtualization platforms. Strong understanding of networking concepts, firewalls, VPNs, and network security. Experience with infrastructure security, disaster recovery, and business continuity. Familiarity with automation or scripting technologies such as PowerShell or Python. Strong troubleshooting, communication, and leadership skills. Ability to remain technically engaged while managing and developing a team. Preferred Qualifications Experience working within security or compliance frameworks such as NIST, CMMC, or SOC 2. Experience with infrastructure automation and Microsoft Graph API. Relevant certifications such as CCNP, Azure Solutions Architect Expert, or similar advanced infrastructure/cloud certifications. Experience supporting large or complex enterprise environments. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/24/2026
Full time
Manager, Infrastructure Location: San Antonio, TX Employment Type: Full-Time, Direct Hire Work Authorization: No sponsorship available Position Overview We are seeking an experienced Manager, Infrastructure to lead and support an enterprise IT infrastructure environment. This position will be responsible for the strategy, reliability, security, and day-to-day operation of core infrastructure while leading and developing a technical team. The ideal candidate is a strong people leader who remains technically hands-on and can serve as an escalation point for complex infrastructure issues. Key Responsibilities Lead and develop the infrastructure team while providing technical direction and mentorship. Oversee enterprise networking, servers, cloud platforms, virtualization, storage, and related infrastructure. Manage and support Microsoft technologies including Azure, Microsoft 365, Intune, and Entra ID. Support virtualized environments utilizing technologies such as VMware, Hyper-V, and Nutanix. Ensure infrastructure environments are secure, reliable, scalable, and highly available. Lead infrastructure upgrades, migrations, implementations, and modernization initiatives. Support disaster recovery, business continuity, incident response, and infrastructure security initiatives. Partner with security, application, and business teams on technology projects and organizational priorities. Identify opportunities to improve infrastructure through automation and scripting. Manage vendors, technology partners, licensing, and infrastructure-related services. Qualifications 8+ years of experience in infrastructure, systems, network engineering, or a related technology discipline. 3+ years of experience leading or managing technical teams. Strong knowledge of enterprise networking, systems, cloud, virtualization, and storage. Experience with Microsoft Azure and Microsoft 365 technologies. Experience with enterprise virtualization platforms. Strong understanding of networking concepts, firewalls, VPNs, and network security. Experience with infrastructure security, disaster recovery, and business continuity. Familiarity with automation or scripting technologies such as PowerShell or Python. Strong troubleshooting, communication, and leadership skills. Ability to remain technically engaged while managing and developing a team. Preferred Qualifications Experience working within security or compliance frameworks such as NIST, CMMC, or SOC 2. Experience with infrastructure automation and Microsoft Graph API. Relevant certifications such as CCNP, Azure Solutions Architect Expert, or similar advanced infrastructure/cloud certifications. Experience supporting large or complex enterprise environments. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
Southern Glazer's Wine & Spirits seeks a Senior Manager, Edge and Distributed Network Engineering to lead design, deployment, and optimization of secure edge and branch networks across our distribution footprint. You will own strategy for SD WAN, campus, and remote connectivity, ensuring high availability for logistics, sales, and warehouse operations. Partner with security, infrastructure, and application teams to deliver resilient, scalable network services and guide a team of engineers through architecture, implementation, and lifecycle management while driving automation, standards, and continuous improvement. Responsibilities Lead architecture, design, and roadmap for edge and distributed network services across warehouses, offices, and remote sites. Oversee implementation, operation, and optimization of SD-WAN, routing, switching, and wireless solutions. Ensure network availability, performance, and security to support logistics, sales, and business-critical systems. Manage and mentor a team of network engineers, setting standards, priorities, and development plans. Collaborate with security, infrastructure, and application teams on secure, integrated network solutions. Drive network automation, monitoring, and documentation to improve reliability and reduce manual effort. Manage vendors, contracts, and lifecycle for network hardware, software, and services. Lead complex network projects and incident response, communicating status to technical and business stakeholders. Required Skills Edge networking architecture SD-WAN design and operations Distributed/branch network engineering Network security (firewalls, segmentation) Routing and switching (BGP, OSPF, VLANs) Cloud and hybrid connectivity Network automation and scripting Monitoring and performance tuning (SNMP, Net Flow) Vendor and lifecycle management Leadership and project management
09/24/2026
Full time
Southern Glazer's Wine & Spirits seeks a Senior Manager, Edge and Distributed Network Engineering to lead design, deployment, and optimization of secure edge and branch networks across our distribution footprint. You will own strategy for SD WAN, campus, and remote connectivity, ensuring high availability for logistics, sales, and warehouse operations. Partner with security, infrastructure, and application teams to deliver resilient, scalable network services and guide a team of engineers through architecture, implementation, and lifecycle management while driving automation, standards, and continuous improvement. Responsibilities Lead architecture, design, and roadmap for edge and distributed network services across warehouses, offices, and remote sites. Oversee implementation, operation, and optimization of SD-WAN, routing, switching, and wireless solutions. Ensure network availability, performance, and security to support logistics, sales, and business-critical systems. Manage and mentor a team of network engineers, setting standards, priorities, and development plans. Collaborate with security, infrastructure, and application teams on secure, integrated network solutions. Drive network automation, monitoring, and documentation to improve reliability and reduce manual effort. Manage vendors, contracts, and lifecycle for network hardware, software, and services. Lead complex network projects and incident response, communicating status to technical and business stakeholders. Required Skills Edge networking architecture SD-WAN design and operations Distributed/branch network engineering Network security (firewalls, segmentation) Routing and switching (BGP, OSPF, VLANs) Cloud and hybrid connectivity Network automation and scripting Monitoring and performance tuning (SNMP, Net Flow) Vendor and lifecycle management Leadership and project management
Job Description Job Description Tier III NOC Technician Washington, DC - metro accessible, 4 days onsite, 1 day remote Perm position, full benefits package, $120K, perhaps some flex depending on experience and certs MUST HAVE ONE OR MORE HIGH LEVEL CERTIFICAITON: CCNP, CCNP Security, JNCIP, or equivalent RESPONSIBILITIES Serve as the final escalation point for complex Tier 1 and Tier 2 incidents requiring advanced technical expertise Lead troubleshooting and resolution of critical network outages, performance degradation, and complex technical issues Perform root cause analysis on major incidents and develop preventive measures to avoid recurrence Provide technical leadership and guidance to junior NOC technicians during critical incidents Design and implement solutions for network optimization, automation, and performance improvements Conduct in-depth packet analysis and protocol troubleshooting to diagnose complex connectivity issues Configure and troubleshoot advanced network devices including core routers, multilayer switches, firewalls, and load balancers Participate in and lead Major Incident Management calls with stakeholders and executive leadership Develop, maintain, and improve NOC procedures, runbooks, and technical documentation Perform advanced network and system performance analysis using multiple monitoring and diagnostic tools Collaborate with Network Engineering, Security, and Systems Administration teams on complex cross-functional issues Evaluate and recommend improvements to network architecture, monitoring capabilities, and operational processes Mentor and train Tier 1 and Tier 2 technicians on troubleshooting techniques and best practices Participate in change advisory board (CAB) reviews and provide technical assessments of proposed changes Execute complex network changes during maintenance windows with minimal service disruption Monitor and optimize network capacity, bandwidth utilization, and traffic patterns Coordinate with vendors and external service providers to resolve carrier and equipment issues Develop and maintain disaster recovery procedures and participate in failover testing Implement network security measures and respond to security incidents in coordination with security teams Create and present technical reports on network performance, incidents, and trends to management Participate in on-call rotation as the senior technical escalation resource Stay current with emerging technologies and industry best practices to continuously improve operations REQUIREMENTS Bachelor's degree OR equivalent experience 7+ years of experience in network operations, network engineering, or systems administration 5+ years of experience working in a 7x24x365 NOC or similar mission-critical environment Demonstrated experience as a senior escalation point for complex technical issues Supporting large-scale enterprise networks with thousands of users Expert-level knowledge of network protocols, routing, and switching (BGP, OSPF, EIGRP, MPLS, spanning-tree, VLAN) Advanced troubleshooting skills using packet analysis tools (Wireshark, tcpdump) Deep understanding of network security technologies including firewalls, IDS/IPS, VPN, and NAT Extensive experience with enterprise network equipment from multiple vendors (Cisco, Juniper, Palo Alto, Arista, F5) Proficiency with network monitoring and management platforms (SolarWinds, Nagios, Splunk, NetFlow/sFlow analysis) Knowledge of TCP/IP stack, network services (DNS, DHCP, NTP), and application protocols Expertise in load balancing, traffic engineering, and high-availability architectures Strong understanding of data center networking, fabric technologies, and virtualization Routing policy implementation and traffic optimization techniques Advanced troubleshooting skills across multiple technology domains (network, systems, applications, security) Ability to interpret network diagrams, technical specifications, and vendor documentation Strong analytical and critical thinking skills for solving complex problems under pressure Leadership and mentoring skills for guiding junior team members Excellent written and verbal communication skills across stakeholder levels Proven incident management ability, including leading bridge calls and coordinating resources during major incidents Proficiency with scripting and automation tools (Python, Ansible, PowerShell, Bash) Deep understanding of ITIL framework (Incident, Problem, Change Management) Knowledge of cloud networking architectures (AWS, Azure, GCP) and DevOps practices Ability to work effectively under extreme pressure and make rapid technical decisions Flexibility to work rotating shifts including nights, weekends, and holidays Strong documentation skills and commitment to accurate technical records Company Description System One is a leading provider of specialized, highly technical services and solutions to critical infrastructure, technology, life sciences, and government sectors. We partner with large private and public organizations who trust us to execute their complex, mission-critical initiatives through our outsourced services and workforce solutions. Company Description System One is a leading provider of specialized, highly technical services and solutions to critical infrastructure, technology, life sciences, and government sectors. We partner with large private and public organizations who trust us to execute their complex, mission-critical initiatives through our outsourced services and workforce solutions.
09/24/2026
Full time
Job Description Job Description Tier III NOC Technician Washington, DC - metro accessible, 4 days onsite, 1 day remote Perm position, full benefits package, $120K, perhaps some flex depending on experience and certs MUST HAVE ONE OR MORE HIGH LEVEL CERTIFICAITON: CCNP, CCNP Security, JNCIP, or equivalent RESPONSIBILITIES Serve as the final escalation point for complex Tier 1 and Tier 2 incidents requiring advanced technical expertise Lead troubleshooting and resolution of critical network outages, performance degradation, and complex technical issues Perform root cause analysis on major incidents and develop preventive measures to avoid recurrence Provide technical leadership and guidance to junior NOC technicians during critical incidents Design and implement solutions for network optimization, automation, and performance improvements Conduct in-depth packet analysis and protocol troubleshooting to diagnose complex connectivity issues Configure and troubleshoot advanced network devices including core routers, multilayer switches, firewalls, and load balancers Participate in and lead Major Incident Management calls with stakeholders and executive leadership Develop, maintain, and improve NOC procedures, runbooks, and technical documentation Perform advanced network and system performance analysis using multiple monitoring and diagnostic tools Collaborate with Network Engineering, Security, and Systems Administration teams on complex cross-functional issues Evaluate and recommend improvements to network architecture, monitoring capabilities, and operational processes Mentor and train Tier 1 and Tier 2 technicians on troubleshooting techniques and best practices Participate in change advisory board (CAB) reviews and provide technical assessments of proposed changes Execute complex network changes during maintenance windows with minimal service disruption Monitor and optimize network capacity, bandwidth utilization, and traffic patterns Coordinate with vendors and external service providers to resolve carrier and equipment issues Develop and maintain disaster recovery procedures and participate in failover testing Implement network security measures and respond to security incidents in coordination with security teams Create and present technical reports on network performance, incidents, and trends to management Participate in on-call rotation as the senior technical escalation resource Stay current with emerging technologies and industry best practices to continuously improve operations REQUIREMENTS Bachelor's degree OR equivalent experience 7+ years of experience in network operations, network engineering, or systems administration 5+ years of experience working in a 7x24x365 NOC or similar mission-critical environment Demonstrated experience as a senior escalation point for complex technical issues Supporting large-scale enterprise networks with thousands of users Expert-level knowledge of network protocols, routing, and switching (BGP, OSPF, EIGRP, MPLS, spanning-tree, VLAN) Advanced troubleshooting skills using packet analysis tools (Wireshark, tcpdump) Deep understanding of network security technologies including firewalls, IDS/IPS, VPN, and NAT Extensive experience with enterprise network equipment from multiple vendors (Cisco, Juniper, Palo Alto, Arista, F5) Proficiency with network monitoring and management platforms (SolarWinds, Nagios, Splunk, NetFlow/sFlow analysis) Knowledge of TCP/IP stack, network services (DNS, DHCP, NTP), and application protocols Expertise in load balancing, traffic engineering, and high-availability architectures Strong understanding of data center networking, fabric technologies, and virtualization Routing policy implementation and traffic optimization techniques Advanced troubleshooting skills across multiple technology domains (network, systems, applications, security) Ability to interpret network diagrams, technical specifications, and vendor documentation Strong analytical and critical thinking skills for solving complex problems under pressure Leadership and mentoring skills for guiding junior team members Excellent written and verbal communication skills across stakeholder levels Proven incident management ability, including leading bridge calls and coordinating resources during major incidents Proficiency with scripting and automation tools (Python, Ansible, PowerShell, Bash) Deep understanding of ITIL framework (Incident, Problem, Change Management) Knowledge of cloud networking architectures (AWS, Azure, GCP) and DevOps practices Ability to work effectively under extreme pressure and make rapid technical decisions Flexibility to work rotating shifts including nights, weekends, and holidays Strong documentation skills and commitment to accurate technical records Company Description System One is a leading provider of specialized, highly technical services and solutions to critical infrastructure, technology, life sciences, and government sectors. We partner with large private and public organizations who trust us to execute their complex, mission-critical initiatives through our outsourced services and workforce solutions. Company Description System One is a leading provider of specialized, highly technical services and solutions to critical infrastructure, technology, life sciences, and government sectors. We partner with large private and public organizations who trust us to execute their complex, mission-critical initiatives through our outsourced services and workforce solutions.