it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

73 jobs found

Email me jobs like this
Refine Search
Current Search
firewall engineer
Senior Windows Infrastructure Security Engineer - Defense & Manufacturing
SAAB Cicero, New York
SAAB seeks a Senior Information Security Engineer to secure our Windows-based infrastructure supporting advanced defense and manufacturing systems. In this role, you will design and harden Windows servers, Active Directory, and endpoints, monitor threats, and lead incident response across complex, mission-critical environments. You will collaborate with cross-functional engineering and IT teams to embed security into system design, automate configuration and patching, and uphold compliance with industry and defense-grade standards. At Saab, you'll contribute to innovative, high-impact technologies in a mission-driven, collaborative culture focused on safety and long-term security. Responsibilities Design, implement, and maintain security controls for Windows-based infrastructure supporting manufacturing and defense systems Monitor, analyze, and respond to security incidents, vulnerabilities, and threats across servers, endpoints, and networks Harden Windows servers, Active Directory, and related services following industry and defense-grade security standards Conduct security assessments, risk analyses, and remediation planning for critical production and corporate environments Automate security configurations, patching, and compliance checks using scripting and infrastructure tools Collaborate with cross-functional engineering, IT, and operations teams to embed security in system design and deployments Develop and maintain security documentation, standards, and runbooks for Windows infrastructure Support audits, compliance efforts, and customer/security stakeholder reviews Mentor junior engineers and promote secure engineering best practices Evaluate and implement new security tools and technologies aligned with Saab's mission and regulatory requirements Required Skills Windows Server administration Active Directory and Group Policy Endpoint Detection and Response (EDR) tools Security Information and Event Management (SIEM) Power Shell scripting Vulnerability management and remediation Network security and firewalls Identity and access management Incident detection and response Security architecture and hardening standards
09/30/2026
Full time
SAAB seeks a Senior Information Security Engineer to secure our Windows-based infrastructure supporting advanced defense and manufacturing systems. In this role, you will design and harden Windows servers, Active Directory, and endpoints, monitor threats, and lead incident response across complex, mission-critical environments. You will collaborate with cross-functional engineering and IT teams to embed security into system design, automate configuration and patching, and uphold compliance with industry and defense-grade standards. At Saab, you'll contribute to innovative, high-impact technologies in a mission-driven, collaborative culture focused on safety and long-term security. Responsibilities Design, implement, and maintain security controls for Windows-based infrastructure supporting manufacturing and defense systems Monitor, analyze, and respond to security incidents, vulnerabilities, and threats across servers, endpoints, and networks Harden Windows servers, Active Directory, and related services following industry and defense-grade security standards Conduct security assessments, risk analyses, and remediation planning for critical production and corporate environments Automate security configurations, patching, and compliance checks using scripting and infrastructure tools Collaborate with cross-functional engineering, IT, and operations teams to embed security in system design and deployments Develop and maintain security documentation, standards, and runbooks for Windows infrastructure Support audits, compliance efforts, and customer/security stakeholder reviews Mentor junior engineers and promote secure engineering best practices Evaluate and implement new security tools and technologies aligned with Saab's mission and regulatory requirements Required Skills Windows Server administration Active Directory and Group Policy Endpoint Detection and Response (EDR) tools Security Information and Event Management (SIEM) Power Shell scripting Vulnerability management and remediation Network security and firewalls Identity and access management Incident detection and response Security architecture and hardening standards
Senior Windows Infrastructure Security Engineer
SAAB Smyrna, New York
Saab seeks a Senior Information Security Engineer to secure and harden our Windows-based infrastructure supporting advanced defense and manufacturing systems. In this role you will design and implement Windows security architecture, harden servers and Active Directory, and lead monitoring, incident response, and vulnerability management. You'll collaborate with global engineering and IT teams, automate security controls, and guide security best practices across complex, high-availability environments. This mission-driven position offers the opportunity to protect critical systems while working on cutting-edge technology in a collaborative, learning-focused culture. Responsibilities Design, implement, and maintain secure Windows infrastructure for Saab's manufacturing and defense environments Harden servers, Active Directory, and network services following security and compliance standards Monitor, analyze, and respond to security events, vulnerabilities, and incidents Lead security assessments, penetration tests, and remediation activities across Windows environments Automate security controls, patching, and configuration management Collaborate with engineering, operations, and IT teams to embed security into systems and processes Develop and maintain security policies, procedures, and technical documentation Support audits, risk assessments, and regulatory or customer security requirements Mentor junior engineers and contribute to security architecture decisions Evaluate and integrate new security tools and technologies aligned with Saab's mission Required Skills Windows Server administration Active Directory and Group Policy Endpoint detection and response (EDR) tools SIEM monitoring and incident response Vulnerability management and remediation Power Shell scripting and automation Network security and firewalls Identity and access management (IAM) Security hardening and configuration management Security frameworks (NIST, ISO 27001)
09/30/2026
Full time
Saab seeks a Senior Information Security Engineer to secure and harden our Windows-based infrastructure supporting advanced defense and manufacturing systems. In this role you will design and implement Windows security architecture, harden servers and Active Directory, and lead monitoring, incident response, and vulnerability management. You'll collaborate with global engineering and IT teams, automate security controls, and guide security best practices across complex, high-availability environments. This mission-driven position offers the opportunity to protect critical systems while working on cutting-edge technology in a collaborative, learning-focused culture. Responsibilities Design, implement, and maintain secure Windows infrastructure for Saab's manufacturing and defense environments Harden servers, Active Directory, and network services following security and compliance standards Monitor, analyze, and respond to security events, vulnerabilities, and incidents Lead security assessments, penetration tests, and remediation activities across Windows environments Automate security controls, patching, and configuration management Collaborate with engineering, operations, and IT teams to embed security into systems and processes Develop and maintain security policies, procedures, and technical documentation Support audits, risk assessments, and regulatory or customer security requirements Mentor junior engineers and contribute to security architecture decisions Evaluate and integrate new security tools and technologies aligned with Saab's mission Required Skills Windows Server administration Active Directory and Group Policy Endpoint detection and response (EDR) tools SIEM monitoring and incident response Vulnerability management and remediation Power Shell scripting and automation Network security and firewalls Identity and access management (IAM) Security hardening and configuration management Security frameworks (NIST, ISO 27001)
Senior Windows Infrastructure Information Security Engineer - Defense Manufacturing
SAAB Mottville, New York
SAAB is seeking a Senior Information Security Engineer to lead security for our Windows infrastructure supporting advanced defense and manufacturing systems. In this role, you will design and implement security controls for Windows servers, Active Directory, and endpoints, hardening platforms and responding to threats in a mission-critical environment. You will collaborate with cross-functional engineering teams, guide incident response, and drive continuous improvement of our cyber defenses. Join Saab to protect cutting-edge technologies that safeguard societies worldwide while working in an innovative, learning-focused culture. Responsibilities Design, implement, and maintain security controls for Windows infrastructure in a manufacturing-focused defense environment Harden Windows servers, Active Directory, and endpoint systems following security and compliance standards Monitor, investigate, and respond to security incidents and vulnerabilities across SAAB's environments Collaborate with infrastructure, network, and application teams to embed security into system architecture and deployments Conduct risk assessments, security reviews, and configuration audits for Windows platforms Develop and maintain security baselines, policies, procedures, and documentation Support identity and access management, privilege management, and secure authentication mechanisms Evaluate, implement, and tune security tools such as EDR, SIEM, and vulnerability management solutions Provide security guidance, mentoring, and best practices to engineers and project teams Contribute to continuous improvement of Saab's cyber defense posture and participate in on-call or incident rotations as needed Required Skills Windows Server administration Active Directory design and hardening Endpoint Detection and Response (EDR) tools Security Information and Event Management (SIEM) Vulnerability management and remediation Network security and firewalls Identity and access management (IAM) Power Shell scripting and automation Security monitoring and incident response NIST/ISO 27001 security frameworks
09/30/2026
Full time
SAAB is seeking a Senior Information Security Engineer to lead security for our Windows infrastructure supporting advanced defense and manufacturing systems. In this role, you will design and implement security controls for Windows servers, Active Directory, and endpoints, hardening platforms and responding to threats in a mission-critical environment. You will collaborate with cross-functional engineering teams, guide incident response, and drive continuous improvement of our cyber defenses. Join Saab to protect cutting-edge technologies that safeguard societies worldwide while working in an innovative, learning-focused culture. Responsibilities Design, implement, and maintain security controls for Windows infrastructure in a manufacturing-focused defense environment Harden Windows servers, Active Directory, and endpoint systems following security and compliance standards Monitor, investigate, and respond to security incidents and vulnerabilities across SAAB's environments Collaborate with infrastructure, network, and application teams to embed security into system architecture and deployments Conduct risk assessments, security reviews, and configuration audits for Windows platforms Develop and maintain security baselines, policies, procedures, and documentation Support identity and access management, privilege management, and secure authentication mechanisms Evaluate, implement, and tune security tools such as EDR, SIEM, and vulnerability management solutions Provide security guidance, mentoring, and best practices to engineers and project teams Contribute to continuous improvement of Saab's cyber defense posture and participate in on-call or incident rotations as needed Required Skills Windows Server administration Active Directory design and hardening Endpoint Detection and Response (EDR) tools Security Information and Event Management (SIEM) Vulnerability management and remediation Network security and firewalls Identity and access management (IAM) Power Shell scripting and automation Security monitoring and incident response NIST/ISO 27001 security frameworks
Cybersecurity Engineer - Network & Cloud Security
Delta Defense West Bend, Wisconsin
Delta Defense seeks a Cybersecurity Engineer to safeguard critical systems, data, and customer information supporting USCCA's nationwide membership platform. In this role, you will design and maintain secure network and cloud architectures, administer security tools, and lead monitoring, incident response, and vulnerability management efforts. You'll collaborate closely with IT, software, and business teams to embed security by design, refine policies, and support audits. Join a fast-growing, mission-driven organization where your expertise directly protects responsible gun owners and advances a values-driven, high-performance culture. Responsibilities Design, implement, and maintain secure network and cloud architectures to protect USCCA systems and data Monitor security events, investigate alerts, and respond to incidents to minimize risk and downtime Conduct vulnerability assessments, penetration testing, and remediation planning across applications and infrastructure Develop and maintain security policies, standards, and procedures aligned with regulatory and industry best practices Collaborate with engineering and IT teams to embed security into software development and deployment processes Manage security tools including SIEM, EDR, firewalls, IDS/IPS, and identity and access management platforms Perform security risk assessments on new technologies, vendors, and business initiatives Lead security awareness efforts, coaching teams on secure behavior and incident reporting Support audit, compliance, and documentation requirements for internal and external stakeholders Continuously evaluate emerging threats and technologies to strengthen Delta Defense's security posture Required Skills Network security engineering Cloud security (AWS, Azure, or similar) Security incident detection and response Vulnerability assessment and remediation Penetration testing basics SIEM administration and log analysis Endpoint detection and response (EDR) tools Identity and access management (IAM) Firewall, IDS/IPS configuration Security policy and documentation development
09/30/2026
Full time
Delta Defense seeks a Cybersecurity Engineer to safeguard critical systems, data, and customer information supporting USCCA's nationwide membership platform. In this role, you will design and maintain secure network and cloud architectures, administer security tools, and lead monitoring, incident response, and vulnerability management efforts. You'll collaborate closely with IT, software, and business teams to embed security by design, refine policies, and support audits. Join a fast-growing, mission-driven organization where your expertise directly protects responsible gun owners and advances a values-driven, high-performance culture. Responsibilities Design, implement, and maintain secure network and cloud architectures to protect USCCA systems and data Monitor security events, investigate alerts, and respond to incidents to minimize risk and downtime Conduct vulnerability assessments, penetration testing, and remediation planning across applications and infrastructure Develop and maintain security policies, standards, and procedures aligned with regulatory and industry best practices Collaborate with engineering and IT teams to embed security into software development and deployment processes Manage security tools including SIEM, EDR, firewalls, IDS/IPS, and identity and access management platforms Perform security risk assessments on new technologies, vendors, and business initiatives Lead security awareness efforts, coaching teams on secure behavior and incident reporting Support audit, compliance, and documentation requirements for internal and external stakeholders Continuously evaluate emerging threats and technologies to strengthen Delta Defense's security posture Required Skills Network security engineering Cloud security (AWS, Azure, or similar) Security incident detection and response Vulnerability assessment and remediation Penetration testing basics SIEM administration and log analysis Endpoint detection and response (EDR) tools Identity and access management (IAM) Firewall, IDS/IPS configuration Security policy and documentation development
Data Center Technician
KC Installation, LLC Rock Hill, South Carolina
Job Description Job Description Job Summary: We are seeking a skilled and detail-oriented Data Center Technician to join our client's data center installation team. This role involves installing, troubleshooting, and maintaining low voltage systems and networking infrastructure within a fast-paced and high-security data center environment. The ideal candidate has experience working with low voltage cabling, fiber optics, and network equipment installation, adhering to industry standards and safety protocols. Key Responsibilities: Install, terminate, and test low voltage cabling, including Cat5e/6/6A, fiber optic, and coaxial cables, in data center environments. Install and mount networking equipment such as routers, switches, patch panels, and firewalls in server racks. Perform cable management, labeling, and patching, ensuring all work adheres to established standards and best practices. Troubleshoot and resolve issues with low voltage cabling and networking equipment, performing tests and inspections to ensure optimal performance. Collaborate with data center engineers, electricians, and other team members to coordinate installations and upgrades. Read and interpret technical blueprints, schematics, and wiring diagrams. Maintain high standards of safety and security, following all data center protocols and guidelines. Keep accurate records of installations, updates, and repairs performed. Stay up-to-date with industry trends and technologies relevant to low voltage systems and networking hardware. Qualifications: High School Diploma or equivalent; technical certifications are a plus (e.g., BICSI, CompTIA Network+). Experience installing and maintaining low voltage cabling and networking equipment, preferably in a data center environment. Proficiency with cable testing tools and network equipment. Strong understanding of industry standards such as ANSI/TIA/EIA and BICSI. Ability to read and interpret blueprints and wiring diagrams. Familiarity with power distribution units (PDUs) and server rack configurations. Excellent problem-solving skills with attention to detail. Ability to work independently and as part of a team. Ability to lift up to 50 lbs and work in physically demanding environments, including confined spaces and high places. Willingness to work flexible hours, including nights and weekends, as needed. Preferred Qualifications: Experience with hyper-scale data centers. Experience with structured cabling systems. Company Description About KCI: As a professional service-based partnership, we offer reliability, expertise, and peace of mind for all your network infrastructure management needs. As a resource partner our clients can trust, we offer Legacy Network Care and Support, Professional Network Optimization, Transformation and Deployment Services, and Technical Staffing Resources for Telecommunications Service Providers and OEMs. Company Description About KCI: As a professional service-based partnership, we offer reliability, expertise, and peace of mind for all your network infrastructure management needs. As a resource partner our clients can trust, we offer Legacy Network Care and Support, Professional Network Optimization, Transformation and Deployment Services, and Technical Staffing Resources for Telecommunications Service Providers and OEMs.
09/30/2026
Full time
Job Description Job Description Job Summary: We are seeking a skilled and detail-oriented Data Center Technician to join our client's data center installation team. This role involves installing, troubleshooting, and maintaining low voltage systems and networking infrastructure within a fast-paced and high-security data center environment. The ideal candidate has experience working with low voltage cabling, fiber optics, and network equipment installation, adhering to industry standards and safety protocols. Key Responsibilities: Install, terminate, and test low voltage cabling, including Cat5e/6/6A, fiber optic, and coaxial cables, in data center environments. Install and mount networking equipment such as routers, switches, patch panels, and firewalls in server racks. Perform cable management, labeling, and patching, ensuring all work adheres to established standards and best practices. Troubleshoot and resolve issues with low voltage cabling and networking equipment, performing tests and inspections to ensure optimal performance. Collaborate with data center engineers, electricians, and other team members to coordinate installations and upgrades. Read and interpret technical blueprints, schematics, and wiring diagrams. Maintain high standards of safety and security, following all data center protocols and guidelines. Keep accurate records of installations, updates, and repairs performed. Stay up-to-date with industry trends and technologies relevant to low voltage systems and networking hardware. Qualifications: High School Diploma or equivalent; technical certifications are a plus (e.g., BICSI, CompTIA Network+). Experience installing and maintaining low voltage cabling and networking equipment, preferably in a data center environment. Proficiency with cable testing tools and network equipment. Strong understanding of industry standards such as ANSI/TIA/EIA and BICSI. Ability to read and interpret blueprints and wiring diagrams. Familiarity with power distribution units (PDUs) and server rack configurations. Excellent problem-solving skills with attention to detail. Ability to work independently and as part of a team. Ability to lift up to 50 lbs and work in physically demanding environments, including confined spaces and high places. Willingness to work flexible hours, including nights and weekends, as needed. Preferred Qualifications: Experience with hyper-scale data centers. Experience with structured cabling systems. Company Description About KCI: As a professional service-based partnership, we offer reliability, expertise, and peace of mind for all your network infrastructure management needs. As a resource partner our clients can trust, we offer Legacy Network Care and Support, Professional Network Optimization, Transformation and Deployment Services, and Technical Staffing Resources for Telecommunications Service Providers and OEMs. Company Description About KCI: As a professional service-based partnership, we offer reliability, expertise, and peace of mind for all your network infrastructure management needs. As a resource partner our clients can trust, we offer Legacy Network Care and Support, Professional Network Optimization, Transformation and Deployment Services, and Technical Staffing Resources for Telecommunications Service Providers and OEMs.
Data Center Technician
KC Installation, LLC Jeffersonville, Indiana
Job Description Job Description Job Summary: We are seeking a skilled and detail-oriented Data Center Technician to join our client's data center installation team. This role involves installing, troubleshooting, and maintaining low voltage systems and networking infrastructure within a fast-paced and high-security data center environment. The ideal candidate has experience working with low voltage cabling, fiber optics, and network equipment installation, adhering to industry standards and safety protocols. Key Responsibilities: Install, terminate, and test low voltage cabling, including Cat5e/6/6A, fiber optic, and coaxial cables, in data center environments. Install and mount networking equipment such as routers, switches, patch panels, and firewalls in server racks. Perform cable management, labeling, and patching, ensuring all work adheres to established standards and best practices. Troubleshoot and resolve issues with low voltage cabling and networking equipment, performing tests and inspections to ensure optimal performance. Collaborate with data center engineers, electricians, and other team members to coordinate installations and upgrades. Read and interpret technical blueprints, schematics, and wiring diagrams. Maintain high standards of safety and security, following all data center protocols and guidelines. Keep accurate records of installations, updates, and repairs performed. Stay up-to-date with industry trends and technologies relevant to low voltage systems and networking hardware. Qualifications: High School Diploma or equivalent; technical certifications are a plus (e.g., BICSI, CompTIA Network+). Experience installing and maintaining low voltage cabling and networking equipment, preferably in a data center environment. Proficiency with cable testing tools and network equipment. Strong understanding of industry standards such as ANSI/TIA/EIA and BICSI. Ability to read and interpret blueprints and wiring diagrams. Familiarity with power distribution units (PDUs) and server rack configurations. Excellent problem-solving skills with attention to detail. Ability to work independently and as part of a team. Ability to lift up to 50 lbs and work in physically demanding environments, including confined spaces and high places. Willingness to work flexible hours, including nights and weekends, as needed. Preferred Qualifications: Experience with hyper-scale data centers. Experience with structured cabling systems. Company Description About KCI: As a professional service-based partnership, we offer reliability, expertise, and peace of mind for all your network infrastructure management needs. As a resource partner our clients can trust, we offer Legacy Network Care and Support, Professional Network Optimization, Transformation and Deployment Services, and Technical Staffing Resources for Telecommunications Service Providers and OEMs. Company Description About KCI: As a professional service-based partnership, we offer reliability, expertise, and peace of mind for all your network infrastructure management needs. As a resource partner our clients can trust, we offer Legacy Network Care and Support, Professional Network Optimization, Transformation and Deployment Services, and Technical Staffing Resources for Telecommunications Service Providers and OEMs.
09/30/2026
Full time
Job Description Job Description Job Summary: We are seeking a skilled and detail-oriented Data Center Technician to join our client's data center installation team. This role involves installing, troubleshooting, and maintaining low voltage systems and networking infrastructure within a fast-paced and high-security data center environment. The ideal candidate has experience working with low voltage cabling, fiber optics, and network equipment installation, adhering to industry standards and safety protocols. Key Responsibilities: Install, terminate, and test low voltage cabling, including Cat5e/6/6A, fiber optic, and coaxial cables, in data center environments. Install and mount networking equipment such as routers, switches, patch panels, and firewalls in server racks. Perform cable management, labeling, and patching, ensuring all work adheres to established standards and best practices. Troubleshoot and resolve issues with low voltage cabling and networking equipment, performing tests and inspections to ensure optimal performance. Collaborate with data center engineers, electricians, and other team members to coordinate installations and upgrades. Read and interpret technical blueprints, schematics, and wiring diagrams. Maintain high standards of safety and security, following all data center protocols and guidelines. Keep accurate records of installations, updates, and repairs performed. Stay up-to-date with industry trends and technologies relevant to low voltage systems and networking hardware. Qualifications: High School Diploma or equivalent; technical certifications are a plus (e.g., BICSI, CompTIA Network+). Experience installing and maintaining low voltage cabling and networking equipment, preferably in a data center environment. Proficiency with cable testing tools and network equipment. Strong understanding of industry standards such as ANSI/TIA/EIA and BICSI. Ability to read and interpret blueprints and wiring diagrams. Familiarity with power distribution units (PDUs) and server rack configurations. Excellent problem-solving skills with attention to detail. Ability to work independently and as part of a team. Ability to lift up to 50 lbs and work in physically demanding environments, including confined spaces and high places. Willingness to work flexible hours, including nights and weekends, as needed. Preferred Qualifications: Experience with hyper-scale data centers. Experience with structured cabling systems. Company Description About KCI: As a professional service-based partnership, we offer reliability, expertise, and peace of mind for all your network infrastructure management needs. As a resource partner our clients can trust, we offer Legacy Network Care and Support, Professional Network Optimization, Transformation and Deployment Services, and Technical Staffing Resources for Telecommunications Service Providers and OEMs. Company Description About KCI: As a professional service-based partnership, we offer reliability, expertise, and peace of mind for all your network infrastructure management needs. As a resource partner our clients can trust, we offer Legacy Network Care and Support, Professional Network Optimization, Transformation and Deployment Services, and Technical Staffing Resources for Telecommunications Service Providers and OEMs.
Palo Alto Firewall Engineer / SME (PCNSE)
RISA Springfield, Virginia
Job Description Job Description Palo Alto Firewall Engineer / SME (PCNSE) Cyber Security Engineering Specialist III - Firewall Services Location: Springfield, VA - on site Time Type: Full time, Exempt Clearance Required to Start: Active TS/SCI (U.S. citizenship required) Additional Requirement: Must be able to obtain and maintain a U.S. Government polygraph Travel: Up to 15%, local and CONUS Salary Range: $117,000 - $128,000 Own the Palo Alto estate - legacy iron through Prisma and Panorama. RISA is hiring a Palo Alto SME to be the focal point for every Palo Alto task, operation, and project on the Network Security Services team supporting an Intelligence Community customer. The work spans both ends of the estate: PA-3000 and PA-5000 hardware refreshes and legacy CLI on one side, Prisma Access, VM-Series, and Cortex on the other. You will talk to the owner here, not a recruiting queue. What You Will Do Serve as the lead technical authority for administering, configuring, and troubleshooting Palo Alto NGFWs across a hybrid enterprise. Lead the design, analysis, testing, and implementation of secure network architectures on the Palo Alto stack. Manage the full hardware and software lifecycle, including complex refreshes and PAN-OS upgrades on legacy platforms. Run Panorama for centralized policy management across a fleet of physical and virtual firewalls. Configure master-level security profiles - App-ID, User-ID, Content-ID, SSL Decryption, and WildFire. Own configuration management processes and SOPs for all Palo Alto platforms. Mentor junior engineers and act as the escalation point for complex troubleshooting. Liaise with contract, customer, and government DAA on network security status, policies, and procedures. What You'll Bring S. citizenship and an active TS/SCI. Ability to successfully obtain and maintain a U.S. Government polygraph. Education and experience, per the contract labor category criteria: Bachelor's degree in a field applicable to the position plus 6 years of relevant experience. Equivalents accepted - Master's plus 4, Associate's plus 8, or High School diploma/GED plus 10. 7+ years hands-on administering, configuring, and troubleshooting Palo Alto NGFWs in large-scale enterprise or global environments. Active PCNSE certification. DoD 8140.01 and 8570.01-M IAT Level II (e.g. Security+ CE), and CSSP Infrastructure Support within 120 days of start. Deep practical knowledge of legacy Gen 2/Gen 3 hardware - PA-3000 and PA-5000 series, legacy CLI, physical troubleshooting, line-card replacement. Prisma Access (SASE), Prisma SD-WAN, and VM-Series in AWS, Azure, or GCP. Panorama template and device-group inheritance across a hybrid fleet. Advanced BGP, OSPF, IPSec VPN, and NAT. Nice to Have PCNSC or Prisma Certified SASE Professional (PCSAE). Python, plus firewall automation with Ansible, Terraform, or the Palo Alto XML/REST APIs. Cortex XDR or XSOAR; Expedition for legacy rule migration to App-ID policy. Zero Trust Network Access architecture; F5 (APM, AFM), Juniper SRX, or Cisco FTD/ASA. About RISA Rolston Information Systems Assurance (RISA) is a Service-Disabled Veteran-Owned Small Business that has supported federal defense and intelligence cybersecurity missions for more than seventeen years. We are small on purpose: direct access to leadership, a real say in how the work gets done, and none of the layers that slow large primes down. Benefits Medical, dental, and vision insurance; 401(k) and Roth; Paid Time Off; and 11 paid Federal Holidays. RISA is an Equal Opportunity Employer. Upon receiving an offer of employment, all applicants will be required to do a background check, including a criminal record check and employment/education verification.
09/30/2026
Full time
Job Description Job Description Palo Alto Firewall Engineer / SME (PCNSE) Cyber Security Engineering Specialist III - Firewall Services Location: Springfield, VA - on site Time Type: Full time, Exempt Clearance Required to Start: Active TS/SCI (U.S. citizenship required) Additional Requirement: Must be able to obtain and maintain a U.S. Government polygraph Travel: Up to 15%, local and CONUS Salary Range: $117,000 - $128,000 Own the Palo Alto estate - legacy iron through Prisma and Panorama. RISA is hiring a Palo Alto SME to be the focal point for every Palo Alto task, operation, and project on the Network Security Services team supporting an Intelligence Community customer. The work spans both ends of the estate: PA-3000 and PA-5000 hardware refreshes and legacy CLI on one side, Prisma Access, VM-Series, and Cortex on the other. You will talk to the owner here, not a recruiting queue. What You Will Do Serve as the lead technical authority for administering, configuring, and troubleshooting Palo Alto NGFWs across a hybrid enterprise. Lead the design, analysis, testing, and implementation of secure network architectures on the Palo Alto stack. Manage the full hardware and software lifecycle, including complex refreshes and PAN-OS upgrades on legacy platforms. Run Panorama for centralized policy management across a fleet of physical and virtual firewalls. Configure master-level security profiles - App-ID, User-ID, Content-ID, SSL Decryption, and WildFire. Own configuration management processes and SOPs for all Palo Alto platforms. Mentor junior engineers and act as the escalation point for complex troubleshooting. Liaise with contract, customer, and government DAA on network security status, policies, and procedures. What You'll Bring S. citizenship and an active TS/SCI. Ability to successfully obtain and maintain a U.S. Government polygraph. Education and experience, per the contract labor category criteria: Bachelor's degree in a field applicable to the position plus 6 years of relevant experience. Equivalents accepted - Master's plus 4, Associate's plus 8, or High School diploma/GED plus 10. 7+ years hands-on administering, configuring, and troubleshooting Palo Alto NGFWs in large-scale enterprise or global environments. Active PCNSE certification. DoD 8140.01 and 8570.01-M IAT Level II (e.g. Security+ CE), and CSSP Infrastructure Support within 120 days of start. Deep practical knowledge of legacy Gen 2/Gen 3 hardware - PA-3000 and PA-5000 series, legacy CLI, physical troubleshooting, line-card replacement. Prisma Access (SASE), Prisma SD-WAN, and VM-Series in AWS, Azure, or GCP. Panorama template and device-group inheritance across a hybrid fleet. Advanced BGP, OSPF, IPSec VPN, and NAT. Nice to Have PCNSC or Prisma Certified SASE Professional (PCSAE). Python, plus firewall automation with Ansible, Terraform, or the Palo Alto XML/REST APIs. Cortex XDR or XSOAR; Expedition for legacy rule migration to App-ID policy. Zero Trust Network Access architecture; F5 (APM, AFM), Juniper SRX, or Cisco FTD/ASA. About RISA Rolston Information Systems Assurance (RISA) is a Service-Disabled Veteran-Owned Small Business that has supported federal defense and intelligence cybersecurity missions for more than seventeen years. We are small on purpose: direct access to leadership, a real say in how the work gets done, and none of the layers that slow large primes down. Benefits Medical, dental, and vision insurance; 401(k) and Roth; Paid Time Off; and 11 paid Federal Holidays. RISA is an Equal Opportunity Employer. Upon receiving an offer of employment, all applicants will be required to do a background check, including a criminal record check and employment/education verification.
Tier 2 Escalation Technician
Simpatico Systems, LLC The Colony, Texas
Job Description Job Description Simpatico Systems is a team of engineers who align our goals with our customers' organizational objectives, delivering IT, cybersecurity, cloud, networking, and low-voltage solutions. We design systems that are simple, effective, affordable, and results-driven. We take the time to understand each client's business needs and provide customized technology solutions that drive success. Most importantly: We enjoy solving complex technology challenges and building lasting relationships with our customers. Simpatico Systems was formed in 2013 through the merger of Ironfish Technologies and Business Audio Environments (BAE). With more than 40 years of combined experience delivering exceptional service, our team is dedicated to innovation, growth, and customer success. As we continue expanding into new markets, we are seeking talented professionals who are passionate about technology and thrive in a fast-paced MSP environment. Our Opportunity The Tier 2 Escalation Technician serves as a senior technical resource within the Operations Team, handling advanced support issues escalated from the helpdesk. This role requires a highly experienced IT professional with strong networking expertise, extensive troubleshooting capabilities, and previous Managed Service Provider (MSP) experience. You will work directly with clients, vendors, and internal engineering teams to diagnose and resolve complex infrastructure, server, cloud, security, and networking issues while helping drive continuous improvement across the service desk. What You'll Do Act as the primary escalation point for the helpdesk Troubleshoot and resolve advanced networking, server, workstation, and cloud-related issues Manage incidents from escalation through resolution while maintaining exceptional customer communication Support Microsoft 365, Azure, Windows Server, Active Directory, and virtualization platforms Diagnose and resolve VPN, firewall, switching, routing, DNS, DHCP, and wireless networking issues Perform root cause analysis and identify recurring issues to improve service delivery Assist with infrastructure projects, migrations, and upgrades Provide onsite and remote support for SMB and enterprise clients Create and maintain technical documentation, SOPs, and knowledge base articles Mentor and train helpdesk technicians on troubleshooting methodology and best practices Collaborate with engineers and project teams on complex technical issues Participate in on-call rotation as required Required Qualifications 5+ years of IT support experience 3+ years working in a Managed Service Provider (MSP) environment Strong understanding of networking fundamentals, including: TCP/IP VLANs Routing and Switching Wireless Networking DNS DHCP VPN Technologies Firewall Management Advanced troubleshooting skills across Windows environments Experience supporting Microsoft 365 and Exchange Online Strong knowledge of Active Directory, Group Policy, and Azure AD/Entra ID Experience with virtualization technologies such as VMware and Hyper-V Ability to troubleshoot complex technical issues independently Exceptional verbal and written communication skills Proven ability to manage multiple priorities in a fast-paced environment Strong customer service and client relationship skills Valid driver's license and reliable transportation Preferred Qualifications Microsoft Certifications (MS-102, AZ-104, AZ-700, AZ-802, MD-102, etc.) CompTIA Network+, Security+, or equivalent certifications Unifi,Fortinet, Cisco, or Meraki experience ConnectWise Manage and Automate experience Experience supporting enterprise networking environments ITIL Foundations certification Cybersecurity experience and knowledge of security best practices Experience with backup and disaster recovery solutions What You'll Get Competitive salary based on experience Performance-based bonus opportunities Comprehensive medical, dental, and vision benefits Paid time off and holidays Company-sponsored training and certification reimbursement Career advancement opportunities Collaborative and team-oriented culture Opportunity to work with cutting-edge technologies and a diverse client base Job Type Full-Time Schedule Monday through Friday On-call rotation required Occasional after-hours maintenance support Salary Range $65,000 - $85,000+ DOE Why Join Simpatico Systems? We're looking for a seasoned technical professional who enjoys solving difficult problems, mentoring others, and delivering exceptional service. If you thrive in an MSP environment, enjoy networking and infrastructure technologies, and want a clear path toward engineering or leadership roles, we'd love to talk with you.
09/30/2026
Full time
Job Description Job Description Simpatico Systems is a team of engineers who align our goals with our customers' organizational objectives, delivering IT, cybersecurity, cloud, networking, and low-voltage solutions. We design systems that are simple, effective, affordable, and results-driven. We take the time to understand each client's business needs and provide customized technology solutions that drive success. Most importantly: We enjoy solving complex technology challenges and building lasting relationships with our customers. Simpatico Systems was formed in 2013 through the merger of Ironfish Technologies and Business Audio Environments (BAE). With more than 40 years of combined experience delivering exceptional service, our team is dedicated to innovation, growth, and customer success. As we continue expanding into new markets, we are seeking talented professionals who are passionate about technology and thrive in a fast-paced MSP environment. Our Opportunity The Tier 2 Escalation Technician serves as a senior technical resource within the Operations Team, handling advanced support issues escalated from the helpdesk. This role requires a highly experienced IT professional with strong networking expertise, extensive troubleshooting capabilities, and previous Managed Service Provider (MSP) experience. You will work directly with clients, vendors, and internal engineering teams to diagnose and resolve complex infrastructure, server, cloud, security, and networking issues while helping drive continuous improvement across the service desk. What You'll Do Act as the primary escalation point for the helpdesk Troubleshoot and resolve advanced networking, server, workstation, and cloud-related issues Manage incidents from escalation through resolution while maintaining exceptional customer communication Support Microsoft 365, Azure, Windows Server, Active Directory, and virtualization platforms Diagnose and resolve VPN, firewall, switching, routing, DNS, DHCP, and wireless networking issues Perform root cause analysis and identify recurring issues to improve service delivery Assist with infrastructure projects, migrations, and upgrades Provide onsite and remote support for SMB and enterprise clients Create and maintain technical documentation, SOPs, and knowledge base articles Mentor and train helpdesk technicians on troubleshooting methodology and best practices Collaborate with engineers and project teams on complex technical issues Participate in on-call rotation as required Required Qualifications 5+ years of IT support experience 3+ years working in a Managed Service Provider (MSP) environment Strong understanding of networking fundamentals, including: TCP/IP VLANs Routing and Switching Wireless Networking DNS DHCP VPN Technologies Firewall Management Advanced troubleshooting skills across Windows environments Experience supporting Microsoft 365 and Exchange Online Strong knowledge of Active Directory, Group Policy, and Azure AD/Entra ID Experience with virtualization technologies such as VMware and Hyper-V Ability to troubleshoot complex technical issues independently Exceptional verbal and written communication skills Proven ability to manage multiple priorities in a fast-paced environment Strong customer service and client relationship skills Valid driver's license and reliable transportation Preferred Qualifications Microsoft Certifications (MS-102, AZ-104, AZ-700, AZ-802, MD-102, etc.) CompTIA Network+, Security+, or equivalent certifications Unifi,Fortinet, Cisco, or Meraki experience ConnectWise Manage and Automate experience Experience supporting enterprise networking environments ITIL Foundations certification Cybersecurity experience and knowledge of security best practices Experience with backup and disaster recovery solutions What You'll Get Competitive salary based on experience Performance-based bonus opportunities Comprehensive medical, dental, and vision benefits Paid time off and holidays Company-sponsored training and certification reimbursement Career advancement opportunities Collaborative and team-oriented culture Opportunity to work with cutting-edge technologies and a diverse client base Job Type Full-Time Schedule Monday through Friday On-call rotation required Occasional after-hours maintenance support Salary Range $65,000 - $85,000+ DOE Why Join Simpatico Systems? We're looking for a seasoned technical professional who enjoys solving difficult problems, mentoring others, and delivering exceptional service. If you thrive in an MSP environment, enjoy networking and infrastructure technologies, and want a clear path toward engineering or leadership roles, we'd love to talk with you.
Specialist, Information System Security III (SISS3)
Armada Ltd Philadelphia, Pennsylvania
Job Description Job Description Type: Full Time Location: Philadelphia, PA Overtime Exempt: Exempt Reports To: ARMADA HQ Travel Required: Yes Security Clearance Required: Active Secret Security Clearance CONTINGENT UPON AWARD Duties & Responsibilities: Specialist, Information System Security III (SISS3) will conduct risk and vulnerability assessments of planned and installed systems to identify vulnerabilities, risks and protection needs; conduct systems security evaluation, audits, and reviews; determine the residual risk of a package based on package content and assessment results and documenting for the Security Controls Assessor's (SCA) and higher level review. Execute Security Assessment Plans (SAPs) by conducting on-site testing for afloat and PIT ashore systems. Examples include executing STIGs, SRGs, ACAS scanning, and applying patches assets to obtain cybersecurity compliance and remediate vulnerabilities. Specialist, Information System Security III (SISS3) will conduct systems security reviews, audits, or evaluations, as appropriate, to ensure accreditation documents are accurate and represent the current risk posture of the system. Perform analysis of logs, events, and reporting of various data collections tools including: vulnerability monitoring via Assured Compliance Assessment System (ACAS) and related tools, Host Based Security Systems (HBSS), web content filters, Security Information and event management (SIEM), firewall systems, network devices, server devices, workstations, and intrusion detection and prevention systems (ID/PS). Specialist, Information System Security III (SISS3) will assess impacts from observed risks and report via the Cybersecurity Program chain of command. Executing Security Assessment Plans (SAPs) by conducting on-site testing for afloat and PIT ashore systems. Examples include executing STIGs, SRGs, ACAS scanning, and applying patches assets to obtain cybersecurity compliance and remediate vulnerabilities. Perform the evaluation of system administrator, security engineer, and/or system owner proposed corrections to ensure compliance and best-fit solution. Specialist, Information System Security III (SISS3) will present and submit data to management, develop reports, and produce procedural documentation in a comprehensive and cohesive manner. Perform risk management and security engineering for Research, Development, Testing, and Evaluation (RDT&E) RMF Afloat systems include Information Assurance Vulnerability Management (IAVM) support, remediation, patching, scanning and associated boundary maintenance. Specialist, Information System Security III (SISS3) will document residual risks in a plan of actions and milestones formatted in compliance with the current package system, currently eMASS. Specialist, Information System Security III (SISS3) will maintain current vulnerability scan data and residual risk plan of actions and milestones in Vulnerability Remediation Asset Manager (VRAM). Manage, attend, and support configuration control board practices. Create and verify the accuracy of POA&Ms/RARs as identified by vulnerability actual test results. Specialist, Information System Security III (SISS3) shall write technical documentation such as user manuals, reports, documentation, policies, presentations, Plan of Action and Milestones (POA&Ms), risk assessments, proposals, outlines, and summaries in support of both ashore and afloat systems across multiple platforms. Support developing of technical documents across multiple platforms including configuration management, milestone, issue tracking, web site content management and RMF documentation. Specialist, Information System Security III (SISS3) may be required to travel CONUS (any state in USA) and OCONUS (primarily Japan, and any country in Europe). The estimated number of trips is 14 per year (estimated 25%-30% travel). Other duties as assigned. Knowledge, Skills, and Abilities (KSAs): Ability to travel CONUS (any state in USA) and OCONUS (primarily Japan, and any country in Europe). Proficient in Microsoft Windows Operating System Administration, including Windows 11, Windows 10, Windows 7, and Windows XP (at a minimum). Ability to work as a team member, communicate, perform office functions and use office tools, customer focused and deliver exceptional performance. Possess excellent organizational and file management skills and the ability to plan and execute administrative work with little supervision. Possess excellent oral and written communication skills. Required Certifications: Minimum of one (1) IAT Level II listed certificate required: CompTIA Security+ (CE) CompTIA CySA+ GIAC Security Essentials (GSEC) ISC SSCP (Systems Security Certified Practitioner) Minimum/General Experience: Five (5) years of experience in the following: Cybersecurity, Engineering, Test and Evaluation (T&E) or Authorization and Assessment (A&A) (formerly C&A) related field. Information Assurance tools such as Defense Information Systems Agency (DISA) Enterprise Mission Assurance Support Service (eMASS), Assured Compliance Assessment Solution (ACAS). Command line interface, PowerShell, and performing automated tasking through use of code. Minimum Education: College degree in any technical discipline from an accredited college or university. Disclaimer: The above information has been designed to indicate the general nature and level of work to be performed. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of the contractor assigned to this position. Applying: If you feel you have the knowledge, skills and abilities for this position visit our careers page at . Special Notes: Relocation is not available for these jobs ARMADA provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. ARMADA complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Must be able to successfully pass a background check, and pre-employment drug testing. Job offers are contingent upon results of background check and drug testing.
09/29/2026
Full time
Job Description Job Description Type: Full Time Location: Philadelphia, PA Overtime Exempt: Exempt Reports To: ARMADA HQ Travel Required: Yes Security Clearance Required: Active Secret Security Clearance CONTINGENT UPON AWARD Duties & Responsibilities: Specialist, Information System Security III (SISS3) will conduct risk and vulnerability assessments of planned and installed systems to identify vulnerabilities, risks and protection needs; conduct systems security evaluation, audits, and reviews; determine the residual risk of a package based on package content and assessment results and documenting for the Security Controls Assessor's (SCA) and higher level review. Execute Security Assessment Plans (SAPs) by conducting on-site testing for afloat and PIT ashore systems. Examples include executing STIGs, SRGs, ACAS scanning, and applying patches assets to obtain cybersecurity compliance and remediate vulnerabilities. Specialist, Information System Security III (SISS3) will conduct systems security reviews, audits, or evaluations, as appropriate, to ensure accreditation documents are accurate and represent the current risk posture of the system. Perform analysis of logs, events, and reporting of various data collections tools including: vulnerability monitoring via Assured Compliance Assessment System (ACAS) and related tools, Host Based Security Systems (HBSS), web content filters, Security Information and event management (SIEM), firewall systems, network devices, server devices, workstations, and intrusion detection and prevention systems (ID/PS). Specialist, Information System Security III (SISS3) will assess impacts from observed risks and report via the Cybersecurity Program chain of command. Executing Security Assessment Plans (SAPs) by conducting on-site testing for afloat and PIT ashore systems. Examples include executing STIGs, SRGs, ACAS scanning, and applying patches assets to obtain cybersecurity compliance and remediate vulnerabilities. Perform the evaluation of system administrator, security engineer, and/or system owner proposed corrections to ensure compliance and best-fit solution. Specialist, Information System Security III (SISS3) will present and submit data to management, develop reports, and produce procedural documentation in a comprehensive and cohesive manner. Perform risk management and security engineering for Research, Development, Testing, and Evaluation (RDT&E) RMF Afloat systems include Information Assurance Vulnerability Management (IAVM) support, remediation, patching, scanning and associated boundary maintenance. Specialist, Information System Security III (SISS3) will document residual risks in a plan of actions and milestones formatted in compliance with the current package system, currently eMASS. Specialist, Information System Security III (SISS3) will maintain current vulnerability scan data and residual risk plan of actions and milestones in Vulnerability Remediation Asset Manager (VRAM). Manage, attend, and support configuration control board practices. Create and verify the accuracy of POA&Ms/RARs as identified by vulnerability actual test results. Specialist, Information System Security III (SISS3) shall write technical documentation such as user manuals, reports, documentation, policies, presentations, Plan of Action and Milestones (POA&Ms), risk assessments, proposals, outlines, and summaries in support of both ashore and afloat systems across multiple platforms. Support developing of technical documents across multiple platforms including configuration management, milestone, issue tracking, web site content management and RMF documentation. Specialist, Information System Security III (SISS3) may be required to travel CONUS (any state in USA) and OCONUS (primarily Japan, and any country in Europe). The estimated number of trips is 14 per year (estimated 25%-30% travel). Other duties as assigned. Knowledge, Skills, and Abilities (KSAs): Ability to travel CONUS (any state in USA) and OCONUS (primarily Japan, and any country in Europe). Proficient in Microsoft Windows Operating System Administration, including Windows 11, Windows 10, Windows 7, and Windows XP (at a minimum). Ability to work as a team member, communicate, perform office functions and use office tools, customer focused and deliver exceptional performance. Possess excellent organizational and file management skills and the ability to plan and execute administrative work with little supervision. Possess excellent oral and written communication skills. Required Certifications: Minimum of one (1) IAT Level II listed certificate required: CompTIA Security+ (CE) CompTIA CySA+ GIAC Security Essentials (GSEC) ISC SSCP (Systems Security Certified Practitioner) Minimum/General Experience: Five (5) years of experience in the following: Cybersecurity, Engineering, Test and Evaluation (T&E) or Authorization and Assessment (A&A) (formerly C&A) related field. Information Assurance tools such as Defense Information Systems Agency (DISA) Enterprise Mission Assurance Support Service (eMASS), Assured Compliance Assessment Solution (ACAS). Command line interface, PowerShell, and performing automated tasking through use of code. Minimum Education: College degree in any technical discipline from an accredited college or university. Disclaimer: The above information has been designed to indicate the general nature and level of work to be performed. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of the contractor assigned to this position. Applying: If you feel you have the knowledge, skills and abilities for this position visit our careers page at . Special Notes: Relocation is not available for these jobs ARMADA provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. ARMADA complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Must be able to successfully pass a background check, and pre-employment drug testing. Job offers are contingent upon results of background check and drug testing.
POD Lead
Zero Hiring Lakewood, New Jersey
Job Description Job Description About the company Our client is a fast-growing Managed Service Provider based in New Jersey, delivering modern IT support to an expanding base of business clients. They've built their entire operation to be cloud-native and Microsoft-first, and they lean heavily on automation and AI to support clients at a level most traditional MSPs can't match. The business has grown significantly over the past year and shows no sign of slowing down. Because the environment is fully cloud-based, this is a genuinely modern support role: no legacy server rooms, no break-fix grind. It's a close-knit team with very low turnover and a culture that rewards people who think for themselves and want to keep growing. About the role As Pod Lead, you're the technical anchor and coach for your support pod. It's a true player-coach role: you'll spend your time both solving the hardest problems and making the engineers around you better. You'll be the first point of escalation when issues get complex, you'll drive accountability and quality across the pod, you'll support project work, and you'll keep clients genuinely happy with the service they receive. It's a role for someone who has the technical depth to lead from the front and the people skills to bring a team with them. The salary range for the position is $80,000 - $110,000. What you'll do Team leadership & coaching Give the pod daily direction, guidance, and support. Coach engineers on troubleshooting methodology and technical best practice. Run ticket reviews and quality checks. Help onboard and train new team members. Champion the company's values, standards, and ways of working. Technical leadership & escalation Act as the first point of escalation for Tier 1 and Tier 2 engineers in your pod. Help the team diagnose and resolve complex issues across Microsoft 365, Azure, networking, endpoint management, security, and line-of-business applications. Carry out advanced troubleshooting across Windows, macOS, Microsoft 365, Azure AD/Entra ID, Intune, VPNs, DNS, DHCP, firewalls, and network connectivity. Review escalated tickets and make sure root cause analysis is completed where it matters. Ensure critical incidents get timely attention and resolution. Escalate to senior leadership, vendors, or engineering when additional resources are needed. Service delivery Monitor ticket queues and how work is distributed across the pod. Keep service level agreements (SLAs) consistently met. Spot recurring issues and put preventative fixes in place. Maintain high levels of client satisfaction. Projects & client support Support client onboarding activities. Help deliver implementation projects and technology rollouts. Coordinate technical tasks across the pod. Make sure project deliverables are accurate and on time. Process improvement Find ways to make support more efficient. Keep documentation and knowledge-base articles accurate and up to date. Standardise troubleshooting and support practice across the team. Contribute to wider operational improvements. What we're looking for 5+ years in IT support or with an MSP. Strong working knowledge of Microsoft 365, Azure, Windows environments, networking, and endpoint management. A real troubleshooter, with strong problem-solving instincts. Experience mentoring or leading technical team members. Excellent communication and a genuine client-service mindset. Hands-on experience across Microsoft 365 administration Microsoft Entra ID (Azure AD) Intune / endpoint management Windows desktop and server environments Active Directory and Group Policy Networking fundamentals (DNS, DHCP, TCP/IP) Firewall and security concepts Remote monitoring and management (RMM) platforms MSP ticketing systems Bonus points Leadership experience within an MSP. Project coordination experience. Relevant certifications (Microsoft, CompTIA, Cisco, and similar). How we'll measure success SLAs consistently met Effective resolution of escalations Pod productivity Ticket quality Client satisfaction The growth and development of your team Our hiring process We've designed our process to get you from application to offer in 2-3 weeks - no lengthy waiting periods, no unnecessary stages. Step 1 - AI Interview (within 48 hours of applying). Complete a short AI-powered interview at a time that suits you. No scheduling required - you choose when you do it, and it can be completed within 48 hours of applying. Step 2 - Recruiter Call. A member of the Zero Hiring team will reach out to walk you through the role and the business in more detail, answer your questions, and make sure this is the right fit on both sides. Step 3 - Client Interviews. You'll meet the team. Typically 2-3 interviews with the hiring organisation, designed to give both parties a thorough and genuine sense of fit. Step 4 - Offer. If it's a match, we move fast. Expect a clear, timely offer without the drawn-out back-and-forth.
09/29/2026
Full time
Job Description Job Description About the company Our client is a fast-growing Managed Service Provider based in New Jersey, delivering modern IT support to an expanding base of business clients. They've built their entire operation to be cloud-native and Microsoft-first, and they lean heavily on automation and AI to support clients at a level most traditional MSPs can't match. The business has grown significantly over the past year and shows no sign of slowing down. Because the environment is fully cloud-based, this is a genuinely modern support role: no legacy server rooms, no break-fix grind. It's a close-knit team with very low turnover and a culture that rewards people who think for themselves and want to keep growing. About the role As Pod Lead, you're the technical anchor and coach for your support pod. It's a true player-coach role: you'll spend your time both solving the hardest problems and making the engineers around you better. You'll be the first point of escalation when issues get complex, you'll drive accountability and quality across the pod, you'll support project work, and you'll keep clients genuinely happy with the service they receive. It's a role for someone who has the technical depth to lead from the front and the people skills to bring a team with them. The salary range for the position is $80,000 - $110,000. What you'll do Team leadership & coaching Give the pod daily direction, guidance, and support. Coach engineers on troubleshooting methodology and technical best practice. Run ticket reviews and quality checks. Help onboard and train new team members. Champion the company's values, standards, and ways of working. Technical leadership & escalation Act as the first point of escalation for Tier 1 and Tier 2 engineers in your pod. Help the team diagnose and resolve complex issues across Microsoft 365, Azure, networking, endpoint management, security, and line-of-business applications. Carry out advanced troubleshooting across Windows, macOS, Microsoft 365, Azure AD/Entra ID, Intune, VPNs, DNS, DHCP, firewalls, and network connectivity. Review escalated tickets and make sure root cause analysis is completed where it matters. Ensure critical incidents get timely attention and resolution. Escalate to senior leadership, vendors, or engineering when additional resources are needed. Service delivery Monitor ticket queues and how work is distributed across the pod. Keep service level agreements (SLAs) consistently met. Spot recurring issues and put preventative fixes in place. Maintain high levels of client satisfaction. Projects & client support Support client onboarding activities. Help deliver implementation projects and technology rollouts. Coordinate technical tasks across the pod. Make sure project deliverables are accurate and on time. Process improvement Find ways to make support more efficient. Keep documentation and knowledge-base articles accurate and up to date. Standardise troubleshooting and support practice across the team. Contribute to wider operational improvements. What we're looking for 5+ years in IT support or with an MSP. Strong working knowledge of Microsoft 365, Azure, Windows environments, networking, and endpoint management. A real troubleshooter, with strong problem-solving instincts. Experience mentoring or leading technical team members. Excellent communication and a genuine client-service mindset. Hands-on experience across Microsoft 365 administration Microsoft Entra ID (Azure AD) Intune / endpoint management Windows desktop and server environments Active Directory and Group Policy Networking fundamentals (DNS, DHCP, TCP/IP) Firewall and security concepts Remote monitoring and management (RMM) platforms MSP ticketing systems Bonus points Leadership experience within an MSP. Project coordination experience. Relevant certifications (Microsoft, CompTIA, Cisco, and similar). How we'll measure success SLAs consistently met Effective resolution of escalations Pod productivity Ticket quality Client satisfaction The growth and development of your team Our hiring process We've designed our process to get you from application to offer in 2-3 weeks - no lengthy waiting periods, no unnecessary stages. Step 1 - AI Interview (within 48 hours of applying). Complete a short AI-powered interview at a time that suits you. No scheduling required - you choose when you do it, and it can be completed within 48 hours of applying. Step 2 - Recruiter Call. A member of the Zero Hiring team will reach out to walk you through the role and the business in more detail, answer your questions, and make sure this is the right fit on both sides. Step 3 - Client Interviews. You'll meet the team. Typically 2-3 interviews with the hiring organisation, designed to give both parties a thorough and genuine sense of fit. Step 4 - Offer. If it's a match, we move fast. Expect a clear, timely offer without the drawn-out back-and-forth.
Information Security Specialist
Data Device Corporation Bohemia, New York
Job Description Job Description For more than 60 years, Data Device Corporation (DDC) has been recognized as a world leader in the design and manufacture of high-reliability Connectivity, Power, and Control solutions for the Aerospace, Defense, and Space industries. Our dedication to supplying quality products, on-time delivery, and superior support, has contributed to the success of our customers and the critical missions they serve. This position is 100% onsite at our Bohemia, NY office. The salary range for this position is $70,000 to $90,000 annually and will depend upon experience. This position requires a U.S Person or a person who can qualify for a Department of State or Department of Commerce License. Position Summary: The Information Security Specialist role will be helping to build and operate our internal security program. This is a hands-on role for someone who enjoys working across multiple domains rather than specializing in just one. You'll touch security operations, identity and access management, endpoint and network defense, vendor risk, compliance, and end-user enablement. You'll work closely with IT, engineering, and business teams to keep the company secure without slowing it down. Key Position Accountabilities: Support day-to-day security operations, including alert triage in our SIEM and EDR platforms, log review, and assisting with incident response when something needs investigation. Help administer identity and access management systems, including SSO, MFA, directory services, and the onboarding, transfer, and offboarding processes. Conduct periodic access reviews and clean up stale accounts and entitlements. Maintain and improve endpoint security across the fleet, including EDR health, patch management, configuration baselines, and disk encryption. Assist with network security tasks such as firewall rule reviews, VPN administration, segmentation work, and monitoring for misconfigurations. Support the vulnerability management program: scanning, prioritizing findings, coordinating remediation with system owners, and tracking metrics over time. Contribute to our compliance program by helping collect evidence, maintain policies, complete customer security questionnaires, and prepare for audits including CMMC/NIS2/Cyber Essentials+/ other compliance obligations . Support vendor risk management, including reviewing third-party security documentation and tracking risk acceptances. Build and deliver security awareness content, including phishing simulations, onboarding training, and internal guidance. Serve as a knowledgeable point of contact for employees with security questions, suspicious emails, lost devices, or access requests. Document processes, runbooks, and standards so the program scales as the company grows. Qualifications: Associate's or Bachelor's degree in Information Technology, Computer Science, Information Systems, Cybersecurity, or related field preferred. 3+ years of experience in information security, IT operations, or a closely related field, with hands-on exposure to multiple security domains. Working knowledge of common security tools: SIEM, EDR, vulnerability scanners, identity providers (Okta, Entra ID, or similar), and cloud platforms (AWS, Azure, or GCP). Solid fundamentals in networking, operating systems and authentication protocols. Familiarity with compliance frameworks, especially CMMC Cyber Essentials / etc for Europe Comfortable scripting in Python, PowerShell, or Bash for automation and ad hoc tasks. Strong written and verbal communication skills, with the ability to explain security concepts to non-technical audiences. Self-directed and comfortable working across teams in a fast-moving environment. Industry certifications such as CISSP, CISM, CCIE, CCNP Security, CompTIA Security+, Network+, CISA, CRISC or similar. Willingness to be part of the on-call rotation Desired Characteristics: Strong technical curiosity and desire to learn emerging technologies. Familiarity with offensive security concepts and tooling Understanding or experience with CMMC Level 2 Certification Interest in Artificial Intelligence and business process automation. Strong analytical and problem-solving skills. Excellent verbal and written communication skills. Ability to work effectively with technical and non-technical users. Organized and detail-oriented with strong follow-through. Self-motivated with the ability to manage multiple priorities. Team player with a customer-service mindset. This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. This job description indicates, in general the nature and levels of work, knowledge, skills, abilities and other essential functions (as covered under the ADA) expected of the employee. Duties, responsibilities and activities may change at any time with or without notice as required. Data Device Corporation is an Affirmative Action/Equal Opportunity Employer and is committed to providing equal employment opportunity (EEO) for all persons in all facets of employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, gender, sexual orientation, gender identity, national origin, citizenship status, marital status, genetic information, disability, protected veteran status or any other legally protected status.
09/29/2026
Full time
Job Description Job Description For more than 60 years, Data Device Corporation (DDC) has been recognized as a world leader in the design and manufacture of high-reliability Connectivity, Power, and Control solutions for the Aerospace, Defense, and Space industries. Our dedication to supplying quality products, on-time delivery, and superior support, has contributed to the success of our customers and the critical missions they serve. This position is 100% onsite at our Bohemia, NY office. The salary range for this position is $70,000 to $90,000 annually and will depend upon experience. This position requires a U.S Person or a person who can qualify for a Department of State or Department of Commerce License. Position Summary: The Information Security Specialist role will be helping to build and operate our internal security program. This is a hands-on role for someone who enjoys working across multiple domains rather than specializing in just one. You'll touch security operations, identity and access management, endpoint and network defense, vendor risk, compliance, and end-user enablement. You'll work closely with IT, engineering, and business teams to keep the company secure without slowing it down. Key Position Accountabilities: Support day-to-day security operations, including alert triage in our SIEM and EDR platforms, log review, and assisting with incident response when something needs investigation. Help administer identity and access management systems, including SSO, MFA, directory services, and the onboarding, transfer, and offboarding processes. Conduct periodic access reviews and clean up stale accounts and entitlements. Maintain and improve endpoint security across the fleet, including EDR health, patch management, configuration baselines, and disk encryption. Assist with network security tasks such as firewall rule reviews, VPN administration, segmentation work, and monitoring for misconfigurations. Support the vulnerability management program: scanning, prioritizing findings, coordinating remediation with system owners, and tracking metrics over time. Contribute to our compliance program by helping collect evidence, maintain policies, complete customer security questionnaires, and prepare for audits including CMMC/NIS2/Cyber Essentials+/ other compliance obligations . Support vendor risk management, including reviewing third-party security documentation and tracking risk acceptances. Build and deliver security awareness content, including phishing simulations, onboarding training, and internal guidance. Serve as a knowledgeable point of contact for employees with security questions, suspicious emails, lost devices, or access requests. Document processes, runbooks, and standards so the program scales as the company grows. Qualifications: Associate's or Bachelor's degree in Information Technology, Computer Science, Information Systems, Cybersecurity, or related field preferred. 3+ years of experience in information security, IT operations, or a closely related field, with hands-on exposure to multiple security domains. Working knowledge of common security tools: SIEM, EDR, vulnerability scanners, identity providers (Okta, Entra ID, or similar), and cloud platforms (AWS, Azure, or GCP). Solid fundamentals in networking, operating systems and authentication protocols. Familiarity with compliance frameworks, especially CMMC Cyber Essentials / etc for Europe Comfortable scripting in Python, PowerShell, or Bash for automation and ad hoc tasks. Strong written and verbal communication skills, with the ability to explain security concepts to non-technical audiences. Self-directed and comfortable working across teams in a fast-moving environment. Industry certifications such as CISSP, CISM, CCIE, CCNP Security, CompTIA Security+, Network+, CISA, CRISC or similar. Willingness to be part of the on-call rotation Desired Characteristics: Strong technical curiosity and desire to learn emerging technologies. Familiarity with offensive security concepts and tooling Understanding or experience with CMMC Level 2 Certification Interest in Artificial Intelligence and business process automation. Strong analytical and problem-solving skills. Excellent verbal and written communication skills. Ability to work effectively with technical and non-technical users. Organized and detail-oriented with strong follow-through. Self-motivated with the ability to manage multiple priorities. Team player with a customer-service mindset. This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. This job description indicates, in general the nature and levels of work, knowledge, skills, abilities and other essential functions (as covered under the ADA) expected of the employee. Duties, responsibilities and activities may change at any time with or without notice as required. Data Device Corporation is an Affirmative Action/Equal Opportunity Employer and is committed to providing equal employment opportunity (EEO) for all persons in all facets of employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, gender, sexual orientation, gender identity, national origin, citizenship status, marital status, genetic information, disability, protected veteran status or any other legally protected status.
Network Security Engineer
Hithium Tech USA Inc HQ Forney, Texas
Job Description Job Description Network Security Engineer Job Description Applicants must be authorized to work in the U.S. without sponsorship now and in the future. The company does not offer visa sponsorship or transfer of visas for this position now or in the future. The Network Security Engineer is responsible for supporting and securing the organization's enterprise and manufacturing network infrastructure. This position combines traditional network engineering responsibilities with cybersecurity functions to ensure the confidentiality, integrity, and availability of both Information Technology (IT) and Operational Technology (OT) environments. The ideal candidate will have a strong background in Cisco technologies, be hands-on, detail-oriented, and able to work effectively in a fast-paced manufacturing environment. Essential Duties and Responsibilities: Design, implement, and maintain Cisco-based LAN/WAN infrastructure across enterprise and manufacturing environments. Configure, manage, and troubleshoot Cisco routers, switches, wireless infrastructure, and network appliances. Monitor and analyze network performance to ensure high availability and reliability. Support OT and IT network segmentation initiatives to maintain operational security and uptime. Perform network upgrades, capacity planning, and infrastructure optimization. Maintain accurate network documentation, diagrams, and standard operating procedures (SOPs). Assist with day-to-day break/fix network incidents and escalated support requests Administer and support firewalls, VPNs, and other network security technologies. Monitor security alerts and investigate suspicious activity across enterprise and OT environments. Assist with vulnerability management, remediation efforts, and patch management processes. Participate in security incident response activities and support compliance initiatives. Manage and support multi-factor authentication (MFA), secure remote access solutions, and access control technologies. Collaborate with IT and operational teams to implement and maintain security best practices. Support cybersecurity compliance efforts and contribute to security audits and assessments. Required Skills and Qualifications: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field; or equivalent practical experience. Minimum 5 years of professional networking experience. Minimum 3-5 years of cybersecurity experience. Strong hands-on expertise with Cisco networking technologies. Experience with firewalls, VPNs, IDS/IPS, network segmentation, authentication technologies, and access controls. Strong understanding of network security principles and best practices. Manufacturing environment experience preferred with an understanding of industrial and OT network requirements. Excellent troubleshooting, documentation, and communication skills. Ability to work onsite with cross-functional teams in a manufacturing environment. -no remote option. Proficiency in Mandarin Preferred Skills and Qualifications: Cisco Certified Network Associate (CCNA) CompTIA Network+ CompTIA Security+ CiscoCyberOpsAssociate Microsoft SC-200 Security Operations Analyst Microsoft SC-300 Identity and Access Administrator Additional Cisco security or networking certifications preferred This job description is intended to provide a general overview of the position. It is not intended to be an exhaustive list of all responsibilities, duties, and skills required. The company reserves the right to modify or change the job description at any time.
09/29/2026
Full time
Job Description Job Description Network Security Engineer Job Description Applicants must be authorized to work in the U.S. without sponsorship now and in the future. The company does not offer visa sponsorship or transfer of visas for this position now or in the future. The Network Security Engineer is responsible for supporting and securing the organization's enterprise and manufacturing network infrastructure. This position combines traditional network engineering responsibilities with cybersecurity functions to ensure the confidentiality, integrity, and availability of both Information Technology (IT) and Operational Technology (OT) environments. The ideal candidate will have a strong background in Cisco technologies, be hands-on, detail-oriented, and able to work effectively in a fast-paced manufacturing environment. Essential Duties and Responsibilities: Design, implement, and maintain Cisco-based LAN/WAN infrastructure across enterprise and manufacturing environments. Configure, manage, and troubleshoot Cisco routers, switches, wireless infrastructure, and network appliances. Monitor and analyze network performance to ensure high availability and reliability. Support OT and IT network segmentation initiatives to maintain operational security and uptime. Perform network upgrades, capacity planning, and infrastructure optimization. Maintain accurate network documentation, diagrams, and standard operating procedures (SOPs). Assist with day-to-day break/fix network incidents and escalated support requests Administer and support firewalls, VPNs, and other network security technologies. Monitor security alerts and investigate suspicious activity across enterprise and OT environments. Assist with vulnerability management, remediation efforts, and patch management processes. Participate in security incident response activities and support compliance initiatives. Manage and support multi-factor authentication (MFA), secure remote access solutions, and access control technologies. Collaborate with IT and operational teams to implement and maintain security best practices. Support cybersecurity compliance efforts and contribute to security audits and assessments. Required Skills and Qualifications: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field; or equivalent practical experience. Minimum 5 years of professional networking experience. Minimum 3-5 years of cybersecurity experience. Strong hands-on expertise with Cisco networking technologies. Experience with firewalls, VPNs, IDS/IPS, network segmentation, authentication technologies, and access controls. Strong understanding of network security principles and best practices. Manufacturing environment experience preferred with an understanding of industrial and OT network requirements. Excellent troubleshooting, documentation, and communication skills. Ability to work onsite with cross-functional teams in a manufacturing environment. -no remote option. Proficiency in Mandarin Preferred Skills and Qualifications: Cisco Certified Network Associate (CCNA) CompTIA Network+ CompTIA Security+ CiscoCyberOpsAssociate Microsoft SC-200 Security Operations Analyst Microsoft SC-300 Identity and Access Administrator Additional Cisco security or networking certifications preferred This job description is intended to provide a general overview of the position. It is not intended to be an exhaustive list of all responsibilities, duties, and skills required. The company reserves the right to modify or change the job description at any time.
Network Security Engineer
Credence Mc Lean, Virginia
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset Responsibilities:Network Infrastructure & Operations Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management. Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity. Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government). Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process. Oversee network configuration management and backups to ensure recoverability and business continuity. Analyze and resolve escalated Tier 2+ network support tickets. Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation. Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions. Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening). Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed. Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles. Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments. Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes. Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions. Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles. Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards. Cloud Infrastructure & GCP Governance Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries. Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments. Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT. Requirements Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience). Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role. Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals. Hands-on experience with enterprise firewall administration; Palo Alto NGFW experience and Cisco or equivalent routing and switching experience required. Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus). Must be familiar with configuration management, monitoring, and documentation tools. Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions. Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff. Preferred Qualifications Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent. FortiGate experience, including FortiGate VM in Azure Government, preferred; candidates with strong enterprise firewall experience may ramp up on FortiGate with internal support. Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred. Familiarity with VoIP, secure mail flow, and endpoint management integration. Experience contributing to IT/security-related project initiatives. Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping. Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments. Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible. Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts. GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience. Familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy. Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred. Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks. Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development Wellness Resources
09/29/2026
Full time
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset Responsibilities:Network Infrastructure & Operations Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management. Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity. Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government). Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process. Oversee network configuration management and backups to ensure recoverability and business continuity. Analyze and resolve escalated Tier 2+ network support tickets. Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation. Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions. Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening). Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed. Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles. Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments. Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes. Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions. Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles. Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards. Cloud Infrastructure & GCP Governance Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries. Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments. Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT. Requirements Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience). Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role. Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals. Hands-on experience with enterprise firewall administration; Palo Alto NGFW experience and Cisco or equivalent routing and switching experience required. Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus). Must be familiar with configuration management, monitoring, and documentation tools. Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions. Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff. Preferred Qualifications Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent. FortiGate experience, including FortiGate VM in Azure Government, preferred; candidates with strong enterprise firewall experience may ramp up on FortiGate with internal support. Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred. Familiarity with VoIP, secure mail flow, and endpoint management integration. Experience contributing to IT/security-related project initiatives. Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping. Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments. Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible. Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts. GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience. Familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy. Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred. Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks. Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development Wellness Resources
Information Security Analyst
Cobalt Benefits Group LLC Manchester, New Hampshire
Description: Cobalt Benefits Group is seeking an Information Security Analyst to help safeguard information assets and technology services across cloud and on-premises environments. The analyst will monitor security controls, investigate alerts, coordinate remediation, and improve the organization's ability to prevent, detect, and respond to cybersecurity risk. The successful candidate will bring practical experience across multiple security domains rather than expertise in a single vendor platform. The role works closely with IT Operations, infrastructure, and application teams in a regulated environment. Security Operations & Incident Response Monitor managed detection and response, endpoint, identity, email, network, cloud, and security analytics platforms for suspicious activity. Triage and investigate alerts; document findings; coordinate containment, remediation, recovery, and post-incident follow-up. Analyze event, identity, endpoint, cloud, application, and network logs to distinguish security incidents from expected activity and false positives. Maintain incident response plans, investigation procedures, escalation paths and case documentation. Cloud, Identity & Secure Access Assess and improve security across public cloud subscriptions, storage, workloads, applications, and hybrid connectivity. Administer identity and access controls including multifactor authentication, conditional access, role-based access, privileged access, service identities, access reviews, and joiner-mover-leaver processes. Support Zero Trust and secure access services for private applications. Partner with administrators and engineers to design secure access for cloud data platforms, application hosting, and future AI-enabled services. Data Protection, Human Risk & Insider Risk Operate data security posture management capabilities to discover sensitive data, excessive access, shadow data, orphaned files, and insecure sharing. Administer data loss prevention controls across email, endpoints, collaboration platforms, cloud services, applications, and file repositories. Support data discovery, classification, information protection, retention, encryption, and remediation workflows for regulated and confidential information. Administer security awareness training, phishing simulations, targeted education, completion tracking, and human-risk reporting. Endpoint, Network & Application Security Support endpoint detection and response, device security, mobile device management, application control, browser protection, and workstation security baselines. Coordinate vulnerability and exposure management across endpoints, servers, network devices, databases, applications, and cloud workloads and prioritize remediation through patching. Assess application and infrastructure changes for secure configuration, logging, access, data protection, and resilience requirements. Monitor security systems, including firewalls, intrusion detection systems, to detect and respond to security incidents in a timely manner. Collaborate on operating system, application, firmware, and security patching; validate remediation and document accepted exceptions. Resilience, Governance & Continuous Improvement Support backup, recovery, immutable storage, business continuity, and disaster recovery security requirements. Maintain policies, standards, procedures, diagrams, and inventories. Contribute to automation and repeatable analysis using scripting, query languages, and workflow integrations. Evaluate emerging security requirements for cloud, software-as-a-service, and AI Agents. Partner with business and technology stakeholders to establish AI governance, security controls, and risk management practices that enable the responsible use of generative AI, AI agents, automation, and machine-to-machine services. Contribute to the organization's AI Risk Management Framework (AI RMF) program by supporting AI inventory management, risk assessments, control validations, policy development, monitoring activities, and ongoing governance reviews. Requirements: Job Requirements Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent relevant experience. Three to five years of experience in security operations, cloud security, infrastructure security, or a comparable role. Hands-on experience investigating alerts and working across endpoint, identity, email, network, cloud, and data security controls. Experience with vulnerability assessment, remediation tracking, patch management, incident response, and security control validation. Understanding of data discovery, classification, data loss prevention, sensitive-information handling, and insider-risk concepts. Ability to explain technical findings, business impact, and recommended actions to both technical and non-technical audiences. Strong judgment, discretion, documentation, analytical thinking, and the ability to manage multiple priorities. Preferred Qualifications Experience in a regulated environment and familiarity with security or compliance frameworks such as NIST, MITRE ATT&CK, SOC 2, or HITRUST. Experience securing hybrid environments with cloud infrastructure, productivity platforms, on-premises systems, virtualized infrastructure, and software-as-a-service applications. Working knowledge of cloud security, identity governance, and hybrid infrastructure. Familiarity with security information and event management, extended detection and response, cloud security posture management, web application protection, and security orchestration. Experience with scripting or security analytics using PowerShell, query languages, or comparable automation methods. Relevant industry or cloud security certifications Equal Opportunity Employer, including disability/protected veterans Compensation details: 00 Yearly Salary PIef2d3b3d6-
09/29/2026
Full time
Description: Cobalt Benefits Group is seeking an Information Security Analyst to help safeguard information assets and technology services across cloud and on-premises environments. The analyst will monitor security controls, investigate alerts, coordinate remediation, and improve the organization's ability to prevent, detect, and respond to cybersecurity risk. The successful candidate will bring practical experience across multiple security domains rather than expertise in a single vendor platform. The role works closely with IT Operations, infrastructure, and application teams in a regulated environment. Security Operations & Incident Response Monitor managed detection and response, endpoint, identity, email, network, cloud, and security analytics platforms for suspicious activity. Triage and investigate alerts; document findings; coordinate containment, remediation, recovery, and post-incident follow-up. Analyze event, identity, endpoint, cloud, application, and network logs to distinguish security incidents from expected activity and false positives. Maintain incident response plans, investigation procedures, escalation paths and case documentation. Cloud, Identity & Secure Access Assess and improve security across public cloud subscriptions, storage, workloads, applications, and hybrid connectivity. Administer identity and access controls including multifactor authentication, conditional access, role-based access, privileged access, service identities, access reviews, and joiner-mover-leaver processes. Support Zero Trust and secure access services for private applications. Partner with administrators and engineers to design secure access for cloud data platforms, application hosting, and future AI-enabled services. Data Protection, Human Risk & Insider Risk Operate data security posture management capabilities to discover sensitive data, excessive access, shadow data, orphaned files, and insecure sharing. Administer data loss prevention controls across email, endpoints, collaboration platforms, cloud services, applications, and file repositories. Support data discovery, classification, information protection, retention, encryption, and remediation workflows for regulated and confidential information. Administer security awareness training, phishing simulations, targeted education, completion tracking, and human-risk reporting. Endpoint, Network & Application Security Support endpoint detection and response, device security, mobile device management, application control, browser protection, and workstation security baselines. Coordinate vulnerability and exposure management across endpoints, servers, network devices, databases, applications, and cloud workloads and prioritize remediation through patching. Assess application and infrastructure changes for secure configuration, logging, access, data protection, and resilience requirements. Monitor security systems, including firewalls, intrusion detection systems, to detect and respond to security incidents in a timely manner. Collaborate on operating system, application, firmware, and security patching; validate remediation and document accepted exceptions. Resilience, Governance & Continuous Improvement Support backup, recovery, immutable storage, business continuity, and disaster recovery security requirements. Maintain policies, standards, procedures, diagrams, and inventories. Contribute to automation and repeatable analysis using scripting, query languages, and workflow integrations. Evaluate emerging security requirements for cloud, software-as-a-service, and AI Agents. Partner with business and technology stakeholders to establish AI governance, security controls, and risk management practices that enable the responsible use of generative AI, AI agents, automation, and machine-to-machine services. Contribute to the organization's AI Risk Management Framework (AI RMF) program by supporting AI inventory management, risk assessments, control validations, policy development, monitoring activities, and ongoing governance reviews. Requirements: Job Requirements Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent relevant experience. Three to five years of experience in security operations, cloud security, infrastructure security, or a comparable role. Hands-on experience investigating alerts and working across endpoint, identity, email, network, cloud, and data security controls. Experience with vulnerability assessment, remediation tracking, patch management, incident response, and security control validation. Understanding of data discovery, classification, data loss prevention, sensitive-information handling, and insider-risk concepts. Ability to explain technical findings, business impact, and recommended actions to both technical and non-technical audiences. Strong judgment, discretion, documentation, analytical thinking, and the ability to manage multiple priorities. Preferred Qualifications Experience in a regulated environment and familiarity with security or compliance frameworks such as NIST, MITRE ATT&CK, SOC 2, or HITRUST. Experience securing hybrid environments with cloud infrastructure, productivity platforms, on-premises systems, virtualized infrastructure, and software-as-a-service applications. Working knowledge of cloud security, identity governance, and hybrid infrastructure. Familiarity with security information and event management, extended detection and response, cloud security posture management, web application protection, and security orchestration. Experience with scripting or security analytics using PowerShell, query languages, or comparable automation methods. Relevant industry or cloud security certifications Equal Opportunity Employer, including disability/protected veterans Compensation details: 00 Yearly Salary PIef2d3b3d6-
Senior Network Security Engineer, Operational Technology
CoreWeave Livingston, New Jersey
Job Description Job Description CoreWeave is The Essential Cloud for AI . Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at . What You'll Do: CoreWeave's Network Security team ensures network infrastructure is secure, resilient and compliant. Our team partners with engineering, product teams, and partners to build secure network solutions that protect critical infrastructure and continuously improve the security posture to meet the needs of our customers. With our growing reliance on connected technology, the need to keep critical systems secure, reliable, and resilient has never been more important. We are seeking an OT Security Engineer to join our team and play a pivotal role in safeguarding the operational technologies that support our datacenter networks. About the role: This position offers a unique opportunity to work at the crossroads of cyber security, operational technology (OT), engineering, and datacenter operations. As the network security engineer responsible for our operational technology networks, your responsibilities will include identifying and evaluating cybersecurity risks, designing and launching pragmatic security solutions, and embedding security controls directly into the operational systems and technologies supporting our infrastructure. You will work with suppliers and third parties in benchmarking their capabilities against expectations and industry standards. You will also lead efforts in partnering with peer security teams and partners in production engineering as you lead continuous improvement of security posture for operational technology network environments and the devices connected. This role requires both depth in understanding network security, and breadth of knowledge of the unique challenges that face the industry in securing the infrastructure that is the foundation of modern datacenters. You will act as a trusted partner who goes beyond advisory work to roll up your sleeves and deliver. Some things you will work on: Establishing standards for security expectations covering all operational technology networks and devices connected to them. This will include network segmentation, host isolation, network traversal controls, and remote connectivity. Providing solutions to complex security issues, manage multiple tasks, and prioritize effectively in a fast-paced environment. Creating an inventory and risk register that can be used as a baseline in understanding near term and long term objectives. Partnering with production engineering and business development teams evaluating priorities for risk reduction in current deployments, and risk avoidance by evolving standards for future growth. Executing and partnering with other parties in using penetration testing to evaluate effectiveness of existing controls. Coordinating with third parties and internal teams in addressing vulnerabilities via mitigation, isolation or other strategies to protect critical infrastructure in these environments. Researching industry risks and drive change in operational networks to continuously reduce risk Developing and test recovery models and response playbooks to handle compromise scenarios. Presenting technical security information to both technical and non-technical audiences, including external partners. Maintain technical documentation, reports, and security tooling with attention to detail. Who You Are: 5+ Years of experience in network infrastructure security (firewalls, ACLs, architecture, risk management) in a global network environment. Proficiency in at least one programming or scripting language (e.g., Go, Python, C/C++) for automation, code reviews, and tooling. Bachelor's degree in Computer Science or related field. Relevant certifications such as CISSP, CCNP, PCNSE are advantageous. Experience with operational technology networks (factory or industrial systems, building management systems, power, physical security systems, remote access, HVAC, etc.), factory networks or other similar environments. Strong technical knowledge of network firewalls, virtual private networks, network segmentation, and defense in depth. Able to navigate ambiguity, identify root causes, and solve complex security problems. Excellent written and verbal communication skills with strong technical documentation abilities. Capable of working independently while managing multiple priorities in a fast-paced environment. Strong desire to continuously learn and adopt new technologies and security techniques. Preferred: Prior experience with operational technology networks that span global locations Experience with the range of obscure solutions that are often deployed on operational technology networks. Deep understanding of business-wide security best practices and implementation strategies. Experience with network automation, agentic network tooling, and incident response automation. Wondering if you're a good fit? We believe in investing in our people, and value candidates who can bring their own diversified experiences to our teams - even if you aren't a 100% skill or experience match. Here are a few qualities we've found compatible with our team. If some of this describes you, we'd love to talk. You love to solve problems that few others would tackle. You're curious about critical network infrastructure that is the foundation of modern data centers. You're an expert in network security with a passion to explore the more exotic nature of operational technology. Why CoreWeave? At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values: Be Curious at Your Core Act Like an Owner Empower Employees Deliver Best-in-Class Client Experiences Achieve More Together We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organization's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us! The base salary range for this role is $164,000 to $242,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility). What We Offer The range we've posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location. In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include: Medical, dental, and vision insurance - 100% paid for by CoreWeave Company-paid Life Insurance Voluntary supplemental life insurance Short and long-term disability insurance Flexible Spending Account Health Savings Account Tuition Reimbursement Ability to Participate in Employee Stock Purchase Program (ESPP) Mental Wellness Benefits through Spring Health Family-Forming support provided by Carrot Paid Parental Leave Flexible, full-service childcare support with Kinside 401(k) with a generous employer match Flexible PTO Catered lunch each day in our office and data center locations A casual work environment A work culture focused on innovative disruption California Applicants California Consumer Privacy Act Equal Opportunity & Accommodations CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. As part of this commitment and consistent with the Americans with Disabilities Act (ADA) , CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: . . click apply for full job details
09/28/2026
Full time
Job Description Job Description CoreWeave is The Essential Cloud for AI . Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at . What You'll Do: CoreWeave's Network Security team ensures network infrastructure is secure, resilient and compliant. Our team partners with engineering, product teams, and partners to build secure network solutions that protect critical infrastructure and continuously improve the security posture to meet the needs of our customers. With our growing reliance on connected technology, the need to keep critical systems secure, reliable, and resilient has never been more important. We are seeking an OT Security Engineer to join our team and play a pivotal role in safeguarding the operational technologies that support our datacenter networks. About the role: This position offers a unique opportunity to work at the crossroads of cyber security, operational technology (OT), engineering, and datacenter operations. As the network security engineer responsible for our operational technology networks, your responsibilities will include identifying and evaluating cybersecurity risks, designing and launching pragmatic security solutions, and embedding security controls directly into the operational systems and technologies supporting our infrastructure. You will work with suppliers and third parties in benchmarking their capabilities against expectations and industry standards. You will also lead efforts in partnering with peer security teams and partners in production engineering as you lead continuous improvement of security posture for operational technology network environments and the devices connected. This role requires both depth in understanding network security, and breadth of knowledge of the unique challenges that face the industry in securing the infrastructure that is the foundation of modern datacenters. You will act as a trusted partner who goes beyond advisory work to roll up your sleeves and deliver. Some things you will work on: Establishing standards for security expectations covering all operational technology networks and devices connected to them. This will include network segmentation, host isolation, network traversal controls, and remote connectivity. Providing solutions to complex security issues, manage multiple tasks, and prioritize effectively in a fast-paced environment. Creating an inventory and risk register that can be used as a baseline in understanding near term and long term objectives. Partnering with production engineering and business development teams evaluating priorities for risk reduction in current deployments, and risk avoidance by evolving standards for future growth. Executing and partnering with other parties in using penetration testing to evaluate effectiveness of existing controls. Coordinating with third parties and internal teams in addressing vulnerabilities via mitigation, isolation or other strategies to protect critical infrastructure in these environments. Researching industry risks and drive change in operational networks to continuously reduce risk Developing and test recovery models and response playbooks to handle compromise scenarios. Presenting technical security information to both technical and non-technical audiences, including external partners. Maintain technical documentation, reports, and security tooling with attention to detail. Who You Are: 5+ Years of experience in network infrastructure security (firewalls, ACLs, architecture, risk management) in a global network environment. Proficiency in at least one programming or scripting language (e.g., Go, Python, C/C++) for automation, code reviews, and tooling. Bachelor's degree in Computer Science or related field. Relevant certifications such as CISSP, CCNP, PCNSE are advantageous. Experience with operational technology networks (factory or industrial systems, building management systems, power, physical security systems, remote access, HVAC, etc.), factory networks or other similar environments. Strong technical knowledge of network firewalls, virtual private networks, network segmentation, and defense in depth. Able to navigate ambiguity, identify root causes, and solve complex security problems. Excellent written and verbal communication skills with strong technical documentation abilities. Capable of working independently while managing multiple priorities in a fast-paced environment. Strong desire to continuously learn and adopt new technologies and security techniques. Preferred: Prior experience with operational technology networks that span global locations Experience with the range of obscure solutions that are often deployed on operational technology networks. Deep understanding of business-wide security best practices and implementation strategies. Experience with network automation, agentic network tooling, and incident response automation. Wondering if you're a good fit? We believe in investing in our people, and value candidates who can bring their own diversified experiences to our teams - even if you aren't a 100% skill or experience match. Here are a few qualities we've found compatible with our team. If some of this describes you, we'd love to talk. You love to solve problems that few others would tackle. You're curious about critical network infrastructure that is the foundation of modern data centers. You're an expert in network security with a passion to explore the more exotic nature of operational technology. Why CoreWeave? At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values: Be Curious at Your Core Act Like an Owner Empower Employees Deliver Best-in-Class Client Experiences Achieve More Together We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organization's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us! The base salary range for this role is $164,000 to $242,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility). What We Offer The range we've posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location. In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include: Medical, dental, and vision insurance - 100% paid for by CoreWeave Company-paid Life Insurance Voluntary supplemental life insurance Short and long-term disability insurance Flexible Spending Account Health Savings Account Tuition Reimbursement Ability to Participate in Employee Stock Purchase Program (ESPP) Mental Wellness Benefits through Spring Health Family-Forming support provided by Carrot Paid Parental Leave Flexible, full-service childcare support with Kinside 401(k) with a generous employer match Flexible PTO Catered lunch each day in our office and data center locations A casual work environment A work culture focused on innovative disruption California Applicants California Consumer Privacy Act Equal Opportunity & Accommodations CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. As part of this commitment and consistent with the Americans with Disabilities Act (ADA) , CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: . . click apply for full job details
Network Security Engineer II
Hyundai Autoever America Irvine, California
Job Description Job Description Network Security Engineer II Location - Onsite, Irvine, CA Grade: 8 Company Overview Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis. HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group. At HAEA, we understand that IT is the cornerstone of today's fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations. If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that's driving the future of automotive innovation. What You Will Be Doing The Security Architecture and Engineering team within the CISO organization is seeking a Network Security Engineer II to help design, implement, operate, and continuously improve enterprise network security controls. This role will focus on technologies including Web Application Firewalls, Network Access Control, IDS, and IPS, while partnering closely with the IT Networking team to ensure secure, reliable, and scalable network services. This is an onsite role, five days per week, based in our Irvine office. The key responsibilities of this role are as described below: The Network Security Engineer II will be responsible for supporting and maintaining critical network security platforms across the enterprise. Responsibilities include: Administer, monitor, and optimize Web Application Firewall platforms to protect internet-facing and internal applications. Support and maintain Network Access Control technologies, including device profiling, policy enforcement, segmentation support, and exception handling. Operate and tune Intrusion Detection and Intrusion Prevention Systems to improve detection accuracy and reduce false positives. Partner with the IT Networking team on secure network design, routing, switching, firewall, segmentation, and connectivity initiatives. Assist other Security and IT teams by reviewing security events, alerts, logs, and traffic patterns to identify potential threats or misconfigurations. Assist with the implementation of network security architecture standards, hardening guidelines, and secure configuration baselines. Participate in incident response activities related to network-based threats, unauthorized access, or suspicious traffic. Develop and maintain documentation, including network security diagrams, platform runbooks, standard operating procedures, and change records. Support vulnerability remediation efforts related to network infrastructure, application exposure, and security control gaps. Perform policy reviews and rulebase hygiene for WAF, NAC, IDS, and IPS technologies. Participate in change management activities, including risk assessment, implementation planning, testing, and post-change validation. Collaborate with security operations, infrastructure, application, and compliance teams to support business and regulatory requirements. Assist with lifecycle management for network security tools, including upgrades, patching, certificate management, integrations, and capacity planning. Provide technical recommendations to improve visibility, segmentation, access control, and threat prevention across the environment. Basic Qualifications: Experience: 8+ years of network security, infrastructure security, and/or security engineering. Practical and demonstrated experience working Web Application Firewalls, Network Access Control platforms, IDS/IPS technologies, Firewalls or secure network gateways in platforms by Cisco, Palo Alto, Trend Micro, Gigamon, Trellix, etc. Education: Bachelor's degree in Cybersecurity, Information Technology, Computer science or a related field. Technical Expertise: Advanced level knowledge of networking concepts, including TCP/IP, DNS, DHCP, VLANs, routing, switching, NAT, VPNs, and network segmentation. Experience analyzing logs, packet captures, alerts, and network traffic to troubleshoot issues or investigate security events. Familiarity with common network and application-layer attack techniques. Experience supporting production environments and following change management processes. Strong troubleshooting, documentation, and communication skills. Language Skills: Excellent stakeholder management and communication skills. Proficient in English for effective communication and coordination. Schedule: This is an onsite position requiring presence in the Irvine office five days per week. Some after-hours or weekend work may be required for planned maintenance, incident response, or critical security changes. Preferred Qualifications: Experience: Experience with enterprise WAF policy tuning, bot protection, API protection, or application security rule sets. Experience with NAC deployment models, including 802.1X, MAC authentication bypass, posture assessment, guest access, and device profiling. Familiarity with SIEM, SOAR, vulnerability management, endpoint security, or cloud security tools. Scripting or automation experience using Python, PowerShell, APIs, or infrastructure-as-code tools. Education and Certifications: Masters degree in Cybersecurity, Information Technology, Computer Science or a related discipline is preferred. Industry-recognized credentials such as Security+, Network+, CCNA, CCNP Security, PCNSE, CISSP, GSEC, GCIH, or vendor-specific certifications. Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication. Team Culture: The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed. Base Salary Range: $100,000 - 130,000 Powered by JazzHR FgOdYKZ9EK
09/28/2026
Full time
Job Description Job Description Network Security Engineer II Location - Onsite, Irvine, CA Grade: 8 Company Overview Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis. HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group. At HAEA, we understand that IT is the cornerstone of today's fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations. If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that's driving the future of automotive innovation. What You Will Be Doing The Security Architecture and Engineering team within the CISO organization is seeking a Network Security Engineer II to help design, implement, operate, and continuously improve enterprise network security controls. This role will focus on technologies including Web Application Firewalls, Network Access Control, IDS, and IPS, while partnering closely with the IT Networking team to ensure secure, reliable, and scalable network services. This is an onsite role, five days per week, based in our Irvine office. The key responsibilities of this role are as described below: The Network Security Engineer II will be responsible for supporting and maintaining critical network security platforms across the enterprise. Responsibilities include: Administer, monitor, and optimize Web Application Firewall platforms to protect internet-facing and internal applications. Support and maintain Network Access Control technologies, including device profiling, policy enforcement, segmentation support, and exception handling. Operate and tune Intrusion Detection and Intrusion Prevention Systems to improve detection accuracy and reduce false positives. Partner with the IT Networking team on secure network design, routing, switching, firewall, segmentation, and connectivity initiatives. Assist other Security and IT teams by reviewing security events, alerts, logs, and traffic patterns to identify potential threats or misconfigurations. Assist with the implementation of network security architecture standards, hardening guidelines, and secure configuration baselines. Participate in incident response activities related to network-based threats, unauthorized access, or suspicious traffic. Develop and maintain documentation, including network security diagrams, platform runbooks, standard operating procedures, and change records. Support vulnerability remediation efforts related to network infrastructure, application exposure, and security control gaps. Perform policy reviews and rulebase hygiene for WAF, NAC, IDS, and IPS technologies. Participate in change management activities, including risk assessment, implementation planning, testing, and post-change validation. Collaborate with security operations, infrastructure, application, and compliance teams to support business and regulatory requirements. Assist with lifecycle management for network security tools, including upgrades, patching, certificate management, integrations, and capacity planning. Provide technical recommendations to improve visibility, segmentation, access control, and threat prevention across the environment. Basic Qualifications: Experience: 8+ years of network security, infrastructure security, and/or security engineering. Practical and demonstrated experience working Web Application Firewalls, Network Access Control platforms, IDS/IPS technologies, Firewalls or secure network gateways in platforms by Cisco, Palo Alto, Trend Micro, Gigamon, Trellix, etc. Education: Bachelor's degree in Cybersecurity, Information Technology, Computer science or a related field. Technical Expertise: Advanced level knowledge of networking concepts, including TCP/IP, DNS, DHCP, VLANs, routing, switching, NAT, VPNs, and network segmentation. Experience analyzing logs, packet captures, alerts, and network traffic to troubleshoot issues or investigate security events. Familiarity with common network and application-layer attack techniques. Experience supporting production environments and following change management processes. Strong troubleshooting, documentation, and communication skills. Language Skills: Excellent stakeholder management and communication skills. Proficient in English for effective communication and coordination. Schedule: This is an onsite position requiring presence in the Irvine office five days per week. Some after-hours or weekend work may be required for planned maintenance, incident response, or critical security changes. Preferred Qualifications: Experience: Experience with enterprise WAF policy tuning, bot protection, API protection, or application security rule sets. Experience with NAC deployment models, including 802.1X, MAC authentication bypass, posture assessment, guest access, and device profiling. Familiarity with SIEM, SOAR, vulnerability management, endpoint security, or cloud security tools. Scripting or automation experience using Python, PowerShell, APIs, or infrastructure-as-code tools. Education and Certifications: Masters degree in Cybersecurity, Information Technology, Computer Science or a related discipline is preferred. Industry-recognized credentials such as Security+, Network+, CCNA, CCNP Security, PCNSE, CISSP, GSEC, GCIH, or vendor-specific certifications. Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication. Team Culture: The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed. Base Salary Range: $100,000 - 130,000 Powered by JazzHR FgOdYKZ9EK
GNOSC Watch Officer/Network Engineer
LAUNCHTECH Colorado Springs, Colorado
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. We are seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. What You'll Be Doing Be responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. The successful candidate will: Have excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understand Command level Management. Be able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Be able to perform as a section trainer and create lesson plans. Be able to operate within a stressful high speed Operational environment and be able to multi-task. What You Bring Basic Requirements: Must have 1, or more, years of IT experience Must have a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher. Must have an active DoW Secret Security Clearance Desired Requirements: Have experience in metrics-based IT Operations and Maintenance (O&M) teams. Have experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Have previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Have previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Have experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Have knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Have Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Have knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Have Quality Assurance/Quality Control Inspection process knowledge. Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role places you at the operational heart of a 24/7 enterprise network operations center defending the nation's missile defense infrastructure around the clock. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR NYRvODyGdv
09/28/2026
Full time
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. We are seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. What You'll Be Doing Be responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. The successful candidate will: Have excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understand Command level Management. Be able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Be able to perform as a section trainer and create lesson plans. Be able to operate within a stressful high speed Operational environment and be able to multi-task. What You Bring Basic Requirements: Must have 1, or more, years of IT experience Must have a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher. Must have an active DoW Secret Security Clearance Desired Requirements: Have experience in metrics-based IT Operations and Maintenance (O&M) teams. Have experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Have previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Have previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Have experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Have knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Have Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Have knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Have Quality Assurance/Quality Control Inspection process knowledge. Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role places you at the operational heart of a 24/7 enterprise network operations center defending the nation's missile defense infrastructure around the clock. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR NYRvODyGdv
Associate Network Security Engineer
Eliassen Group Cary, North Carolina
Job Description Job Description Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12 month contract, with potential for permanent conversion, to support the Information Security organization. This role focuses on monitoring network security activities and operating and optimizing security infrastructure. The engineer will drive policy, rule, and architecture improvements to prevent and remediate incidents, perform security configuration changes, and collaborate with IT and business stakeholders on triage. The position emphasizes enterprise firewalls, SASE and ZTNA, identity and access management, Microsoft security tooling, and process development aligned to best practices and regulatory requirements. Rate : $42.00 - $48.00 per hour W2 Responsibilities: Monitor network security activities and maintain oversight of security infrastructure. Implement, monitor, and manage enterprise firewall solutions, including NGFW, to enforce network security policies. Operate and configure SASE capabilities including secure web gateways, ZTNA, and CASB. Execute security configuration changes and support incident prevention and remediation through policy, rule, and architecture optimization. Collaborate with IT and business stakeholders on security triage and operational support. Leverage Microsoft Security Suite such as Defender for Endpoint, Sentinel, and Entra/Azure AD across on premises and cloud environments. Develop and refine procedures, policies, and processes aligned with best practices and regulatory requirements. Recommend remediation measures to improve security posture and reduce risk. Communicate security concepts to cross functional teams and stakeholders. Perform other related duties as assigned. Experience Requirements: 3+ years in cloud or network security engineering, security operations, insider risk management, or security event management. Hands on experience with identity, firewall, cloud, and SIEM tools such as Microsoft Azure, Okta, Duo, Palo Alto, Fortinet, Zscaler, Windows Defender, OCI, and Sentinel. Ability to convey complex information risk and security issues in an actionable manner. Demonstrated judgment, urgency, ethical standards, regulatory awareness, customer service, and business integrity. Preferred proficiency with automation or scripting such as Ansible, Python, KQL, or PowerShell. Strong written and oral communication skills and the ability to work cross functionally with network, cloud, infrastructure, and application teams. Strong organizational skills with the ability to prioritize and deliver in a fast paced environment. Ability to accommodate approximately 5% travel. Recruitment Transparency Notice Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team ( , ) inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group's use of these tools, including AI tools, as part of the application and hiring process. Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following: When you work with Eliassen Group, all email communication will come from an address, never Gmail, Yahoo, etc. Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group. If you have any indication of fraudulent activity, please contact . About Eliassen Group: Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients' capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve. Eliassen is committed to building a diverse and inclusive team from a variety of backgrounds, perspectives, and skills. We are an Equal Opportunity and Affirmative Action Employer and all employment decisions are based on merit, performance, and business needs. Eliassen does not discriminate on the basis of race, color, gender identity or expression, sexual preference or orientation, sex (including pregnancy, childbirth, and related medical conditions), marital status, creed, religion, physical or mental disability, genetic information, military or veteran status, age, ancestry, national origin, citizenship status, prohibited criminal record inquiries of applicants and employees, or any other category protected by federal, state, or local laws. Don't miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!
09/28/2026
Full time
Job Description Job Description Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12 month contract, with potential for permanent conversion, to support the Information Security organization. This role focuses on monitoring network security activities and operating and optimizing security infrastructure. The engineer will drive policy, rule, and architecture improvements to prevent and remediate incidents, perform security configuration changes, and collaborate with IT and business stakeholders on triage. The position emphasizes enterprise firewalls, SASE and ZTNA, identity and access management, Microsoft security tooling, and process development aligned to best practices and regulatory requirements. Rate : $42.00 - $48.00 per hour W2 Responsibilities: Monitor network security activities and maintain oversight of security infrastructure. Implement, monitor, and manage enterprise firewall solutions, including NGFW, to enforce network security policies. Operate and configure SASE capabilities including secure web gateways, ZTNA, and CASB. Execute security configuration changes and support incident prevention and remediation through policy, rule, and architecture optimization. Collaborate with IT and business stakeholders on security triage and operational support. Leverage Microsoft Security Suite such as Defender for Endpoint, Sentinel, and Entra/Azure AD across on premises and cloud environments. Develop and refine procedures, policies, and processes aligned with best practices and regulatory requirements. Recommend remediation measures to improve security posture and reduce risk. Communicate security concepts to cross functional teams and stakeholders. Perform other related duties as assigned. Experience Requirements: 3+ years in cloud or network security engineering, security operations, insider risk management, or security event management. Hands on experience with identity, firewall, cloud, and SIEM tools such as Microsoft Azure, Okta, Duo, Palo Alto, Fortinet, Zscaler, Windows Defender, OCI, and Sentinel. Ability to convey complex information risk and security issues in an actionable manner. Demonstrated judgment, urgency, ethical standards, regulatory awareness, customer service, and business integrity. Preferred proficiency with automation or scripting such as Ansible, Python, KQL, or PowerShell. Strong written and oral communication skills and the ability to work cross functionally with network, cloud, infrastructure, and application teams. Strong organizational skills with the ability to prioritize and deliver in a fast paced environment. Ability to accommodate approximately 5% travel. Recruitment Transparency Notice Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team ( , ) inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group's use of these tools, including AI tools, as part of the application and hiring process. Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following: When you work with Eliassen Group, all email communication will come from an address, never Gmail, Yahoo, etc. Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group. If you have any indication of fraudulent activity, please contact . About Eliassen Group: Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients' capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve. Eliassen is committed to building a diverse and inclusive team from a variety of backgrounds, perspectives, and skills. We are an Equal Opportunity and Affirmative Action Employer and all employment decisions are based on merit, performance, and business needs. Eliassen does not discriminate on the basis of race, color, gender identity or expression, sexual preference or orientation, sex (including pregnancy, childbirth, and related medical conditions), marital status, creed, religion, physical or mental disability, genetic information, military or veteran status, age, ancestry, national origin, citizenship status, prohibited criminal record inquiries of applicants and employees, or any other category protected by federal, state, or local laws. Don't miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!
CSfC Sr. Network Engineer
TekSynap Aiea, Hawaii
Job Description Job Description Overview We are seeking a CSfC Senior Network Engineer to join our team supporting Network Enterprise Technology Command (NETCOM) in Honolulu, HI. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at . Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Responsibilities RESPONSIBILITIES Assists the PM in the day-to-day management of leading Network Engineers. Must have an in-depth understanding of advanced networking O&M Commercial Solutions for Classified (CSfC) concepts and processes and experience applying these with little to no guidance. Must be able to provide guidance to others. Must be able to perform successfully in complex, unstructured situations. Must be proficient in multivendor networking environments in configuring firewalls, Intrusion Prevention/Detection systems, VPN gateways, routers, and switches (Cisco, Aruba, Juniper, Cisco ASA, etc.) Be able to develop and modify system scripts. Write standardized system documentation, including configuration guides, test procedures, test results, and training materials. Provide onsite training to technical and non-technical users on the daily use, management, and troubleshooting of the solution after installation. Support all Cross-Domain solution requirements Collaborate with other operations departments to design approved infrastructure Serve as the escalation contact during large outages for Tier 2 and 3 systems. Author network Engineering Design Packages to include detailed implementation project plans and procedures. Configures network, software, and hardware components to meet NSA CSfC, NIAP, and DoD requirements Performs network design and systems integration Designs, develops, implements, tests, and maintains complex secure communications networks Configuring/managing PKI Certificate Authorities for CSfC solutions Familiarity with Certificate Authority configuration (ISC CertAgent/MS Windows Server/Red Hat Certificate systems) Document configuration, test procedure, results, and training materials Preparing test reports and configuration documentation according to customer standards. Providing customer on-site training on solution daily use, management, and troubleshooting Provide tier 2 and 3 support as part of a technical team. Identify and recommend hardware and support solutions based on research and analysis of new technologies, interfacing with customers and vendors. Enhance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to the company. Apply DoD STIGs and IAVAs Perform special projects and other duties as assigned. REQUIRED QUALIFICATIONS Top Secret OR Higher OR Secret Clearance level with completed T5 investigation Active Professional Network certification (CCNP-Security, CCNA, HPE Aruba Networking Certified Professional - Switching, etc.) Must have experience with one or more networking vendors: Cisco, Aruba, Juniper, etc. One of the following DoD8140 Certifications : SecurityX/CASP+ CCNA CCNP Security CCSP (Certified Cloud Security Professional) GCED (GIAC Certified Enterprise Defender) GCIA (GIAC Certified Intrusion Analyst) GCLD (GIAC Cloud Security Essentials) GDSA (GIAC Defensible Security Architecture) GFACT (GIAC Foundational Cybersecurity Technologies) 10 or more years of experience in engineering MA/MS= 10 years; BS=12 years Qualifications WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Honolulu, HI Type of environment: Office Noise level: Low Work schedule: CONUS Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 20% PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE United States Citizenship Top Secret Clearance requirement WAGE INFORMATION Target salary range: $133,000.00 - $165,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
09/28/2026
Full time
Job Description Job Description Overview We are seeking a CSfC Senior Network Engineer to join our team supporting Network Enterprise Technology Command (NETCOM) in Honolulu, HI. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at . Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Responsibilities RESPONSIBILITIES Assists the PM in the day-to-day management of leading Network Engineers. Must have an in-depth understanding of advanced networking O&M Commercial Solutions for Classified (CSfC) concepts and processes and experience applying these with little to no guidance. Must be able to provide guidance to others. Must be able to perform successfully in complex, unstructured situations. Must be proficient in multivendor networking environments in configuring firewalls, Intrusion Prevention/Detection systems, VPN gateways, routers, and switches (Cisco, Aruba, Juniper, Cisco ASA, etc.) Be able to develop and modify system scripts. Write standardized system documentation, including configuration guides, test procedures, test results, and training materials. Provide onsite training to technical and non-technical users on the daily use, management, and troubleshooting of the solution after installation. Support all Cross-Domain solution requirements Collaborate with other operations departments to design approved infrastructure Serve as the escalation contact during large outages for Tier 2 and 3 systems. Author network Engineering Design Packages to include detailed implementation project plans and procedures. Configures network, software, and hardware components to meet NSA CSfC, NIAP, and DoD requirements Performs network design and systems integration Designs, develops, implements, tests, and maintains complex secure communications networks Configuring/managing PKI Certificate Authorities for CSfC solutions Familiarity with Certificate Authority configuration (ISC CertAgent/MS Windows Server/Red Hat Certificate systems) Document configuration, test procedure, results, and training materials Preparing test reports and configuration documentation according to customer standards. Providing customer on-site training on solution daily use, management, and troubleshooting Provide tier 2 and 3 support as part of a technical team. Identify and recommend hardware and support solutions based on research and analysis of new technologies, interfacing with customers and vendors. Enhance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to the company. Apply DoD STIGs and IAVAs Perform special projects and other duties as assigned. REQUIRED QUALIFICATIONS Top Secret OR Higher OR Secret Clearance level with completed T5 investigation Active Professional Network certification (CCNP-Security, CCNA, HPE Aruba Networking Certified Professional - Switching, etc.) Must have experience with one or more networking vendors: Cisco, Aruba, Juniper, etc. One of the following DoD8140 Certifications : SecurityX/CASP+ CCNA CCNP Security CCSP (Certified Cloud Security Professional) GCED (GIAC Certified Enterprise Defender) GCIA (GIAC Certified Intrusion Analyst) GCLD (GIAC Cloud Security Essentials) GDSA (GIAC Defensible Security Architecture) GFACT (GIAC Foundational Cybersecurity Technologies) 10 or more years of experience in engineering MA/MS= 10 years; BS=12 years Qualifications WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Honolulu, HI Type of environment: Office Noise level: Low Work schedule: CONUS Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 20% PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE United States Citizenship Top Secret Clearance requirement WAGE INFORMATION Target salary range: $133,000.00 - $165,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
Network & Cybersecurity Systems Engineer
Evolv Technologies Inc. Waltham, Massachusetts
Job Description Job Description The Elevator Pitch Are you ready to own the network and cybersecurity backbone of a company that's redefining security technology? Do you thrive at the intersection of network engineering, cybersecurity operations, and compliance-where your work directly reduces risk and keeps the business resilient against an ever-changing threat landscape? Evolv is seeking a Network & Cybersecurity Engineer to design, implement, and defend our network infrastructure and security tooling. You'll be the technical owner of Evolv's network and security posture-from firewalls and access control to identity governance and threat detection-reporting to the Senior Director of Cybersecurity & Technology. This is a pivotal role in maturing Evolv's security program to meet the evolving demands of the business and our growing compliance obligations. You'll partner closely with the Systems Engineer and the rest of the IT team, and serve as the subject matter expert on networking, enterprise cybersecurity, and compliance tooling. If you're energized by staying ahead of emerging threats and building durable, well-governed security controls, this role is for you. Success in the Role: What are performance outcomes over the first 6-12 months you will work toward completing? In the first 30 days, you will: Get to know the IT and security team and the tools/platforms currently in use Start building relationships with key stakeholders across the company, especially R&D and Legal/Compliance Learn Evolv's compliance commitments and ongoing authorization efforts, and how best to support them Gain familiarity with the current network/security toolstack: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, VPN/ZTNA, identity platforms (Okta, Entra ID), SIEM/EDR/DLP tooling, and the MDR relationship Within 3 months, you will: Begin implementing or improving network and security controls that measurably reduce risk Build trust-based relationships with peers in IT and stakeholders across business units Become the established subject matter expert on network security and compliance tooling at Evolv Take ownership of the MDR relationship and escalated detection response By the end of the first year, you will: Be recognized as the trusted subject matter expert across network infrastructure, and security operations Have driven measurable improvements to Evolv's security posture and compliance readiness Successfully supported compliance requirements and audit readiness, partnering closely with Legal/Compliance and R&D Documented network and security architecture, processes, and runbooks that reduce single points of failure Be seen as the go-to resource for network security questions, escalations, and best-practice guidance The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis? Infrastructure, Security & Compliance: Design, implement, and maintain network infrastructure: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, and VPN/ZTNA solutions Administer identity and access: Okta/Entra ID, Conditional Access policies, MFA enforcement, identity lifecycle management, and IGA Own security tooling and controls: SIEM, EDR, DLP, and vulnerability management, aligned to CIS Controls, NIST CSF, and other relevant compliance frameworks Manage the MDR relationship and respond to escalated detections Drive the IT process and policy redesign required to meet current compliance requirements, and to support additional frameworks as those efforts come online, in partnership with Legal/Compliance Harden AWS/Azure environments from a security perspective: IAM least-privilege, VPC/network security, Azure Policy Provide front-line escalation support and mentoring to IT teammates; maintain runbooks and documentation Assess technology and network risk across the company and recommend remediations Leadership, Team Structure & Culture You will join the IT organization as a direct report to the Senior Director of Cybersecurity & Technology, working alongside a Systems Engineer peer who owns day-to-day systems and endpoint operations. This is a hands-on, collaborative team that takes security and operational excellence seriously. This is a senior individual contributor role focused on deep technical impact-your job is to own and mature Evolv's network security and cybersecurity posture through the systems, controls, and automation you build. You'll have meaningful autonomy over how you approach problems and are actively encouraged to bring creative solutions, identify improvement opportunities, and advocate for better ways of working. You'll work alongside teammates who share your drive for continuous improvement, and you'll have a manager who values initiative, trusts the team to execute, and wants to hear your ideas. Where is the role located? This role is based out of Evolv HQ in Waltham, Massachusetts. This is a hybrid role with an expectation of 3 days per week on-site. Fully remote candidates will not be considered. Compensation and Transparency Statement The base salary range for this full-time position is $102,000-$166,000. In addition to base salary, this role offers a competitive target bonus, equity, and a comprehensive benefits package. This range reflects our commitment to pay transparency and equity, in alignment with applicable state laws. Our compensation ranges are determined based on factors such as role, level, location, market benchmarks, and internal equity. The posted range represents the good-faith estimate of what we expect to pay for this role across U.S. locations. Actual compensation within the range will be based on the candidate's skills, experience, education, and geographic location. In accordance with state and local pay transparency laws-including those in California, Colorado, Massachusetts, New York, New Jersey, and others-we disclose salary ranges in all job postings and provide additional information upon request. During the hiring process, your recruiter will share: •The specific salary range for your preferred location •A general overview of our benefits and equity offerings •Insights into how compensation decisions are made, including factors that influence starting pay We are committed to fair pay practices, and we regularly review our compensation programs to ensure they are competitive, equitable, and aligned with our values. Benefits At Evolv, we're on a mission to help make public spaces safer through innovative security technology. So, we're looking for future teammates who embody our values, people who: Do the right thing, always; Put people first' Own it; Win together; and continue to Be bold, stay curious. Our Benefits Include : Equity as part of your total compensation package Medical, dental, and vision insurance Health Savings Account (HSA) A 401(k) plan (and 2% company match) Flexible Paid Time Off (PTO)- take the time you need to recharge, with manager approval and business needs in mind Quarterly stipend for perks and benefits that matter most to you Tuition reimbursement to support your ongoing learning and development Subscription to Calm Evolv Technology ("Evolv") is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We welcome and encourage diversity in the workplace, and all employment decisions are made without regard to race, color, religion, national, social or ethnic origin, sex (including pregnancy), age, disability, HIV Status, sexual orientation, gender identity and/or expression, veteran status, or any other status protected by law in the locations where we operate. Evolv will not tolerate discrimination or harassment based on any of these characteristics. Evolv is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. If you need a reasonable accommodation as part of the job application process, please connect with us at . Evolv participates in E-verify for all employees after the completion of Form I-9.
09/28/2026
Full time
Job Description Job Description The Elevator Pitch Are you ready to own the network and cybersecurity backbone of a company that's redefining security technology? Do you thrive at the intersection of network engineering, cybersecurity operations, and compliance-where your work directly reduces risk and keeps the business resilient against an ever-changing threat landscape? Evolv is seeking a Network & Cybersecurity Engineer to design, implement, and defend our network infrastructure and security tooling. You'll be the technical owner of Evolv's network and security posture-from firewalls and access control to identity governance and threat detection-reporting to the Senior Director of Cybersecurity & Technology. This is a pivotal role in maturing Evolv's security program to meet the evolving demands of the business and our growing compliance obligations. You'll partner closely with the Systems Engineer and the rest of the IT team, and serve as the subject matter expert on networking, enterprise cybersecurity, and compliance tooling. If you're energized by staying ahead of emerging threats and building durable, well-governed security controls, this role is for you. Success in the Role: What are performance outcomes over the first 6-12 months you will work toward completing? In the first 30 days, you will: Get to know the IT and security team and the tools/platforms currently in use Start building relationships with key stakeholders across the company, especially R&D and Legal/Compliance Learn Evolv's compliance commitments and ongoing authorization efforts, and how best to support them Gain familiarity with the current network/security toolstack: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, VPN/ZTNA, identity platforms (Okta, Entra ID), SIEM/EDR/DLP tooling, and the MDR relationship Within 3 months, you will: Begin implementing or improving network and security controls that measurably reduce risk Build trust-based relationships with peers in IT and stakeholders across business units Become the established subject matter expert on network security and compliance tooling at Evolv Take ownership of the MDR relationship and escalated detection response By the end of the first year, you will: Be recognized as the trusted subject matter expert across network infrastructure, and security operations Have driven measurable improvements to Evolv's security posture and compliance readiness Successfully supported compliance requirements and audit readiness, partnering closely with Legal/Compliance and R&D Documented network and security architecture, processes, and runbooks that reduce single points of failure Be seen as the go-to resource for network security questions, escalations, and best-practice guidance The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis? Infrastructure, Security & Compliance: Design, implement, and maintain network infrastructure: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, and VPN/ZTNA solutions Administer identity and access: Okta/Entra ID, Conditional Access policies, MFA enforcement, identity lifecycle management, and IGA Own security tooling and controls: SIEM, EDR, DLP, and vulnerability management, aligned to CIS Controls, NIST CSF, and other relevant compliance frameworks Manage the MDR relationship and respond to escalated detections Drive the IT process and policy redesign required to meet current compliance requirements, and to support additional frameworks as those efforts come online, in partnership with Legal/Compliance Harden AWS/Azure environments from a security perspective: IAM least-privilege, VPC/network security, Azure Policy Provide front-line escalation support and mentoring to IT teammates; maintain runbooks and documentation Assess technology and network risk across the company and recommend remediations Leadership, Team Structure & Culture You will join the IT organization as a direct report to the Senior Director of Cybersecurity & Technology, working alongside a Systems Engineer peer who owns day-to-day systems and endpoint operations. This is a hands-on, collaborative team that takes security and operational excellence seriously. This is a senior individual contributor role focused on deep technical impact-your job is to own and mature Evolv's network security and cybersecurity posture through the systems, controls, and automation you build. You'll have meaningful autonomy over how you approach problems and are actively encouraged to bring creative solutions, identify improvement opportunities, and advocate for better ways of working. You'll work alongside teammates who share your drive for continuous improvement, and you'll have a manager who values initiative, trusts the team to execute, and wants to hear your ideas. Where is the role located? This role is based out of Evolv HQ in Waltham, Massachusetts. This is a hybrid role with an expectation of 3 days per week on-site. Fully remote candidates will not be considered. Compensation and Transparency Statement The base salary range for this full-time position is $102,000-$166,000. In addition to base salary, this role offers a competitive target bonus, equity, and a comprehensive benefits package. This range reflects our commitment to pay transparency and equity, in alignment with applicable state laws. Our compensation ranges are determined based on factors such as role, level, location, market benchmarks, and internal equity. The posted range represents the good-faith estimate of what we expect to pay for this role across U.S. locations. Actual compensation within the range will be based on the candidate's skills, experience, education, and geographic location. In accordance with state and local pay transparency laws-including those in California, Colorado, Massachusetts, New York, New Jersey, and others-we disclose salary ranges in all job postings and provide additional information upon request. During the hiring process, your recruiter will share: •The specific salary range for your preferred location •A general overview of our benefits and equity offerings •Insights into how compensation decisions are made, including factors that influence starting pay We are committed to fair pay practices, and we regularly review our compensation programs to ensure they are competitive, equitable, and aligned with our values. Benefits At Evolv, we're on a mission to help make public spaces safer through innovative security technology. So, we're looking for future teammates who embody our values, people who: Do the right thing, always; Put people first' Own it; Win together; and continue to Be bold, stay curious. Our Benefits Include : Equity as part of your total compensation package Medical, dental, and vision insurance Health Savings Account (HSA) A 401(k) plan (and 2% company match) Flexible Paid Time Off (PTO)- take the time you need to recharge, with manager approval and business needs in mind Quarterly stipend for perks and benefits that matter most to you Tuition reimbursement to support your ongoing learning and development Subscription to Calm Evolv Technology ("Evolv") is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We welcome and encourage diversity in the workplace, and all employment decisions are made without regard to race, color, religion, national, social or ethnic origin, sex (including pregnancy), age, disability, HIV Status, sexual orientation, gender identity and/or expression, veteran status, or any other status protected by law in the locations where we operate. Evolv will not tolerate discrimination or harassment based on any of these characteristics. Evolv is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. If you need a reasonable accommodation as part of the job application process, please connect with us at . Evolv participates in E-verify for all employees after the completion of Form I-9.

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board