CACI International-posted 2 days ago
Full-time • Mid Level
Springfield, VA
5,001-10,000 employees

TCS has an exciting and challenging opportunity available for a CSES III - Firewall Engineer supporting an Intelligence Community customer’s wide-area (WAN), local-area (LAN) and campus-area (CAN) networks across multiple security domains. Ensure the overall health and strong security posture of complex network architectures. The Firewall Engineer will be actively involved with all phases of security design, implementation, proactive monitoring, troubleshooting and analysis of firewalls, IDSs, F5 Load Balancers, VPNs, security controls and policies. Develops system specifications, architecture designs, integration and test plans, and all relevant documentation. Develops security assessment and mitigation strategies. Maintain compliance with DOD Information Assurance requirements as well as ensuring service performance indicators are met or exceeded.

  • Work with both corporate and customer leadership to research, analyze, and implement enterprise-wide network security solutions/capabilities/enhancements to support customer business/mission goals and objectives.
  • Assists with designs, analyses, tests and implementation of state-of-the-art secure network architectures.
  • Conducts risk assessment and provides recommendations for design.
  • Manage WAN, LAN, CAN, and remote network security as well as incident and problem management.
  • Oversee security infrastructure sustainment, maintenance, and advanced configuration. (firewalls, F5 load balancers, web gateways, mail gateways, IDS, and management tools).
  • Oversee the reporting, documentation and investigation of all security related incidents; lead the development and implementation of corrective measures.
  • Responsible for development and execution of standard operating procedures for security tools.
  • Evaluate and report on new network Security technologies to enhance capabilities of the network.
  • Act as liaison to the contract and customer management, and government Designated Approving Authority (DAA) with regard to all network security status, policies, and procedures.
  • Bachelor’s degree in Computer Science or related field
  • DOD 8570 IAT Level III certification.
  • Must obtain a CSSP Infrastructure Support certification within 6 months of date of hire.
  • Ability to work independently with little direction and guidance
  • TS/SCI
  • Ability to work weekends and evening hours as needed
  • Excellent writing and communication skills, including the ability to develop analytical documents and present oral presentations to senior/executive management
  • Proficient is MS Office suite – Visio, Word, Excel, PowerPoint, and Project
  • Travel up to 15% of the time CONUS, maybe occasional OCONUS
  • 8+ years related technical experience in Network Security
  • 4+ years experience with large-scale enterprise/global networks in a high paced diverse environment
  • Understanding and experience with the DoD Architecture Framework and other key DoD network architecture and strategic planning instructions.
  • Expert knowledge of IP services
  • Experience in providing status reports and products to senior management and customers
  • Experience with Juniper SRX, Palo Alto Firewall, F5 Load Balancer, Cisco FTD/ASA
  • Experience with plans, designs, and evaluations of security systems and architectures.
  • Experience with Unix, RHELS OS, Windows Enterprise AD architecture and VMWare virtualization experience
  • Master’s degree in Computer Science or related field
  • Systems Security Certified Practitioner (SSCP) or CYSA+
  • CCNP Security and/or CCNA Security certification
  • ITIL certification
  • Security +
  • healthcare
  • wellness
  • financial
  • retirement
  • family support
  • continuing education
  • time off benefits
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service