Booz Allen Hamilton-posted 1 day ago
$99,000 - $225,000/Yr
Full-time • Mid Level
Reston, VA
1-10 employees

Illumio Zero Trust Segmentation Platform Engineer Key Role: Lead the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments. Support the architecting and implementation of Zero T rus t Segmentation policies , including application dependency mapping, labeling frameworks, enforcement boun dari es, and zone-based controls. Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise work load s and critical applications. Integrate Illumio with SIEM / SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines. C ond uct traffic flow analysis using Illumio VEN tele met ry and assist in building policy recommendations to reduce attack surface and limit east-west movement. Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure. Partner with application owners to onboard work load s, validate segmentation plans, and support change management processes. Perform lifecycle management, including upgrades, health checks, certificate operations, and policy governance. Collaborate with security architects to align Illumio policy models with broader Zero T rus t and NIST 800-207 strategies. Contribute to architectural standards, documentation, and enterprise security playbooks.

  • Lead the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.
  • Support the architecting and implementation of Zero T rus t Segmentation policies , including application dependency mapping, labeling frameworks, enforcement boun dari es, and zone-based controls.
  • Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise work load s and critical applications.
  • Integrate Illumio with SIEM / SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
  • C ond uct traffic flow analysis using Illumio VEN tele met ry and assist in building policy recommendations to reduce attack surface and limit east-west movement.
  • Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
  • Partner with application owners to onboard work load s, validate segmentation plans, and support change management processes.
  • Perform lifecycle management, including upgrades, health checks, certificate operations, and policy governance.
  • Collaborate with security architects to align Illumio policy models with broader Zero T rus t and NIST 800-207 strategies.
  • Contribute to architectural standards, documentation, and enterprise security playbooks.
  • 5+ years of experience in cybersecurity, cloud security, or infrastructure engineering
  • 3+ years of experience in Linux or Windows systems, virtualization, including VMware or Hyper-V, and cloud environments, including AWS, Azure, or GCP
  • 2+ years of experience with network security, including firewalls, routing, segmentation models, or TCP / IP
  • 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments, including finance, healthcare, federal, or energy
  • 1+ years of experience with infrastructure automation tools such as Ansible or Terraform
  • 1+ years of experience with REST APIs, scripting, including Python, Bash, or PowerShell, or automation frameworks
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Associate’s degree and 10+ years of experience supporting IT projects and activities, Bachelor’s degree and 8+ years of experience supporting IT projects and activities, or Master’s degree and 6+ years of experience supporting IT projects and activities
  • DoD 8570.01-M Information Assurance Techni cia n ( IAT ) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
  • Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
  • Experience deploying and managing Illumio Adaptive Security Platform ( ASP ) in enterprise environments
  • Experience with CMDB systems such as ServiceNow, SIEM and SOAR tools, or vulnerability management platforms
  • Knowledge of Zero T rus t principles, micro-segmentation, and lateral movement mitigation
  • Ability to translate policies into technical controls
  • Possession of strong analytical and problem-solving skills
  • Illumio certifications such as Illumio ASP Professional or Illumio ASP Expert certification
  • health
  • life
  • disability
  • financial
  • retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service