NETWORK ENGINEER

VSolvitVentura, CA
12dRemote

About The Position

The Network Engineer sustains and manages the DOD SCCA Security Stack and future Zero Trust Architecture (ZTA) Mission Landing Zones. This role is responsible for the architectural design and secure connectivity of Azure networking services across all CSM environments. You will ensure the stability and security of cloud network infrastructure while maintaining strict compliance with Department of Defense (DOD) standards. As with any position, additional expectations exist. Some of these are, but are not limited to, adhering to normal working hours, meeting deadlines, following company policies as outlined by the Employee Handbook, communicating regularly with assigned supervisor(s), and staying focused on the assigned tasks including company meetings, and completing other tasks as assigned.

Requirements

  • Education: Bachelor’s degree in Computer Science or a related field.
  • Experience: 2–4 years of cloud engineering experience with advanced expertise in the architectural design and deployment of IT networking systems.
  • Technical Skills:
  • Expertise in Azure-specific networking tools and secure cloud connectivity.
  • Proficiency in Azure administration and cloud architecture.
  • Experience with CI/CD and DevSecOps toolchains.
  • Certification: Security+ certification.
  • Security Clearance: U.S. Citizenship and the ability to obtain a DoD Top Secret clearance
  • If applicable: If you are or have been recently employed by the U.S. government by the U.S. government, a post-employment ethics letter will be required if employment with VSolvit is offered

Nice To Haves

  • Active DoD Top Secret clearance
  • Professional cloud certification (e.g., Microsoft Certified: Azure Associate)
  • Experience implementing DISA STIG configurations and supporting compliance for DoD SRG and NIST SP 800-53 security controls

Responsibilities

  • Sustain the current legacy DOD Secure Cloud Computing Architecture (SCCA) and the future (buildout in progress) Cloud Native (CN)/Zero Trust Architecture (ZTA) Mission Landing Zone (MLZ) security stacks in Azure Government
  • Perform required scanning, maintenance, and ad-hoc checks as directed by Cybersecurity Support to maintain Authorization to Operate (ATO) compliance
  • Manage the Azure Firewall Premium (AFW-P) service to block untrusted traffic, maintain a trusted internal network, enforce threat protection, and secure cloud connectivity
  • Coordinate with CSM, Cybersecurity/Information Assurance, and Mission Owners (MO) to understand networking requirements and perform configuration and sustainment of the following services:
  • Application Delivery: Azure Application Gateway, Load Balancer, Traffic Manager, and Web Application Firewall (WAF)
  • Connectivity: Microsoft/Azure ExpressRoutes, Express Route Gateways, Virtual WAN, and VPN Gateways
  • Traffic Control: Azure Firewall Premium (AFW-P), Virtual Networks (VNET), and Network Security Groups (NSG)
  • Monitoring & Routing: Azure Network Watcher, NAT Gateway, and Domain Name Services (DNS)

Benefits

  • medical, dental, and vision insurance
  • life insurance
  • long and short-term disability and other insurance products
  • Health Savings Account
  • Flexible Spending Account
  • 401K Retirement Plan options
  • Tuition Reimbursement
  • assorted voluntary benefits
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service