Network Security Engineer IV

Invictus International ConsultingAlexandria, VA
Onsite

About The Position

Responsible for the deployment, configuration, and operational support of enterprise firewall infrastructure. This role requires a strong understanding of enterprise networking fundamentals, including routing, switching, and end-to-end traffic flow, as well as LAN and WAN troubleshooting experience. The engineer will be hands-on with eBGP, VLANs, and Palo Alto APP-ID, and will design, implement, and maintain Next-Generation Firewall (NGFW) security policies for both physical and virtual firewalls. Additionally, the position involves IDS/IPS configuration, tuning, and alert triage, network security monitoring, traffic analysis, and anomaly detection. The engineer will also be responsible for troubleshooting routing, VLAN, and policy-related issues, performing packet captures, and refining Splunk dashboards and alerts. Collaboration with network, SOC, and engineering teams is essential, as is the documentation of configurations, runbooks, and post-incident findings.

Requirements

  • Bachelor's degree from an accredited institute in a technical discipline; an additional four (4) years of experience may be substituted in lieu of a degree
  • Minimum eight (8) years of relevant experience in addition to education level
  • Must possess current DoD 8570 IAT II and CCNP (or equivalent) certifications
  • Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph

Nice To Haves

  • Experience working in a DoD or Intelligence Community Environment

Responsibilities

  • Deployment, configuration, and operational support of enterprise firewall infrastructure
  • Execute enterprise networking fundamentals, including routing, switching, and end-to-end traffic flow
  • Demonstrate LAN and WAN troubleshooting experience
  • Hands on experience with eBGP, VLANs, and Palo Alto APP-ID
  • Design, implement, and maintain NGFW security policies, including both physical and virtual firewalls
  • Perform IDS/IPS configuration, tuning, and alert triage
  • Read, produce, and maintain accurate network diagrams (Visio or equivalent)
  • Conduct network security monitoring including traffic analysis and anomaly detection
  • Troubleshoot routing, VLAN, and policy related issues impacting data flow across the enterprise
  • Perform packet captures and traffic analysis to isolate and resolve complex connectivity issues
  • Monitor and refine Splunk dashboards and alerts in support of firewall operations and incident investigation
  • Collaborate with the network, SOC, and engineering teams during incidents and routine operations
  • Document configurations, runbooks, and post incident findings
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service