Senior COMSEC & Network Engineer (Cloud/Classified)

General Dynamics Information Technology•El Segundo, CA
•$107,744 - $143,750•Onsite

About The Position

We are seeking a highly skilled COMSEC and Network Engineer to lead the integration and management of secure communications within a classified Azure Cloud environment. This role is critical in bridging the gap between traditional cryptographic hardware and modern software-defined networking in a high-stakes, multi-domain mission space. You will be responsible for the end-to-end security of data in transit, ensuring that our classified cloud infrastructure meets all regulatory requirements while maintaining peak operational performance.

Requirements

  • BA/BS or equivalent experience
  • 8+ years of experience in Network Engineering with at least 4 years focused on COMSEC and Cryptographic systems.
  • Secret clearance with ability to obtain and maintain TS/SCI
  • Proven experience configuring networking components within Azure Government or Classified Cloud environments.
  • Deep understanding of OSI Model, TCP/IP, BGP, and IPsec.
  • Proficiency with HAIPE (High Assurance IP Encryptor) devices and Key Management Infrastructure (KMI).
  • Experience with CSfC Multi-Site and Mobile Access Capability Packages.
  • Experience with Infrastructure as Code (Terraform, Bicep, or ARM templates) to automate secure network deployments.
  • Familiarity with Zero Trust Architecture (ZTA) principles in a tactical or enterprise edge environment.
  • Previous experience as a COMSEC Custodian or Alternate.
  • DoD 8570 IAT Level II or III (e.g., Security+, CISSP, or CASP+).
  • Active Secret with ability to obtain and maintain TS/SCI

Nice To Haves

  • Azure Solutions Architect or Azure Network Engineer Associate preferred.

Responsibilities

  • Design and implement Secure Communications (COMSEC) solutions across classified Azure environments (IL5/IL6), ensuring compliance with NSA Commercial Solutions for Classified (CSfC) requirements.
  • Manage and optimize Azure virtual networks, ExpressRoute, and VPN Gateways to maintain low-latency, high-security connectivity.
  • Install, configure, and maintain Type-1 encryption devices (e.g., TACLANE) and cryptographic keying materials using specialized management systems.
  • Develop and maintain Standard Operating Procedures (SOPs) for key management, device auditing, and incident response in accordance with government security mandates.
  • Partner with Cloud Architects, Network Engineers and Security Engineers to troubleshoot complex connectivity issues and mitigate vulnerabilities within the transport layer.
  • Maintains records of all COMSEC material, performing physical inventories (often semi-annually) and securing Controlled Cryptographic Items (CCI).
  • Orders, receives, secures, loads, and destroys COMSEC keying material using systems like the Key Management Infrastructure (KMI) or Simple Key Loader (SKL).
  • Conducts regular audits and inspections to identify vulnerabilities, ensuring compliance with National Security Agency (NSA) and agency policies.
  • Reports known or suspected COMSEC incidents immediately to the program office, ensuring proper procedures are followed.
  • Conducts initial briefings and debriefings for authorized users, managing access lists to restricted areas/material.
  • Oversees the authorized destruction of keying material and coordinates the disposal of obsolete cryptographic equipment.

Benefits

  • Comprehensive benefits and wellness packages
  • 401K with company match
  • competitive pay
  • paid time off
  • full flex work weeks where possible
  • variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave.
  • short and long-term disability benefits
  • life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service