Zero Trust Network Security Engineer

Booz Allen HamiltonScott AFB, IL
$86,800 - $198,000

About The Position

Are you looking for an opportunity to combine your technical skills with big-picture thinking to make an impact on national security? You understand how identity, device posture, and policy come together to keep sensitive resources secure, and you know how to translate that understanding into resilient engineering solutions. Your ability to turn real-world access control challenges into technical specifications makes you an integral part of delivering a customer-focused Zero Trust capability. As a Zero Trust Network Security Engineer on our team, you’ll have the chance to design and support remote access and conditional access enforcement solutions in support of the Department of Defense's (DoD) Zero Trust mission. Your technical expertise will be vital as you help evaluate and modernize legacy VPN infrastructure into Security Service Edge (SSE) and Zero Trust Network Access (ZTNA) capabilities. You'll develop your skills in identity, device posture, and policy-based access control while gaining experience supporting a large-scale, DoD-wide Zero Trust conditional access initiative. Grow your skills by merging network security engineering with Zero Trust architecture and policy enforcement design to create conditional access solutions that evaluate users and devices in real time before they reach mission-critical resources. Join our team and help turn Zero Trust strategy into accomplishments that drive change. Join us. The world can’t wait.

Requirements

  • 5+ years of experience supporting DoD enterprise security architectures
  • Experience designing, deploying, and supporting remote access solutions, including traditional VPN or SSE solutions
  • Knowledge of networking fundamentals, including IP addressing, routing, LAN or WAN architecture, and firewall concepts
  • Ability to design and support solutions that enforce ZTNA based on user identity, device posture, and organizational policy
  • Secret clearance
  • HS diploma or GED

Nice To Haves

  • Experience with Secure Access Service Edge (SASE) platforms such as Versa Networks and Palo Alto Prisma Access
  • Experience implementing solutions in classified spaces
  • Experience collaborating with cross-functional teams, including identity, endpoint management, and infrastructure, to design and deliver end-to-end solutions
  • Knowledge of DoD Comply to Connect (C2C) requirements
  • Knowledge of DoD Identity, Credential, and Access Management (ICAM) capabilities and related technologies
  • Knowledge of federal compliance standards, including NIST 800-53, FIPS, and DoD STIGs
  • Knowledge of Linux or UNIX environments, including navigating and troubleshooting basic OS issues
  • Possession of strong verbal and written communication skills
  • Security+ Certification

Responsibilities

  • Design and support remote access and conditional access enforcement solutions in support of the Department of Defense's (DoD) Zero Trust mission.
  • Evaluate and modernize legacy VPN infrastructure into Security Service Edge (SSE) and Zero Trust Network Access (ZTNA) capabilities.
  • Develop skills in identity, device posture, and policy-based access control.
  • Support a large-scale, DoD-wide Zero Trust conditional access initiative.
  • Merge network security engineering with Zero Trust architecture and policy enforcement design to create conditional access solutions that evaluate users and devices in real time before they reach mission-critical resources.

Benefits

  • health
  • life
  • disability
  • financial
  • retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service