Network Security Engineer

MATRIX SYSTEMS & TECHNOLOGIES INC

Network Security Engineer

Annapolis, MD
Full Time
Paid
  • Responsibilities

    Benefits:

    Health insurance

    Paid time off

    Training & development

    Note this is a Hybrid position. 3 days on-site and 2 days remote in Annapolis, MD

    Minimum Qualifications:

    Associate degree in an Information Technology (IT) related field, as determined by the AOC.

    Active certifications as follows:

    (1) Palo Alto Networks Certified Network Security Engineer (PCNSE) Certification.

    (2) Cisco Certified Network Professional (CCNP) Enterprise or (CCNP) Security Certification.

    Preferred Qualifications:

    Ten (10) years of CONUS technical experience in IT networking and network security.

    Bachelor’s degree in an Information Technology (IT) related field, as determined by the AOC.

    Preferred Current Certifications as follows:

    (1) Prisma Certified Cloud Security Engineer (PCCSE) Certification from Palo Alto Networks

    (2) Cisco Certified Internetwork Expert (CCIE) in Enterprise Infrastructure or Security Certification

    Skills, Experience, Capabilities

    Five (5) years of experience with:

    (1) Palo Alto Networks next generation firewall services.

    (2) Intrusion Detection and Prevention with Palo Alto networks.

    (3) Content Filtering Palo Alto networks.

    (4) Virtual Private Networks using Palo Alto network systems.

    (5) Data Loss Prevention

    (6) TLS/SSL Inspection

    Four (4) years of experience in Complex switching, routing, wireless with Cisco Systems.

    Three (3) years of experience in Reverse Proxies, Load Balancing with A10 networks.

    Two (2) years of experience in Network Access Control - Cisco Identity Services Engine (ISE), Free Radius, and Access Control Lists (ACLs).

    General experience with the following:

    (1) Implementing multifactor authentication solutions with Microsoft.

    (2) Cloud based virtual networking and security services

    (3) Authentication standards - (802.1x) in wired and wireless applications.

    (4) Scalable routing protocols Enhance Interior Gateway Routing Protocol (EIGRP), Open Shortest Path Fist (OSPF), and Border Gateway Protocol (BGP).

    (5) Enterprise Data Center implementing Micro segmentation.

    (6) Certificate Management, Public Key Infrastructure (PKI).

    (7) Vulnerability management using Nessus, NMAP, Windows, Unix, and Linux OS

    (8) Packet/Protocol Analysis using Opnet, Riverbed, Wireshark, and taps.

    (9) Centralized Management using Panorama, SolarWinds

    (10) Major server and desktop operating systems and utilities

    Ability to:

    (1) To work independently, troubleshoot and provide mentoring to junior associates.

    (2) Communicate effectively when providing presentations.

    (3) Produce technical documents (diagrams, design documents, project plans and schedules, and user instructions) as required.

    Flexible work from home options available.