Sr. Network Security Architect

2 weeks ago


Arlington, United States AES Corporation Full time
We are seeking a skilled and seasoned Senior Security Network Engineer to join our network team. The successful candidate will play a critical role in architecting, designing, deploying, monitoring, maintaining, and refreshing secure global IT/OT network infrastructures to protect digital assets from leakage, unauthorized access, and cyber-attacks.

The Senior Security Network Engineer will collaborate with cross-functional and multi-cultural global teams to prevent, detect, and respond to threats to the organization's critical information assets.  . 

Responsibilities 

  • Analyze existing network security controls and strengthen the controls that could make vulnerability exploitation more likely - such as Data Loss Protection, technical debt, etc. 

  • Design and implement a global NAC solution (e.g. Cisco ISE) to control and authenticate network access including port-based network access control 802.1X. 

  • Research and propose new VPN, ZTNA, and VPN-less access solutions to provide secure remote access for authorized users and site-to-site remote access. 

  • Design, architect, and deploy Zscaler cloud-based solution infrastructure across SDWAN-based sites. 

  • Manage implementation plans and operations supervision of Zscaler solutions (ZIA, ZPA, ZDX, etc.). 

  • Proactively monitor reporting and consumption information along with policy configurations of Zscaler technologies and make ongoing recommendations to improve the overall experience. 

  • Review and architecture restricted access to contractors and third-party employees to ensure security and reliability in a self-service environment. 

  • Develop and automate tools and techniques to scale and accelerate network offensive emulation, anomaly detection, and vulnerability discovery using AI technology. Collaborate with teams to influence implementation, measurement, and mitigation of these vulnerabilities. 

  • Develop, improve, and communicate a compelling strategy and roadmap for network vulnerability and data leak prevention management. 

  • Design, implement, maintain, monitor, and support company-wide network security best practices. Draft and share network services configuration hardening standards. 

  • Build relationships with cyber security teams, network operations, digital assets support, and business areas in support of the global data protection initiative. 

  • Measure, report, and automate the network security team's performance against objectives, policy compliance targets, and network security goals (e.g., SLAs, KPIs, KRIs, OKRs) 

  • Install security measures and operate software to protect systems and information infrastructure, including assisting with firewalls security rules, and data security implementation. Regularly review and request updates of firewall rules and configurations to address emerging security risks. 

  • Collaborate with analysis and responses to alerts generated by IDPS tools. 

  • Conduct regular security audits of network infrastructure and devices. 

  • Understand secured web traffic flow standards and custom application-based traffic and design firewall and proxy services. 

  • Expect to assist as L3 SME for critical business impact P0/P1 network security escalations during operational and non-operational hours. 

  • Provide data and root cause analysis of network security incidents with corrective actions for improvement.  Fix detected vulnerabilities. 

  • Closely working with compliance and internal audit departments to ensure network security standards are in place, enforced, and maintained, and provide evidence samples according to the requirement. 

  • Research upcoming trends in information technology and security, stay updated on potential threats and attacks, and come up with preventive roadmaps. 

  • Help develop and maintain network security content in the internal Knowledge Base. 

  • Develop and provide network-related Cyber Security Training and improve network Cyber Security Awareness around the global network teams. 

Qualifications 

  • Demonstrable experience in defining, reviewing, analyzing, and creating cybersecurity documentation, including actionable security standards, implementation procedures, cyber risk assessments, cyber security audits, remediation plans, and cyber control guidelines. 

  • Solid grasp of security controls in Physical (network, platforms) and Cloud environments (i.e., IaaS, PaaS, SaaS, multi-cloud).

  • Familiarity with Cloud Security Alliance (CSA) guidelines. 

  • Extensive experience in the development and delivery of security-level agreements and metrics via real-time reporting and alerting dashboards (SharePoint, Power BI, SQL, Office 365, Microsoft Teams). 

  • Proficient with a broad array of security software applications and data leak protection tools with an emphasis on Zscaler and Cisco security technologies. 

  • Detailed understanding of network-related modern systems including firewalls, encryption, network access control, wireless and wired secure access, SD-WAN, SD-Access, secure remote network access, and password protection and authentication. 

  • Understanding of cyber security frameworks for the OT environment including Industrial control systems (ICS) the devices, controls, and networks that handle different industrial processes , supervisory control and data acquisition (SCADA) systems, and distributed control systems (DCS). 

  • Solid understanding of cyber-security technologies like AV, Sandbox, IPS, IDS, NGFW, and WAF. 

  • Very solid background with vulnerability discovery and demonstration of exploitations. 

  • Ability to see through bad actors' eyes and find ways to break open the cyber security protocols and technologies embraced within the organization. 

  • A data-driven, problem-solving, curious candidate with strong analytical skills and who is not afraid to challenge the status quo. 

  • A self-starter with a goal-oriented, can-do attitude who is comfortable communicating cyber concepts, and risk management to all levels of personnel. 

  • Ability to influence other IT professionals, including network engineers, digital support, application owners, project managers, and system managers, to integrate security network controls into existing systems and processes. 

  • Proven ability to communicate effectively across all levels of the organization, including the delivery and explanation of complex security-related concepts in clear, concise, and understandable terms. 

Preferred Qualifications 

  • Bachelor's degree required in technology, information security or related fields or equivalent work experience. 
  • Demonstrated ability in computer systems with some specialization in computer security highly preferred.
  • Knowledge of foundational security controls and how they protect an enterprise environment. 
  • Relevant certifications (e.g., Certified Information Systems Security Professional - CISSP, Certified Information Security Manager - CISM). 
  • Very strong capacity to create new exploits or craft existing exploits to identify security loopholes in the network control cyber security plane. 
  • Experience with PowerShell and SQL query creation and modification. 
  • Scripting - Working knowledge of computer programming language.
  • This is a remote position; however, we require that the candidate be located close to one of the AES locations. 
  • Some travel required (~15-20%)

Read the full posting.



  • Arlington, Virginia, United States AES Corporation Full time

    We are seeking a skilled and seasoned Senior Security Network Engineer to join our network team. The successful candidate will play a critical role in architecting, designing, deploying, monitoring, maintaining, and refreshing secure global IT/OT network infrastructures to protect digital assets from leakage, unauthorized access, and cyber-attacks. The...


  • Arlington, United States GCyber Full time

    GCyber is currently seeking a highly skilled Rapid Response Sr. Network Engineer to lead our team in the development, maintenance, and enhancement of our network infrastructure within a dynamic and complex DoD environment. The ideal candidate will possess a deep understanding of network engineering principles, coupled with a proactive approach to...


  • Arlington, United States Anonymous Employer Full time

    Sr. Software Architect Description We have an exciting opportunity for a talented technology thought leader to join our Department of State Program as a Software Architect. This person will also support the company's Enterprise Solutions as a SME and have a direct impact on the company’s growth and technical offerings. In this role, you’ll have the...


  • Arlington, United States GCyber Full time

    GCyber is hiring a Lead Network Architect to support a large Network Infrastructure Operations and Sustainment program for a high visibility DoD customer with equipment and personnel in geographically disparate locations. This position requires an understanding of best practices of network security and may require the development, deployment, and integration...


  • Arlington, United States Base One Technologies Full time

    Senior Security Architect Required Education/ExperienceRequires a Bachelor’s Degree and at least 12 years of prior relevant experience or Master’s Degree and 8 years of prior relevant experience. Primary ResponsibilitiesOur Govt client has an immediate need for a Senior Security Architect for a new customer on a highly-visible and strategic Cybersecurity...


  • arlington virginia, United States Zachary Piper Solutions, LLC Full time

    Zachary Piper Solutions is seeking a Sr. SOC Analyst for a position supporting a government contracting firm in Arlington, VA. The Sr. SOC Analyst will provide expert cyber incident response and proactive threat hunting to protect critical cyber infrastructure. This role is fully onsite and requires a Secret clearance. Responsibilities of the Sr. SOC...

  • IT Network

    5 days ago


    Arlington, United States TENICA and Associates LLC Full time

    Description IT Network / Architect Engineer ACTIVE TS/SCI CLEARANCE REQUIRED TO BE CONSIDERED FOR THIS POSITION As IT Network / Architect Engineer , you will be responsible for providing guidance for the development of network designs and architecture. Responsibilities: Analyze, design and develop a comprehensive strategy and implementation plan with...


  • Arlington, VA, United States Base One Technologies Full time

    Senior Security Architect Required Education/ExperienceRequires a Bachelor’s Degree and at least 12 years of prior relevant experience or Master’s Degree and 8 years of prior relevant experiencePrimary ResponsibilitiesOur Govt client has an immediate need for a Senior Security Architect for a new customer on a highly-visible and strategic Cybersecurity...


  • Arlington, United States Advantex Consulting Full time

    Senior Systems ArchitectClearance Requirement: Top-Secret (SCI Eligibility)Location: Arlington, Virginia The Senior Network Architect SME shall serve as the knowledge expert for thearchitectural design, development, and deployment of the enterprise's overall systems. ThisSME should have proven experience defining system solutions based on client needs, cost,...


  • Arlington, United States SAIC Full time

    Description SAIC is looking for a talented Enterprise Architect to our ABMS Family of Systems as part of the Air Force Combatant Command Business Group to spearhead alignment for technology road map development and strategic planning. The ideal candidate possesses expertise in Enterprise Architecture development, IRAD investment planning, Systems Development...


  • Arlington, United States By Light Professional IT Services Full time

    Overview THIS POSITION REQUIRES FREQUENT TRAVEL IN THE DOMESTIC U.S. By Light is seeking an experienced Wired and Wireless LAN Systems Engineer to perform network design, development, installation/configuration, packaging, testing, implementing, and Tier 3 level troubleshooting of multi-vendor network-related equipment, including Aruba and Cisco, in support...

  • Azure Architect

    6 days ago


    Arlington, United States Resource Informatics Group Full time

    Job Description Job Description Requirement 1: Title : Azure Architect Start Date : 03/30/2020 End Date : 03/31/2021 # of Openings : 1 Location : Arlington, TX, United States Rate: $market All Inclusive Description : "Roles and Responsibilities • Microsoft Certified: Azure Administrator Associate required, Professional Preferred • Microsoft Certified:...


  • Arlington, United States Base One Technologies Full time

    Primary ResponsibilitiesOur Govt client has an immediate need for a Security Engineer for a new customer on a highly-visible and strategicCybersecurity Task Order. The Security Engineer will need to be a self-starter with excellent analytical and problem-solving skills, flexibility, good judgment, and the ability to coordinate multiple, concurrent tasks in...


  • Arlington, United States OSC Edge Full time

    Sr. Network Engineer - with TWO Certifications and 10 years of DoD experience.Location - Arlington, VirginiaNetwork Engineer - with TWO Certifications and 5 years of DoD experience.Location - Guantanamo Bay, Cuba Requirements:TS Clearance (SCI Eligible)DoD 8570 – CASP, CISM, or a CISSPCCNP or a CCIENetwork Engineer:Function as the SME responsible for the...


  • Arlington, United States OSC Edge Full time

    Sr. Network Engineer - with TWO Certifications and 10 years of DoD experience.Location - Arlington, VirginiaNetwork Engineer - with TWO Certifications and 5 years of DoD experience.Location - Guantanamo Bay, Cuba Requirements:TS Clearance (SCI Eligible)DoD 8570 – CASP, CISM, or a CISSPCCNP or a CCIENetwork Engineer:Function as the SME responsible for the...


  • Arlington, United States BCMC Full time

    Job DescriptionJob DescriptionBCMC is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment including introducing new cyber capabilities to address emerging threats.We are seeking a Sr. Cyber Security Subject Matter Expert (SME) who can...


  • Arlington, United States BCMC, LLC Full time

    BCMC is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment including introducing new cyber capabilities to address emerging threats. The Senior Cloud Architect must display superb understanding and be knowledgeable with a multitude of...

  • Azure Architect

    1 week ago


    Arlington, United States Resource Informatics Group Inc Full time

    Job DescriptionJob DescriptionRequirement 1:Title: Azure ArchitectStart Date: 03/30/2020End Date: 03/31/2021# of Openings: 1Location: Arlington, TX, United StatesRate: $market All Inclusive Description:"Roles and Responsibilities • Microsoft Certified: Azure Administrator Associate required, Professional Preferred • Microsoft Certified: Azure...


  • Arlington, United States CareerBuilder Full time

    Overview Opportunity to work in a hybrid model: Potential to work 4 days onsite and 1 day remote Why GMF Cybersecurity? Our Cybersecurity team is tasked with the security engineering, regulatory response, third party risk, and incident response capabilities necessary to secure GM Financial, the captive auto finance subsidiary of General Motors. Reporting...


  • Arlington, United States Base One Technologies Full time

    Senior Security EngineerRequired Education/ExperienceBS degree in Science, Technology, Engineering, Math or related field and 10-12 years of prior relevant experience with a focus on cybersecurity OR Masters with 8-10 years of prior relevant experience. Primary ResponsibilitiesOur govt client has an immediate need for a Senior Security Engineer for a new...