Art of the possible.
Network Security Engineer (SASE/ZTNA)
Location
United States
Posted
6 days ago
Salary
Not specified
No structured requirement data.
Job Description
Type of Requisition:
RegularClearance Level Must Currently Possess:
NoneClearance Level Must Be Able to Obtain:
NonePublic Trust/Other Required:
NACI (T1)Job Family:
Cyber and IT Risk ManagementJob Qualifications:
Skills:
Netskope, Netskope Security Cloud, Zero TrustCertifications:
NoneExperience:
7 + years of related experienceUS Citizenship Required:
NoJob Description:
Position Summary:
Key Responsibilities:
- Implementation & Maintenance:
- Assist in deploying and managing SASE/SSE components, including Secure Web Gateways (SWG), Cloud Access Security Brokers (CASB), Firewall-as-a-Service (FWaaS), SD-WAN, and Zero Trust Network Access (ZTNA).
- Modernizing Access:
- Support the migration from legacy Cisco Secure Client environments to identity-centric Zero Trust models, ensuring a smooth transition and troubleshooting any challenges.
- Automation & Integration:
- Write and understand API scripts (e.g., Python, PowerShell, Bash) for automating manual tasks, pulling security telemetry, and integrating Netskope or other cloud-native services.
- Advanced Network Troubleshooting:
- Routing & Proxy: Diagnose and resolve traffic flow issues, PAC file misconfigurations, transparent proxies, and SSL inspection challenges.
- Protocol Analysis: Utilize Wireshark or tcpdump to troubleshoot complex network paths, including latency, packet loss, and SSL/TLS issues.
- Connectivity: Resolve issues involving VLANs, NAT, 802.1X supplicants, DNS, and SaaS/COTS applications.
- SD-WAN Integration: Collaborate on integrating SD-WAN with SASE platforms for secure traffic steering and optimal performance.
- Infrastructure Monitoring & Health:
- Manage and monitor network health using SNMP, SIEM, Grafana, and syslog tools.
- Troubleshoot network connectivity issues within Docker/Linux environments.
- Cloud Security Support:
- Maintain firewall policies across AWS, Azure, and GCP while managing API-based security integrations with products such as Netskope.
Required Qualifications:
Competency
Requirement
Experience
- 5+ years in Network/VPN Engineering.
- 2+ years hands-on experience with SASE/ZTNA platforms and Cloud services.
Critical Skills
- Strong critical thinking and problem-solving skills.
- Effective communication and teamwork abilities.
- Fast learner with the ability to adapt to evolving technologies.
Architecture
- Solid understanding of SD-WAN integration with SSE/SASE frameworks.
OS Proficiency
- Deep understanding of Windows 10/11 network behaviors and troubleshooting on client-side devices.
Routing & Proxy
- Strong knowledge of routing protocols, proxy (PAC file configuration), and architecture concepts.
VPN & NAC
- Hands-on experience with Cisco Secure Client (AnyConnect), firewalls, and 802.1X authentication protocols.
Monitoring & Ops
- Proficiency in tools such as SNMP, SIEM, Grafana, and Docker troubleshooting for monitoring operational health.
SASE/ZTNA
- Hands-on expertise with solutions, including Netskope, Zscaler, or Palo Alto Networks Prisma Access.
Programming Skills
- Strong experience with scripting and automation using Python, PowerShell, or Bash.
Preferred Qualifications:
- Certifications such as CCNP Security, NSE4, Zscaler Certified Cloud Engineer, or equivalent are highly desirable.
- Familiarity with secure DevOps principles and CI/CD in cloud environments.
- Experience securing hybrid cloud workloads across AWS, Azure, and Google Cloud.
Job Benefits:
- Competitive compensation and benefits package.
- Opportunity to work on cutting-edge SASE/ZTNA solutions and architectures.
- Collaborative environment fostering professional growth and innovation.
Scheduled Weekly Hours:
40Travel Required:
NoneTelecommuting Options:
RemoteWork Location:
USA VA Falls ChurchAdditional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.Join our Talent Community to stay up to date on our career opportunities and events atEqual Opportunity Employer / Individuals with Disabilities / Protected VeteransRelated Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Information Security Manager /Chief Security Architect
PeratonPeraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers.
The Information Security Manager /Chief Security Architect will serve as the principal advisor on all cybersecurity matters, ensuring project compliance with security standards and implementing the Risk Management Framework (RMF). Key duties include performing system assessments, documenting A&A activities, and providing oversight for security personnel and system configurations.
Fire Alarm Designer (Remote)
Johnson ControlsTransforming the buildings where people live, work, learn and play to become smarter, healthier and more sustainable.
Open this job to view full details and requirements.
Senior Architect – Cyber Security
Live Nation EntertainmentLive Nation produces more concerts, sells more tickets and connects more brands to music than anyone else in the world.
Senior Architect developing cyber security strategies for Live Nation Entertainment.
The Staff Security Engineer is responsible for designing, implementing, and maintaining security measures to protect the organization’s digital infrastructure, requiring deep hands-on expertise with security platforms and technologies. This role involves onboarding, monitoring, troubleshooting security platforms, creating necessary automations and detections, and partnering with various architecture and development teams.