Position Title: Network Engineer
Position Type: Full Time Employee
Location: APG, MD
Clearance Requirement: Top Secret / SCI
Salary Range: 130 - 160K
Start Date: Immediate Opening
Position Overview This is an approximately 6-month assignment with strong potential to transition into a Systems Engineering and Technical Assistance (SETA) contract position as the follow-on contract is stood up.
The Network Engineer will be responsible for the design, configuration, and maintenance of Cisco-based network infrastructure, including routers, switches, and firewalls, while ensuring network security compliance in accordance with DoD and DISA standards. This is a Tier 2/3 engineering role requiring deep expertise in routing, switching, VLAN management, and network security hardening.
Key Responsibilities Network Device Management - Manage, configure, and maintain Cisco networking devices including routers, switches, and firewalls to ensure optimal data flow
- Perform network-adjacent administration tasks on Windows-based management servers, domain controllers, and network monitoring tools
- Handle comprehensive Tier 2/3 network engineering responsibilities including VLAN management, routing protocol optimization, and subnetting
Cybersecurity & Compliance - Collaborate closely with the ISSO to implement and maintain network-level security measures, access control lists (ACLs), and firewall rules
- Conduct regular patch management and firmware upgrades on routers, switches, and security appliances to eliminate vulnerabilities and maintain compliance
- Perform STIGs assessments on network devices and implement required security controls to harden network infrastructure
- Conduct regular network security audits, vulnerability scans, and traffic analyses, providing detailed reports to management
Network Operations & Reliability - Troubleshoot complex network routing, switching, and connectivity issues to provide rapid, definitive resolutions
- Ensure high availability, redundancy, and maximum throughput performance of critical defense networks and communication pathways
- Perform deep-packet inspections and fact-finding missions to pinpoint network latency or throughput bottlenecks and engineer solutions
Documentation & Modernization - Build and maintain repositories of network diagrams, traffic trend analyses, configurations, and baseline data for operational continuity and archival purposes
- Assist with network expansion projects, hardware refreshes, and architecture modernization initiatives as assigned
- Monitor internal network deployment statuses to maintain operational accountability and communicate network readiness to management and stakeholders
Cross-Functional Integration - Work with systems and security teams to ensure seamless network-to-application integration and cross-team functionality
Required Qualifications - Active TS/SCI security clearance
- Active IAT Level II Certification (CCNA, SSCP, CND, Security+ CE) or above; CCNA highly preferred
- Bachelor's degree in Computer Science, Information Technology, Network Engineering, or a related field; 10 years of relevant network engineering experience may be substituted in lieu of a degree
- Strong knowledge of network-attached Windows systems, including the configuration, tuning, and troubleshooting of network services (DNS, DHCP, Active Directory)
- Knowledge of network virtualization technologies including virtual switches, distributed switches, and networking within VMware/KVM environments
- Proficiency in Linux server administration as it relates to network services, tools, and repository management
- Familiarity with DoD network security requirements, DISA guidelines, and network device STIG implementation
- Strong written and verbal communication skills, including ability to document complex network topologies and brief leadership
- Exceptional organizational skills and meticulous attention to detail regarding network configurations and IP address management (IPAM)
- Strong time management and prioritization skills with the ability to meet strict deployment deadlines
- Strong interpersonal skills with the ability to build effective relationships with coworkers, mission partners, and defense customers
Preferred Qualifications - Certified Network Defender (CND) or Cisco Certified Network Professional (CCNP) certification
- Experience working with defense networks within a secure DoD environment (e.g., SIPR, JWICS)
- Familiarity with network automation and configuration management tools (e.g., Ansible for IOS/NX-OS, Puppet)
- Experience with containerization technologies and understanding of their underlying overlay networking requirements (e.g., Docker, Kubernetes networking)
- Network scripting skills in Bash and PowerShell to automate routine configuration backups and monitoring tasks
- Familiarity with a diverse array of enterprise networking products and next-generation firewalls (e.g., Juniper, Ubiquiti, Palo Alto)
Benefits - Competitive compensation package and benefits.
- Professional development and certification opportunities.
- Collaborative and supportive team environment.
- High potential for long-term placement on follow-on SETA contract.