ECS

Network & Security Infrastructure Engineer

ECS$120K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in network security engineering or a related infrastructure field
  • Hands-on experience with Check Point and Palo Alto firewall technologies
  • Proven expertise in VMware ESXi re-architecture and VLAN segmentation design
  • Strong background in enterprise networking and firewall administration
  • Familiarity with network access control concepts

Responsibilities

  • Lead re-architecture of VMware ESXi environments for enhanced security
  • Administer enterprise-level internal and cloud-facing firewall environments
  • Monitor and maintain Cisco network infrastructure with a security-first approach
  • Support and secure Aruba wireless environments
  • Document network architecture, configurations, and designs clearly
  • Collaborate with cybersecurity, systems administration, and support teams to enhance security operations
  • Conduct security continuous monitoring including risk assessments and vulnerability identification

Benefits

  • Work in a high-impact dual-function role within a complex enterprise environment
  • Opportunity to lead foundational infrastructure initiatives that have direct security implications
  • Gain hands-on experience with advanced firewall and network technologies
  • Interact with cross-functional teams to enhance both network and security operations
  • Flexible work location (DC office or remote)
Full Job Description
Everforth ECS is seeking an Network & Security Infrastructure Engineer to work in our Washington, DC office / remote. The role is contingent upon additional funding.

We are seeking an experienced and technically versatile Network & Security Infrastructure Engineer to take on a high-impact, dual-function role within a large and complex enterprise environment. This position sits at the crossroads of network infrastructure, virtual environment engineering, and security operations, and it requires genuine depth across all three, not surface-level familiarity.

The near-term priority for this role is significant: you will lead a major re-architecture of the organization's VMware ESXi virtual environment to support comprehensive firewall and VLAN implementations that deliver proper network segmentation across the enterprise. This is a foundational infrastructure initiative with direct security implications, and it will require someone who can think and execute at the architectural level within a virtualized environment.

Beyond that primary objective, this role carries ongoing responsibility across two organizational teams. You will provide dedicated firewall support to the Architecture and Engineering division, administering the enterprise's internal and cloud-facing firewall environments. On the networking side, you will support the security operations division, monitoring and maintaining a Cisco-based network infrastructure and an Aruba wireless environment from a security-first perspective.

This role is built for someone who can operate with equal confidence in a virtual environment console, a firewall policy manager, and a network operations context.

Salary Range: $120,000 - $130,000
General Description of Benefits

Virtual Environment & Network Segmentation
  • Hands-on experience designing and re-architecting VMware ESXi environments in an enterprise setting
  • Ability to plan and implement VLAN segmentation strategies within virtualized infrastructure to support firewall enforcement and proper traffic isolation
  • Experience configuring virtual switches, distributed switches, and virtual port groups in support of security segmentation objectives
  • Familiarity with NSX or equivalent software-defined networking (SDN) platforms as they relate to micro-segmentation and east-west traffic control
  • Ability to document virtual network architecture clearly and thoroughly, including design decisions, configurations, and future-state plans

Firewall Administration
  • Hands-on experience configuring and administering enterprise-class firewall technologies, with specific experience on Check Point and Palo Alto platforms
  • Ability to implement new firewall architectures, upgrades, and feature rollouts as directed
  • Experience administering firewall policy including updates, upgrades, policy administration, and validation
  • Proficiency managing and tuning software blades and associated security features such as IPS, URL filtering, Application Control, antivirus, and advanced malware detection
  • Ability to review and implement changes consistent with existing firewall policies while maintaining thorough, up-to-date documentation
  • Strong knowledge of firewall rules, security policies, and security operations within a large enterprise environment
  • Willingness to work outside of normal business hours when required to support outage resolution or planned maintenance

Network Infrastructure & Security
  • Strong hands-on experience with Cisco network infrastructure including routing, switching, and network security configurations in an enterprise setting
  • Experience supporting and securing Aruba wireless access point environments
  • Solid understanding of core networking protocols including TCP/IP, BGP, OSPF, VLANs, and VPNs
  • Ability to monitor and analyze network architecture, communication flows, policies, and protocols from a cybersecurity perspective
  • Experience identifying and isolating network-based security issues quickly during incidents and outages
  • Familiarity with network access control concepts and how they integrate with broader security operations

Collaboration & Documentation
  • Ability to collaborate across teams including cybersecurity, systems administration, and technology support partners
  • Experience supporting security continuous monitoring efforts such as risk assessments, vulnerability identification, and patch coordination
  • Ability to create and maintain clear, accurate documentation for virtual, network, and firewall configurations, procedures, and troubleshooting steps
  • Comfortable communicating technical findings and infrastructure risk clearly to both technical peers and senior leadership

A minimum of 5+ years of experience in network security engineering or a closely related infrastructure discipline is required, with direct hands-on experience on both Check Point and Palo Alto platforms strongly preferred. Candidates who bring demonstrated experience with VMware ESXi re-architecture and VLAN segmentation design - in addition to enterprise networking and firewall administration - will be given strong preference over candidates with depth in only one or two of these areas.

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Information Technology Jobs

Find similar Network & Security Infrastructure Engineer jobs: