Posting/External Job Title
Senior Network Engineer
Location
Fort Belvoir, VA 22060 US
Huntsville, AL 35802 US
Schriever Space Force Base, CO 80930 US (Primary)
Remote/Onsite/Hybrid
100% Onsite
Job Type
Full-time
# of Hires Needed
6
Education
None
Travel
Up to 10%
Security Clearance Required
Secret
Pay Range (All offers will be based on experience)
$165,000 - $215,000/yr.
Position Introduction/Key Duties
Cimarron is seeking
Senior Network Engineers to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract at either the Schriever Space Force Base in the Colorado Springs, CO area, the Redstone Aresnal in the Huntsville, AL area, or Fort Belvior, VA.
Key Duties:- Configure, deploy, and administer Cisco Nexus (NX-OS) switches operating in high-performance Spine-Leaf topologies.
- Build, maintain, and optimize EVPN-VxLAN virtual overlay networks, Multi-Site fabrics, vPC domains, and complex underlay routing baselines.
- Deploy, configure, and manage VMware NSX components including NSX Edge nodes, Tier-0 and Tier-1 logical gateways, and distributed firewalls.
- Implement policy-driven micro-segmentation rules within virtualized compute environments (vSphere/VCF) to isolate mission workloads and support multi-tenant enclaves.
- Deploy, configure, and maintain F5 BIG-IP physical and virtual appliances, specifically Local Traffic Managers (LTM) and Global Traffic Managers (GTM).
- Author and troubleshoot custom F5 iRules, and configure virtual servers, load-balancing pools, health monitors, and secure SSL/TLS decryption profiles.
- Provision, deploy, and maintain Versa SD-WAN edge appliances (including Director, Analytics, and VOS) to establish secure transport across disparate WAN paths.
- Configure secure tunneling, dynamic traffic steering rules, QoS queue policies, and security boundaries for remote sites and tactical test networks.
- Administer enterprise-wide IP Address Management (IPAM), authoritative internal DNS zones, and DHCP scopes utilizing Infoblox Grid Manager.
- Support the automation of DNS records and IP allocation using Infoblox APIs integrated with Infrastructure-as-Code pipelines.
- Implement identity-aware access controls, 802.1X network access control (NAC), and FIPS-compliant cryptography tunnels (IPsec/MACsec).
- Harden all network assets in accordance with DISA STIGs, Risk Management Framework (RMF) guidelines, and MDA cybersecurity requirements to support continuous ATO (cATO).
- Coordinate and collaborate directly with external contractor performers and systems administrators across the program consortium during joint integration events, lab setups, and production cutovers.
- Author and execute comprehensive Low-Level Designs (LLDs), Interface Control Documents (ICDs), standard operating procedures (SOPs), deployment runbooks, and cutover plans.
- Develop and sustain Infrastructure-as-Code (IaC) playbooks and configuration management scripts (Ansible, Terraform, Python, Bash) to automate configuration deployments, perform validation checks, and remediate compliance drift.
Required/Desired Skills, Experience, and Education
Required Skills, Experience, and Education:- Due to facility security requirements, only U.S. citizens are eligible for consideration at this time.
- Ability to complete a pre-employment background check and drug screening, which will include, but is not limited to, testing for marijuana use.
- This position requires access to federal facilities. Candidates must possess a valid, unexpired Real ID-compliant driver's license or state-issued identification card at the time of hire. If you are unsure whether your ID is Real ID-compliant, please check for the star symbol in the upper portion of your driver's license or state ID.
- Active Secret Clearance.
- Current DoD 8570 IAT Level II certification (ex., Security + CE, CySA, etc.).
- 12 or more years of general, full-time work experience.
- 6 or more years of directly related experience.
- 1 or more years of experience working in a management or leadership role.
- Demonstrated, hands-on, engineering and administration experience with:
- Cisco Nexus (NX-OS) switches configured in Spine-Leaf / EVPN-VxLAN topologies.
- VMware NSX software-defined network segmentation and gateway routing.
- F5 BIG-IP LTM/GTM application delivery controllers.
- Infoblox DDI/IPAM grid managers.
- Versa SD-WAN enterprise solutions or equivalent software-defined WAN transport.
Desired Skills, Experience, and Education:- Active DoD Top Secret Security Clearance.
- Professional-level network and platform certifications:
- Cisco Certified Network Professional (CCNP Enterprise or Data Center)
- VMware Certified Professional - Network Virtualization (VCP-NV) or VCAP-NV
- F5 Certified Technology Specialist (F5-CTS)
- Versa Certified SD-WAN Associate/Specialist
- Infoblox Core DDI Configurator Associate (CDCA)
- Experience scripting or automating network changes with Python, Ansible, or Terraform.
- Experience supporting the Missile Defense Agency (MDA), the IRES contract, or secure DISA networks.
- Experience with Agile/SAFe development methodologies and tools (Jira, Confluence).
This position is anticipated to close to applications on October 14, 2026. If the application window is extended, this posting will be updated.
Resumes should list employment dates in month/year format (e.g., January 2020 - March 2024) for each position to meet customer and contract documentation requirements.