Senior Network Engineer - DoW (6 openings)

INNOVIM

• $170K — $180K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 12+ years of general work experience, with 6+ years in a related role
  • 1+ years in a management or leadership position
  • Hands-on experience with Cisco Nexus (NX-OS) in Spine-Leaf/EVPN-VxLAN configurations
  • Proficient in VMware NSX for software-defined networking
  • Experience with F5 BIG-IP LTM/GTM application delivery controllers
  • Familiarity with Infoblox DDI/IPAM management
  • Active DoW Secret clearance, eligible for Top Secret clearance

Responsibilities

  • Configure and administer Cisco Nexus switches in high-performance topologies
  • Build and optimize EVPN-VxLAN virtual overlay networks
  • Deploy and manage VMware NSX components and micro-segmentation rules
  • Maintain F5 BIG-IP appliances and troubleshoot custom iRules
  • Provision and manage Versa SD-WAN edge appliances for secure transport
  • Administer IP Address Management and automate DNS records with Infoblox
  • Implement Zero Trust security measures and harden network assets

Benefits

  • Comprehensive nationwide Medical/Dental/Vision insurance
  • Life insurance coverage
  • Matching 401k contributions
  • Educational and training support
Full Job Description
INNOVIM is seeking a Senior Network Engineer to support the Next Generation Environment (NGE) on the Integrated Research and Development for
Enterprise Solutions (IRES) contract.

Location: Schriever Space Force Base, Colorado Springs, CO; Redstone Arsenal, Huntsville, AL or Fort Belvoir, VA
Relocation Assistance: None available at this time
Remote/Telework: NO - Not available for this position
Clearance Type: DoW Secret
Shift: Day Shift

In this role, you will turn high-level architectural designs into resilient, automated network solutions by configuring Cisco Nexus Spine-Leaf
EVPN-VxLAN fabrics, VMware NSX software-defined networks, Versa SD-WAN edge transport, F5 BIG-IP application delivery controllers,
and Infoblox enterprise DDI services. You will collaborate across engineering, systems architecture, systems security, multi-contractor
consortium performers, and Government stakeholder teams to deliver cohesive hybrid cloud and on-premises network transport.

You will play a key role in standardizing infrastructure automation, resolving complex tier-3/4 routing issues, enforcing Zero Trust boundaries, and ensuring continuous network compliance with DoD, DISA, and MDA security requirements.

Description of Duties
Data Center Fabric Engineering:

  • Configure, deploy, and administer Cisco Nexus (NX-OS) switches operating in high-performance Spine-Leaf topologies.
  • Build, maintain, and optimize EVPN-VxLAN virtual overlay networks, Multi-Site fabrics, vPC domains, and complex underlay routing baselines.


Software-Defined Networking & Micro-segmentation:

  • Deploy, configure, and manage VMware NSX components including NSX Edge nodes, Tier-0 and Tier-1 logical gateways, and distributed firewalls.
  • Implement policy-driven micro-segmentation rules within virtualized compute environments (vSphere/VCF) to isolate mission workloads and support multi-tenant enclaves.


Application Delivery & Load Balancing:

  • Deploy, configure, and maintain F5 BIG-IP physical and virtual appliances, specifically Local Traffic Managers (LTM) and Global Traffic Managers (GTM).
  • Author and troubleshoot custom F5 iRules, and configure virtual servers, load-balancing pools, health monitors, and secure SSL/TLS decryption profiles.


SD-WAN & Edge Connectivity:

  • Provision, deploy, and maintain Versa SD-WAN edge appliances (including Director, Analytics, and VOS) to establish secure transport across disparate WAN paths.
  • Configure secure tunneling, dynamic traffic steering rules, QoS queue policies, and security boundaries for remote sites and tactical test networks.


Core DDI & IPAM Administration:

  • Administer enterprise-wide IP Address Management (IPAM), authoritative internal DNS zones, and DHCP scopes utilizing Infoblox Grid Manager.
  • Support the automation of DNS records and IP allocation using Infoblox APIs integrated with Infrastructure-as-Code pipelines.


Zero Trust & Network Security Hardening:

  • Implement identity-aware access controls, 802.1X network access control (NAC), and FIPS-compliant cryptography tunnels (IPsec/MACsec).
  • Harden all network assets in accordance with DISA STIGs, Risk Management Framework (RMF) guidelines, and MDA cybersecurity requirements to support continuous ATO (cATO).


Consortium & Program Integration (Program-Facing):

  • Coordinate and collaborate directly with external contractor performers and systems administrators across the program consortium during joint integration events, lab setups, and production cutovers.
  • Author and execute comprehensive Low-Level Designs (LLDs), Interface Control Documents (ICDs), standard operating procedures
    (SOPs), deployment runbooks, and cutover plans.


Automation, DevSecOps & Scripting:

  • Develop and sustain Infrastructure-as-Code (IaC) playbooks and configuration management scripts (Ansible, Terraform, Python, Bash) to automate configuration deployments, perform validation checks, and remediate compliance drift.


Basic Requirements:

  • Must have 12, or more, years of general (full-time) work experience
    o May be reduced with completion of advanced education
  • Must have 6, or more, years of directly related experience
  • Must have 1, or more, years of experience working in a management or leadership role
  • Must have demonstrated, hands-on, engineering and administration experience with:
  • Cisco Nexus (NX-OS) switches configured in Spine-Leaf / EVPN-VxLAN topologies.
  • VMware NSX software-defined network segmentation and gateway routing.
  • F5 BIG-IP LTM/GTM application delivery controllers.
  • Infoblox DDI/IPAM grid managers.
  • Versa SD-WAN enterprise solutions or equivalent software-defined WAN transport.
  • Must hold a current DoW 8140/8570 IAT Level II or higher certification (e.g., Security+ CE, CySA+, CASP+ CE, CISSP).
  • Must have an active DoW Secret security clearance with verified eligibility to obtain a Top Secret clearance (or active Top Secret).


Desired Requirements:

  • Active DoW Top Secret security clearance.
  • Professional-level network and platform certifications:
    o Cisco Certified Network Professional (CCNP Enterprise or Data Center)
    o VMware Certified Professional - Network Virtualization (VCP-NV) or VCAP-NV
    o F5 Certified Technology Specialist (F5-CTS)
    o Versa Certified SD-WAN Associate/Specialist
    o Infoblox Core DDI Configurator Associate (CDCA)
  • Have practical experience scripting or automating network changes with Python, Ansible, or Terraform.
  • Have experience supporting the Missile Defense Agency (MDA), the IRES contract, or secure DISA networks


This position is expected to pay $170,000 - $180,000 annually; depending on experience, education, and any certifications that are directly related to the position.

IDS is committed to providing superior work in the fields of science, engineering, data analytics and technology to government agencies. We offer competitive compensation packages, including comprehensive nationwide Medical/Dental/Vision insurance programs, life insurance, matching 401k contribution and Educational/Training support.

Similar Jobs

More Jobs at INNOVIM

More Information Technology Jobs

Find similar Senior Network Engineer - DoW (6 openings) jobs: