ABOUT THE TEAMAnduril's Space team is dedicated to expanding our AI-powered capabilities into the final frontier, enhancing Space Domain Awareness, Space Control, and Command and Control for U.S. military and allied partners. We're developing fully integrated hardware and software systems, including Lattice for Space Missions and modular payloads, to address growing threats in space and ensure our Guardians maintain a decisive advantage in this contested warfighting domain.
ABOUT THE JOBWe are seeking a Senior Security Network Engineer to serve as the senior technical authority for all classified network infrastructure. In this role, you will own the stability, security compliance, and lifecycle of all network hardware, encrypted connectivity, and cryptographic materials across all classification levels. You will be embedded within the Cyber team, which owns all classified network infrastructure, firewall and segmentation policies, encrypted WAN connectivity, and COMSEC operations, ensuring the seamless integration of cryptographic devices with network-layer encryption. This is a high-impact leadership position requiring deep expertise in secure network architecture, STIG/JSIG compliance, and COMSEC accountability.
WHAT YOU'LL DO- Design, engineer, and deploy network solutions supporting mission requirements across all classification levels
- Support the deployment, maintenance, and optimization of enterprise network infrastructure including routers, switches, firewalls, and cryptographic equipment
- Troubleshoot and resolve complex network performance and connectivity issues; drive root cause analysis (RCA) for major network incidents and implement permanent solutions
- Develop and maintain secure, highly available network architectures aligned with STIG compliance and JSIG posture requirements
- Collaborate with cross-functional teams to implement technical solutions and serve as a key stakeholder in the Change Advisory Board (CAB) process for all network-impacting changes
- Own the operational health and full lifecycle of all network hardware, firewalls, routers, switches, and cryptographic equipment
- Serve as the definitive technical escalation for complex network incidents and COMSEC issues
- Ensure all network components maintain STIG compliance and JSIG posture; coordinate with the ISSM on network-level ConMon requirements
- Oversee all corporate classified WAN networks and manage connectivity across all sites and classification domains
- Maintain and enforce network segmentation policies and firewall rule sets aligned with JSIG protection level requirements
- Assist with the configuration and maintenance of enterprise services including Active Directory, DNS, DHCP, WSUS/patch repositories, and repository servers
- Assist with the development and maintenance of automation scripts and Ansible playbooks to reduce manual effort and enforce configuration consistency
- Assist with monitoring system health, performance, and security posture using available tooling; respond to alerts and anomalies proactively
- Assist with supporting ISSO-led vulnerability scanning and remediation, providing technical implementation for all CAT I/II/III findings within required timelines
- Assist with maintaining backup and recovery procedures, ensuring RPO/RTO targets are met across all environments
- Assist with building, documenting, and transitioning environments to steady-state operations following ATO, ensuring full knowledge transfer
- Support the IT Engineering Lead and ISSM during security assessments by providing technical demonstrations and collecting compliance evidence
REQUIRED QUALIFICATIONS- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent professional experience
- 8+ years of hands-on experience designing, implementing, and managing enterprise network infrastructure in classified environments
- Deep expertise in routing, switching, and firewall technologies including Cisco IOS-XE, NX-OS, and security appliances
- Demonstrated experience with COMSEC operations, including key management, material accountability, and NSA coordination
- Strong understanding of STIG compliance, JSIG requirements, and RMF processes as they apply to network infrastructure
- Experience maintaining and enforcing network segmentation policies and firewall rule sets in multi-domain classified environments
- Proven ability to lead root cause analysis for complex network incidents and implement permanent corrective actions
- Excellent communication skills with the ability to serve as a technical escalation point and mentor to junior engineers
- Industry certification such as CCNP Security, CCNP Enterprise, CISSP, or equivalent
- Eligible to obtain and maintain an active U.S. Secret security clearance
PREFERRED QUALIFICATIONS- Experience with MACsec, HSRP, VRF, VPC, ACLs, BGP, and EIGRP
- Recent hands-on experience with Cisco IOS-XE and NX-OS platforms
- Recent experience supporting Cisco FTD or ASA firewalls or VPN concentrators
- Experience overseeing classified WAN connectivity across multiple sites and classification domains
- Familiarity with Change Advisory Board (CAB) processes and ITIL-aligned change management
- CCNP certification or equivalent advanced networking credential
US Salary Range
$146,000-$194,000 USD
The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:
BenefitsAt Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you're supported in health, recovery, and whatever comes next. For more information, Explore Our Benefits.