About the Opportunity
DMI is seeking a Senior Network Engineer to serve as the senior technical authority for secure network architecture and operations at a federal agency client. In this role, you will design, implement, and continuously improve a Cisco-based enterprise network in alignment with Zero Trust principles, NIST cybersecurity standards, and federal compliance requirements — providing technical leadership across engineering, security, and operations teams.
Duties and Responsibilities:
- Design, implement, operate, and optimize Cisco-based network infrastructure, including core, distribution, access, and edge layers for high availability, scalability, and mission resilience
- Implement and maintain network security architecture aligned with NIST SP 800-53, NIST SP 800-207 Zero Trust Architecture, and Cisco security best practices
- Engineer and enforce Zero Trust network principles, including network segmentation, micro-segmentation, and continuous verification of users and devices
- Design and implement least-privilege network access controls with role-based and identity-aware access mechanisms, including 802.1X
- Configure and maintain centralized logging, SIEM integration, and NDR tool connectivity to enhance threat detection and incident response readiness
- Conduct continuous monitoring and vulnerability assessments; coordinate remediation in alignment with NIST RMF
- Secure perimeter and public-facing assets through ingress/egress filtering, firewall rule optimization, and MFA for administrative access
- Lead security assessments, audits, and compliance reviews; continuously evaluate and enhance network security posture through emerging best practices
- Serve as senior technical advisor to stakeholders; collaborate with cybersecurity, cloud, and operations teams to resolve complex issues and improve architecture
- Support incident response with network-level analysis, containment actions, and forensic data collection
Qualifications
Education and Years of Experience:
- Bachelor's degree in Computer Science, Information Technology, or a related field; relevant experience and Cisco certifications may be considered in lieu of a degree.
- Professional certifications in network engineering or cybersecurity, maintained continuously for a minimum of 5 years
- Experience designing and implementing NIST SP 800-53 and NIST SP 800-207 Zero Trust network architectures in enterprise environments
- Expert-level proficiency with Cisco routing, switching, and firewall platforms; advanced experience with VLANs, DNS, DHCP, and VPNs
- Experience in engineering and managing 802.1X network access control and identity-aware network security
- Experience configuring centralized logging and integrating with enterprise SIEM and NDR platforms
- Experience leading or participating in security assessments, audits, and compliance reviews
- Cisco CCNP or CCIE (or equivalent) certification
- 7+ years of enterprise network engineering experience, including at least 3 years in a senior or lead engineering role
Required Skills & Certifications:
- Experience integrating SIEM and NDR platforms for real-time threat detection and alerting ^
- Experience supporting or leading incident response operations
- Prior experience in a federal government network engineering environment
Background Requirements: Must possess or be eligible to obtain and complete a Public Trust background investigation and/or a Public Trust clearance.
- Public Trust Tier 2 clearance required.
Citizenship Status Required: Must be a U.S. Citizen
Physical Requirements: None required for this position.
Location: Remote, US
***************** No Agencies Please *****************