As a
Sr. Network Security Engineer III, you'll provide hands-on expertise securing mission-critical networks for a high-visibility customer with the goal of making an impact across the federal government. Our team is responsible for designing, operating, and hardening complex security environments, and you'll play a critical role in strengthening, scaling, and protecting these environments while enabling secure mission delivery across the organization.
What you'll do:- Design, implement, and manage firewalls, VPNs, IPS, and NAC solutions in mission-critical environments
- Secure network perimeters and internal network segments using defense-in-depth strategies
- Respond rapidly to security incidents, vulnerabilities, and operational needs with urgency and discipline
- Support continuous security hardening and improvement of network infrastructure
- Participate in Agile execution, technical planning, and security risk discussions
- Communicate security impacts, risks, and mitigation strategies clearly to technical and non-technical stakeholders
- Recommend and implement security architecture and operational improvements
- Serve as a hands-on technical SME, contributing immediately with minimal ramp-up
- Establish and maintain a high level of customer trust and confidence through reliable, secure delivery
- Apply creativity and engineering judgment to deliver practical, mission-focused security solutions
- Demonstrated subject matter expertise designing, implementing, and managing next-generation firewalls, VPN solutions, intrusion prevention systems, and network access control platforms.
- Hands-on experience securing network perimeters and internal network segments, including policy design, segmentation, and threat mitigation.
- Operational experience deploying and managing firewall rule sets, VPN tunnels, and security policies in mission-critical environments.
- Hands-on experience with at least one enterprise security platform, such as Palo Alto Networks, Fortinet, or Cisco security technologies.
- Hands-on experience with Cisco ISE and Cisco ASA environments.
- Hands-on experience with IDS and IPS solutions and endpoint configuration hardening in secure environments.
- Experience supporting Zero Trust architectures and identity-centric network security patterns.
- Ability to contribute immediately with minimal ramp-up in a mission-critical operational environment.
What you'll need to succeed:- Active U.S. Government Issued Top Secret security clearance (or higher level classification).
- Required technical certifications include Security+ and at least one platform-specific security certification, such as PCNSE/Network Security Professional or a Cisco security certification.
- Possess DoD 8140 certification aligned to the 441 Network Operations Specialist work role, such as Network+, Security+, Cloud+, SSCP, CASP+, CISSP, or CCNP Security.
- 10+ years of experience in network engineering with a primary focus on enterprise network security infrastructure.
- Demonstrated subject matter expertise designing, implementing, and managing next-generation firewalls, VPN solutions, intrusion prevention systems, and network access control platforms.
- Hands-on experience securing network perimeters and internal network segments, including policy design, segmentation, and threat mitigation.
- Operational experience deploying, managing, maintaining, and upgrading firewall rule sets, VPN tunnels, and security policies in mission-critical environments.
- Deep hands-on experience managing, maintaining, and upgrading Palo Alto Networks enterprise security platforms, as well as working with Cisco security technologies.
- Hands-on experience with Cisco ISE and Cisco ASA environments.
- Hands-on experience with IDS and IPS solutions and endpoint configuration hardening in secure environments.
- Experience supporting Zero Trust architectures and identity-centric network security patterns.
- Bachelor's degree in a technical field is preferred. Relevant experience may substitute for education requirements.
- Ability to contribute immediately with minimal ramp-up in a mission-critical operational environment.
This position is designated as essential personnel supporting continuity of operations and may require work during government shutdowns, emergencies, or other critical situations.SALARY RANGE: $207,000 - $320,000
The salary range for this position is determined based on qualifications, skills, and relevant experience. The final salary offered will be determined based on several factors including:
- The candidate's professional background and relevant work experience
- The specific responsibilities of the role and organizational needs
- Internal equity and alignment with current team compensation
- This role is also eligible for additional compensation, subject to the terms and policies of MetroStar, which may include:
- Performance-based bonuses
- Company-paid training and/or certifications
- Referral bonuses
Application Deadline: Applications will be accepted on a rolling basis until the position is filled; candidates are encouraged to apply as early as possible for full consideration.
Additional Compensation: This role may also be eligible for bonuses and/or additional incentives based on individual and company performance.
Benefits: All full-time employees are eligible to participate in our benefits programs:
- Health, dental, and vision insurance
- 401(k) retirement plan with company match
- Paid time off (PTO) and holidays
- Parental Leave and dependent care
- Flexible work arrangements
- Professional development opportunities
- Employee assistance and wellness programs