Cloud Network Security Engineer

FM Talent Source

Bethesda (MD)

On-site

USD 130,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

FM Talent Source seeks a Security Engineer based in Bethesda, MD to support cloud architecture, data interoperability, and security engineering for the SCHARE platform and related data environments.

The role emphasizes secure cloud configuration, metadata architecture, system integration, API enablement, and compliance with federal cybersecurity regs, including ATO-related activities and remediation of vulnerabilities.

Qualifications

  • Bachelor’s degree or equivalent with technical certifications and 12+ years IT experience.
  • Strong written and verbal technical communication and multi-priority handling.
  • Experience supporting, configuring and administering multiple security domains.
  • Experience with Azure, AWS, and SaaS tools management.
  • Ability to obtain Public Trust clearance.

Responsibilities

  • Create network traffic rules in Azure
  • Create network routing maps
  • Maintain documentation of subnets (13+), VLANs, and VoIP
  • Manage SSL certificate requests
  • Run PowerShell reports on Active Directory objects
  • Process DNS requests for public websites and IT resources (IPAM, Infoblox)
  • Interface with external IT service providers regarding networking change requests
  • Test data transfer rates and channel bandwidth between buildings
  • Gather data storage requirements for IT data storage architecture
  • Perform analysis, diagnosis, and troubleshooting of complex system security issues
  • Recommend, design, develop, test, configure, and implement security solutions
  • Inform and escalate security risk problems and remediation methods
  • Support federal healthcare enterprise environment across IT domains
  • Draft and maintain technical design and SOP documents
  • Document work in issue tracking system
  • Provide mitigations or corrective actions for vulnerabilities

Skills

Azure networking
SIEM solutions
Vulnerability remediation
Disk encryption
RBAC EntraID
Kubernetes
Docker
Intune
Infoblox IPAM
Cisco ISE NAC
SQL basics
Privileged access management
Log analysis
Monitoring/alerts
Automation of log collection
Cloud and SaaS tools
End-user security tooling

Education

Bachelor’s degree or equivalent in CS/Engineering
12+ years IT experience

Tools

Snow ticketing system

Job description

Overview

Security Engineer role based in Bethesda, MD. The position provides support for cloud architecture, data interoperability, and security engineering for the SCHARE platform and related data environments, including secure cloud configuration, metadata architecture, system integration across platforms, API enablement, and compliance with agency and federal government cybersecurity and information management regulations and requirements. The role also supports ATO-related activities in coordination with the agency CIO organization, including preparation of technical artifacts, remediation support, and implementation and maintenance of technical controls, vulnerability remediation, and securing data environments to ensure ongoing compliance.

Responsibilities
  • Create network traffic rules in Azure
  • Create network routing maps
  • Maintain documentation of subnets (13+), VLANs, and VoIP
  • Manage SSL certificate requests
  • Run PowerShell reports on Active Directory objects
  • Process DNS requests for public websites and IT resources (IPAM, Infoblox)
  • Interface with external IT service providers regarding networking change requests from lab staff
  • Test data transfer rates and channel bandwidth between buildings
  • Gather data storage requirements from lab staff for implementation into the existing IT data storage architecture
  • Perform analysis, diagnosis, and troubleshooting of complex system security issues
  • Recommend, design, develop, test, configure, and implement a broad array of system security solutions
  • Inform and escalate security risk problems, such as high/critical vulnerabilities and risk acceptance methods
  • Support a federal healthcare enterprise environment by collaborating with and providing support to other IT Operational Service Areas (Server/Storage, Network, Service Desk, Application Development) in the design, development, and testing of solutions, as well as diagnosing, troubleshooting, and remediation of issues
  • Draft and maintain technical design and Standard Operating Procedure (SOP) documents
  • Document work performed in issue tracking system
  • Provide recommendations for mitigations or corrective actions to resolve identified vulnerabilities or security concerns, and take corrective actions at the direction of the customer
Qualifications
  • Bachelor’s degree in computer science, engineering, or a related field or an equivalent combination of education and experience and appropriate technical certifications, with at least twelve (12) years of experience in information technology and four (4) years leading or performing systems engineering or related functions.
  • Strong written and verbal technical communication skills, excellent organization and time management, and the ability to handle multiple competing priorities.
  • Experience supporting, designing, configuring, implementing and/or administering at least three (3) of the following:
  • Antivirus and malware protection solutions
  • Privileged access management solutions
  • Security Information and Event Management (SIEM) solutions
  • Automation of log collection
  • Analysis of log data
  • Development of monitors and alerts based on security and operational requirements
  • Vulnerability analysis and remediation solutions
  • Active Directory Group Policy
  • Disk Encryption technologies and solutions
  • Experience managing private networks within Azure
  • Comprehensive RBAC and EntraID knowledge
  • Able to work with vendors to evaluate, procure, implement, and maintain SaaS tools
  • Able to work within a ticketing system (Snow) to process various engineering related requests
  • Basic understanding of SQL, database, and web-app resources
  • Exposure to and experience managing resources within Azure and AWS
  • Experience managing SaaS/PaaS tiered storage tools
  • Experience with Kubernetes, Docker, or other containerization tools
  • Experience with endpoint management tools such as Intune/Ivanti/PDQ/Jamf
  • Experience with Cisco ISE (NAC), Infoblox (IPAM), and AWS (archival storage)
  • Ability to quickly learn new tools and approaches
  • Ability to adapt to rapidly changing requirements with a flexible and creative engineering-focused approach to brainstorming, troubleshooting, and problem-solving
  • Must be able to obtain a Public Trust clearance
Preferred Certifications
  • One or more certifications from (ISC)², CompTIA, SANS, or other well-recognized certifying body:
  • (ISC)² CISSP
  • CompTIA CASP+
  • Microsoft Certified Solutions Expert (current or current version)

Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status or other characteristics protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Azure Cloud Engineer
Senior Azure Cloud Engineer

ShorePoint • Washington

On-site
USD 150,000 - 190,000
144 hours PTO
11 holidays
Insurance premium covered 85%
+2
Cloud Network Security Engineer (Job 1393)
Cloud Network Security Engineer (Job 1393)

DLH Corporation • Bethesda (MD)

On-site
USD 150,000 - 158,000
401(k) matching
Paid time off
Medical, dental, vision
Cloud Network Security Engineer (Job 1393)
Cloud Network Security Engineer (Job 1393)

DLH Corp • Bethesda (MD)

On-site
USD 150,000 - 158,000
Cloud Engineer
Cloud Engineer

The Amatriot Group • Linthicum (MD)

On-site
USD 100,000 - 165,000
Sr. Azure Security Engineer
Sr. Azure Security Engineer

Arena Technical Resources, LLC (ATR) • United States

Hybrid
USD 120,000 - 150,000
System Engineer (Cloud)
System Engineer (Cloud)

By Light Professional IT Services LLC • Scott Air Force Base (IL)

On-site
USD 120,000 - 170,000
Senior Network Security Engineer
Senior Network Security Engineer

Liquid Environmental Solutions • Irving (TX)

On-site
USD 120,000 - 150,000
Systems Engineer - Active Security Clearance
Systems Engineer - Active Security Clearance

EmergencyMD • Reston (VA)

On-site
USD 90,000 - 120,000
System Engineer (Cloud)
System Engineer (Cloud)

By Light Professional IT Services • Scott Air Force Base (IL)

On-site
USD 140,000 - 190,000
Cloud Security Engineer
Cloud Security Engineer

Highbrow LLC • Marietta (GA), Omaha (NE), Alpharetta (GA), Berkeley Heights (NJ)

Hybrid
USD 120,000 - 150,000