Network & Security Infrastructure Engineer

Socket.dev

Washington (District of Columbia)

Hybrid

USD 120,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Everforth ECS in Washington, DC seeks a Network & Security Infrastructure Engineer to lead a VMware ESXi re-architecture, implement VLAN segmentation, and manage enterprise firewall and network security operations. This dual-role role combines virtual infrastructure, firewall administration, and security monitoring across two teams.

The ideal candidate has 5+ years in network security engineering, hands-on experience with ESXi, VLANs, and Check Point/Palo Alto firewalls, and is able to work with

Qualifications

  • Minimum 5+ years of experience in network security engineering or related infrastructure.
  • Hands-on experience re-architecting VMware ESXi environments in an enterprise setting.
  • Ability to plan VLAN segmentation strategies within virtualized infrastructure to support firewall enforcement and traffic isolation.
  • Experience configuring virtual switches, distributed switches, and virtual port groups.
  • Familiarity with NSX or equivalent SDN platforms for micro-segmentation and east-west traffic control.
  • Strong firewall administration experience with Check Point and Palo Alto.
  • Experience managing firewall policy updates, upgrades, and documentation.
  • Solid knowledge of TCP/IP, BGP, OSPF, VLANs, and VPNs.
  • Willingness to work outside normal business hours for outages or maintenance.

Responsibilities

  • Lead re-architecture of VMware ESXi environment to support firewall and VLAN implementations.
  • Administer enterprise firewall environments (Check Point and Palo Alto).
  • Support Cisco-based network infrastructure and Aruba wireless from a security perspective.
  • Monitor and maintain network and security operations across two teams.
  • Document network architecture, configurations, and future-state plans.

Skills

Virtual environment management
Firewall administration
Enterprise networking
Network security engineering
Documentation
Cross-team collaboration

Tools

VMware ESXi
NSX
Check Point
Palo Alto
Cisco
Aruba

Job description

Everforth ECS is seeking an Network & Security Infrastructure Engineer to work in our Washington, DC office / remote. The role is contingent upon additional funding.

We are seeking an experienced and technically versatile Network & Security Infrastructure Engineer to take on a high-impact, dual-function role within a large and complex enterprise environment. This position sits at the crossroads of network infrastructure, virtual environment engineering, and security operations, and it requires genuine depth across all three, not surface-level familiarity.

The near-term priority for this role is significant: you will lead a major re-architecture of the organization\'s VMware ESXi virtual environment to support comprehensive firewall and VLAN implementations that deliver proper network segmentation across the enterprise. This is a foundational infrastructure initiative with direct security implications, and it will require someone who can think and execute at the architectural level within a virtualized environment.

Beyond that primary objective, this role carries ongoing responsibility across two organizational teams. You will provide dedicated firewall support to the Architecture and Engineering division, administering the enterprise\'s internal and cloud-facing firewall environments. On the networking side, you will support the security operations division, monitoring and maintaining a Cisco-based network infrastructure and an Aruba wireless environment from a security-first perspective.

This role is built for someone who can operate with equal confidence in a virtual environment console, a firewall policy manager, and a network operations context.

Salary Range: $120,000 - $130,000

General Description of Benefits https://ecstech.com/careers/benefits

Qualifications

  • Virtual Environment & Network Segmentation
  • Hands-on experience designing and re-architecting VMware ESXi environments in an enterprise setting
  • Ability to plan and implement VLAN segmentation strategies within virtualized infrastructure to support firewall enforcement and proper traffic isolation
  • Experience configuring virtual switches, distributed switches, and virtual port groups in support of security segmentation objectives
  • Familiarity with NSX or equivalent software-defined networking (SDN) platforms as they relate to micro-segmentation and east-west traffic control
  • Ability to document virtual network architecture clearly and thoroughly, including design decisions, configurations, and future-state plans
  • Firewall Administration
  • Hands-on experience configuring and administering enterprise-class firewall technologies, with specific experience on Check Point and Palo Alto platforms
  • Ability to implement new firewall architectures, upgrades, and feature rollouts as directed
  • Experience administering firewall policy including updates, upgrades, policy administration, and validation
  • Proficiency managing and tuning software blades and associated security features such as IPS, URL filtering, Application Control, antivirus, and advanced malware detection
  • Ability to review and implement changes consistent with existing firewall policies while maintaining thorough, up-to-date documentation
  • Strong knowledge of firewall rules, security policies, and security operations within a large enterprise environment
  • Willingness to work outside of normal business hours when required to support outage resolution or planned maintenance
  • Network Infrastructure & Security
  • Strong hands-on experience with Cisco network infrastructure including routing, switching, and network security configurations in an enterprise setting
  • Experience supporting and securing Aruba wireless access point environments
  • Solid understanding of core networking protocols including TCP/IP, BGP, OSPF, VLANs, and VPNs
  • Ability to monitor and analyze network architecture, communication flows, policies, and protocols from a cybersecurity perspective
  • Experience identifying and isolating network-based security issues quickly during incidents and outages
  • Familiarity with network access control concepts and how they integrate with broader security operations
  • Collaboration & Documentation
  • Ability to collaborate across teams including cybersecurity, systems administration, and technology support partners
  • Experience supporting security continuous monitoring efforts such as risk assessments, vulnerability identification, and patch coordination
  • Ability to create and maintain clear, accurate documentation for virtual, network, and firewall configurations, procedures, and troubleshooting steps
  • Comfortable communicating technical findings and infrastructure risk clearly to both technical peers and senior leadership

A minimum of 5+ years of experience in network security engineering or a closely related infrastructure discipline is required, with direct hands-on experience on both Check Point and Palo Alto platforms strongly preferred. Candidates who bring demonstrated experience with VMware ESXi re-architecture and VLAN segmentation design — in addition to enterprise networking and firewall administration — will be given strong preference over candidates with depth in only one or two of these areas.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network & Security Infrastructure Engineer
Network & Security Infrastructure Engineer

ECS • Washington

Hybrid
USD 120,000 - 130,000
Network & Security Infrastructure Engineer — Remote
Network & Security Infrastructure Engineer — Remote

ECS • Washington

Hybrid
USD 120,000 - 130,000
Network & Security Infrastructure Engineer
Network & Security Infrastructure Engineer

RadNet, Inc. • Washington

Hybrid
USD 120,000 - 180,000
Remote Network & Security Engineer (VMware/Firewalls)
Remote Network & Security Engineer (VMware/Firewalls)

Socket.dev • Washington

Hybrid
USD 120,000 - 130,000
Senior Network & Security Infrastructure Engineer - Remote
Senior Network & Security Infrastructure Engineer - Remote

RadNet, Inc. • Washington

Hybrid
USD 120,000 - 180,000
Senior Network Engineer
Senior Network Engineer

Ryan Consulting Group, LLC • Charlotte (NC)

On-site
USD 120,000 - 160,000
Network Engineer – VDI Security / Network Infrastructure
Network Engineer – VDI Security / Network Infrastructure

Staffed4U • Chantilly (VA)

On-site
USD 90,000 - 120,000
5 weeks PTO plus birthday leave
11 floating holidays
401(k) with 10% employer contribution
+3
Sr. Network Engineer
Sr. Network Engineer

ASCENDING • Cleveland (OH)

Hybrid
USD 80,000 - 110,000
Network Engineer - Active Security Clearance
Network Engineer - Active Security Clearance

EmergencyMD • Reston (VA)

On-site
USD 100,000 - 140,000
Senior Firewall Engineer
Senior Firewall Engineer

PSEG Long Island LLC • Bethpage (NY)

On-site
USD 130,000 - 170,000