Network & Security Infrastructure Engineer

ecsfederal

Washington (District of Columbia)

Hybrid

USD 120,000 - 130,000

Full time

11 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Everforth ECS seeks a Network & Security Infrastructure Engineer in the Washington, DC area with remote work options. The role focuses on redesigning a VMware ESXi environment, implementing firewall and network segmentation, and supporting Check Point and Palo Alto security platforms.

You will work across security operations, architecture, and networking teams to ensure secure, scalable infrastructure and thorough documentation.

Qualifications

  • 5+ years of experience in network security engineering or related infra.
  • Hands-on with Check Point and Palo Alto platforms.
  • Experience re-architecting VMware ESXi environments and VLAN segmentation.
  • Enterprise networking and firewall administration experience.

Responsibilities

  • Lead VMware ESXi re-architecture and VLAN segmentation for security.
  • Administer firewall environments (Check Point and Palo Alto) and policy updates.
  • Support Cisco-based network infrastructure and Aruba wireless in a security-first way.
  • Collaborate across cybersecurity, systems, and technology support teams; document configs.

Skills

Network security
Check Point
Palo Alto
VMware ESXi
VLAN segmentation
Firewall administration
Cisco networking
NSX
Aruba wireless
Documentation

Tools

NSX
Aruba Wireless
Cisco networking

Job description

Everforth ECS is seeking an Network & Security Infrastructure Engineerto work in ourWashington, DCoffice /remote.The role is contingent upon additional funding.

We are seeking an experienced and technically versatile Network & Security Infrastructure Engineer to take on a high-impact, dual-function role within a large and complex enterprise environment. This position sits at the crossroads of network infrastructure, virtual environment engineering, and security operations, and it requires genuine depth across all three, not surface-level familiarity.

The near-term priority for this role is significant: you will lead a major re-architecture of the organization's VMware ESXi virtual environment to support comprehensive firewall and VLAN implementations that deliver proper network segmentation across the enterprise. This is a foundational infrastructure initiative with direct security implications, and it will require someone who can think and execute at the architectural level within a virtualized environment.

Beyond that primary objective, this role carries ongoing responsibility across two organizational teams. You will provide dedicated firewall support to the Architecture and Engineering division, administering the enterprise's internal and cloud-facing firewall environments. On the networking side, you will support the security operations division, monitoring and maintaining a Cisco-based network infrastructure and an Aruba wireless environment from a security-first perspective.

This role is built for someone who can operate with equal confidence in a virtual environment console, a firewall policy manager, and a network operations context.

Salary Range: $120,000 - $130,000
General Description of Benefits

Virtual Environment & Network Segmentation
  • Hands-on experience designing and re-architecting VMware ESXi environments in an enterprise setting
  • Ability to plan and implement VLAN segmentation strategies within virtualized infrastructure to support firewall enforcement and proper traffic isolation
  • Experience configuring virtual switches, distributed switches, and virtual port groups in support of security segmentation objectives
  • Familiarity with NSX or equivalent software-defined networking (SDN) platforms as they relate to micro-segmentation and east-west traffic control
  • Ability to document virtual network architecture clearly and thoroughly, including design decisions, configurations, and future-state plans
Firewall Administration
  • Hands-on experience configuring and administering enterprise-class firewall technologies, with specific experience on Check Point and Palo Alto platforms
  • Ability to implement new firewall architectures, upgrades, and feature rollouts as directed
  • Experience administering firewall policy including updates, upgrades, policy administration, and validation
  • Proficiency managing and tuning software blades and associated security features such as IPS, URL filtering, Application Control, antivirus, and advanced malware detection
  • Ability to review and implement changes consistent with existing firewall policies while maintaining thorough, up-to-date documentation
  • Strong knowledge of firewall rules, security policies, and security operations within a large enterprise environment
  • Willingness to work outside of normal business hours when required to support outage resolution or planned maintenance
Network Infrastructure & Security
  • Strong hands-on experience with Cisco network infrastructure including routing, switching, and network security configurations in an enterprise setting
  • Experience supporting and securing Aruba wireless access point environments
  • Solid understanding of core networking protocols including TCP/IP, BGP, OSPF, VLANs, and VPNs
  • Ability to monitor and analyze network architecture, communication flows, policies, and protocols from a cybersecurity perspective
  • Experience identifying and isolating network-based security issues quickly during incidents and outages
  • Familiarity with network access control concepts and how they integrate with broader security operations
Collaboration & Documentation
  • Ability to collaborate across teams including cybersecurity, systems administration, and technology support partners
  • Experience supporting security continuous monitoring efforts such as risk assessments, vulnerability identification, and patch coordination
  • Ability to create and maintain clear, accurate documentation for virtual, network, and firewall configurations, procedures, and troubleshooting steps
  • Comfortable communicating technical findings and infrastructure risk clearly to both technical peers and senior leadership

A minimum of 5+ years of experience in network security engineering or a closely related infrastructure discipline is required, with direct hands-on experience on both Check Point and Palo Alto platforms strongly preferred. Candidates who bring demonstrated experience with VMware ESXi re-architecture and VLAN segmentation design — in addition to enterprise networking and firewall administration — will be given strong preference over candidates with depth in only one or two of these areas.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Network & Security Infrastructure Engineer
Network & Security Infrastructure Engineer

ECS • Washington

On-site
USD 120,000 - 130,000
Network & Security Infrastructure Engineer — Remote
Network & Security Infrastructure Engineer — Remote

ECS • Washington

Hybrid
USD 120,000 - 130,000
Remote Network & Security Architect (VMware & Firewalls)
Remote Network & Security Architect (VMware & Firewalls)

ecsfederal • Washington

Hybrid
USD 120,000 - 130,000
Sr. Network Engineer
Sr. Network Engineer

ASCENDING • Baltimore (MD)

Hybrid
USD 120,000 - 140,000
Network Infra Engineer
Network Infra Engineer

ASCENDING • Baltimore (MD)

On-site
USD 110,000 - 150,000
Network Security Engineer- remote with light travel
Network Security Engineer- remote with light travel

Calance • Detroit (MI)

Hybrid
USD 110,000 - 165,000
Network Security Engineer
Network Security Engineer

EASTERN DATACOMM INC • North Carolina

On-site
USD 120,000 - 160,000
Competitive salary
Performance bonuses
401(k) with company match
+2
VMware NSX Security Engineer / Administrator
VMware NSX Security Engineer / Administrator

Programmers.io • Spring (TX)

On-site
USD 110,000 - 152,000
Network Engineer – VDI Security / Network Infrastructure
Network Engineer – VDI Security / Network Infrastructure

Staffed4U • Chantilly (VA)

On-site
USD 90,000 - 120,000
5 weeks PTO plus birthday leave
11 floating holidays
401(k) with 10% employer contribution
+3
Security Tool Engineer – Palo Alto
Security Tool Engineer – Palo Alto

Electrosoft • Atlanta (GA)

On-site
USD 130,000 - 150,000