Senior Network Engineer - DoW (6 openings)

Innovim-Defense-Services,-LLC

Colorado Springs (CO)

On-site

USD 170,000 - 180,000

Full time

17 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Medical/Dental/Vision insurance
Life insurance
401k matching
Education/training support

Job summary

INNOVIM is seeking a Senior Network Engineer to support the Next Generation Environment (NGE) on the IRES contract. Location options include Schriever AFB, CO; Redstone Arsenal, AL; or Fort Belvoir, VA; on-site work only.

You will design and implement resilient, automated network solutions including NX-OS Spine-Leaf, NSX, Versa SD-WAN, F5 BIG-IP, and Infoblox DDI. Must hold DoD Secret clearance and work in a DoD/Government environment.

Qualifications

  • 12+ years of general (full-time) work experience.
  • 6+ years of directly related networking experience.
  • 1+ year in a management or leadership role.
  • Hands-on experience with Cisco Nexus NX-OS in Spine-Leaf topologies and EVPN-VxLAN.
  • Active DoD Secret clearance (or higher) required.

Responsibilities

  • Configure, deploy, and administer Cisco Nexus NX-OS in Spine-Leaf topologies.
  • Build EVPN-VxLAN fabrics, multi-site overlays, and vPC domains.

Skills

Leadership experience
DoD security clearance
Network engineering
Cybersecurity/compliance
Zero Trust concepts

Education

DoD 8140/8570 IAT Level II or higher

Tools

Cisco Nexus NX-OS
VMware NSX
Infoblox DDI/IPAM
Versa SD-WAN
F5 BIG-IP
Python/Ansible/Terraform

Job description

Job Category: IRES

Requisition Number: SENIO002799

  • Posted : October 2, 2026
  • Full-Time
  • On-site
Locations

Showing 1 location

INNOVIM is seeking a Senior Network Engineer to support the Next Generation Environment (NGE) on the Integrated Research and Development for
Enterprise Solutions (IRES) contract.

Location: Schriever Space Force Base, Colorado Springs, CO; Redstone Arsenal, Huntsville, AL or Fort Belvoir, VA
Relocation Assistance: None available at this time
Remote/Telework: NO - Not available for this position
Clearance Type: DoW Secret
Shift: Day Shift

In this role, you will turn high-level architectural designs into resilient, automated network solutions by configuring Cisco Nexus Spine-Leaf
EVPN-VxLAN fabrics, VMware NSX software-defined networks, Versa SD-WAN edge transport, F5 BIG-IP application delivery controllers,
and Infoblox enterprise DDI services. You will collaborate across engineering, systems architecture, systems security, multi-contractor
consortium performers, and Government stakeholder teams to deliver cohesive hybrid cloud and on-premises network transport.

You will play a key role in standardizing infrastructure automation, resolving complex tier-3/4 routing issues, enforcing Zero Trust boundaries, and ensuring continuous network compliance with DoD, DISA, and MDA security requirements.

Description of Duties
  • Configure, deploy, and administer Cisco Nexus (NX-OS) switches operating in high-performance Spine-Leaf topologies.
  • Build, maintain, and optimize EVPN-VxLAN virtual overlay networks, Multi-Site fabrics, vPC domains, and complex underlay routing baselines.
Software-Defined Networking & Micro-segmentation
  • Deploy, configure, and manage VMware NSX components including NSX Edge nodes, Tier-0 and Tier-1 logical gateways, and distributed firewalls.
  • Implement policy-driven micro-segmentation rules within virtualized compute environments (vSphere/VCF) to isolate mission workloads and support multi-tenant enclaves.
Application Delivery & Load Balancing
  • Deploy, configure, and maintain F5 BIG-IP physical and virtual appliances, specifically Local Traffic Managers (LTM) and Global Traffic Managers (GTM).
  • Author and troubleshoot custom F5 iRules, and configure virtual servers, load-balancing pools, health monitors, and secure SSL/TLS decryption profiles.
SD-WAN & Edge Connectivity
  • Provision, deploy, and maintain Versa SD-WAN edge appliances (including Director, Analytics, and VOS) to establish secure transport across disparate WAN paths.
  • Configure secure tunneling, dynamic traffic steering rules, QoS queue policies, and security boundaries for remote sites and tactical test networks.
Core DDI & IPAM Administration
  • Administer enterprise-wide IP Address Management (IPAM), authoritative internal DNS zones, and DHCP scopes utilizing Infoblox Grid Manager.
  • Support the automation of DNS records and IP allocation using Infoblox APIs integrated with Infrastructure-as-Code pipelines.
Zero Trust & Network Security Hardening
  • Implement identity-aware access controls, 802.1X network access control (NAC), and FIPS-compliant cryptography tunnels (IPsec/MACsec).
  • Harden all network assets in accordance with DISA STIGs, Risk Management Framework (RMF) guidelines, and MDA cybersecurity requirements to support continuous ATO (cATO).
  • Coordinate and collaborate directly with external contractor performers and systems administrators across the program consortium during joint integration events, lab setups, and production cutovers.
  • Author and execute comprehensive Low-Level Designs (LLDs), Interface Control Documents (ICDs), standard operating procedures
    (SOPs), deployment runbooks, and cutover plans.
Automation, DevSecOps & Scripting
  • Develop and sustain Infrastructure-as-Code (IaC) playbooks and configuration management scripts (Ansible, Terraform, Python, Bash) to automate configuration deployments, perform validation checks, and remediate compliance drift.
Basic Requirements
  • Must have 12, or more, years of general (full-time) work experience
    o May be reduced with completion of advanced education
  • Must have 6, or more, years of directly related experience
  • Must have 1, or more, years of experience working in a management or leadership role
  • Must have demonstrated, hands-on, engineering and administration experience with:
  • Cisco Nexus (NX-OS) switches configured in Spine-Leaf / EVPN-VxLAN topologies.
  • VMware NSX software-defined network segmentation and gateway routing.
  • Infoblox DDI/IPAM grid managers.
  • Versa SD-WAN enterprise solutions or equivalent software-defined WAN transport.
  • Must hold a current DoW 8140/8570 IAT Level II or higher certification (e.g., Security+ CE, CySA+, CASP+ CE, CISSP).
  • Must have an active DoW Secret security clearance with verified eligibility to obtain a Top Secret clearance (or active Top Secret).
Desired Requirements
  • Active DoW Top Secret security clearance.
  • Professional-level network and platform certifications:
    o Cisco Certified Network Professional (CCNP Enterprise or Data Center)
    o VMware Certified Professional - Network Virtualization (VCP-NV) or VCAP-NV
    o F5 Certified Technology Specialist (F5-CTS)
    o Versa Certified SD-WAN Associate/Specialist
    o Infoblox Core DDI Configurator Associate (CDCA)
  • Have practical experience scripting or automating network changes with Python, Ansible, or Terraform.
  • Have experience supporting the Missile Defense Agency (MDA), the IRES contract, or secure DISA networks

This position is expected to pay $170,000 - $180,000 annually; depending on experience, education, and any certifications that are directly related to the position.

IDS is committed to providing superior work in the fields of science, engineering, data analytics and technology to government agencies. We offer competitive compensation packages, including comprehensive nationwide Medical/Dental/Vision insurance programs, life insurance, matching 401k contribution and Educational/Training support.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Network Engineer - DoW (6 openings)
Senior Network Engineer - DoW (6 openings)

INNOVIM • Colorado Springs (CO), Talladega (AL)

On-site
USD 170,000 - 180,000
Senior Network Engineer IRES - SSFB/HSV/FBEL
Senior Network Engineer IRES - SSFB/HSV/FBEL

Amentum company • Huntsville (AL)

On-site
USD 170,000 - 220,000
Health insurance
401(k) matching
Educational reimbursement
+5
Senior Network Engineer IRES - SSFB/HSV/FBEL
Senior Network Engineer IRES - SSFB/HSV/FBEL

Amentum company • Colorado Springs (CO)

On-site
USD 170,000 - 220,000
Health Insurance
Dental Insurance
Vision Insurance
+8
NGE - Network Design Engineer Architect / Lead
NGE - Network Design Engineer Architect / Lead

NTG • Colorado Springs (CO)

On-site
USD 150,000 - 210,000
NGE - Network Design Engineer Architect / Lead
NGE - Network Design Engineer Architect / Lead

Ntgit • Colorado Springs (CO)

On-site
USD 120,000 - 180,000
Network Engineer Senior
Network Engineer Senior

General Dynamics Information Technology • McLean (VA)

On-site
USD 102,000 - 138,000
Health plan options
401(k) plan with company match
Paid time off
+2
Senior Network Engineer
Senior Network Engineer

Cimarron Software Services, Inc. • Colorado Springs (CO)

On-site
USD 165,000 - 215,000
Health insurance
401(k) plan
Paid time off
Senior Systems Engineer (MBSE & Digital Engineering) - DoW (2 Positions)
Senior Systems Engineer (MBSE & Digital Engineering) - DoW (2 Positions)

INNOVIM • Colorado Springs (CO), Talladega (AL)

On-site
USD 120,000 - 180,000
Medical/Dental/Vision insurance
Life insurance
401k matching
+1
Senior Network Engineer
Senior Network Engineer

Cimarron Software Services, Inc. • Fort Belvoir (VA), Huntsville (AL), Schriever Space Force Base (CO)

On-site
USD 165,000 - 215,000
Health, dental, and vision insurance
401(k) contributions
Educational reimbursement
+1
Senior Systems Engineer (MBSE & Digital Engineering) - DoW (2 Positions)
Senior Systems Engineer (MBSE & Digital Engineering) - DoW (2 Positions)

Innovim-Defense-Services,-LLC • Colorado Springs (CO)

On-site
USD 140,000 - 190,000