1

Network Security Engineer Jobs in Virginia (NOW HIRING)

Network Security Engineer

Mclean, VA · On-site

$105K - $144K/yr

Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across ...

Network Security Engineer

Richmond, VA · On-site

$103K - $141K/yr

Exposure to DevOps, SRE, or Platform Engineering practices. Technical Skills Networking * Palo Alto Firewalls * Network Security * Routing & Switching * VPN Technologies * DNS * TCP/IP

The Network Security Engineer is responsible for the O&M support of the Zscaler suite of products (ZPA, ZIA, ZDX, ZCC). Responsibility includes the support of all updates to all documents when there ...

Sr. Network Security Engineer

Reston, VA · On-site

$60.75 - $79.50/hr

Sr. Network Security Engineer Five (5)+ years of the following Required Skills: - Demonstrated experience with Palo Alto firewall - Demonstrated experience with F5 WAF and/or Illumio ...

Posted today

Sr. Network Security Engineer

Reston, VA · On-site

$60.75 - $79.50/hr

Sr. Network Security Engineer Five (5)+ years of the following Required Skills: - Demonstrated experience with Palo Alto firewall - Demonstrated experience with F5 WAF and/or Illumio ...

Posted today

Network Security Engineer

Ashburn, VA

$106K - $146K/yr

MUST HAVE: 7-10 years of experience CheckPoint Load Balancing (F5) Security experience within a data center Proxy Solutions Intrusion Prevention Leadership skills CISSP NICE TO HAVE: CISSP Internet ...

Network Security Engineer

Ashburn, VA · On-site

$106K - $146K/yr

Company Description MUST HAVE: • 7-10 years of experience • CheckPoint • Load Balancing (F5) • Security experience within a data center • Proxy Solutions • Intrusion Prevention • ...

Showing results 21-40

Network Security Engineer information

See Virginia salary details

$20.8K

$123.9K

$165.6K

How much do network security engineer jobs pay per year?

As of Aug 12, 2026, the average yearly pay for network security engineer in Virginia is $123,877.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,600.00 and $141,800.00 per year, depending on experience, location, and employer.

What does a network security engineer do?

As a network security engineer, your job duties include configuring routers, switches, firewalls, virtual private networks (VPNs), and other network monitoring tools against intrusions. You need technical, analytical, and problem-solving skills to carry out your network security tasks. Your job is to ensure that your company’s internal networks are protected from potential online threats, like hackers and malware that can steal or corrupt sensitive data from websites, computer programs, databases, and servers. You need to remain current with new developments in the field to master fast-evolving network security technologies.

What are some common challenges faced by network security engineers in maintaining secure and efficient networks?

Network Security Engineers often encounter challenges such as staying ahead of rapidly evolving cyber threats, ensuring minimal downtime during security upgrades, and balancing strong security measures with network performance. Additionally, they must work closely with IT teams and end-users to implement security policies without disrupting daily operations. Keeping up with compliance standards and effectively communicating risks and solutions to non-technical stakeholders are also important aspects of the role.

What are the key skills and qualifications needed to thrive as a network security engineer?

To thrive as a Network Security Engineer, you need a solid understanding of networking protocols, firewall management, vulnerability assessment, and typically a bachelor's degree in computer science or a related field. Familiarity with security tools like IDS/IPS, SIEM systems, and certifications such as CISSP or CompTIA Security+ are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help distinguish top professionals in this role. These skills are crucial for safeguarding organizational data, identifying security threats, and ensuring robust network protection.

Are network security engineers in demand?

Network security engineers are in high demand due to increasing cybersecurity threats and the need for organizations to protect their digital assets. The role requires skills in firewalls, intrusion detection, and security protocols, and often benefits from certifications like CISSP or CEH. Job growth in this field is expected to remain strong as cybersecurity becomes a top priority for businesses across industries.

What is a network security engineer?

Network Security Engineers are IT professionals responsible for protecting an organization's computer networks from security threats and unauthorized access. They design, implement, and maintain security measures such as firewalls, intrusion detection systems, and encryption protocols. Their role involves monitoring network traffic, responding to security incidents, and ensuring compliance with security policies and regulations. Network Security Engineers also conduct regular vulnerability assessments and work to keep systems up to date against evolving cyber threats.

What is the difference between Network Security Engineer vs Security Analyst?

AspectNetwork Security EngineerSecurity Analyst
CertificationsCCNA, CISSP, CompTIA Security+CISSP, GIAC Security Essentials, CompTIA Security+
Work EnvironmentDesigning, implementing, and maintaining security infrastructureMonitoring, analyzing, and responding to security incidents
Employer & Industry UsageIT departments, cybersecurity firms, large enterprisesCorporate security teams, government agencies, financial institutions

While both roles focus on cybersecurity, Network Security Engineers primarily design and implement security systems, whereas Security Analysts monitor and respond to security threats. They often work together to ensure comprehensive protection of organizational networks.

What are the most commonly searched types of Network Security Engineer jobs in Virginia? The most popular types of Network Security Engineer jobs in Virginia are:
What job categories do people searching Network Security Engineer jobs in Virginia look for? The top searched job categories for Network Security Engineer jobs in Virginia are:
What cities in Virginia are hiring for Network Security Engineer jobs? Cities in Virginia with the most Network Security Engineer job openings:
Infographic showing various Network Security Engineer job openings in Virginia as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $123,877 per year, or $59.6 per hour.

Network Security Engineer

Credence

Mclean, VA • On-site

$105K - $144K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 11 days ago


Job description

Overview

Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose.

We’ve been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges.

Position Summary

Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset

Responsibilities:Network Infrastructure & Operations
  • Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management.
  • Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity.
  • Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government).
  • Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process.
  • Oversee network configuration management and backups to ensure recoverability and business continuity.
  • Analyze and resolve escalated Tier 2+ network support tickets.
  • Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning
Security & Compliance
  • Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation.
  • Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions.
  • Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening).
  • Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed.
  • Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles.
Collaboration & Support
  • Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments.
  • Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes.
  • Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions.
  • Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles.
  • Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards.
Cloud Infrastructure & GCP Governance
  • Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries.
  • Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments.
  • Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT.

Requirements

  • Must be a U.S. Citizenship
  • Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent experience).
  • Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role.
  • Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals.
  • Must have hands-on working experience with Palo Alto NGFW and FortiGate firewalls, along with Cisco or equivalent routing and switching technologies.
  • Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus).
  • Must be familiar with configuration management, monitoring, and documentation tools.
  • Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions.
  • Must be familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy.
  • Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff.
Preferred Qualifications
  • Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent.
  • Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred.
  • Familiarity with VoIP, secure mail flow, and endpoint management integration.
  • Experience contributing to IT/security-related project initiatives.
  • Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping.
  • Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments.
  • Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible.
  • Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts.
  • GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience.
  • Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred.
  • Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks.

Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications.

Please join us, as together we build a better world one mission at a time powered by Technology and its People!

Benefits

  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k, IRA)
  • Life Insurance (Basic, Voluntary & AD&D)
  • Paid Time Off (Vacation, Sick & Public Holidays)
  • Family Leave (Maternity, Paternity)
  • Short Term & Long Term Disability
  • Training & Development
  • Wellness Resources