Network Security EngineerType: Contract
Duration: 6-12 months with possibility for extension
Schedule: Mon-Fri, 8:00 AM-4:30 PM ET, with occasional after-hours/on-call support
Work Model: Hybrid - on-site in Annapolis, MD (3 days/week for first 6 months; may shift to 2 days on-site/3 remote with strong performance); ability to report on-site within 4 hours when requested
Location: Annapolis, MD (primary on-site location)
Role Overview:We are seeking a Network Security Engineer to design, implement, and support secure enterprise network solutions. This role involves project-based engineering, migration to next-generation technologies, documentation development, and collaboration with engineering teams to ensure secure 24x7 network operations.
Key Responsibilities: - Identify organizational requirements and design secure network implementations.
- Perform engineering, installation, configuration, and troubleshooting of data and security networks.
- Provide assessment, design, and implementation of secure networking environments.
- Develop diagrams, documentation, and manage implementation from design through acceptance.
- Assist in capacity planning, monitoring, and review of secure communication networks.
- Lead or support migrations from legacy platforms to next-generation security technologies.
- Troubleshoot critical network security incidents and threats.
- Implement configuration guidelines, change management, and secure operation procedures.
- Coordinate and mentor team members while resolving issues promptly.
- Provide weekly status reports and participate in status meetings.
Required Qualifications: - Associate degree.
- Active certifications: Palo Alto PCNSA or PCNSE, and Cisco CCNA Enterprise or CCNA Security.
Preferred Qualifications: - 10 years of IT networking and network security experience.
- Associate degree in IT-related field.
- Advanced or recent certifications (within 3 years): Palo Alto PCNSE/NGFW/NSA; Cisco CCNP Enterprise/Security.
Technical Skills: - Palo Alto NGFW services: IDS/IPS, content filtering, VPN, DLP, SSL/TLS inspection.
- Cisco switching, routing, wireless (EIGRP, OSPF, BGP).
- A10 load balancing and reverse proxies.
- Network Access Control: Cisco ISE, FreeRADIUS, ACLs.
- MFA, cloud virtual networking, micro-segmentation, PKI, vulnerability tools (Nessus, Nmap), packet analysis (Wireshark, Riverbed).
- Centralized management tools: Panorama, SolarWinds.
Soft Skills: - Ability to work independently and mentor junior staff.
- Strong communication and presentation skills.
- Ability to produce technical documents including diagrams, plans, and SOPs.
Work Model: - Hybrid: 3 days onsite, 2 days remote (initially 3 onsite/2 remote may adjust).
- Must be able to report onsite within 4 hours if required.
- Work hours: Monday-Friday, 8:00 AM-4:30 PM ET, with flexibility for deadlines and on-call needs.
#NetworkSecurityEngineer #PaloAltoFirewalls #PCNSA #PCNSE #CiscoNetworking #CCNA #CCNP #NextGenFirewalls #CiscoISE #8021X #A10LoadBalancer #PacketAnalysis #Wireshark #VulnerabilityManagement #Nessus #Nmap #RoutingAndSwitching #BGP #OSPF #EIGRP #CyberSecurityEngineering #HybridRole #ITInfrastructure #NetworkDesign #SecurityOperations