JOB TITLE: Network Security Engineer
LOCATION: Annapolis,MD
DURATION: 5 Years
Â
SUMMARY SECTION III. SCOPE OF WORK
The AOC is seeking proposals from prospective Offerors to provide one (1) Network Security Engineer.The Network Security Engineer will actively participate in planning and coordinating the design,installation, and connectivity of computer and network systems to ensure stable, scalable, redundant, and secure 24x7 network operations.
Â
OFFEROR RESOURCE QUALIFICATIONS
The Offeror shall propose resource(s) that meet the following minimum qualifications:
a. Associate degree in an Information Technology (IT) related field, as determined by the AOC.
b. Active certifications as follows:
(1) Palo Alto Networks Certified Network Security Engineer (PCNSE) Certification.
(2) Cisco Certified Network Professional (CCNP) Enterprise or (CCNP) Security Certification.
Â
The AOC prefers Offeror proposed resource(s) to have the following qualifications:
a. Ten (10) years of CONUS technical experience in IT networking and network security.
b. Bachelor’s degree in an Information Technology (IT) related field, as determined by the AOC.
c. Current Certifications as follows:
(1) Prisma Certified Cloud Security Engineer (PCCSE) Certification from Palo Alto Networks
(2) Cisco Certified Internetwork Expert (CCIE) in Enterprise Infrastructure or Security Certification
Â
Five (5) years of experience with:
(1) Palo Alto Networks next generation firewall services.
(2) Intrusion Detection and Prevention with Palo Alto networks.
(3) Content Filtering Palo Alto networks.
(4) Virtual Private Networks using Palo Alto network systems.
(5) Data Loss Prevention
(6) TLS/SSL Inspection
• Three (3) years of experience in Reverse Proxies, Load Balancing with A10 networks.
• Two (2) years of experience in Network Access Control - Cisco Identity Services Engine (ISE), Free Radius, and Access Control Lists (ACLs).
• Four (4) years of experience in Complex switching, routing, wireless with Cisco Systems.
• General experience with the following:
• Implementing multifactor authentication solutions with Microsoft.
• Cloud based virtual networking and security services
• Authentication standards - (802.1x) in wired and wireless applications.
• Scalable routing protocols Enhance Interior Gateway Routing Protocol (EIGRP), Open Shortest Path Fist (OSPF), and Border Gateway Protocol (BGP).
• Enterprise Data Center implementing Micro segmentation.
• Certificate Management, Public Key Infrastructure (PKI).
• Vulnerability management using Nessus, NMAP, Windows, Unix, and Linux OS
• Packet/Protocol Analysis using Opnet, Riverbed, Wireshark, and taps.
• Centralized Management using Panorama, SolarWinds
• Major server and desktop operating systems and utilities