Remotery

Network Security Engineer

Posted 2 days ago

This is a fully remote position, open to applicants in Florida, +1 more state.

📋 Description

• Develop cybersecurity architecture and standard controls for USCIS systems and data.

• Assess network designs to ensure the integration of security measures.

• Create an Enterprise Data Security Architecture to identify sensitive data elements that require protection.

• Recognize and analyze information security threat models and methodologies.

• Oversee the implementation and maintenance of threat-modeling methodologies.

• Formulate standards, templates, and automated mechanisms for threat modeling and analysis.

• Provide ongoing inputs, triggers, and reporting into the USCIS SIEM and Authorization processes.

• Design, deploy, operate, and support enterprise security solutions encompassing vulnerability management, configuration management, network access controls, malware defenses, application security, incident response, penetration testing, continuous monitoring, and related fields.

• Automate repetitive IT security processes and consolidate security information and reporting utilizing programming and the Security Event Management framework.

• Generate SIEM intelligence through triggers, filters, and signatures for Security Operations investigation.

• Implement and support filters, plugins, access control lists, and monitoring rules for continuous security monitoring products.

• Participate in meetings, design reviews, engineering calls, readiness reviews, IPTs, and Scrum activities; produce minutes and project reports.

• Draft system lifecycle documentation, architecture diagrams, project plans, operating procedures, use cases, user stories, change documents, implementation strategies, and product configurations.

• Conduct product and standards comparisons using authoritative research and testing resources.

• Design and implement information security solutions across all OSI layers for a defense-in-depth approach and intrusion defense.

• Configure, install, and monitor products in pilot/evaluation locations through the USCIS Change Request process.

• Create operating procedures, lifecycle documentation, and Enterprise Architecture documentation for evaluated products.

• Organize meetings, submit USCIS forms, tickets, and change requests for the deployment of security products.

• Present reports that explain and justify recommended product selections.

• Define network architecture using ingress/egress micro-perimeters and internal micro-segmentation.

• Review configurations for vulnerabilities and suggest security enhancements.

• Collaborate on automated configuration management and the enforcement of security settings.

• Develop automation tools to discover networks, devices, and services, authorize entities, and remediate unauthorized entities.

• Strengthen and create rules for firewalls, switches, routers, and other network equipment.


⛳️ Requirements

• 10 years of experience in network engineering and operations.

• 3 years of focused experience deploying security products, including firewalls, IDS/IPS devices, StealthWatch, FirePOWER, Cisco ISE, and ForeScout CounterACT.

• Proficiency in configuring, securing, and developing custom rule sets for Cisco Nexus, FlexPod, IOS, Identity Services Engine (ISE), StealthWatch, FirePOWER, and additional networking technologies used by the Government.

• Experience with Cisco Prime, Orion SolarWinds, or similar configuration management tools to create enforceable configuration templates.

• One active certification: CCIE Security, CCIE Wireless, CCIE Data Center, CCIE Routing & Switching, CCNP Security, or a comparable certification/experience approved by the Government Program Manager.

• Capability to obtain and maintain Public Trust Security Clearance, or existing Public Trust Security Clearance preferred.

• A Bachelor’s degree in Computer Science, Information Management, Engineering, or another relevant degree or experience approved by the Government Program Manager.

• Ability to work with DHS USCIS systems, USCIS/DHS policies and procedures, DHS continuous monitoring requirements, DoD STIGs, and NIST Special Publication 800 guidance.


🏝️ Benefits

• Full-time remote work arrangement.

• Opportunity to contribute to cybersecurity initiatives for DHS USCIS systems.

• Career opportunity with Titan Technologies, a Service-Disabled Veteran Owned Business.

People also viewed

Koniag Government Services1 day ago

VoIP Network Engineer

US flagUnited States OnlyFull-timeNetwork Engineer / Network Administrator
ApplyView job
BPCS, Comprehensive marketing solutions, ltd.2 days ago

Network Engineer

US flagWashington OnlyFull-timeNetwork Engineer / Network Administrator$45 – $50/hour
ApplyView job
NVIDIA2 days ago

Senior Data Center Ethernet Network Engineer

GB flagUnited Kingdom, +3 more countriesFull-timeNetwork Engineer / Network Administrator
ApplyView job
Air Methods2 days ago

Network Engineer I

US flagColorado OnlyFull-timeNetwork Engineer / Network Administrator$55.6k – $83.5k/year
ApplyView job
Arista Networks2 days ago

Network Systems Engineer, DV Cleared

GB flagUnited Kingdom OnlyFull-timeNetwork Engineer / Network Administrator
ApplyView job
FTI - Frontier Technology Inc.2 days ago

Senior Advisory Network Engineer

US flagCalifornia OnlyFull-timeNetwork Engineer / Network Administrator
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers