Sr. Network Security Engineer

Posted 4 Days Ago
Be an Early Applicant
2 Locations
In-Office or Remote
Expert/Leader
Information Technology
The Role
Designs, deploys, configures, and monitors enterprise network security architecture for DHS USCIS systems. Responsibilities include threat modeling, SIEM integration, vulnerability management, security product evaluations, firewall and network device hardening, micro-segmentation, automated remediation, configuration management, security documentation, and continuous monitoring. The role supports security solution deployment across the OSI model and requires collaboration with federal stakeholders throughout the systems lifecycle.
Summary Generated by Built In

Zen Strategics, a Titan Technologies company, is seeking a Senior Network Engineer to support cybersecurity efforts for DHS USCIS systems. The Engineer will be part of Enterprise Security Architecture in Network Security which consists of the policies, processes, and practices to prevent, detect and monitor unauthorized access, misuse, modification, or denial of a computer network and network-accessible resources. Network security involves the authorization of access to data in a network. This role supports security activities associated with evaluating and improving the security of the USCIS network.

Duties and Responsibilities:

  • Establish a new cybersecurity architecture and a standard set of controls commensurate with the increased threat to USCIS systems and data, including risk indicators and alignment to current measures.
  • Evaluate current and future network designs to ensure that security is incorporated.
  • Establish an Enterprise Data Security Architecture that identifies sensitive data elements requiring protection.
  • Identify and evaluate information security threat models and methodologies. Manage the implementation and maintenance of the selected methodologies by applying the threat model to support ongoing, proactive protection of the USCIS enterprise environment, and to facilitate an efficient response to security incidents. Develop standards, templates and automated mechanisms to support threat modeling and analysis of individual USCIS information systems and information. Provide recurring inputs, triggers and reporting into the USCIS SIEM and Ongoing Authorization processes.
  • At the discretion of the Federal task lead, architect, deploy, operate, and support a wide range of enterprise security solutions to address a broad set of security needs including, but not limited to: Vulnerability Management, Configuration Management, Network Access Controls, Malware Defenses, Application Software Security, Secure Code and library Review, Software Asset Management, Hardware Asset Management, Vulnerability Remediation, Security Event and Log Management, Incident Response, Penetration Testing, Wireless Access Control, Least Privilege, Network Monitoring, Boundary Defense, Security Assessment, Account Monitoring and Control, Data Protection, Insider Threat, Continuous Monitoring, and/or others as requested by the Government.
  • Automate and streamline repetitive IT security processes, and the handling of vast amounts of security data, at the discretion of the Federal task lead, using programming and the Security Event Management framework to consolidate security information and reporting.
  • Create actionable intelligence through triggers, filters, and signatures that pinpoint threats contained within the SIEM for Security Operations to investigate from new and existing continuous monitoring security products, such as, but not limited to: ForeScout, Tenable.io, CrowdStrike, DbProtect, Splunk, and CISCO ISE/IDS/IPS.
  • Implement and support filters, plugins, access control lists, and monitoring rules for new and existing continuous monitoring security products, such as, but not limited to: Tenable.io, CrowdStrike, Burp Suite, Splunk, CISCO ISE/IDS/IOS, Microsoft SCCM, PortSwigger Burp Suite and Fortify, etc.
  • Attend meetings, design reviews, engineering conference calls, system readiness reviews, and participate in Integrated Planning Teams (IPTs) and/or Scrum Sprints/Increments as required by the Federal lead to monitor security requirement execution throughout the USCIS/DHS Systems Lifecycle process and deliver minutes, and any ad-hoc project reporting requested by the Government.
  • Write system lifecycle documentation for security products or security-relevant system components. This includes, but is not limited to: project architecture diagrams, project plans and timelines, Concepts of Operations, Standard Operating Procedures, use cases, user stories, change management documents, system lifecycle documentation, technical implementation strategies, and product specific configurations that align with USCIS policy and procedure, DHS policy and procedure, DHS continuous monitoring requirements and annual metrics, DoD STIGs, and NIST Special Publication 800 Guidance.
  • Perform product/standards comparisons based upon research, independent lab test result reports, intelligence agency recommendations, and other resources authoritative, mandatory, or compelling to a U.S. Federal agency.
  • Support the design and deployment of information security solutions at all layers of the OSI model, physical layer to application layer, to facilitate a comprehensive defense-in-depth strategy and intrusion defense chain methodology.
  • Be responsible for the technical configuration, installation, and/or monitoring of products into a pilot/evaluation location established via the USCIS Change Request (CR) process.
  • Generate procedures necessary to operate and maintain products under pilot/evaluation.
  • Generate USCIS/DHS Systems Lifecycle Process documentation necessary to obtain engineering approval for products under pilot/evaluation.
  • Generate the Enterprise Architecture (EA) documentation as necessary.
  • Schedule and attend meetings, file USCIS forms, tickets, and change requests necessary to facilitate successful deployment of security products/projects.
  • Generate and present formal reports and presentations that explain and defend the recommended product selections in meetings designated by the Government POC requesting the evaluation.
  • Assist with defining network architecture by ingress/egress micro-perimeters with some internal micro-segmentation.
  • Review existing configuration settings to identify potential security vulnerabilities and propose settings or architectural changes to address these vulnerabilities.
  • Work collaboratively with other teams to improve the use of automated configuration management capabilities to initiate network and environment changes and enforce security-relevant configuration settings.
  • Assist with the development of automation to discovery networks, devices, and services, with manual or dynamic authorization and automated remediation of unauthorized entities.
  • Perform security hardening and rule creation for firewalls, switches, routers and other network equipment. This includes reviewing new and re-evaluating existing configuration settings and rules to verify USCIS’ security posture and eliminate unnecessary risk.

You MUST have:

  • 10 years of experience in network engineering and operations and 3 years specialized experience deploying security products (Firewalls, IDS/IPS devices, StealthWatch, FirePOWER, Cisco ISE, ForeScout CounterACT, etc.).
  • Proficiency in configuring, securing, and creating custom rule sets for: Cisco Nexus, FlexPod, IOS, Identity Services Engine (ISE), StealthWatch, FirePOWER and any other additional networking technologies introduced by the Government during the duration of the contract.
  • Prior experience utilizing Cisco Prime, Orion SolarWinds or another configuration management tool to create enforceable configuration templates.
  • One of the following active certifications: Cisco Certified Internetwork Expert (CCIE) Security, CCIE Wireless, CCIE Data Center, CCIE Routing & Switching, Cisco Certified Network Professional Security (CCNP Security), or other comparable certification or experience, which must be approved in advance by the Government Program Manager on a case-by-case basis.
  • Ability to get and maintain Public Trust Security Clearance or Existing Public Trust Clearance preferred

Education:

  • A Bachelor’s degree in Computer Science, Information Management or Engineering, or other comparable degree or experience, which must be approved in advance by the Government Program Manager.

Company Description:

Titan Technologies, LLC and our wholly owned subsidiaries, TelaForce, LLC, Titan Facilities, Inc. and Zen Strategics, design, build, integrate, and manage innovative solutions and software applications. Our remarkable people, working collaboratively under a shared vision, have earned a reputation with our customers for delivering results with maximum impact. Sound intriguing? Consider Titan Technologies for the next step in your career journey and be part of an impactful team!

Titan is proud to be a Service-Disabled Veteran Owned Business.

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Skills Required

  • 10 years of experience in network engineering and operations
  • 3 years of specialized experience deploying security products such as firewalls, IDS/IPS devices, StealthWatch, FirePOWER, Cisco ISE, or ForeScout CounterACT
  • Proficiency configuring and securing Cisco Nexus, FlexPod, Cisco IOS, Cisco ISE, StealthWatch, and FirePOWER
  • Experience using Cisco Prime, Orion SolarWinds, or another configuration management tool to create enforceable configuration templates
  • Active CCIE Security, CCIE Wireless, CCIE Data Center, CCIE Routing and Switching, CCNP Security, or comparable certification or experience approved by the Government
  • Ability to obtain and maintain a Public Trust security clearance
  • Bachelor's degree in Computer Science, Information Management, Engineering, or comparable degree or experience
  • Existing Public Trust security clearance
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Albuquerque, NM
232 Employees
Year Founded: 2016

What We Do

Titan Technologies, LLC, which includes its wholly owned subsidiaries TelaForce, LLC and Titan Facilities, Inc., designs, integrates, and manages innovative solutions and software applications. Titan Technologies provides advanced information technology solutions and services in the areas of digital business transformation, customer care, security and communications infrastructure, and infrastructure modernization and management. Titan Technologies is headquartered in Destin, Florida with offices in Reston, Virginia; Derwood, Maryland; Honolulu, Hawaii; Galveston and Houston, Texas. For more information, go to www.titantechnologies.com

Similar Jobs

Motive Logo Motive

Senior Content Marketing Strategist

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
116K-137K Annually

Collectors Logo Collectors

Principal Software Engineer

Consumer Web • eCommerce • Machine Learning • Software • Sports • Analytics
Remote
US
2246 Employees

General Motors Logo General Motors

Senior Software Engineer

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees

General Motors Logo General Motors

District Manager, Sales - Western Region

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees
76K-114K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account