Network Security Engineer (SASE/ZTNA)
General Dynamics Information Technology
•Posted 1 week agoJob Overview
Job Description
Type of Requisition:
RegularClearance Level Must Currently Possess:
NoneClearance Level Must Be Able to Obtain:
NonePublic Trust/Other Required:
NACI (T1)Job Family:
Cyber and IT Risk ManagementJob Qualifications:
Skills:
Netskope, Netskope Security Cloud, Zero TrustCertifications:
NoneExperience:
7 + years of related experienceUS Citizenship Required:
NoJob Description:
Position Summary:
Key Responsibilities:
- Implementation & Maintenance:
- Assist in deploying and managing SASE/SSE components, including Secure Web Gateways (SWG), Cloud Access Security Brokers (CASB), Firewall-as-a-Service (FWaaS), SD-WAN, and Zero Trust Network Access (ZTNA).
- Modernizing Access:
- Support the migration from legacy Cisco Secure Client environments to identity-centric Zero Trust models, ensuring a smooth transition and troubleshooting any challenges.
- Automation & Integration:
- Write and understand API scripts (e.g., Python, PowerShell, Bash) for automating manual tasks, pulling security telemetry, and integrating Netskope or other cloud-native services.
- Advanced Network Troubleshooting:
- Routing & Proxy: Diagnose and resolve traffic flow issues, PAC file misconfigurations, transparent proxies, and SSL inspection challenges.
- Protocol Analysis: Utilize Wireshark or tcpdump to troubleshoot complex network paths, including latency, packet loss, and SSL/TLS issues.
- Connectivity: Resolve issues involving VLANs, NAT, 802.1X supplicants, DNS, and SaaS/COTS applications.
- SD-WAN Integration: Collaborate on integrating SD-WAN with SASE platforms for secure traffic steering and optimal performance.
- Infrastructure Monitoring & Health:
- Manage and monitor network health using SNMP, SIEM, Grafana, and syslog tools.
- Troubleshoot network connectivity issues within Docker/Linux environments.
- Cloud Security Support:
- Maintain firewall policies across AWS, Azure, and GCP while managing API-based security integrations with products such as Netskope.
Required Qualifications:
Competency
Requirement
Experience
- 5+ years in Network/VPN Engineering.
- 2+ years hands-on experience with SASE/ZTNA platforms and Cloud services.
Critical Skills
- Strong critical thinking and problem-solving skills.
- Effective communication and teamwork abilities.
- Fast learner with the ability to adapt to evolving technologies.
Architecture
- Solid understanding of SD-WAN integration with SSE/SASE frameworks.
OS Proficiency
- Deep understanding of Windows 10/11 network behaviors and troubleshooting on client-side devices.
Routing & Proxy
- Strong knowledge of routing protocols, proxy (PAC file configuration), and architecture concepts.
VPN & NAC
- Hands-on experience with Cisco Secure Client (AnyConnect), firewalls, and 802.1X authentication protocols.
Monitoring & Ops
- Proficiency in tools such as SNMP, SIEM, Grafana, and Docker troubleshooting for monitoring operational health.
SASE/ZTNA
- Hands-on expertise with solutions, including Netskope, Zscaler, or Palo Alto Networks Prisma Access.
Programming Skills
- Strong experience with scripting and automation using Python, PowerShell, or Bash.
Preferred Qualifications:
- Certifications such as CCNP Security, NSE4, Zscaler Certified Cloud Engineer, or equivalent are highly desirable.
- Familiarity with secure DevOps principles and CI/CD in cloud environments.
- Experience securing hybrid cloud workloads across AWS, Azure, and Google Cloud.
Job Benefits:
- Competitive compensation and benefits package.
- Opportunity to work on cutting-edge SASE/ZTNA solutions and architectures.
- Collaborative environment fostering professional growth and innovation.
Scheduled Weekly Hours:
40Travel Required:
NoneTelecommuting Options:
RemoteWork Location:
USA VA Falls ChurchAdditional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.Join our Talent Community to stay up to date on our career opportunities and events atEqual Opportunity Employer / Individuals with Disabilities / Protected VeteransReady to Apply?
Don't miss this opportunity to advance your career.