Cyber Security Network Engineer
Alexandria, VA, United States
Ashburn Consulting
: Ashburn Consulting LLC provides IT support cyber security services for technology infrastructure, enhance cyber security, data Center/Cloud solutions and ensure smooth operations.Company Description
Ashburn Consulting, a Small Business based in the Washington, DC metropolitan area, specializes in providing network and network security solutions in complex environments to a select set of government and business clients. The company, an established leader in its field, is composed of an elite team of engineers and business consultants, each of whom is recognized —and highly regarded—within the network and security communities.
Job Description
Ashburn Consulting is looking for a Cyber Security Engineer to join us in supporting the Washington Metropolitan Area Transit Authority’s (WMATA) Digital Modernization’s Office of Cybersecurity’s (DMCS) Cyber Technology Unit On-Site at either Eisenhower Metro or New Carrollton Metro, with Wednesdays at Eisenhower. This work supports the security of WMATA’s systems and networks by proactively managing access to WMATA's data and systems.
DMCS requires a meticulous and expert-level Cybersecurity Engineer to provide support for leading and managing the implementation of enterprise network perimeter (firewall) security solutions. This role is needed to implement and support critical WMATA initiatives including, but not limited to the Payment Card Industry (PCI) Audit required configurations, firewall re-design, Juniper and F5 upgrades, and the related needed upgrade, redesign, and maintenance of the WMATA’s firewall environments. This role requires a strong background in Juniper firewalls and F5 load balancers (both legacy and current models) along with expertise in firewall management and an understanding of perimeter security controls best practices.
This work will be On-Site 4 days per week until July 1, 2025, and 5 days a week, thereafter. WMATA anticipates the onsite location for this position is either Eisenhower or New Carrollton with Wednesdays at Eisenhower.
Responsibilities:
- Provide expert-level network security support, security engineering, and implementation on network security firewalls, load balancer, and VPN devices.
- Design, implement, and manage network security devices including firewalls, load balancers, VPNs, and Intrusion Detection/Prevention Systems (IDS/IPS).
- Continuous monitoring and assessment of network security by testing and implementing new security technologies.
- Provide customers with enterprise network security solutions based on application and infrastructure requirements.
- Provide network security support on Microsoft Azure infrastructure.
- Collaborate in the design and implementation of complex network technologies (Data Center, Cloud, Hybrid).
- Develop and maintain technical documentation, network diagrams, Standard Operating Procedures (SOP), and Work Instructions.
- Perform platform lifecycle management activities (patching, upgrades, policy configuration, etc.) for assigned platforms and/or tools.
- The SME will be responsible for leading initiatives related to network security, including upgrading firewalls, replacing end-of-life (EOL) and end-of-support (EOS) firewalls and F5, devices, as well as consolidating and redesigning load balancers.
- Migrate legacy Juniper firewalls from Juniper NetScreen OS to Juno OS.
- Consolidate legacy F5 systems by migrating and upgrading to modern versions.
- Provide strategic insights to enhance the overall security posture of the WMATA’s environment.
Qualifications
Required Qualifications and Skills:
- B.Sc. degree or minimum of 8 years of demonstratable experience in enterprise network security solutions equivalent work experience.
- Experience working with Microsoft Azure Virtual Network including configuring access lists in the Network security Group.
- Proficiency in FortiWeb and PaloAlto configurations.
- Ability to reconcile complex data sets.
- Strong analytical skills and attention to detail.
- Excellent organizational and time-management skills with ability to manage multiple tasks and priorities simultaneously.
- Strong communication and interpersonal skills with the ability to collaborate effectively across teams and levels.
- Knowledge of industry best practices for IT Network security.
- Technical proficiency in using office productivity software (e.g., Microsoft Office Suite, Google Workspace).
- Ability to lift 50Ibs.
- Extensive hands-on experience with legacy (NetScreen OS) and current Juniper firewall models (Juno OS).
- Hands on experience migrating from Juniper Networks' NetScreen OS to Junos OS.
- Strong experience with designing and implementing F5 Big-IP load balancing solutions to optimize application performance and availability.
- Experience in migrating and upgrading legacy F5 Big-IP systems.
- Expertise in configuring, managing, and troubleshooting firewalls in complex network environments.
- Strong background in designing and implementing enterprise-level security architectures, and secure perimeter defenses to meet evolving business needs and mitigate emerging threats.
- Relevant certifications, such as Juniper Networks Certified Internet Expert (JNCIE-SEC), F5 Certified BIG-IP Expert (F5-CE) or equivalent.
Additional Information
Equal Opportunity Employer/Veterans/Disabled. An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status
Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA), if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting, please e-mail hr@ashburnconsulting.com.”
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Azure Cloud Compliance Firewalls IDS Intrusion detection IPS Monitoring Network security VPN
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.