{"schemaVersion":"jobsearcher.job.v1","id":"100f8043af99bd2a4ff14685","url":"https://jobsearcher.com/jobs/100f8043af99bd2a4ff14685","canonicalUrl":"https://jobsearcher.com/jobs/100f8043af99bd2a4ff14685","title":"Sr Network Security Engineer","description":"Title: Sr Network Security Engineer\nLocation: Mechanicsville, VA(Hybrid)\nDuration: 10 Months\nInterview Type: In Person Only\n\nJob Description:\nClient is seeking an experienced Sr Network Security Engineer (Sr NSE) to implement and support the agency's IT network, cloud, and computing infrastructure. The Sr NSE performs day-to-day activities related to securing Client's infrastructure.\nThe Sr NSE performs day-to-day activities related to securing, documenting, performing research, analysis, design, and implementation of Client's network and computing related infrastructure.\n\nThe Sr NSE will support a hybrid enterprise environment consisting of approximately 300 statewide locations, Palo Alto firewalls, Azure networking, ExpressRoute connectivity, WAF technologies, Splunk SIEM, SD-WAN, and mission-critical public-facing applications. The role partners closely with Infrastructure, Cloud Engineering, and the Information Security Office to maintain the confidentiality, integrity, and availability of Client's network infrastructure.\n\nKey Responsibilities:\n\nEnsures network security architecture aligns with operational security standards prior to and after deployment.\nLead investigation and containment of network security incidents.\nReview firewall rule requests and ensure compliance with security standards.\nDesign and maintain secure hybrid network architecture across on-premises and Azure environments.\nMonitor security events using SIEM technologies and coordinate incident response activities.\nPerform network security assessments and recommend remediation strategies.\nDevelop and maintain network security standards, diagrams, and operational documentation.\nSupport penetration testing and remediation efforts.\nParticipate in on-call support during critical security incidents.\nResponsible for conducting proactive threat hunting and anomaly detection.\nValidates WAF and firewall placement and integration exposure/connectivity. Also leads implementation, review, and management of agency WAF(s).\nIdentifies and diagnoses system problems and threats by using system logs, line monitors, SIEM, diagnostic software, and test equipment.\nIdentifies, prioritizes, and remediates network security vulnerabilities.\nMust have the ability to provide documentation, network architecture topology diagrams, IP schemes, firewall rules, and access controls when required.\nMust have the ability to work independently on assigned projects.\n\nRequired/ Desired Skills:\nEnterprise Networking\nEnterprise Security\nAzure Networking\nWAF/NGFW\nSupporting environments with 300+ Network Devices\nCandidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor\nCandidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel)\nCandidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def\nCandidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates\nCandidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles\nCandidate must have experience with the following: Cisco Client, NAC, 802.1X, RADIUS, TACACS\nCandidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP\nCandidate must have experience working in highly regulated environments and leading technical troubleshooting during outages\nCandidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers.\nCandidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700),","company":"Apollo Technology Solutions","rawCompany":"apollo technology solutions","city":"Mechanicsville","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-08-07T10:59:13.070Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Sr Network Security Engineer","description":"Title: Sr Network Security Engineer\nLocation: Mechanicsville, VA(Hybrid)\nDuration: 10 Months\nInterview Type: In Person Only\n\nJob Description:\nClient is seeking an experienced Sr Network Security Engineer (Sr NSE) to implement and support the agency's IT network, cloud, and computing infrastructure. The Sr NSE performs day-to-day activities related to securing Client's infrastructure.\nThe Sr NSE performs day-to-day activities related to securing, documenting, performing research, analysis, design, and implementation of Client's network and computing related infrastructure.\n\nThe Sr NSE will support a hybrid enterprise environment consisting of approximately 300 statewide locations, Palo Alto firewalls, Azure networking, ExpressRoute connectivity, WAF technologies, Splunk SIEM, SD-WAN, and mission-critical public-facing applications. The role partners closely with Infrastructure, Cloud Engineering, and the Information Security Office to maintain the confidentiality, integrity, and availability of Client's network infrastructure.\n\nKey Responsibilities:\n\nEnsures network security architecture aligns with operational security standards prior to and after deployment.\nLead investigation and containment of network security incidents.\nReview firewall rule requests and ensure compliance with security standards.\nDesign and maintain secure hybrid network architecture across on-premises and Azure environments.\nMonitor security events using SIEM technologies and coordinate incident response activities.\nPerform network security assessments and recommend remediation strategies.\nDevelop and maintain network security standards, diagrams, and operational documentation.\nSupport penetration testing and remediation efforts.\nParticipate in on-call support during critical security incidents.\nResponsible for conducting proactive threat hunting and anomaly detection.\nValidates WAF and firewall placement and integration exposure/connectivity. Also leads implementation, review, and management of agency WAF(s).\nIdentifies and diagnoses system problems and threats by using system logs, line monitors, SIEM, diagnostic software, and test equipment.\nIdentifies, prioritizes, and remediates network security vulnerabilities.\nMust have the ability to provide documentation, network architecture topology diagrams, IP schemes, firewall rules, and access controls when required.\nMust have the ability to work independently on assigned projects.\n\nRequired/ Desired Skills:\nEnterprise Networking\nEnterprise Security\nAzure Networking\nWAF/NGFW\nSupporting environments with 300+ Network Devices\nCandidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor\nCandidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel)\nCandidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def\nCandidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates\nCandidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles\nCandidate must have experience with the following: Cisco Client, NAC, 802.1X, RADIUS, TACACS\nCandidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP\nCandidate must have experience working in highly regulated environments and leading technical troubleshooting during outages\nCandidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers.\nCandidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700),","datePosted":"2026-08-07T10:59:13.070Z","dateModified":"2026-08-07T10:59:13.070Z","hiringOrganization":{"@type":"Organization","name":"Apollo Technology Solutions","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Mechanicsville","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"100f8043af99bd2a4ff14685"},"url":"https://jobsearcher.com/jobs/100f8043af99bd2a4ff14685"}}