About this opportunity
IPSecure lists this Cybersecurity Network Engineer opportunity in chicago, Illinois. Review the employer’s description below for duties, qualifications and application requirements.
Job description
Cybersecurity Network Engineer – TS/SCI Clearance Required – JBSA Lackland - San Antonio, TX
Job Description
We are seeking an experienced Cybersecurity Network Engineer to support the design, integration, configuration, testing, and security of advanced network infrastructure within a lab-based engineering environment. This position requires a strong combination of traditional network engineering, cybersecurity, and modern software-defined networking experience.
The ideal candidate will have extensive hands‑on experience with Cisco Application Centric Infrastructure (ACI), Software-Defined Networking (SDN), Cisco routing and switching, enterprise firewalls, IP addressing and subnetting, network segmentation, and virtualization technologies.
This position will work directly with engineering, cybersecurity, systems administration, and test teams to build, configure, secure, troubleshoot, and validate network architectures prior to deployment into operational environments.
Job Responsibilities
Design, configure, integrate, secure, and troubleshoot enterprise network infrastructure within a lab and test environment.
Engineer and support Cisco ACI architectures, including APIC controllers, leaf/spine architectures, tenants, VRFs, bridge domains, endpoint groups (EPGs), contracts, and external connectivity.
Support Software-Defined Networking (SDN) technologies and network automation concepts used to centrally manage and secure network infrastructure.
Configure and troubleshoot Cisco routers and switches, including Layer 2 and Layer 3 networking.
Develop and maintain IP addressing and subnetting schemes, VLANs, VRFs, routing domains, and network segmentation strategies.
Configure and troubleshoot routing protocols such as BGP, OSPF, and static routing.
Engineer and support enterprise firewall and network security solutions, including security policies, access control rules, NAT, VPN connectivity, network segmentation, and traffic inspection.
Analyze network traffic and connectivity using packet captures, logs, monitoring platforms, and other network diagnostic tools.
Perform cybersecurity hardening of network infrastructure in accordance with applicable security requirements and organizational standards.
Identify network vulnerabilities, configuration weaknesses, unnecessary services, and segmentation issues and recommend appropriate remediation.
Support implementation of Zero Trust and defense-in-depth network architectures, including segmentation and least-privilege communications between systems and security zones.
Build and maintain representative network environments used for integration, testing, troubleshooting, cybersecurity validation, and engineering development.
Develop network diagrams, interface documentation, IP address plans, configuration documentation, test procedures, and engineering artifacts.
Conduct configuration testing and validation prior to implementation within production or mission environments.
Troubleshoot complex connectivity issues across routers, switches, firewalls, virtual networks, servers, and applications.
Coordinate with cybersecurity, systems, virtualization, application, and engineering teams to identify and resolve cross-domain infrastructure issues.
Support change management, configuration management, technical documentation, and engineering review processes.
Candidates should possess hands‑on experience with Cisco Application Centric Infrastructure (ACI) and software‑defined networking concepts, including:
Cisco APIC administration and configuration
ACI leaf/spine architecture
Tenants and VRFs
Bridge Domains (BDs)
Application Profiles
ACI Contracts and Filters
Physical and virtual domains
VLAN pools
External Layer 2/Layer 3 connectivity
L3Out configuration
Routing integration
Network segmentation and micro‑segmentation
ACI troubleshooting and fault analysis
SDN policy‑based networking
Network automation and programmable infrastructure concepts
Experience integrating ACI with virtualized environments, firewalls, external routing infrastructure, and traditional Cisco networks is highly desired.
Basic Qualifications
Security Clearance: Active TS/SCI
Education: Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Systems, Engineering, or related discipline. Equivalentexperiencemay be substituted.
Certification: Security + and CCNA
Experience:
10+ years of experience in network engineering, cybersecurity engineering, network security, or a related technical field.
Demonstrated hands‑on experience configuring and troubleshooting enterprise routers, switches, and firewalls.
Demonstrated experience with Cisco ACI and Software-Defined Networking (SDN).
Strong understanding of IP networking, routing, switching, subnetting, VLANs, and network segmentation.
Experience supporting complex lab, integration, test, development, or production network environments.
Experience working with virtualized infrastructure.
Strong troubleshooting and root‑cause analysis skills.
Ability to develop and maintain detailed technical and network documentation.
Preferred Qualifications
One or more of the following certifications:
Cisco ACI‑focused training/certification
Medical
Dental
Vision
Unlimited Vacation
Sick Leave
Paid Federal Holidays
Education and Certification Reimbursement Program
401(k) retirement plan with safe harbor employer match after 3 months
Prepaid Legal Plan and Identity Protection Plan available
Accident Insurance
Critical Illness Insurance
and Hospital Indemnity Insurance available.
EEOC Statement
IPSecure does not discriminate based on race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
IPSecure is an Equal Opportunity Absolutely Action Employer. EOE, Minorities, Females, Vet, Disabled, Sexual Orientation, Gender Identity or any other protected class. All qualified job seekers are encouraged to apply. IPSecure is committed to America's veterans by providing opportunities for them to continue contributing after service to our nation. We also work to provide reasonable accommodations to individuals with disabilities.
EEO Is The Law
Disability Accessibility Accommodation
If you have a disability and require assistance with our online application process, please tell us how we can help.
E-mail or call .
Note:
Pay Transparency - The company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.
#J-18808-Ljbffr
Worksite address
chicago, IL, 60290, US
Who can apply
Review the original listing for work authorization, qualifications and employer requirements.