CronJobs

security jobs

SITEC - Network Security Engineer - MacDill AFB

Peraton · MacDill AFB, FL, US

onsiteunknown$104,000–$166,000Posted Sep 9, 2026CiscoFirepower Threat Defense (FTD)Firewall Management Center (FMC)Intrusion Prevention Systems (IPS)Intrusion Detection Systems (IDS)Cisco FirepowerPythonAnsible

Apply on the employer site

About this role

## Responsibilities - Support the Special Operations Forces Information Technology Enterprise Contract (SITEC) 3 Enterprise Operations and Maintenance (EOM) Task Order (TO) at **MacDill AFB (Florida)**. - Serve as the **primary technical authority** for the design, implementation, and management of the enterprise **network security boundary**, with a focus on **Next-Generation Firewalls (NGFW)** and **Intrusion Prevention Systems (IPS)**. - Engineer, configure, and optimize **Cisco Firewall Management Center (FMC)** and **Cisco Firepower Threat Defense (FTD)** to enforce robust security postures. - Collaborate with Network Infrastructure teams and the **Zero Trust (ZT) working group** to translate security architectures into: - Firewall rules - Micro-segmentation boundaries - Threat prevention policies - Lead deployment, configuration, and continuous optimization of **Cisco FTD** and **FMC** platforms. - Enforce Zero Trust policy by translating architectural blueprints into **ACLs**, **security zones**, and **micro-segmentation** policies. - Design, deploy, and tune **IPS/IDS** policies, **SSL/TLS decryption** rules, and **URL filtering** in Cisco FMC. - Provide technical escort and security review for network changes to ensure routing/switching/transport updates conform to security boundaries and policies. - Maintain a firewall rule lifecycle process by removing stale/redundant rules and ensuring compliance with **DoD STIGs** and security directives. - Coordinate with the SOC for incident response actions such as emergency block-lists, quarantine policies, and custom intrusion signatures. - Follow formal **change control** and **configuration management** processes; maintain version-controlled, documented records of firewall and security policy changes. ## Qualifications **Required** - **12+ years** with HS degree; **10+ years** with AS/AA; **8+ years** with BS/BA; **6+ years** with MS/MA; **3+ years** with PhD. - **DoW TS/SCI clearance required**. - **DoD 8570 IAT II certification** and **CCNA**. - Must be **DoD 8140 compliant** under **Work Role Code 521 – Cyber Defense Infrastructure Support Specialist (Intermediate level or higher)**. **Desired** - Experience in **DoW/DoD enterprise network environments**. - Active high-level vendor certifications (e.g., **CCNP** or **CCIE**). - Experience with **SDN / SD-WAN** (e.g., **Cisco ACI**, **Viptela**). - Familiarity with **network automation / infrastructure-as-code** (e.g., **Python, Ansible, REST APIs**). - Experience working with a **Security Operations Center (SOC)**. ## Company / Pay - **Peraton** is a national security company and enterprise IT provider. - **Target salary range:** **$104,000 – $166,000** (varies by experience, education, location, and contract/business factors). Overtime, shift differential, and a discretionary bonus may apply depending on the role. *EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.*

Listing freshness

CronJobs last confirmed this listing 1d ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.

Browse all software engineering jobs →

Follow fresh jobs in Discord