Job ID :
9880
Company :
DC Government
Location :
WASHINGTON, DC
Type :
Contract
Duration :
4/03/18 + possible extensions
Salary :
open
Status :
Active
Openings :
1
Posted :
23 Mar 2017
Job Seekers, Please send resumes to resumes@hireitpeople.com
Required Skills - Senior Cyber Security Admin/Engineer,  VMWare Virtualization Technologies, Cisco ASA firewalls, VPN,  Imperva WAF. 

Years of experience: 5 + years’ experience.
Interviews: Either Webcam or in-person.

Job Description:

The Senior Cyber Security Admin/Engineer shall plan, design, implement and operate the IT Security architecture to protect the DCGOV IT infrastructure, and provide a secure method of accessing applications and the Internet.

The Senior Cyber Security Admin/Engineer will provide onsite and remote support to LAN Enclave Boundary Defense systems and programs, which include Firewalls (Check Point, Cisco ASA and Palo Alto Networks), Network Access Controls. (ForeScout), Proxy Systems (BlueCoat), Intrusion Detection Systems (SourceFire), Web Application Firewalls (Imperva), DDoS protection (Arbor Networks Pravail APS) and End Point protection (McAfee, Palo Alto Traps).

Provide support services to define security requirements, identify the appropriate configuration for each unique District environment, and perform tasks associated with the day-to-day operations and maintenance on installed Enclave Boundary Defense systems and applications, for District Distribution operation locations. Demonstrated knowledge and accomplishment in monitoring and analyzing various security system logs. In depth knowledge of Local and Wide Area Network (LAN & WAN) operations. Knowledge of and ability to troubleshoot Microsoft Windows platform, UNIX/Solaris, and Cisco routers and switches. Ability to formulate Security policy and manage Security configuration.

 

Specific Tasks

 

Analysis, design, configuration, implementation, documentation and operation of firewalls and other security controls which may include IPS, NAC, application and URL content filter and DDoS prevention devices.

Manage system deployments, upgrades, ongoing maintenance and operations.

Configuration and operation of security device authentication, management & logging platforms

Assist in requirement gathering related to implementation of security infrastructure technology solutions across enterprise and service provider networks.

Provide Tier3 support for NOC personnel troubleshooting network issues.

Provide advanced technical support on network firewall management projects and related security infrastructure.

Provide technical support to agencies and other IT personnel relating to security implementation, standards compliance, vulnerability reduction, and strategic security planning.

Identify, troubleshoot, and resolve complex network connectivity issues as well as advise on network security related issues. 

Provide occasional off-hours support for planned maintenance work and unplanned support issues.   May require on-site work at a data center during off-hours from time to time.

 

Experience and Skills

Specific knowledge, skills, and abilities required by the incumbent to successfully fulfill the Major Duties and perform the Tasks required for this position include:

 

Knowledge of network security architecture concepts, including topology, protocols, components, and principles (e.g., application of defense-in-depth).

Knowledge of defense-in-depth principles and network security architecture.

Knowledge of organization's enterprise information security architecture system.

Knowledge of the enterprise IT architecture

Knowledge of communication methods, principles, and concepts that support the network infrastructure

Knowledge of the organization’s enterprise IT goals and objectives

Skill in implementing the methods, standards, and approaches for describing, analyzing, and documenting an organization's enterprise IT architecture.

Skill in analyzing and securing an enterprise architecture.

Knowledge of engineering concepts.

Knowledge of system design tools, methods, and techniques, including automated systems analysis and design tools.

Skill in integrating and supporting information system security architecture.

 

Required Skills

•             Expert knowledge in Information Security best practices.

•             Network Routing, Switching, and Security Design.

•             Network and Application Firewall Packet Filtering technologies.

•             Virtual Private Networking (VPNs) Technologies.

•             Experience with Check Point firewalls, deployment and operation.

•             Experience with Cisco ASA firewalls, deployment and operations.

•             Experience with Palo Alto appliances, deployment and operations.

•             Experience with Imperva WAF.

•             Experience with ForeScout NAC.

•             Experience with McAfee ePO.

•             Experience with Arbor Networks Pravail APS appliances.

•             Experience with Gigamon Network Visibility solutions.

•             Experience with VMWare Virtualization Technologies.

•             Troubleshooting, Scanning & Analysis tools.

•             Networking and Network Operations.

 

Qualifications

•             Bachelor of Science in Electrical Engineering, Computer Science, Information Technology, or equivalent data security and networking experience required

•             Background Check.

•             Background check and credit check will be required.

 

Travel Requirements:

•             No travel anticipated