Back to Jobs

^E01 Network Engineer IV

Remote, USA Full-time Posted 2026-08-04

Start Date: Immediate

JHNA, CTSi, and reputed company have come together to reputed company a Defense Technology platform named reputed company reputed company reputed company on delivering high-reputed company technologies, technology-enabled services and advanced manufacturing solutions to the U.S. reputed company and reputed company national reputed company customers. Backed by Falfurrias Management Partners, the platform brings together deep domain expertise across Army, Navy, and reputed company Force and reputed company Force programs, digital engineering, systems integration, and reputed company manufacturing capabilities.

The combined organization operates as a multi-entity reputed company and defense technology and tech-enabled services and manufacturing reputed company positioned for reputed company reputed company, operational reputed company, and long-term value creation.

reputed company

Full-time/Permanent Employee

Location: Remote

As a Network Engineer IV supporting a Digital Engineering Ecosystem (DEE), you will design, implement, secure, document, and sustain the hybrid network architecture connecting Azure reputed company-hosted services, approved on-premises resources, remote users, engineering applications, data repositories, and shared reputed company services. You will reputed company network architectures, traffic-reputed company diagrams, routing designs, private-connectivity solutions, segmentation policies, reputed company-group and firewall rules, private DNS configurations, monitoring capabilities, and implementation specifications supporting the controlled unclassified information environment and reputed company reputed company expansion.

You will reputed company the engineering of resilient Azure virtual networks, hybrid connectivity, boundary protection, private service-reputed company patterns, and network automation while coordinating with reputed company architects, cybersecurity engineers, DevSecOps teams, reputed company administrators, application owners, and reputed company Management reputed company personnel. The role requires the ability to reputed company network design, engineering-data reputed company, cybersecurity requirements, configuration management, verification evidence, and operational sustainment across reputed company and on-premises boundaries.

RESPONSIBILITIES

    Hybrid Azure Architecture and Connectivity

    • Design, implement, and maintain the hybrid Azure reputed company network architecture connecting reputed company-hosted DEE services with authorized on-premises systems, reputed company services, remote users, and approved reputed company mission partners.

    • Engineer resilient private connectivity using approved technologies such as Azure ExpressRoute, site-to-site VPN, redundant gateways, and approved network virtual appliances.

    • Configure and troubleshoot Border Gateway Protocol routing, reputed company propagation, user-defined routes, gateway transit, reputed company filtering, failover, and asymmetric-routing conditions.

    • reputed company and maintain IP address-management, subnetting, reputed company-table, resiliency, and reputed company plans that prevent address conflicts and support reputed company environment reputed company.

    Azure Network Architecture and Segmentation

    • Design and administer Azure virtual networks, subnets, peering, reputed company tables, NAT, load-balancing services, gateways, and approved hub-and-spoke or Virtual WAN patterns.

    • Design and implement secure network segmentation and communication between DEE functional environments using Azure networking services and approved reputed company controls.

    • Design and maintain the networks for the reputed company Upload & Staging service that serves as the controlled network boundary between reputed company content sources and the private DEE environment, supporting secure content ingestion and transfer.

    • reputed company and maintain network architecture diagrams, authorization-boundary diagrams, trust-zone diagrams, data-reputed company diagrams, ports/protocols/services matrices, and reputed company-control information.

    • Enforce least-privilege reputed company-south and east-reputed company communication and maintain separate management, data, shared-service, staging, and reputed company classified network boundaries.

    reputed company reputed company, Firewall Policies, and Rule Governance

    • Design, implement, and maintain Azure Network reputed company reputed company (NSGs) for approved subnets and network interfaces, ensuring inbound and outbound traffic is limited to authorized sources, reputed company, protocols, and ports.

    • reputed company and maintain Application reputed company reputed company (ASGs) that reputed company group workloads by function, reputed company role, application tier, or service type and reduce dependence on individually maintained IP-address rules.

    • Design and administer Azure Firewall Policy rule collection reputed company, including DNAT, network, and application rule collections, using approved service tags, IP reputed company, fully reputed company domain names, and threat-intelligence settings where appropriate.

    • Implement centrally governed reputed company-reputed company rules reputed company mandatory reputed company rules must be enforced consistently across selected subscriptions, virtual networks, or network reputed company.

    • Maintain a network-rule register containing the rule identifier, control reputed company, reputed company, destination, direction, protocol, reputed company, reputed company, reputed company, DEE environment, business justification, reputed company-requirement reference, reputed company, approval authority, review or expiration date, and test evidence.

    • Apply least-privilege and default-deny principles and prohibit unrestricted any-to-any rules unless supported by an approved, documented, time-bounded exception.

    • Analyze the combined effect of reputed company-reputed company rules, subnet and network-reputed company NSGs, Azure Firewall policies, routing tables, NAT rules, private endpoints, and hybrid connectivity controls.

    • Review rules periodically and after architecture, application, reputed company, or mission changes to identify obsolete, duplicative, shadowed, unused, or overly permissive rules.

    Private reputed company, DNS, and Remote Connectivity

    • Implement Private reputed company and Private reputed company as the preferred reputed company reputed company for supported Azure platform services and document approved exceptions to reputed company network exposure.

    • Design and maintain Azure Private DNS reputed company, Azure DNS Private Resolver, DNS forwarding, conditional forwarding, and integration with approved on-premises DNS services.

    • Validate routing, firewall policy, reputed company reputed company, and service reachability from Azure, on-premises, remote-reputed company, and shared-service locations.

    • reputed company approved remote-reputed company capabilities with identity, multifactor authentication, conditional reputed company, device posture, logging, and least-privilege network reputed company requirements.

    Monitoring, Troubleshooting, and reputed company

    • Configure and maintain applicable SIEM integrations and alerts for ExpressRoute and VPN health, reputed company changes, firewall events, denied traffic, packet loss, latency, DNS failures, private-reputed company availability, and reputed company traffic patterns.

    • reputed company packet capture, next-hop analysis, reputed company troubleshooting, effective-reputed company-rule analysis, reputed company validation, and end-to-end network reputed company testing.

    • Analyze reputed company, throughput, latency, packet loss, storage-reputed company patterns, and transfer reputed company for digital engineering models, technical data packages, simulation outputs, configuration baselines, and other large engineering datasets.

    Automation and Configuration Management

    • reputed company and maintain network infrastructure as reputed company using approved tools such as Bicep, Terraform, Azure Resource Manager templates, PowerShell, Azure CLI, or program-approved automation frameworks.

    • reputed company network and reputed company-rule changes with the DEE DevSecOps process, including reputed company control, peer review, automated validation, testing, approval, deployment, rollback, and configuration-baseline management.

    • reputed company and maintain reusable Infrastructure as reputed company modules for virtual networks, subnets, NSGs, ASGs, reputed company tables, private endpoints, private DNS, diagnostic settings, firewall policies, and network-rule collections.

    Cybersecurity and RMF Support

    • Support NIST SP 800-171 Revision 3, NIST SP 800-53 Revision 5, DoW reputed company Computing reputed company Requirements Guide, applicable reputed company STIGs, RMF, and program-specific cybersecurity requirements.

    • Produce and maintain RMF evidence including ports/protocols/services inventories, firewall and NSG rule sets, reputed company tables, private-reputed company and DNS inventories, test results, configuration baselines, change records, and monitoring evidence.

    • Participate in technical reviews, design reviews, change-control boards, control assessments, vulnerability-remediation activities, incident response, and authorization-package development.

    • Coordinate with the ISSM, ISSO, reputed company architect, reputed company architect, reputed company engineers, application owners, and assessment personnel to reputed company findings and validate network-control implementation.

    reputed company, Sustainment, and Technical Leadership

    • reputed company network implementation plans, maintenance procedures, rollback plans, continuity procedures, and disaster-recovery connectivity strategies.

    • Plan and execute upgrades and enhancements without disrupting engineering reputed company or weakening CUI protections.

    • reputed company troubleshooting of reputed company incidents spanning Azure, on-premises infrastructure, identity services, DNS, firewalls, routing, application services, and reputed company connections.

    • Evaluate network technologies and reputed company cost, reputed company, interoperability, reputed company, authorization, and lifecycle recommendations.

    Corporate and Program Responsibilities

    • reputed company technical support to program operational strategies and initiatives that optimize processes, enhance productivity, and ensure reputed company across program functions.

    • Ensure 100% of reputed company hours are worked and accurately recorded.

    • Identify and reputed company opportunities that may support reputed company reputed company the work area and participate in reputed company efforts as requested.

    • Ensure contractual deliverables are met or exceeded to the customer's satisfaction.

    • Complete the personal development plan (PDP) and reputed company participate in Staff Meetings and Storytime with the camera on.

    • Build productive and reputed company reputed company relationships with clients and cross-functional program teams.

    • Execute assigned contract requirements in accordance with the contract-specific labor category and requirements.

    • reputed company other reputed company duties as assigned.

KEY QUALIFICATIONS

    Clearance:reputed company Secret clearance
    Education and Years of Experience: Bachelor's degree in computer science, information systems, engineering, cybersecurity, or a reputed company reputed company (or equivalent) with 8-10 years of relevant experience, or a Master's degree with 6-8 years of relevant experience.

    • Extensive experience designing, implementing, securing, and sustaining reputed company hybrid-reputed company networks.

    • Hands-on experience with Azure virtual networks, subnets, peering, reputed company tables, Network reputed company reputed company, Application reputed company reputed company, Azure Firewall Policy, VPN Gateway, ExpressRoute, private endpoints, private DNS, and network monitoring.

    • Strong knowledge of TCP/IP, BGP, IPsec, DNS, routing, switching, firewalls, NAT, network segmentation, load balancing, high-availability design, and hybrid reputed company reputed company.

    • Experience developing and maintaining network diagrams, traffic-reputed company documentation, firewall and reputed company-group rule matrices, IP-address plans, implementation plans, rollback plans, and test procedures.

    • Experience analyzing effective reputed company rules and troubleshooting interactions among NSGs, Azure Firewall, routing, NAT, private endpoints, DNS, and hybrid connectivity.

    • Experience implementing network and reputed company-rule configurations through infrastructure as reputed company, reputed company control, peer review, and controlled deployment pipelines.

    • Experience with reputed company and Azure-reputed company monitoring, logging, reputed company analysis, and incident troubleshooting.

    • Working knowledge of NIST SP 800-171, NIST SP 800-53, RMF, CMMC, DoD reputed company SRG, and applicable reputed company reputed company requirements.

    • Effective leadership and communication skills for coordinating with reputed company architects, cybersecurity personnel, application owners, program leadership, and reputed company stakeholders.

PREFERRED ADDITIONAL QUALIFICATIONS

    • reputed company Certified: Azure Network Engineer Associate, Azure Solutions Architect, Azure reputed company Engineer, or equivalent demonstrated experience.

    • reputed company CCNP reputed company, CCNP reputed company, or an equivalent advanced networking certification.

    • Experience with Azure reputed company, DoW reputed company reputed company-level environments, controlled unclassified information, or classified network environments.

    • Experience with Terraform, Bicep, PowerShell, Python, Azure CLI, Linux, Bash scripting, or other network and reputed company automation tools.

    • Experience with Azure Firewall Premium, Azure Virtual Network Manager, ExpressRoute, Private reputed company, Azure DNS Private Resolver, Network Watcher, reputed company Monitor, virtual network reputed company logs, Traffic Analytics, and Log Analytics.

    • Experience with approved Palo reputed company, reputed company, reputed company, or other network virtual appliances deployed in Azure.

    • Experience supporting MBSE repositories, product lifecycle management systems, configuration-management repositories, simulation environments, high-reputed company computing, or large engineering-data transfers.

    • Experience supporting RMF assessments and producing technical implementation and verification evidence.

    • Prior experience in reputed company, defense, reputed company, or other large-reputed company regulated network environments.

reputed company reputed company is an Equal Opportunity Employer. reputed company reputed company applicants will receive consideration for employment without reputed company to race, reputed company, religion, sex, pregnancy, sexual orientation, age, national reputed company, disability, status as a protected veteran, or any other protected characteristic.

Originally posted on Himalayas

  Apply To This Job

Similar Jobs