Description
Description
SAIC is seeking a highly motivated F5 Network Cloud Computing Engineer with Palo Alto experience to join our Cloud One team Government A1 Enclave by Cloud One project. The Lead Network Engineer will provide comprehensive network administration, security, stability, and troubleshooting.
The Air Force A1 DTA Program is an existing global, interconnected, virtualized, hybrid IT infrastructure that hosts mission systems, applications, and data in support of DoD Services and Agencies.
This position is 100% remote but highly interactive.
Job Responsibilities:
- Monitor and work trouble tickets daily as necessary.
- Provide All network administration/security/stability/troubleshooting to include design/implementation/maintaining of:
- Big-IP F5 Web Application Firewalls (WAFs).
- Big-IP F5 Virtual interface.
- internal and public facing network IP's.
- AWS network design.
- AWS routing tables.
- AWS Security groups.
- AWS network Access control list.
- AWS various gateways.
- Update and provide A1VDC and Application PPSMs.
- Primary focal point between DISA SCCA (Secure Cloud Compute Architecture) and A1VDC for all network related issues.
- Design and implement network architectures including WAFs and network IPs.
- Manage AWS networking components such as routing tables, security groups, access control lists, and gateways.
- Serve as the primary liaison between DISA SCCA and A1VDC for network related issues.
- Ensure that the cloud network responds to customer and project expectations.
- Resolve any network issues.
Qualifications
Required Clearance:
- Secret clearance.
- US citizenship required.
Required Certification:
- Security + Certification or higher DoD IAT Level II (DoD 8140 previously 8570).
- Palo Alto Networks Certified Network Security Engineer (PCNSE) highly desired.
Required Education and Experience:
- Bachelor's and fourteen (14) year or more experience; Masters and twelve (12) years or more experience; PhD or JD and nine (9) years or more experience.
- Additional years of experience may be substituted in lieu of degree.
Required Skills:
- Technical expertise in Palo Alto network:
- Experience with AWS/Azure cloud-based deployments.
- Automation tools: Python, Ansible, Terraform.
- Network Routing.
- TCP/IP.
- SSL/TLS decryption (visibility for security policy and logging).
- Strong knowledge of networking, routing protocols, VLANs, NAT, APNs.
- Deploying experience in an AWS/Azure cloud environment.
- Security automation and threat prevention using Best Practices.
- Hands-on experience designing, implementing, problem resolution and monitoring AWS GOV cloud network tools:
- F5 BIGIP:
- LTM(Local Traffic Manager).
- APM (Access Policy Manager).
- ASM (Application Security Manager).
- F5 BIGIP:
- Security automation and threat prevention using Best Practices.
- AWS Console:
- VPC, Routing tables, Direct Connect gateways, Peering Connections, Security groups, Network ACL, Cloud Watch, Cloud Trail.
- Windows and RHEL operating systems.
- Create and maintain technical documentation.
- Multi-factor authentication to AWS, Azure.
Desired Qualifications:
- Design of highly available/high performance/highly scalable redundant networks and ISP management.
- IPv6 design and deployment at the enterprise and data center.
- Developing automation scripts using Python, Ansible, or Terraform for network configuration and policy enforcement application profiles.
- Implement Zero Trust Security policies within ACI and ensure compliance with industry standards.
- Use APIC, SNMP, Syslog, and telemetry tools for proactive monitoring and performance tuning.
- Experience designing and troubleshooting Layer 2/3 networking architectures and understanding of internetworking routing protocols and technologies (TCP/IP, VPLS, DMVPN, EIGRP, BGP, OSPF, VRRP, HSRP, NHRP).
- Experience with network security best practices, and technologies including, but not limited to, SSH, IPSec, RADIUS, TACACS, firewall policies, and 802.1.
Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.
Apply on company website