About the role
What will you do at ECS Tech Inc?
Everforth ECS is seeking an Network & Security Infrastructure Engineer to work
in our Washington, DC office / remote. The role is contingent upon additional
funding.
We are seeking an experienced and technically versatile Network & Security
Infrastructure Engineer to take on a high-impact, dual-function role within a
large and complex enterprise environment. This position sits at the crossroads
of network infrastructure, virtual environment engineering, and security
operations, and it requires genuine depth across all three, not surface-level
familiarity.
The near-term priority for this role is significant: you will lead a major
re-architecture of the organization's VMware ESXi virtual environment to support
comprehensive firewall and VLAN implementations that deliver proper network
segmentation across the enterprise. This is a foundational infrastructure
initiative with direct security implications, and it will require someone who
can think and execute at the architectural level within a virtualized
environment.
Beyond that primary objective, this role carries ongoing responsibility across
two organizational teams. You will provide dedicated firewall support to the
Architecture and Engineering division, administering the enterprise's internal
and cloud-facing firewall environments. On the networking side, you will support
the security operations division, monitoring and maintaining a Cisco-based
network infrastructure and an Aruba wireless environment from a security-first
perspective.
This role is built for someone who can operate with equal confidence in a
virtual environment console, a firewall policy manager, and a network operations
context.
Salary Range: $120,000 - $130,000
General Description of Benefits [https://ecstech.com/careers/benefits]
Qualifications
- Virtual Environment & Network Segmentation
- * Hands-on experience designing and re-architecting VMware ESXi environments in
- an enterprise setting
- * Ability to plan and implement VLAN segmentation strategies within virtualized
- infrastructure to support firewall enforcement and proper traffic isolation
- * Experience configuring virtual switches, distributed switches, and virtual
- port groups in support of security segmentation objectives
- * Familiarity with NSX or equivalent software-defined networking (SDN)
- platforms as they relate to micro-segmentation and east-west traffic control
- * Ability to document virtual network architecture clearly and thoroughly,
- including design decisions, configurations, and future-state plans
- Firewall Administration
- * Hands-on experience configuring and administering enterprise-class firewall
- technologies, with specific experience on Check Point and Palo Alto platforms
- * Ability to implement new firewall architectures, upgrades, and feature
- rollouts as directed
- * Experience administering firewall policy including updates, upgrades, policy
- administration, and validation
- * Proficiency managing and tuning software blades and associated security
- features such as IPS, URL filtering, Application Control, antivirus, and
- advanced malware detection
- * Ability to review and implement changes consistent with existing firewall
- policies while maintaining thorough, up-to-date documentation
- * Strong knowledge of firewall rules, security policies, and security
- operations within a large enterprise environment
- * Willingness to work outside of normal business hours when required to support
- outage resolution or planned maintenance
- Network Infrastructure & Security
- * Strong hands-on experience with Cisco network infrastructure including
- routing, switching, and network security configurations in an enterprise
- setting
- * Experience supporting and securing Aruba wireless access point environments
- * Solid understanding of core networking protocols including TCP/IP, BGP, OSPF,
- VLANs, and VPNs
- * Ability to monitor and analyze network architecture, communication flows,
- policies, and protocols from a cybersecurity perspective
- * Experience identifying and isolating network-based security issues quickly
- during incidents and outages
- * Familiarity with network access control concepts and how they integrate with
- broader security operations
- Collaboration & Documentation
- * Ability to collaborate across teams including cybersecurity, systems
- administration, and technology support partners
- * Experience supporting security continuous monitoring efforts such as risk
- assessments, vulnerability identification, and patch coordination
- * Ability to create and maintain clear, accurate documentation for virtual,
- network, and firewall configurations, procedures, and troubleshooting steps
- * Comfortable communicating technical findings and infrastructure risk clearly
- to both technical peers and senior leadership
- A minimum of 5+ years of experience in network security engineering or a closely
- related infrastructure discipline is required, with direct hands-on experience
- on both Check Point and Palo Alto platforms strongly preferred. Candidates who
- bring demonstrated experience with VMware ESXi re-architecture and VLAN
- segmentation design — in addition to enterprise networking and firewall
- administration — will be given strong preference over candidates with depth in
- only one or two of these areas.
Which skills does this role require?
Make your next move
Build a shortlist and prepare
Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.
- Build a focused shortlist before you applyCompare role requirements with your experience and give each application a clear reason.
- Platform engineering jobsCompare current openings and review what to look for in this role.
- Practice explaining your experience in an interviewRehearse your answers before meeting the hiring team.
Other roles to compare
Review the responsibilities and requirements before adding an opening to your shortlist.
Senior Infrastructure Security Engineer
A-Gas · Rhome, Texas, United States
Senior Infrastructure Engineer - Data Protection
USAA · Tampa, Florida, United States
AI Infrastructure AI/ML Engineer (100 % remote) (m/f/d)
EWOR · Capon Bridge, West Virginia, United States
Machine Learning Infrastructure Engineer
Bright Vision Technologies · Hillsboro, Oregon, United States
Neural Data Infrastructure Engineer
Blackrock Neurotech · Salt Lake City, Utah, United States
Senior Infrastructure Engineer - Data Center
Wells Fargo · Sterling, Virginia, United States
Role information can change. Confirm current details on the original application page.
