Назад
Company hidden
11 дней назад

Network Security Engineer (Cisco ISE)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Network Security Engineer (Cisco ISE): Modernizing network access control by migrating from ForeScout CounterACT to Cisco ISE with an accent on AAA services, 802.1X authentication, identity integrations, and endpoint posture controls. Focus on designing and troubleshooting policy sets, integrating Active Directory and wireless controllers, and strengthening Zero Trust access across clustered Cisco ISE infrastructure.

Location: On-site 5 days a week in Suitland, Maryland, United States

Company

hirify.global supports government agencies with digital transformation, network operations, and mission-focused technology services.

What you will do

  • Configure, maintain, and troubleshoot Cisco ISE for RADIUS, TACACS+, wired and wireless 802.1X, device administration, profiling, posture, and compliance policies.
  • Support the migration from ForeScout CounterACT to Cisco ISE by translating legacy policies, device groups, and access rules into ISE policy sets.
  • Maintain Cisco ISE on two clustered Cisco SNS 3715 appliances and support high availability, upgrades, health checks, and policy enforcement.
  • Integrate Cisco ISE with Active Directory, LDAP, Cisco 9800 Wireless LAN Controllers, PKI, and certificate-based authentication workflows.
  • Monitor security events, perform root-cause analysis, resolve authentication and access issues, and document changes through engineering procedures and SOPs.
  • Collaborate with engineering, operations, and compliance teams while mentoring junior staff and supporting Zero Trust modernization.

Requirements

  • Bachelor’s degree in Information Technology, Cybersecurity, or a related field.
  • Eight years of experience in a large government organization, including five years in technical leadership.
  • At least four years of experience implementing and troubleshooting Cisco ISE.
  • Four years of experience supporting identity-centric or Zero Trust architectures, including segmentation, certificate management, and endpoint posture controls.
  • Experience with RADIUS, TACACS+, 802.1X/EAP, EAP-TLS, PKI, Active Directory, LDAP, wireless access workflows, and Cisco 9800 Wireless LAN Controllers.
  • Must work on-site five days per week in Suitland, Maryland.

Nice to have

  • Cisco CCNP Security, Cisco ISE Specialist, or a similar identity or security certification.

Culture & Benefits

  • Health, life, short-term disability, and long-term disability insurance options.
  • Paid time off and holiday pay.
  • Retirement benefits and learning and development opportunities.
  • Culture centered on collaboration, transparency, continuous improvement, mutual respect, and mission focus.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →