TalentWerx

TalentWerx

TalentWerx is a staffing and recruiting company that provides fast, accurate, and innovative solutions to help organizations find the right people to join their teams. We aim to solve the existing problems with traditional talent acquisition firms, suc...

Professional Services
11-50
Founded 2018

Description

  • Design, implement, maintain, and document the hybrid Azure Government network architecture connecting cloud services, on-premises systems, remote users, and external mission partners.
  • Engineer private connectivity using Azure ExpressRoute, site-to-site VPN, redundant gateways, and approved network virtual appliances.
  • Configure and troubleshoot BGP routing, route propagation, user-defined routes, gateway transit, route filtering, failover, and asymmetric routing.
  • Design and administer Azure virtual networks, subnets, peering, route tables, NAT, load balancing, gateways, and hub-and-spoke or Virtual WAN patterns.
  • Implement secure network segmentation and manage Cloud Upload & Staging networks as the controlled boundary for secure content ingestion.
  • Develop and maintain network diagrams, data-flow diagrams, trust-zone diagrams, interface-control information, and related documentation.
  • Design and maintain NSGs, ASGs, Azure Firewall policies, security-admin rules, and rule governance artifacts.
  • Implement Private Endpoint, Private Link, Private DNS, DNS forwarding, and remote-access connectivity controls.
  • Configure monitoring, SIEM integrations, alerts, and performance troubleshooting for network health, latency, DNS, traffic, and connectivity issues.
  • Develop infrastructure as code and integrate network changes into DevSecOps, source control, testing, approval, deployment, and rollback processes.

Requirements

  • Active Secret clearance.
  • Bachelor's degree in computer science, information systems, engineering, cybersecurity, or related field with 8-10 years of relevant experience, or a master's degree with 6-8 years of relevant experience.
  • Extensive experience designing, implementing, securing, and sustaining enterprise hybrid-cloud networks.
  • Hands-on experience with Azure virtual networks, subnets, peering, route tables, NSGs, ASGs, Azure Firewall Policy, VPN Gateway, ExpressRoute, private endpoints, private DNS, and network monitoring.
  • Strong knowledge of TCP/IP, BGP, IPsec, DNS, routing, switching, firewalls, NAT, network segmentation, load balancing, high availability, and hybrid name resolution.
  • Experience developing network diagrams, traffic-flow documentation, firewall and security-group rule matrices, IP plans, implementation plans, rollback plans, and test procedures.
  • Experience analyzing security rules and troubleshooting interactions among NSGs, Azure Firewall, routing, NAT, private endpoints, DNS, and hybrid connectivity.
  • Experience implementing network and security-rule configurations through infrastructure as code, source control, peer review, and controlled deployment pipelines.
  • Working knowledge of NIST SP 800-171, NIST SP 800-53, RMF, CMMC, DoD Cloud SRG, and DISA STIG requirements.
  • Preferred: Microsoft Azure Network Engineer Associate, Azure Solutions Architect, Azure Security Engineer, or equivalent experience; CCNP Enterprise or CCNP Security; experience with Azure Government, DoW cloud environments, CUI, classified networks, Terraform, Bicep, PowerShell, Python, Azure CLI, Linux, Bash, Azure Firewall Premium, Azure Virtual Network Manager, Network Watcher, Connection Monitor, Log Analytics, Palo Alto, Cisco, Fortinet, MBSE, PLM, HPC, or RMF evidence production.

Benefits

  • Remote full-time/permanent role.
  • Immediate start date.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

MEDR Threat Engineer US work hours

Proficio 51-250 Professional Services

Proficio is seeking a Managed EDR Threat Engineer to guide the evolution of its managed endpoint detection, response, visibility, and prevention services while collaborating with engineering, SOC, MDR, sales, and customer teams.

Carbon Black Cybersecurity Linux macOS Network Security PowerShell Python
1 day, 23 hours ago

DevSecOps and Security Compliance Engineer

K.L. Scott & Associates 11-50 Professional Services

K.L. Scott & Associates, LLC is hiring a DevSecOps and Security Compliance Engineer to integrate security into SAP delivery and operations for federal clients while improving deployment controls, addressing vulnerabilities, and maintaining authorization evidence.

CI/CD DevSecOps SAP Secrets Management
1 day, 23 hours ago

Senior Defensive Content Engineer

Hack The Box 51-250 Internet Software & Services

Hack The Box is seeking a Senior Defensive Content Engineer to create and validate cyber ranges, threat-hunting labs, and defensive learning experiences that strengthen enterprise cybersecurity capabilities.

Ansible Linux SIEM Terraform Wireshark
1 day, 23 hours ago

Senior Security Engineer, Customer Transparency

Tanium 1K-5K Internet Software & Services

Tanium is hiring a Senior Security Engineer for its Customer Transparency team to improve visibility into Tanium’s security posture, manage vulnerability disclosure, and address customer security needs.

CI/CD Encryption Git
2 days, 22 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers