Credence
Network Security Engineer
McLean, Virginia, United States · Contract
Sponsorship not specified$171k-$800kDetected 1 day ago
PythonBashAWSGCPAzureCloud PlatformsMachine LearningCybersecurityNetwork SecurityComplianceFirewallVPNCiscoBGP/OSPFNetwork MonitoringVoIPNetwork EngineeringLeadershipCollaboration
> stay_score
odds of building a lasting career here
47Sponsors, lottery-bound
Cap-exempt (no lottery)0
Sponsors this role35
Entry-level history0
PERM / green-card track0
Lottery odds (Level IV)94
Fits your clock70
Sponsors, but it's cap-subject — you still face the weighted lottery (~61% per draw at Level IV). Good if you win; have a cap-exempt backup on your list.
Lottery odds assume a STEM candidate.
Personalize to your clock →> community_outcomes
No reports yet — be the first to help the next applicant.
About the role
- We provide cutting-edge solutions, including AI/ML, secure cloud, digital transformation, and advanced intelligence capabilities, to the largest defense, health, and international development federal organizations.
- 5000 Fastest Growing Private Companies list for the last 12 years.
- Credence has an immediate opening for a Network Security Engineer to join our internal IT team.
Responsibilities
- Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity.
- Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government).
- Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process.
- Analyze and resolve escalated Tier 2+ network support tickets.
- Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation.
- Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions.
- Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening).
- Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed.
- Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments.
- Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles.
Requirements
- Must be familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy.
- Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff.
- Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience).
- Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role.
- Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals.
- Must have hands-on working experience with Palo Alto NGFW and FortiGate firewalls, along with Cisco or equivalent routing and switching technologies.
- Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus).
- Must be familiar with configuration management, monitoring, and documentation tools.
- Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions.
Nice to have
- Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent.
- Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments
- familiarity with compliance boundaries specific to Azure Gov and GCC High preferred.
- Familiarity with VoIP, secure mail flow, and endpoint management integration.
- Experience contributing to IT/security-related project initiatives.
- Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments.
- Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible.
- Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP
Compensation
- $130,000.00 to $155,000.00 annually.
- Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications.
Company info
- We are privately held, are repeatedly recognized as a top place to work, and have been on the Inc.
Visa & Work Authorization
- Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience)
Apply directly at Credence →Create a free account for alerts like thisView Credence immigration profile
This listing is sourced directly from Credence's careers page and normalized into a canonical job model.