Credence

Credence

Network Security Engineer

McLean, Virginia, United States · Contract

Sponsorship not specified$171k-$800kDetected 1 day ago
PythonBashAWSGCPAzureCloud PlatformsMachine LearningCybersecurityNetwork SecurityComplianceFirewallVPNCiscoBGP/OSPFNetwork MonitoringVoIPNetwork EngineeringLeadershipCollaboration

> stay_score

odds of building a lasting career here

47Sponsors, lottery-bound
Cap-exempt (no lottery)0
Sponsors this role35
Entry-level history0
PERM / green-card track0
Lottery odds (Level IV)94
Fits your clock70

Sponsors, but it's cap-subject — you still face the weighted lottery (~61% per draw at Level IV). Good if you win; have a cap-exempt backup on your list.

Lottery odds assume a STEM candidate.

Personalize to your clock →

> community_outcomes

No reports yet — be the first to help the next applicant.

About the role

  • We provide cutting-edge solutions, including AI/ML, secure cloud, digital transformation, and advanced intelligence capabilities, to the largest defense, health, and international development federal organizations.
  • 5000 Fastest Growing Private Companies list for the last 12 years.
  • Credence has an immediate opening for a Network Security Engineer to join our internal IT team.

Responsibilities

  • Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity.
  • Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government).
  • Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process.
  • Analyze and resolve escalated Tier 2+ network support tickets.
  • Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation.
  • Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions.
  • Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening).
  • Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed.
  • Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments.
  • Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles.

Requirements

  • Must be familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy.
  • Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff.
  • Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience).
  • Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role.
  • Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals.
  • Must have hands-on working experience with Palo Alto NGFW and FortiGate firewalls, along with Cisco or equivalent routing and switching technologies.
  • Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus).
  • Must be familiar with configuration management, monitoring, and documentation tools.
  • Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions.

Nice to have

  • Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent.
  • Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments
  • familiarity with compliance boundaries specific to Azure Gov and GCC High preferred.
  • Familiarity with VoIP, secure mail flow, and endpoint management integration.
  • Experience contributing to IT/security-related project initiatives.
  • Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments.
  • Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible.
  • Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP

Compensation

  • $130,000.00 to $155,000.00 annually.
  • Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications.

Company info

  • We are privately held, are repeatedly recognized as a top place to work, and have been on the Inc.

Visa & Work Authorization

  • Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience)

This listing is sourced directly from Credence's careers page and normalized into a canonical job model.