Network Security Engineer (Engineer Network 4) - 16824

Date: Mar 30, 2024

Location: Norfolk, VA, Virginia, United States

Company: HII's Mission Technologies division

Requisition Number: 16824 

Required Travel: 0 - 10% 

Employment Type: Full Time/Salaried/Exempt

Security Clearance: Secret  

Level of Experience: Senior 

 

This opportunity resides with Live, Virtual, Constructive Solutions, a business group within HII’s Mission Technologies division. As a trusted partner to our military customers, we design, develop and operate systems that bring together service members from across the globe to help you train like you fight, because we understand that preparation requires full coordination—not readiness in piece parts.

 

Meet HII’s Mission Technologies Division
Our team of more than 7,000 professionals worldwide delivers all-domain expertise and advanced technologies in service of mission partners across the globe. Mission Technologies is leading the next evolution of national defense – the data evolution - by accelerating a breadth of national security solutions for government and commercial customers. Our capabilities range from C5ISR, AI and Big Data, cyber operations and synthetic training environments to fleet sustainment, environmental remediation and the largest family of unmanned underwater vehicles in every class. Find the role that’s right for you. Apply today. We look forward to meeting you.

Job Description

Mission Technologies, a division of Huntington Ingalls Industries, is looking for a qualified individual to fill the role of a Lead Network Engineer to support US Navy and US Air Force customers.  The Network Security Engineer in this position will be providing network security support to dedicated enterprise Navy operational and training networks, under the engineering oversight of the Naval Surface Warfare Center (NSWC), Corona Division.  The network engineer will be a member of a network engineering and operations team supporting enterprise Navy operational and training networks, distributed globally to hundreds of shore-based sites and ~120+ ships.  Engineer will be focused on network security of the Navy Enterprise Tactical Training Network (NETTN) enterprises, while potentially augmenting the Live Mission Operations Networks (LMON), for the United States Air Force.  This position will report to the Network Engineering Functional Lead and Deputy Functional Lead and will lead a team of network security engineers.

Essential Job Responsibilities

Lead and mentor a small team of network security specialists, as a subset of the Network Engineering Functional Area capabilities and area of responsibility.
•    Work to establish security standards for the enterprise, researching new technologies and develop migration paths for existing technologies to new solutions.
•    Present security and/or design change recommendations to the Core Architecture Group, within Network Engineering, for peer review as needed.  
•    Support the network security architecture for the NETTN to include support of Cisco Identity Services Engine (ISE), Cisco Firepower NGFW firewalls, Cisco Secure Firewall Management Center, RSA, AAA, 802.1x, various VPN deployments, STIG implementation and verification, other security requirements as needed, as well support of Command Cyber Readiness Inspections (CCRI), as needed.  
•    Lead Projects, including development of architectural and technical briefs or documents on the design, capabilities, and functional operation of networking technologies and projects for peer-review with Network Engineering and other Functional Areas.
•    Interface and liaison with government and contractor personnel, as well as the Alion/HII Engineering Program Management Office to coordinate, report, and maintain project tasking, requirements, status reporting, and problem resolution where needed.  
•    Draft of Bill of Materials (BOMs) for network device hardware and software procurement, based on the approved network portfolio, as well conduct analysis of the Fielding Division site survey reports for accurate network engineering planning.  
•    Support multiple network enclaves across different classification levels and augment ensuring continuous network connectivity is maintained to customers and sites.
•    Support site surveys when necessary.  
•    Support the physical installations and network configurations at local and remote CONUS sites and potentially OCONUS sites, along with the travel coordination necessary.  Installation will include network diagram creation according to standards, IP address allocation and planning, device software or IOS upgrades in compliance with approved IOS baselines, device configuration of all network platforms, network security compliance including implementation of DISA STIGs in order to maintain network accreditations, System Operational Verification Test (SOVT) completion on site to validate full functionality of the node(s), daily site installation status reporting, coordination with the circuits team, Fielding Functional Area, and other Functional areas as needed, and documentation verification upon node install completion.
•    Serve as security Subject Matter Expert for escalation of issues or problems that are discovered by the NOSC and O&M team that cannot be resolved, providing troubleshooting assistance of network connectivity over the WAN.  

Minimum Qualifications

•   9 years relevant experience with Bachelors in related field; 7 years relevant experience with Masters in related field; 4 years relevant experience with PhD or Juris Doctorate in related field; or High School Diploma or equivalent and 13 years relevant experience.

•    Strong experience in monitoring, maintaining, troubleshooting and configuring ASA and/or FirePOWER NGFW firewalls, Cisco Secure Firewall Management Center, and access control lists.  
•    Strong experience with Cisco Identity Services Engine (ISE), with RSA multi-factor authentication, with client-based VPN as well as various site-to-site VPN technologies, and understanding of AAA concepts.  
•    Ability to troubleshoot network issues at the protocol/packet level using sniffers, protocol analyzers, netflow, logging, etc.
•    Knowledge of Cisco Internetworking including IP addressing (subnets, CIDR), switching (VLANs, 802.1q, IGMP, etc..) and routing (OSPF, EIGRP, BGP, PIM, multicast, etc.) and Cisco IOS.  
•    Strong Experience with Department of Defense Security Technical Implementation Guidelines.  
•    Experience in installing and troubleshooting WAN and LAN network equipment for node installs, with NSA Type 1 KG cryptographic devices and keymat, particularly KG-175D/G/F KG devices, a plus.  
•    Background experience in a Network Operations Center (NOC) or Network Operations Security Center (NOSC) environment including help desk, customer communication, trouble ticketing, and issue resolution helpful.  
•    Experience in independent Project Management.  Experience with network and performance monitoring tools (Cisco IP SLA, SolarWinds, HP NA, NetFlow).  Experience in network security, tools, and technologies including firewalls, VRFs, 802,1x, and port-security.  
•    Familiarity with Cisco VoIP, including PoE switches and Call Manager or Unified Communications Manager a plus.
•    Must be willing to work periodic shifted schedules for engineering installations to include evening, night, and weekend.
•    Must be willing to travel CONUS and OCONUS (1-3 times per year).
•    Must be a US Citizen, possess a current or able to obtain a Secret security clearance. 

•    CompTIA Security+ Certification and Cisco Certified CyberOps Associate Certification required.

Preferred Requirements

•    CASP+ or CISSP a plus.
•    CCNP Security Certification a plus.
•    Candidates who do not currently have the one or both certifications may still be considered and will either need to obtain the certification prior to employment OR for the right candidate, within 90 days from start of employment.
 

Why HII
We build the world’s most powerful, survivable naval ships and defense technology solutions that safeguard our seas, sky, land, space and cyber. Our diverse workforce includes skilled tradespeople; artificial intelligence, machine learning (AI/ML) experts; engineers; technologists; scientists; logistics experts; and business administration professionals.

 

Recognized as one of America’s top large company employers, we are a values and ethics driven organization that puts people’s safety and well-being first. Regardless of your role or where you serve, at HII, you’ll find a supportive and welcoming environment, competitive benefits, and valuable educational and training programs for continual career growth at every stage of your career.

 

Together we are working to ensure a future where everyone can be free and thrive.
Today’s challenges are bigger than ever, and the nation needs the best of us. It’s why we’re focused on hiring, developing and nurturing our diversity. We believe that diversity among our workforce strengthens the organization, stimulates creativity, promotes the exchange of ideas and enriches the work lives of all our employees. 

 

All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, physical or mental disability, age, or veteran status or any other basis protected by federal, state, or local law.

 

Do You Need Assistance? 
If you need a reasonable accommodation for any part of the employment process, please send an e-mail to buildyourcareer@hii-co.com and let us know the nature of your request and your contact information. Reasonable accommodations are considered on a case-by-case basis. Please note that only those inquiries concerning a request for reasonable accommodation will be responded to from this email address. Additionally, you may also call 1-844-849-8463 for assistance. Press #3 for HII Technical Solutions.