Browse
···
Log in / Register

Active Directory Engineer - Active TS/SCI with CI Poly

ENS Solutions, LLC

Annapolis Junction, MD, USA

Favourites
Share

Description

As a Systems Engineer supporting the Government, you will be a part of a team charged with engineering IDAM technologies such as digital identities, Virtual Directory, PKI, Access Control, and more to ensure integrity and confidentiality of critical client systems. In this role, a typical day may include: Planning, conducting, and overseeing the technical aspects of projects Coordinating the efforts of technical support staff in the performance of assigned projects aligned with the RMF process for obtaining ATO's in the customer environment Applying advanced methods, theories, and research techniques in the investigation and solution of complex system requirements and problems. Developing training tools and documentation; overseeing implementation of same Providing technical consultation on current and proposed systems to other organizations and clients Assisting in the planning and performing of analytical research, design development, and other assignments in conformance with design, engineering and customer specifications Serving as a technical consultant on current and proposed systems to the client which may require after hours/on-call support towards mission success Requirements Active TS/SCI clearance and ability to obtain and maintain a CI poly. Must meet DoD 8570 IAT Level II requirements including one of the following: Security+ CE, CND, SSCP, GSEC, GICSP, CySA+, or CCNA Security. 10 years of relevant experience or an equivalent combination of education (BA/BS) and years of experience. Expert level troubleshooting skills with Active Directory, Azure AD, Group Policies including Advanced group policy manager, DNS, PKI, Microsoft PowerShell, Windows Server versions up to 2019 Ability to quickly get up to speed on complex topologies and interdependencies across a wide range of technologies, most specifically: 2012 or later forest/domains and complex Active Roles administration and sync service Experience with architecting and engineering enterprise level solutions. Advanced analytical and creative problem-solving skills for creation and testing of software systems and maintenance of same Ability to work with little supervision in high stress / high visibility environments with time sensitive requirements. Ability to work independently and as part of a team. Ability to take direction and retain information Desired: Knowledge in One Identity Active Roles Server and Sync Server, Thycotic Secret Server, Microsoft FIM/MIM, SailPoint, and Radiant Logic FID Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers’ Compensation Relocation Assistance

Source:  workable View Original Post

Location
Annapolis Junction, MD, USA
Show Map

workable

You may also like

Avint
Network Engineer (Dragos Experience)
Camp Lejeune, NC 28547, USA
Avint LLC is seeking a dedicated and technically skilled Mid-Level Network Engineer for an on-site position in Camp Lejeune, NC. In this critical role, you will support and maintain enterprise network infrastructure in a mission-driven environment, ensuring secure, reliable, and high-performance connectivity across systems and sites. You’ll be responsible for configuring and monitoring routers, switches, firewalls, and load balancers, performing network troubleshooting, and supporting both LAN and WAN environments. Experience with network technologies such as Cisco, Juniper, or Palo Alto; protocols including TCP/IP, BGP, OSPF, and VPNs; and tools for monitoring and diagnostics is essential. Familiarity with network security best practices—including DISA STIGs, vulnerability mitigation, and support for accreditation and compliance processes—is highly desirable. This position involves close collaboration with cybersecurity, systems, and operations teams to ensure robust and compliant network operations in support of organizational goals. Location: 100% on-site in Camp Lejeune, NC **THIS POSITION REQUIRES AT LEAST 1 YEAR OF EXPERIENCE WITH THE DRAGOS PLATFORM** Responsibilities: Support network infrastructure integration with Nutanix Hyperconverged environments, ensuring reliable connectivity for Regional FRCS Monitoring systems and virtualized platforms. Provide network configuration and support for the deployment of the Cyber Monitoring Services OT Monitoring Platform, including secure communications between Central Store, Site Store, and distributed Sensors. Collaborate with database and systems teams to ensure secure, efficient network access to Microsoft SQL Server resources in support of operational requirements. Coordinate network-related tasks within the Marine Corps Certification and Accreditation Support Tool (MCCAST V2) to support system authorization and security posture tracking. Design, maintain, and troubleshoot network infrastructure in a DoD environment, including secure LAN/WAN connectivity and mission-critical data transmission. Understand and support network requirements related to high voltage systems, water/wastewater facilities, and mechanical infrastructure to ensure operational continuity. Apply knowledge of TCP/IP, VLANs, ACLs, and routing protocols to secure and optimize Unix and Windows system communications across enterprise and field environments. Assist in the implementation and network integration of Host-Based Security System (HBSS) for monitoring and enforcing endpoint security policies. Support network connectivity and security for Automated Metering Infrastructure (AMI) and energy management systems. Ensure network design and data flows comply with USMC DEVSECOPS policy, particularly as it applies to ICS/OT environments. Collaborate with ICS teams to ensure proper network integration and secure communications for platforms such as Metasys, Niagara AX, Alerton, Honeywell, and Rockwell. Configure and troubleshoot communication protocols including BACnet/MSTP, BACnet/IP, N2, LON, and SCADA systems used in high voltage and water/wastewater operations. Coordinate with system teams to plan and validate secure network paths for software updates, patch deployments, and version control in ICS/OT environments. Support network requirements and data security measures in alignment with the USMC Assessment and Authorization (A&A) process, including RMF and CNSSI 1253. Collaborate in tracking and resolving network-related findings in POA&Ms to maintain security compliance. Apply DISA STIGs to network devices, ensuring secure baseline configurations and audit readiness. Interpret and implement NIST 800-53 and DoDI 8510.01 standards to guide secure network architecture and operations. Conduct network vulnerability and risk assessments, implementing mitigation strategies in coordination with cybersecurity teams. Support integration and monitoring of Dragos platform data over network infrastructure to detect and respond to OT cyber threats. Requirements Experience: Minimum 3 years of relevant IT/system administration experience supporting virtualized environments, networks, and OT systems. Minimum 1 year of experience using the Dragos Platform. Education: Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field. Security Clearance: Active Secret clearance required. Certifications: One or more of the following certifications (or equivalent) are highly desired: Cyber Monitoring Services Platform Certified User Certification ITIL v4 Foundations ICS-VLP Certificate (Courses 210W-01 through 210W-10) Risk Management Framework (RMF) Training – USMC specific Cisco Certified Entry Networking Technician (CCENT) or Cisco Certified Network Associate (CCNA) CompTIA Security+ (Sec+) Certified Information Systems Security Professional (CISSP) Microsoft Certifications (Server, Azure, or related) Benefits Joining Avint is a win-win proposition! You will feel the personal touch of a small business and receive BIG business benefits. From competitive salaries, full health, and generous PTO and Federal Holidays. Additionally, we encourage every Avint employee to further their professional development. To assist you in achieving your goals, we offer reimbursement for courses, exams, and tuition. Interested in a class, conference, program, or degree? Avint will invest in YOU and your professional development! Avint is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity and Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. The salary range for this position is: $90,000-$100,000
$90,000-100,000
Delaware Nation Industries
Network Engineer
San Antonio, TX, USA
DNI/Creative IT Solutions is providing all systems administration and network engineering skill sets for the US Army's global email systems for the Defense Information Systems Agency (DISA). Install, configure, administer and maintain currently supported and subsequent versions of network offerings within a commercial cloud tenant construct. Create Standard Operating Procedures (SOP), and Tactics, Techniques, and Procedures (TTP), The contractor shall ensure all documents and reports are written and formatted properly. Monitor tenant performance utilizing cloud based monitoring and alerting software. Ensures that all projects they are supporting have the latest updates on and that government leadership is tracking any priority efforts that are not expected to meet mission timelines. The contract should be prepared to participate in high level briefings for workload they are supporting. All contractor actions must be done in accordance with official government guidelines to maintain compliance with all government policies and process. The contractor shall deliver Quality Assurance and Service Level Management project reports using Government owned data to perform and provide weekly, monthly, quarterly, and annual Quality Assurance (QA) reports. The contractor shall ensure projects follow government processes for assigning, categorizing, and documenting from start to completion. Maintain the current dashboard and implement necessary changes to report up to date metrics and analyses. The contractor shall have privileged access to a DISA information system, which shall have an ability and authority to control and change program files, and other users’ access to data. Evaluate and engineer highly available network solutions based upon customers’ requirements which are capable of meeting strict uptime requirements. Use the established change management process to provide changes in response to policies, security, or customer requests. Ensure compliance with Joint Task Force (JTF) directives for ports and protocols. Supported functions include but are not limited to installing, configuring, monitoring, operating, upgrading, patching, technical refresh, troubleshooting, deep packet inspection, network packet capture, quality assurance, and Return Material Authorization (RMA) network communications equipment. Ensure the migration and implementation efforts conform to the physical and logical infrastructure and security configurations (such as Access Control List (ACLs) and deny-by-default). Implementation and configurations of hardware or software devices and network functions to support new services and applications. Compliance with security controls, including, but not strictly limited to, providing confidentiality, integrity, and availability as well as government compliance with Security Technical Implementation Guidelines (STIG), Zero Trust and Defense in depth. Interact/coordinate with service desks, technical staff and customers to resolve technical problems or provide information. Perform backups IAW applicable regulations, policies and guidance and ensure backup failures are properly addressed. Provide callback and after-hours support. Work non-prime shift Requirements 5+ years of network engineering experience An active Secret security clearance is REQUIRED. Security+ certification is REQUIRED. Benefits This is a full time/permanent position with excellent benefits, and outstanding compensation including full medical, dental, 401K vacation and holiday pay. AAP/EEO Statement:  DNI complies with all federal, state and local laws designed to protect employees and job applicants from discrimination based on race, religion, color, sex, parental status, national origin, age, disability, genetic information, military service, or other non-merit-based factors.  Other Duties:  Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. 
Cookie
Cookie Settings
Our Apps
Download
Download on the
APP Store
Download
Get it on
Google Play
© 2025 Servanan International Pte. Ltd.