Senior Firewall Administrator

Clearance Level
Top Secret/SCI
Category
Cyber Security
Location
Tampa, Florida
Onsite Workplace
Key Skills For Success

Cisco Identity Services Engine (ISE)

Cyber Defense

Firewalls

REQ#: RQ182997
Public Trust: None
Requisition Type: Regular
Your Impact

Own your opportunity to work with the largest government agency in the nation. Make an impact by advancing the Department of Defense’s mission to keep our country safe and secure.

Job Description

Please take this opportunity to join one of GDIT’s fastest long-standing growing programs!  US Battlefield Information Collection and Exploitation System eXtended (US BICES-X) is a cutting-edge program supporting DoD intelligence information sharing on current and emerging global threats to mission and coalition partners and emerging nations. With an internationally dispersed team supporting each combatant command, the US BICES-X team is in direct support of the war fighter and their missions. We are seeking a creative and driven professional with a passion for solving real world issues on a cross-functional, fast paced team. 

Responsibilities:

  • Performs Defensive Cyber Operations (DCO) activities for a large Program; coordinates with government Program staff, USAF, and other government agencies to assist in the creation, dissemination, direction, and auditing of program policy, standards, and operating procedures.
  • This position will be working within our Defensive Cyber Operations-Infrastructure environment. The primary duties of this role include Implementation and Administration of Security Ops, utilizing Cisco ASA Firewalls, Cisco Firepower/Secure Firewall Next-Gen Firewalls & Next-Gen IPS, and Gigamon Traffic Visibility devices.
  • As a member of the DCO Firewall Team, supports the program with routine and often high-level troubleshooting for the enterprise network and all the systems, programs, and traffic that traverse the network. The enterprise network consists primarily of Cisco network infrastructure utilizing such technologies such as 802.1x/MAB Network Access (NAC), TACACS+, EIGRP/OSPF/BGP Routing, BFD, Site-to-Site VPNs, as well as various other Campus, WAN and Data Center network technologies.
  • Conduct network and system audits using Security Technical Implementation Guides (STIGs), Security Requirements Guides (SRGs), ACAS vulnerability scans, and DISA SCAP. Modify device configurations and practices to comply with all directives and mitigate findings for associated network operating systems and devices.
  • Uses defensive measures and information collected from a variety of sources to identify, analyze, and report events that occur or might occur within the network to protect information, information systems, and networks from threats.
  • Utilize available resources to conduct Cybersecurity activities, and report to senior GDIT and government personnel on overall program security posture.
  • Provides guidance and work leadership to less-experienced technical staff members.
  • Maintains current knowledge of relevant technology as assigned.
  • Participates in special projects as required.
     

Required Qualifications:

  • 5+ years of Firewall/IPS/Networking experience required.
  • Must possess and maintain a TS/SCI clearance.
  • Must meet DOD 8570.01M requirements for IAT Level II & CSSP-Infrastructure Support.
  • Requires CCNA or better certification for Firewall Administration.
  • BA/BS degree required or equivalent work experience.
  • Requires understanding of DOD RMF
     

Preferred Qualifications:

  • Experience operating and maintaining perimeter and/or data center firewalls on medium to large organizational networks (DoD preferred).
  • Strong background (at least CCNA/Net+ level) in general networking technology.
  • Proficiency with Next-Gen Firewalls/Next-Gen IPS (Cisco Firepower/Secure Firewall/Palo Alto).
  • Experience with IPS technology and signatures. SNORT experience preferred.
  • Experience with Gigamon Traffic Visibility devices and technology.
  • Experience/Familiarity with Splunk or similar Security Incident and Event Management (SIEM) solutions.
  • Experience/Familiarity with Linux operating system is a plus.
  • Experience/Familiarity with troubleshooting using packet captures and packet analysis (Wireshark) is a plus.
  • Experience/Familiarity with Cisco Identity Services Engine (ISE) is a plus.
  • The ability to work and set priorities on multiple projects/tasks at once and operate in a dynamic, fast-paced team-oriented environment.
  • The ability to adhere to team standards, guidelines, and standard operating procedures (SOPs).
  • The work is typically performed in an office environment, which requires normal safety precautions; work may require some physical effort in the handling of light materials, boxes, or equipment.
Work Requirements
Years of Experience

5 + years of related experience

* may vary based on technical training, certification(s), or degree

Certification

Travel Required

None

Citizenship

U.S. Citizenship Required

Salary and Benefit Information

The likely salary range for this position is $86,275 - $116,725. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
View information about benefits and our total rewards program.

About Our Work

We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.

GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.