Cisco ISE Network Engineer - primarily onsite

Hybrid in santa clara, CA, US • Posted 60+ days ago • Updated 11 hours ago
Contract W2
On-site
$75-100/hr
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Management
  • BYOD
  • TACACS+
  • LDAP
  • Network
  • Access Control
  • Virtual Private Network
  • Onboarding
  • Authentication
  • Backup Administration
  • Lifecycle Management
  • Collaboration
  • Computer Networking
  • Documentation
  • IEEE 802.1X
  • TLS
  • NAC
  • Switches
  • Distribution
  • Wireless Communication
  • Active Directory
  • PKI
  • Mobile Device Management
  • Master Data Management
  • Enterprise Mobility Management
  • MobileIron
  • Firewall
  • Palo Alto
  • Fortinet
  • Packet Analysis
  • Wireshark
  • Customer Facing
  • Cisco Certifications
  • Cisco
  • ISE

Summary

We are seeking an experienced Cisco ISE (Identity Services Engine) Network Access Control Engineer with strong hands-on expertise in designing, implementing, and supporting Cisco ISE solutions in enterprise environments. The ideal candidate will be responsible for managing access policies, troubleshooting NAC-related issues, and ensuring secure network authentication across wired, wireless, and VPN infrastructures

Key Responsibilities
Design, deploy, configure, and maintain Cisco ISE NAC solutions including:
oAuthentication (802.1X, MAB)
oAuthorization policies
oPolicy Sets, Profiling, Posture, Guest/BYOD, TACACS+
Integrate Cisco ISE with enterprise infrastructure such as:
oCisco switches, wireless controllers, firewalls
oActive Directory/LDAP, PKI/Certificates, MDM solutions
Implement and maintain Network Access Control across wired, wireless, and VPN environments.
Troubleshoot NAC-related issues involving endpoint onboarding, authentication failures, and profiling.
Monitor, tune, and optimize Cisco ISE performance and policy effectiveness.
Support upgrades, patching, backups, and lifecycle management of ISE nodes.
Collaborate with security, networking, and operations teams on cross-functional projects.
Produce documentation including architecture diagrams, policy matrices, runbooks, and operational procedures

Required Skills & Experience
3 7+ years of hands-on experience with Cisco ISE in medium-to-large enterprise environments.
Strong understanding of:
802.1X, EAP-TLS/PEAP
RADITACACS+
NAC concepts (posture, profiling, segmentation)
Hands-on experience with Cisco switching & wireless platforms:
Catalyst switches (access & distribution)
Cisco WLCs (wireless controllers)
Familiarity with:
Active Directory, PKI/Certificates
MDM/EMM solutions (Intune, MobileIron, etc.)
Firewall/segmentation integrations (Cisco, Palo Alto, Fortinet)
Strong troubleshooting and packet analysis skills (Wireshark, logs, debugs).
Ability to work independently with a customer-facing mindset.

Preferred Qualifications
Cisco certifications such as:
CCNP Security, CCIE Security, or Cisco ISE Specialist
Experience with:
pxGrid integrations
TrustSec/SGT-based segmentation
Multi-node ISE deployments (PAN/MNT/PSNs)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: cxbcsi
  • Position Id: Job43296
  • Posted 30+ days ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

San Jose, California

28d ago

Easy Apply

Contract

$30 - $45

Santa Clara, California

6d ago

Easy Apply

Contract, Third Party

$Negotiable

Santa Clara, California

14d ago

Easy Apply

Contract

60 - 65

San Jose, California

Today

Contract

80-90/hr

Search all similar jobs