We are seeking an experienced Cisco ISE (Identity Services Engine) Network Access Control Engineer with strong hands-on expertise in designing, implementing, and supporting Cisco ISE solutions in enterprise environments. The ideal candidate will be responsible for managing access policies, troubleshooting NAC-related issues, and ensuring secure network authentication across wired, wireless, and VPN infrastructures
Key Responsibilities
Design, deploy, configure, and maintain Cisco ISE NAC solutions including:
oAuthentication (802.1X, MAB)
oAuthorization policies
oPolicy Sets, Profiling, Posture, Guest/BYOD, TACACS+
Integrate Cisco ISE with enterprise infrastructure such as:
oCisco switches, wireless controllers, firewalls
oActive Directory/LDAP, PKI/Certificates, MDM solutions
Implement and maintain Network Access Control across wired, wireless, and VPN environments.
Troubleshoot NAC-related issues involving endpoint onboarding, authentication failures, and profiling.
Monitor, tune, and optimize Cisco ISE performance and policy effectiveness.
Support upgrades, patching, backups, and lifecycle management of ISE nodes.
Collaborate with security, networking, and operations teams on cross-functional projects.
Produce documentation including architecture diagrams, policy matrices, runbooks, and operational procedures
Required Skills & Experience
3 7+ years of hands-on experience with Cisco ISE in medium-to-large enterprise environments.
Strong understanding of:
802.1X, EAP-TLS/PEAP
RADITACACS+
NAC concepts (posture, profiling, segmentation)
Hands-on experience with Cisco switching & wireless platforms:
Catalyst switches (access & distribution)
Cisco WLCs (wireless controllers)
Familiarity with:
Active Directory, PKI/Certificates
MDM/EMM solutions (Intune, MobileIron, etc.)
Firewall/segmentation integrations (Cisco, Palo Alto, Fortinet)
Strong troubleshooting and packet analysis skills (Wireshark, logs, debugs).
Ability to work independently with a customer-facing mindset.
Preferred Qualifications
Cisco certifications such as:
CCNP Security, CCIE Security, or Cisco ISE Specialist
Experience with:
pxGrid integrations
TrustSec/SGT-based segmentation
Multi-node ISE deployments (PAN/MNT/PSNs)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
- Dice Id: cxbcsi
- Position Id: Job43296
- Posted 30+ days ago