Network Security Engineer

Suitland-Silver Hill, MD, US • Posted 1 day ago • Updated 1 day ago
Full Time
On-site
Depends on Experience
Company Branding Image
Fitment

Dice Job Match Score™

⭐ Evaluating experience...

Job Details

Skills

  • "Cisco ISE",(RADIUS OR TACACS+),"802.1X",(EAP-TLS OR PKI),(NAC OR Network Access Control),(AAA OR Authentication Authorization Accounting),(Active Directory OR LDAP),(Cisco SNS-3715 OR SNS3715),(Cisco 9800 OR WLC),(Posture OR Profiling),"Zero Trust"

Summary

 Who we are:

Tria Federal delivers digital services and technology solutions that support the health and safety of veterans, service members and civilians. For two decades, federal agencies have relied on Tria companies to advance their critical missions and modernize their systems, so that they can uphold their commitment to the American people. Today, we are pushing the boundaries of possibility through partnerships and investments in artificial intelligence and emerging technologies, developing solutions for the biggest challenges that government will face tomorrow.

We are proud to employ and support military veterans who bring mission-first mindset, technical expertise, and leadership qualities that strengthen our work. Veterans, transitioning service members, and military spouses are strongly encouraged to apply.

 

 

Network Security Engineer (Cisco ISE)

Tria Federal is seeking a Network Security Engineer to join the Network Engineering Team. In this role, you will collaborate to support a large-scale routing and switching infrastructure, contributing to general network tier support while focusing primarily on the deployment and management of the agency’s new network access control platform. The engineer will assist with environment wide policy configuration, handling authentication, device administration, and posture checks for users and endpoints.

This role supports modernization efforts by improving authentication processes and strengthening identity-based access controls. The engineer will troubleshoot connectivity issues, refine policies, and ensure secure, reliable access as the organization completes its system transition.

Basic Requirements

  • Experience providing hands-on engineering and troubleshooting support for enterprise Cisco switches and routers within a large-scale network infrastructure
  • Responsible for designing, configuring, monitoring, and troubleshooting Cisco ISE as a NAC/NAM platform, including TACACS+/RADIUS services, device administration policies, and wired/wireless 802.1X authentication.
  • Experience working with Cisco ISE deployed on Cisco SNS‑3715 appliances, preferably in a two‑node clustered, high‑availability setup.
  • Experience providing general wireless network support, including basic troubleshooting, controller interactions, and wireless access workflows.
  • Hands‑on experience integrating Cisco ISE with Active Directory (AD) and LDAP, including identity lookups, group‑based policy decisions, and directory‑based authentication.
  • Eight (8) years of experience in a large government organization with five (5) years in technical leadership, including four (4) years implementing, managing and troubleshooting Cisco ISE with expertise in:
  • Authentication and authorization policies (RADIUS/TACACS+)
  • 1X/EAP methods for wireless and wired access
  • Device profiling, posture checks, and endpoint compliance
  • Certificate‑based authentication (EAP‑TLS) and PKI integration
  • AAA integrations for switches, appliances, firewalls, and wireless controllers
  • Experience supporting Cisco ISE integrations with Cisco 9800 Wireless LAN Controllers, including guest/registration page redirection and wireless onboarding.
  • Experience migrating legacy NAC, RADIUS, or device authentication systems into Cisco ISE while aligning with Zero Trust principles.
  • Four (4) years of experience supporting identity‑centric or Zero Trust architectures with strong knowledge of segmentation, certificate management, and endpoint posture controls.
  • Solid understanding of telecommunications, network security, and Zero Trust best practices.
  • Strong communication skills with the ability to explain Cisco ISE, NAC/NAM, and AAA concepts to both technical and non‑technical audiences.
  • Bachelor’s degree in Information Technology, Cybersecurity, or a related field.
  • Preferred certifications: Cisco CCNP Security, Cisco ISE Specialist, or similar identity/security certifications.

Responsibilities                              

  • Support a large-scale routing and switching infrastructure by assisting the team with the operation and maintenance of Cisco Catalyst 9300, 3850, 2960 and Nexus 2k, 5k, 7k series switches.
  • Troubleshoot and resolve Cisco ISE issues across RADIUS, TACACS+, 802.1X, device administration, and endpoint authentication.
  • Deploy, configure, and maintain Cisco ISE running on two clustered Cisco SNS‑3715 appliances, ensuring high availability and consistent policy enforcement.
  • Provide general wireless support, including basic troubleshooting, wireless access workflows, and coordination with wireless infrastructure teams.
  • Configure and support Cisco ISE integrations with Cisco 9800 WLCs, including guest/registration portals, wireless onboarding, and policy‑driven access control.
  • Integrate and maintain Cisco ISE with Active Directory (AD) and LDAP, including identity lookups, group‑based authorization, and directory‑based authentication workflows.
  • Deploy, configure, and maintain Cisco ISE components, including:
  • Policy Sets, Authorization Profiles, and Authentication Rules
  • TACACS+ device administration
  • 1X for wired and wireless networks
  • Profiling, posture, and compliance policies
  • Certificate‑based authentication and PKI integrations
  • Monitor security events using ISE logs, syslog, and performing root cause analysis for authentication and access issues.
  • Manage identity integrations, enforce security policies, and tune configurations to support Zero Trust and improve user experience.
  • Perform routine health checks, upgrades, migrations, and document changes through SOPs, engineering designs, and implementation procedures.
  • Work closely with engineering, operations, and compliance teams while mentoring junior staff and contributing to knowledge sharing efforts.

ABILITY TO OBTAIN A DOL PUBLIC TRUST CLEARANCE (Must be a U.S. Citizen or Green Card Holder residing in the United States for more than 3.5 years  

Work Location: 100% ON-SITE SUPPORT in Suitland, MD 

 

 

Why Tria?
What defines the Tria brand is more than just our dedication to excellence in our craft; it’s our incredible team of dedicated, talented, and passionate people that make Tria so exceptional. As people powering possible, we are all partners in our team’s shared success.


As a company that cares about people, we seek to cultivate a culture in which all can thrive personally and professionally. We offer a top-tier benefits package to invest in your physical, mental, and financial health and wellness so that you can be your best self - at work and in life. At Tria, we are growth-minded, entrepreneurial in spirit, and committed to fostering a culture of inclusion and opportunity for all. Whatever your background, your role, your department, or stage in your professional journey, here you will have opportunities to learn new skills, seize new challenges, and advance your career as we grow. 

 

California Consumer Privacy Act (CCPA)

We are committed to protecting your privacy. As part of our compliance with the California Consumer Privacy Act (CCPA), we want to inform you about how we collect, use, and protect your personal information during the job application process. For more details, please review https://www.oag.ca.gov/privacy/ccpa.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91140539
  • Position Id: 4489385008
  • Posted 1 day ago

Company Info

About Tria Federal

Tria Federal (Tria) is the premier middle-market IT and Advisory services provider delivering digital transformation solutions to Civilian, Defense, and Intelligence agencies across the federal sector. With a future-forward vision and a mission rooted in service, we bridge capability gaps to help government agencies work faster, grow smarter, and stay nimble in the face of change. Our capabilities are far-reaching and expansive, spanning the lifecycle of digital transformation from end to end. Regardless of agency, whatever the mission, at any stage of the modernization journey, we supercharge organizational governance, business processes, and data-driven decision-making to transform the business of government.

We maintain a Prime seat across multiple lanes on our legacy multiple-award procurement vehicles - to include Best-in-Class Government-Wide Acquisition Contracts (GWACs), GSA Federal Schedules, and Agency-Specific Indefinite Delivery/ Indefinite Quantity (IDIQ) and Blanket Purchase Agreements (BPAs)

About_Company_OneAbout_Company_Two
Contact the job poster
Kirolos Milad

Kirolos Milad

Manager, Talent Acquisition @ Tria Federal
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

It looks like there aren't any Similar Jobs for this job yet.

Search all similar jobs