×
Register Here to Apply for Jobs or Post Jobs. X

Network Security Engineer

Job in Irving, Dallas County, Texas, 75084, USA
Listing for: Randstad Digital
Full Time position
Listed on 2026-06-30
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Network Security, Information Security
Job Description & How to Apply Below
job summary:

Design, implement, and enforce comprehensive network and security architectures for mission-critical radio, data, and monitoring systems. Develop and maintain security standards and technical controls directly aligned with NIST SP 800-171 and CMMC Level 2 requirements to ensure protection of Controlled Unclassified Information (CUI). Collaborate with network and system architects to embed security throughout the full system lifecycle, from design and segmentation to identity management, remote access, and incident response.

location:
Irving, Texas

job type:
Permanent

salary: $1,300, per year

work hours: 8am to 5pm

education:
Bachelors

responsibilities:

Security Architecture & Compliance Define, document, and maintain comprehensive network security standards mapped to NIST SP 800-171 and CMMC Level 2 controls.

Collaborate with architects to incorporate security in every design, emphasizing segmentation and isolation of CUI assets.

Design, test, and maintain network-level controls supporting Identification & Authentication (IA) and System & Communications Protection (SC) families.

Contribute technical content to the System Security Plan (SSP), Plan of Action and Milestones (POA&M), and compliance evidence packages.

Enforce configuration management and formal change-control processes to maintain baseline compliance.

Perform security impact assessments on proposed design changes, ensuring traceability to CMMC requirements.

Identity & Access Management (IAM) Design and deploy centralized LDAP for directory services and user authentication.

Design, implement, and administer TACACS+ for AAA control across routers, switches, and radio controllers.

Configure and manage Multi-Factor Authentication (MFA) for privileged and remote accounts (CMMC IA.L2-3.5.3).

Ensure unique identification and authentication of all users and devices (CMMC IA.L2-3.5.1).

Integrate IAM systems with centralized logging and SIEM tools to support audit and traceability requirements.

Network Security Services Implementation Design, configure, and deploy Remote Access VPNs and IPSec site-to-site tunnels for secure connectivity, ensuring encryption of CUI in transit.

Configure, deploy, and manage Next-Generation Firewalls (NGFWs) to enforce zone-based policies and control traffic between segmented network zones.

Implement and tune Intrusion Prevention Systems (IPS) to detect and block malicious traffic in real time.

Run regular vulnerability assessments and penetration tests; prioritize remediation actions that impact CMMC compliance.

Integrate firewall, VPN, and IPS logs with centralized SIEM systems; conduct Root Cause Analysis (RCA) for network or IAM-related security incidents.

Act as Tier 2/Tier 3 escalation for the Security Operations Center (SOC).

CUI Data Handling & Protection Ensure CUI is encrypted in transit and at rest using approved algorithms and key management standards.

Implement network segmentation, VLAN isolation, and access-controlled zones to separate CUI from non-CUI traffic.

Configure syslog, NTP, SNMPv3, and TLS securely for audit traceability and time-correlated event tracking.

Enforce least-privilege access for CUI repositories and verify logging for all privileged actions.

Conduct quarterly configuration audits and evidence collection in support of the corporate CMMC compliance program.

Operational Security & Monitoring Maintain configuration baselines and perform periodic compliance checks on all network-security devices.

Automate log collection and configuration integrity validation using secure scripting methods.

Maintain network documentation, change-management records, and segmentation diagrams.

Provide support for field deployments, system upgrades, and on-site network hardening activities.

Assist with tabletop exercises, incident response drills, and after-action reviews.

Collaboration & Continuous Improvement Partner with network and system engineering teams to embed secure-by-design principles into radio network infrastructure and analyzer platforms.

Mentor junior engineers through scheduled security and compliance training sessions.

Coordinate with software and system teams to ensure servers, databases, and applications meet hardened configuration baselines.

Contribute to internal Security Program Initiative, ensuring continuous improvement and measurable compliance progress.

Recommend new tools, automation frameworks, and monitoring solutions to improve efficiency and visibility.

qualifications:

- Bachelor's Degree in Cybersecurity, Computer Science, Engineering Technology, or a related discipline;
Master's preferred.

- Cisco CCNP Security or equivalent required.

- CISSP, CompTIA CySA+, or CISM preferred.

- Experience implementing security controls aligned to NIST SP 800-171 and CMMC Level 2.

- Hands-on experience with firewalls, VPNs, IPS, AAA, and logging systems.

- Familiarity with Linux security hardening, log analysis, and automation scripting (Python, Bash, Ansible).

- Experience conducting packet analysis and forensics (Wireshark,…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary