USMC Cybersecurity Network EngineerFirewall
Listed on 2026-07-19
-
IT/Tech
Cybersecurity, Network Security
Cybersecurity Network Engineer/Firewall
This full‑time, on‑site position provides knowledge, training, and support to assist the U.S. Marine Corps Public Works Department in the areas of FRCS, Cybersecurity, Assessment & Authorization, Authority To Operate/Connect, USMC Cloud, data center support, and FRCS virtualized environment.
Responsibilities- Configure, administer, and maintain Palo Alto firewalls, IPSec VPNs, and secure network communications supporting FRCS and IC/OT environments across enterprise and remote facilities.
- Implement, harden, and validate Linux (CentOS), Raspberry Pi, and networked devices by applying DISA STIGs, SRGs, FIPS 140‑2 requirements, and approved cybersecurity baselines.
- Design, deploy, and manage Public Key Infrastructure (PKI), digital certificates, encryption keys, and Hub‑and‑Spoke IPSec VPN tunnels to ensure secure authentication and encrypted communications.
- Monitor firewall operations, network traffic, security events, and system vulnerabilities; investigate incidents, implement corrective actions, and maintain continuous compliance with DoD, DoN, USMC, and RMF security requirements.
- Develop and maintain secure configuration guides, firewall rulesets, standard operating procedures, and technical documentation supporting ATO/ATC accreditation and lifecycle management.
- Collaborate with systems administrators, cybersecurity architects, and control systems engineers to integrate secure network solutions, automate security tasks through scripting, support enterprise databases and reporting tools, and troubleshoot complex FRCS network infrastructure.
- Current Secret clearance is required.
- Authorization to permanently work in the United States without sponsorship.
- Oral and written English fluency.
- State's Driver's License.
- Demonstrated knowledge in securing multiple operating systems and other networked devices using appropriate DISA STIGs and Structured Requirements Guide (SRG).
- Experience with creating and maintaining PKI for secure IPSec VPN connections.
- Experience with Palo Alto firewalls in an IC/OT environment.
- Expert in Raspberry Pi security and configuration.
- Knowledge of FIPS 140‑2 IPSec configurations including encryption types, key generation/storage, and configuring tunnels in a Hub‑and‑Spoke architecture.
- Experience with building, securing, and accrediting Linux servers and devices running CENTOS.
- Expertise writing policies and procedures for the secure configuration, installation, and management of firewalls and Encrypt/Decrypt devices on the MCEN in support of the IC/OT ATO/ATC.
- Professional
Certifications:
CompTIA Security+ or CompTIA CASP or Certified Information System Security Professional (CISSP) or VLP Certificate 100W.
- SEL certificates or training.
- Experience programming/scripting — Python, SQL, Bash, Java.
- Databases — SQL Server, PostgreSQL, No
SQL, MongoDB. - Power BI, advanced Microsoft Excel, AutoCAD expertise.
- Sec+, Net+ expertise.
We offer outstanding benefits including health, financial, and retirement benefits; paid leave; professional development; tuition assistance; and work‑life programs. Full‑time employees working at least 20 hours a week on a regular basis are eligible for benefits. Other offerings may be provided for employees not within this category.
Terrestris is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to age, race, color, religion, sex, national origin, sexual orientation, disability, or veteran status. Applicants must be authorized to work in the U.S.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).