×
Register Here to Apply for Jobs or Post Jobs. X

Cisco ISE Engineer

Job in Reston, Fairfax County, Virginia, 22090, USA
Listing for: Koitecc Solutions
Full Time position
Listed on 2026-06-04
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 80000 - 100000 USD Yearly USD 80000.00 100000.00 YEAR
Job Description & How to Apply Below

The Cisco ISE Engineer supports the SEC ISS contract by designing and operating Cisco Identity Services Engine (ISE) capabilities that control secure access across SEC enterprise networks. This role implements and maintains AAA services, integrates ISE with Microsoft Active Directory and Microsoft Entra , and enforces policy-based access for wired and wireless environments. The position advances the PWS zero‑trust direction by strengthening identity‑centric controls, reducing legacy authentication exposure, and supporting compliance with federal cybersecurity requirements.

The engineer also supports incident resolution, operational monitoring, and SLA‑driven service delivery for mission‑critical SEC IT services.

Primary Responsibilities
  • ISE Solution Architecture and Deployment
    • Design, implement, and administer Cisco ISE solutions to enforce network access control across SEC‑managed enterprise environments.
    • Build and maintain ISE policy sets, authentication/authorization rules, and enforcement workflows for user and device onboarding.
    • Plan and execute ISE platform upgrades, patching, and optimization activities to maintain performance, resiliency, and service continuity.
    • Coordinate ISE architecture and implementation activities with network engineering teams supporting WAN, LAN, and WLAN services.
  • AAA and Identity Integration
    • Configure and manage AAA services using RADIUS and TACACS+ for secure access to network infrastructure and services.
    • Integrate Cisco ISE with Microsoft Active Directory and Microsoft Entra  (Azure AD) to support centralized identity lifecycle and access governance.
    • Implement 802.1X authentication methods and NAC controls for wired and wireless endpoint access.
    • Align role‑based access outcomes with enterprise identity and access management practices, including policy consistency and periodic access review support.
  • Zero‑Trust and Security Compliance Enforcement
    • Translate zero‑trust requirements into ISE enforcement policies for identity, device trust, and session‑based access decisions.
    • Support implementation of SEC‑directed control enforcement activities, including secure authentication methods and protection of data in transit.
    • Maintain configuration documentation, SOP inputs, and control evidence to support FISMA‑aligned audits and ongoing authorization requirements.
    • Partner with cybersecurity and governance stakeholders to remediate access‑control gaps and strengthen enterprise security posture.
  • Operations, Troubleshooting, and Service Delivery
    • Troubleshoot complex authentication, authorization, and network access issues across Cisco switching, routing, and wireless infrastructure.
    • Monitor ISE health, logs, and policy outcomes; proactively identify trends and implement corrective actions to reduce recurring incidents.
    • Participate in incident response and escalation workflows, including cross‑team coordination for high‑priority operational events.
    • Support SLA‑focused reporting by capturing service data, documenting outcomes, and contributing to continuous service improvement.
Required Qualifications
  • USA Citizenship required.
  • Ability to obtain and maintain SEC Public Trust (or higher if required) clearance.
  • Bachelor’s degree in a relevant field (e.g., Information Technology, Cybersecurity, Computer Science, Engineering).
  • 5–7 years of experience in network engineering and/or security roles in enterprise environments.
  • 3+ years of hands‑on experience implementing and managing Cisco ISE in production environments.
  • Experience integrating identity and access controls with Microsoft Active Directory and Microsoft Entra (Azure AD).
  • Technical skills:
    • Cisco ISE design, deployment, policy management, and troubleshooting.
    • Strong knowledge of network protocols, including AAA protocols such as RADIUS and TACACS+, and 802.1X/NAC controls.
    • Wired and wireless network security best practices across Cisco network devices.
    • Enterprise security frameworks and zero‑trust access‑control principles.
    • Incident analysis, root‑cause troubleshooting, and operational documentation for SLA‑driven support environments.
Preferred Qualifications
  • Experience supporting federal IT environments with FISMA/NIST‑aligned security and…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary