Systems Technology Forum, Ltd. (STF) · 1 month ago
Network Defense and Firewall Security Engineer
Systems Technology Forum, Ltd. (STF) is an established industry partner committed to delivering high-quality systems engineering and technical support services. The Network Defense and Firewall Security Engineer is responsible for safeguarding enterprise networks, ensuring compliance with DoD cybersecurity policies, and collaborating with teams to maintain secure network infrastructures.
ConsultingIndustrial EngineeringInformation TechnologyIT Management
Responsibilities
Configure, operate, and maintain enterprise firewalls, intrusion detection/prevention systems (IDS/IPS), and other boundary-defense appliances (e.g., Cisco ASA, Palo Alto, Fortinet, Snort, Suricata)
Perform vulnerability scanning, security-event correlation, and analysis using ACAS, HBSS, and SIEM tools
Develop and maintain firewall and access-control policies that align with DoD RMF and STIG requirements
Conduct incident detection, response, and root-cause analysis to mitigate network threats or anomalies
Support Cross-Domain Solution (CDS) operations and data-transfer controls across classification levels
Coordinate with Network Engineering, System Administration, and Cybersecurity teams to ensure a consistent security posture across the enterprise
Document network-security configurations, change-control records, and security standard operating procedures (SOPs)
Participate in security assessments, inspections, and accreditation activities
Recommend network security improvements, automation, and modernization initiatives aligned with Zero Trust Architecture guidance
Maintain ASA, IPS/IDS, HBSS, and CDS solutions; perform vulnerability scanning and remediation; and support Zero Trust network segmentation and incident response in coordination with enterprise cyber teams
Qualification
Required
Five years experience required
Cisco ASA or Palo Alto experience
Experience with ACAS/HBSS tools
IAT Level II certification (Security +)
5+ years of network security engineering experience supporting DoD or Navy environments
Ability to work both independently and as part of a cross-functional team; ready for occasional travel or onsite support as required
Proven problem-solving abilities with strong analytical and troubleshooting skills
Excellent communication skills: able to explain technical issues to technical and non-technical stakeholders
Bachelor's degree in Cybersecurity, Computer Engineering, or related discipline (or equivalent technical experience)
IAT Level II certification (Security +)
Secret (eligible for TS/SCI)
Preferred
Experience supporting RMF accreditation or network ATO sustainment within NAVWAR or PEO C4I programs
Benefits
Medical Plans administered through United HealthCare
Vision and Dental Plan Benefits
401(k) Tax-Deferred Retirement Plan
Accidental Death and Dismemberment Insurance
Dependent / Medical Care Flexible Spending Account
Direct Deposit
Health and Welfare Medical
Holiday Leave
Industry Competitive Salaries
Life Insurance (basic and supplemental)
Paid Time Off / Annual Comprehensive Personal Leave
Performance / Award Bonuses
Professional Development Coursework
Technical Training
Tuition Assistance Program
TotalChoice™ Voluntary Benefits
STF Cares / Paid Time Off to Volunteer