Network Security Engineer (SASE/ZTNA)

Job ID Number
RQ215198
Falls Church, VA, US
Category
Information Technology
Employment Type
Full Time
Business Unit
GDIT

Responsibilities for this Position

Location: USA VA Falls Church
Full Part/Time: Full time
Job Req: RQ215198


Type of Requisition:
Regular

Clearance Level Must Currently Possess:
None

Clearance Level Must Be Able to Obtain:
None

Public Trust/Other Required:
NACI (T1)

Job Family:
Cyber and IT Risk Management

Job Qualifications:

Skills:
Netskope, Netskope Security Cloud, Zero Trust
Certifications:
None
Experience:
7 + years of related experience
US Citizenship Required:
No

Job Description:

Position Summary:

We are looking for a Network Security Engineer to support the advancement of our secure access infrastructure and play a key role in managing and modernizing our security operations. The individual will play a significant role in transitioning from a legacy Cisco Secure Client environment to a modern, cloud-native SASE (Secure Access Service Edge) architecture, with a strong focus on Zero Trust Network Access (ZTNA).

If you are a skilled network engineer with a passion for SASE, ZTNA, and automation, we encourage you to apply and help drive our organization's secure and efficient future.

Key Responsibilities:
  • Implementation & Maintenance:
    • Assist in deploying and managing SASE/SSE components, including Secure Web Gateways (SWG), Cloud Access Security Brokers (CASB), Firewall-as-a-Service (FWaaS), SD-WAN, and Zero Trust Network Access (ZTNA).
  • Modernizing Access:
    • Support the migration from legacy Cisco Secure Client environments to identity-centric Zero Trust models, ensuring a smooth transition and troubleshooting any challenges.
  • Automation & Integration:
    • Write and understand API scripts (e.g., Python, PowerShell, Bash) for automating manual tasks, pulling security telemetry, and integrating Netskope or other cloud-native services.
  • Advanced Network Troubleshooting:
    • Routing & Proxy: Diagnose and resolve traffic flow issues, PAC file misconfigurations, transparent proxies, and SSL inspection challenges.
    • Protocol Analysis: Utilize Wireshark or tcpdump to troubleshoot complex network paths, including latency, packet loss, and SSL/TLS issues.
    • Connectivity: Resolve issues involving VLANs, NAT, 802.1X supplicants, DNS, and SaaS/COTS applications.
    • SD-WAN Integration: Collaborate on integrating SD-WAN with SASE platforms for secure traffic steering and optimal performance.
  • Infrastructure Monitoring & Health:
    • Manage and monitor network health using SNMP, SIEM, Grafana, and syslog tools.
    • Troubleshoot network connectivity issues within Docker/Linux environments.
  • Cloud Security Support:
    • Maintain firewall policies across AWS, Azure, and GCP while managing API-based security integrations with products such as Netskope.

Required Qualifications:

Competency

Requirement

Experience

- 5+ years in Network/VPN Engineering.

- 2+ years hands-on experience with SASE/ZTNA platforms and Cloud services.

Critical Skills

- Strong critical thinking and problem-solving skills.

- Effective communication and teamwork abilities.

- Fast learner with the ability to adapt to evolving technologies.

Architecture

- Solid understanding of SD-WAN integration with SSE/SASE frameworks.

OS Proficiency

- Deep understanding of Windows 10/11 network behaviors and troubleshooting on client-side devices.

Routing & Proxy

- Strong knowledge of routing protocols, proxy (PAC file configuration), and architecture concepts.

VPN & NAC

- Hands-on experience with Cisco Secure Client (AnyConnect), firewalls, and 802.1X authentication protocols.

Monitoring & Ops

- Proficiency in tools such as SNMP, SIEM, Grafana, and Docker troubleshooting for monitoring operational health.

SASE/ZTNA

- Hands-on expertise with solutions, including Netskope, Zscaler, or Palo Alto Networks Prisma Access.

Programming Skills

- Strong experience with scripting and automation using Python, PowerShell, or Bash.

Preferred Qualifications:
  • Certifications such as CCNP Security, NSE4, Zscaler Certified Cloud Engineer, or equivalent are highly desirable.
  • Familiarity with secure DevOps principles and CI/CD in cloud environments.
  • Experience securing hybrid cloud workloads across AWS, Azure, and Google Cloud.

Job Benefits:
  • Competitive compensation and benefits package.
  • Opportunity to work on cutting-edge SASE/ZTNA solutions and architectures.
  • Collaborative environment fostering professional growth and innovation.


The likely salary range for this position is $81,600 - $110,400. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:
40

Travel Required:
None

Telecommuting Options:
Remote

Work Location:
USA VA Falls Church

Additional Work Locations:

Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.

Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans



PI282524763

Back To Search Results

GDIT supports and secures some of the most complex government, defense, and intelligence projects across the country.

Ask A Question

Copyright 2026 General Dynamics Corporation