Que Technology Group, Inc. is seeking a network engineer to support Cyber Security Defensive Operations with configuration of Cyber Range consisting of 10s to 100s of VMs, physical and virtual network devices, and firewalls utilizing Infrastructure as Code (IaC), Terraform, Ansible, VMWare and other automation technologies.
You will work closely with Hunt, Red and Blue Team operators to understand their desired configurations for the Cyber Security Range to support training, force on force exercises, and mimicking of customer infrastructures.
You will be part of a larger development team supporting the Cyber Security Directorate's Defensive Network Operations organization with direct mission support activities when not working on the Cyber Range.
Job responsibilities include, but are not limited to:
- Providing Tier 1/2/3 technical services to perform daily monitoring and troubleshooting of the Innovation and Training Center components
- Provide maintenance and support for active usage of the Innovation and Training Center, this includes building physical and virtual instances for lab, exercise, training, and other use, tearing down the instances after use is completed, and preparing Innovation and Training Center for the next use;
- End user support and troubleshooting during all uses of the Innovationa and Training Center;
- Provide installation, upgrade, maintenance and support, patching, troublshooting and removal of Innovation and Training Center hardware including servers, switches, routers, and firewalls;
- Configure and administer next generation firewalls (e.g. Palo Alto, McAfee) and suggest new rules, routines, and indicators of compromise.
- Lead network engineering efforts through subject matte expertise and understanding of the system;
- Build and maintain complex Linux systems hardened to meet operational standards;
- Provide installation, upgrade, maintenance and support, patching, troubleshooting and removal of all Innovation and Training Center software;
- Enable orchestration and automation of the Innovation and Training Center utilizing automation systems such as Puppet, Kickstart, Packer, Terraform, Ansible and Bash/Python scripts;
- Implement a health and status monitoring solution.
- Setup and assist with Microsoft Environments (e.g. Group Policy, Active Directory, etc.), container technologies like Docker and Gluster/libvirt Linux knowledge/abililities and similar technologies.
Required Qualifications:
- Bachelor's degree plus 8-years of relevant experience, or Master's degree plus 6-years of relevant experience or an Associate's degree plus 10-years of relevant experience or high school diploma/GED plus 12-years of relevant experience may be considered.
- Degree must be in Network Engineering, Systems Engineering, Information Technology, or related field.
- Relevant experience must be in computer or information systems design/development, programming, information/cyber/network security, vulnerability analysis, penetration testing, computer forensics, information assurance and/or systems engineering. Additionally, must have experience in network or system administration.
- Current experience with management of virtualized infrastructure, to include multi-node and multi-site networks.
- Experience with networking and virtualization.
- Experience with building and maintaining networks consisting of physical and virtual equipment.
- Experience with standard network services – DNS, DHCP, NTP, Syslog, etc.
- Experience configuring and administering next-generation firewalls (e.g. Palo Alto, McAfee).
- Experience with Infrastructure as Code (IaC).
- Experience with scripting languages such as Bash, PowerShell, Batch, and Python.
- Experience with Terraform, Ansible, Puppet, Kickstart, Packer.
- Experience with cybersecurity tools, network configurations, and operational tools
- Knowledge of operating systems, including Windows and Linux, application behaviors, and network traffic analysis
- Experience in a fast-paced environment and working with flexible customer requirements
Preferred Qualifications:
- Experience operating in an agile development environment and DevOps
- Experience with container technologies such as Kubernetes and Docker
- Knowledge of penetration testing or red team operations
- Experience utilizing and development with Splunk
- Experience with Nutanix
- Defensive Cyber Security Operations
Security Clearance:
- Active TS/SCI with Polygraph.
BENEFITS:
- Competitive salary
- Company Medical/Dental/Vision plans – Company paid
- Short-term Disability, Long-term disability and Life Insurance – Company paid
- Business/ First Class travel upgrade for 7 hour or longer flights & company card will be provided for expenses
- Vacation / Personal days granted at 25 days per year
- Paid Federal Holidays – 11 days
- $5,000 Annual Professional Development Fund plus 40 paid hours if in class
- 401K with 6% company match; all contributions are immediately vested by Employee
- Employee will be paid a bonus of $10,000 per employee hired based on their referral
- Up to 3 paid Code Red days due to customer closure
Que Technology Group, Inc., is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, disability status, genetic information, protected veteran status, or any other characteristic protected by law.