Network Security Engineer, Cisco ISE
Role description
This person will be reconfiguring and installing Cisco switches in efforts toward implementing a new Cisco ISE infrastructure to optimize network access management throughout the organization. Conduct testing to ensure that switches are working as expected during and after the changes while working with the design engineers on tasks to accomplish the project goals. Analyze virtual and physical network IT infrastructures (IPS, network access controls, and security infrastructure). The ideal person can prepare technical procedures, standards & network schematics interfacing with stakeholders and technical audiences in an international environment.
Primary Duties & Responsibilities:
- Work with upper management and technical security engineering team to assess current Cisco network access management, switches and network infrastructure.
- Identify technical project needs designing technical procedures, standards & network schematics/design for Network Access Control infrastructure (Cisco ISE).
- Modify existing or create new posture policies, authorization profiles, and client provisioning rules, defining the conditions for device access based on security posture checks.
- Update the relevant network access policies to apply these changes across NAC network.
- Plan and implement enterprise networks and related hardware and software in addition to establishing security (firewalls, intrusion detection), connectivity and access parameters.
- Offer technical troubleshooting and support engineering in addition to supporting the evaluation of technical requirements for projects to determine the impact to the infrastructure including equipment redundancy and capacity requirements.
- Configure and maintain virtual network and update in CMDB, diagrams, and network security devices information about third party connections while collaborating with technical teams to take corrective action when necessary.
- Escalate incidents within company and/or with external technical resources when necessary.
- Prepare coverage reports for management review and recognize threats and intrusions by identifying abnormalities and reporting violations.
Education & Qualifications:
- Bachelor’s degree or experience in relevant field/equivalent work experience
- Must be bilingual (written and verbal communication) in both English/Spanish
- 2-3+ years’ experience configuring Cisco switches and Network Access Control (NAC) Infrastructure
- Previous experience configuring and managing Cisco ISE, security devices, and switches
- Knowledge and previous experience with vulnerability and hardening guide compliance
- Previous experience working with remote teams
Desire Requirements (Not Mandatory):
- Cisco Certifications (CCSA or CCSE) are highly preferred
- Previous experience configuring proxy technologies (Blue Coat, Cisco IronPort/Umbrella, Zscaler) is a plus