Haystack
← Back to Jobs
Engineering
BH

Configuration Management Engineer with Security Clearance

Beacon HillNorfolk, VA🇺🇸United StatesPosted Sep 30, 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Norfolk, VA, United States
Posted
22 hours ago

Job Description

Key Responsibilities
1. Configuration Lifecycle & Baseline Management

  • Establish official baselines for all production network node types across the global footprint.
  • Perform drift detection to continuously audit real-time configurations against approved gold standards.
  • Manage configuration backups and rollback procedures to ensure rapid disaster recovery.
  • Enforce compliance standards by executing automated remediation on non-compliant infrastructure nodes.
2. NMS Tool Administration & Optimization
  • NMS platforms (Cisco Catalyst Center, OpenText NNMi, OpenText Network Automation and others) for inventory discovery and configuration storage.
  • Integrate Source-of-Truth systems (Nautobot) with the NMS to keep network topology and IPAM data synchronized.
  • Configure alert thresholds within the NMS to flag unauthorized manual configuration changes instantly.
  • Generate compliance reports for leadership and audit teams regarding network patch levels and vulnerabilities.
3. Network Configuration Automation & CI/CD Pipeline Engineering
  • Write automation playbooks using tools like Ansible, Terraform, and Python to push global changes safely.
  • Maintain Git repositories for the network infrastructure code, managing pull requests and peer configuration reviews.
  • Build CI/CD pipelines (GitLab CI, Jenkins) to validate, lint, and dry-run network changes before deployment.
  • Develop automated validation workflows to check network health before and after a change window.
4. Change Control & Third-Tier Support
  • Review high-impact modifications to ensure alignment with standard architecture templates.
  • Provide Tier-3 troubleshooting for complex network outages caused by configuration discrepancies or failed software upgrades.
  • Coordinate mass patching campaigns to fix vendor software vulnerabilities across thousands of active network nodes.
________________________________________
Required Qualifications & Technical Competencies Technical Skills & Toolsets -Active Secret Clearance • Network Automation: Ansible, Terraform, Python, Jinja2 and other template modeling.
  • NMS & Tools: Cisco Catalyst Center, OpenText Network Automation, Nautobot, Infoblox IPAM, Wireshark.
  • DevOps Workflows: Git, GitLab CI/CD, GitHub Actions, Jenkins, Docker.
  • Core Networking: Solid understanding of BGP, OSPF, VLANs, VRFs, ACLs, and SSH/SNMP protocols.
  • Vendor OS Fluency: Cisco IOS/IOS-XE/XR, Juniper JunOS, Arista EOS. Soft Skills & Certifications
  • Data-driven analytical thinker skilled at tracking down anomalies in massive configuration text files.
  • Detail-oriented planner capable of coordinating large-scale automated pushes across global time zones.

Similar jobs