Haystack
← Back to Jobs
Technology

Senior Network Security Engineer

Dia Software SolutionsMechanicsville, VA🇺🇸United StatesPosted 31 Jul 2026

Why This Role Stands Out

This hybrid role offers significant opportunities to advance your network security expertise by designing and securing a large-scale enterprise environment with cutting-edge technologies like Palo Alto firewalls and Azure networking. You'll thrive here if you're a proactive problem-solver passionate about safeguarding critical infrastructure and collaborating with diverse technical teams. Apply now to contribute to a robust security posture and grow your career in a dynamic setting.

Quick Overview

Work Type
Hybrid
Level
Mid Senior

Job Description

Hi,

Greetings from DIA SOFTWARE SOLUTIONS LLC!

We reaching out about an exciting Direct client opportunity with one of our clients. Please review the requirements and let me know if you are interested in this position?

Direct client Req:: Need Senior Network Security Engineer ,Hybrid, VA

PLEASE SEND THE RESUMES TO SKUMAR AT DIASOFTWARESOLUTIONS DOT COM !

Job Description:

The Sr NSE will support a hybrid enterprise environment consisting of approximately 300 statewide locations, Palo Alto firewalls, Azure networking, ExpressRoute connectivity, WAF technologies, Splunk SIEM, SD-WAN, and mission-critical public-facing applications. The role partners closely with Infrastructure, Cloud Engineering, and the Information Security Office to maintain the confidentiality, integrity, and availability of VDOT s network infrastructure.

Key Responsibilities:

  • Ensures network security architecture aligns with operational security standards prior to and after deployment.
  • Lead investigation and containment of network security incidents.
  • Review firewall rule requests and ensure compliance with security standards.
  • Design and maintain secure hybrid network architecture across on-premises and Azure environments.
  • Monitor security events using SIEM technologies and coordinate incident response activities.
  • Perform network security assessments and recommend remediation strategies.
  • Develop and maintain network security standards, diagrams, and operational documentation.
  • Support penetration testing and remediation efforts.
  • Participate in on-call support during critical security incidents.
  • Responsible for conducting proactive threat hunting and anomaly detection.
  • Validates WAF and firewall placement and integration exposure/connectivity. Also leads implementation, review, and management of agency WAF(s).
  • Identifies and diagnoses system problems and threats by using system logs, line monitors, SIEM, diagnostic software, and test equipment.
  • Identifies, prioritizes, and remediates network security vulnerabilities.
  • Must have the ability to provide documentation, network architecture topology diagrams, IP schemes, firewall rules, and access controls when required.
  • Must have the ability to work independently on assigned projects.

Fill the above skills in the below box and have consultant to complete

SKILLS MATRIX

Skill

Required

Amount of Experience

Experience

Enterprise Networking

Required

8 Years

Enterprise Security

Required

5 Years

Azure Networking

Required

3 Years

WAF/NGFW

Required

3 Years

Supporting environments with 300+ Network Devices

Desired

3 Years

Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor

Required

Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel)

Required

Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def

Required

Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates

Required

Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles

Required

Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS

Required

Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP

Required

Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages

Required

Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers.

Required

Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700),

Required

DIA SOFTWARE SOLUTIONS LLC.

VENKATESH| DIA SOFTWARE SOLUTIONS LLC.

Direct: Eight Zero Four Three Six Five Six Nine Three Four

DIA SOFTWARE SOLUTIONS is an Affirmative Action/Equal Opportunity Employer that supports workplace diversity. All employment decisions are made without regard to race, color, religion, sex, national origin, age, disability, veteran status, marital or family status, sexual orientation, gender identity, or genetic information. All Dia soft staff must be able to demonstrate the legal right to work in the United States. DIA SOFTWARE SOLUTIONS is an E-Verify employer

Skills

MFA
Splunk
Active Directory
Azure
Penetration Testing
WAF
Zero Trust

Similar jobs