Bowhead logo
Cisco Identity Services Engineer/Administrator
full-timeKing George County

Summary

Location

King George County

Type

full-time

Claim this Company

Are you the employer? Manage your company page directly.

Explore Jobs

About this role

Overview

CISCO IDENTITY SERVICES ENGINEER (RDTE)

 

Bowhead is seeking a Cisco Identity Services Engineer (ISE) Administrator to provide Design and Engineering Operation and Maintenance support for ISE systems on the classified and unclassified Research, Development, Test and Evaluation (RDTE) networks at Dahlgren, VA. As an Cisoc ISE Administrator, you will identify endpoints, and enable the creation and enforcement of security and access policies for endpoint devices connected to the company’s routers and switches, in order to simplify identity management across diverse devices and applications.

Responsibilities

  • Configure, implement, and troubleshoot ISE.
  • Build and analyze ISE rules to comply with client network security policies.
  • Create policies for unseen network devices in a mixed environment, to include profiling devices, defining Downloadable Access Control Lists (DACL’s), and assigning Virtual Local Area Network (VLAN) to endpoints.
  • Implement 802.1x solutions to all “supplicant-enabled” devices via AnyConnect software and Network Access Manager (NAM) profiles using EAP-MSCHAPv2/TLS encryption methods.
  • Integrate with wired data, wireless infrastructure, and Virtual Private Network (VPN), as well as posture and client provisioning.
  • Configure and implement TACACS+ policies for network device administration.
  • Manage firewall and network security systems by establishing and enforcing approved policies
  • Analyze network security requirements and implement perimeter security changes
  • Serve as a subject matter expert in coordinating and troubleshooting with customers, other infrastructure support activities and business units
  • Develop network documentation of security infrastructure
  • Monitor network performance and implement performance tuning as necessary
  • Responsible for installing software, applying patches, managing file systems, and monitoring performance of ISE systems
  • Performs data backups and restoration of managed systems
  • Assist in the certification and accreditation process for managed systems and networks
  • Install and deploy of new ISE hardware and software
  • Review daily logs for managed systems and report on unusual activity
  • Participate in the development and maintenance of Standard Operating Procedures (SOPs) associated with managed systems and applications
  • Collaborate with IT staff on projects and initiatives
  • Provide input for a monthly progress and status report

Qualifications

  • Ten (10) years of experience in networking, IT, or other related fields preferred 
  • Bachelors Degree degree required
  • ISE certifications: CCNP (SISE) highly desirable
  • Solid experience configuring and troubleshooting routing and switched infrastructure (e.g. CCNA, CCNP Security) and security certifications highly desirable
  • Experience in network security including: Device Hardening and patching
  • Experience with Cisco AnyConnect or related supplicants.
  • Experience with Public Key Infrastructure (PKI) to assist, maintain and troubleshoot 802.1X EAP-TLS issues
  • Experience with MAC Authentication Bypass (MAB) and 802.1X troubleshooting concepts.
  • Knowledge of Cisco AnyConnect Modules – (VPN, Posture, NAM)
  • Diagnose and resolve complex network problems and improve network performance and reliability
  • Must currently hold a DoD 8570 Information Assurance Technical Level II certifications

  • Position requires a strong understanding of ISE functions and operations (e.g. endpoint identification, authentication, authorization)
  • Familiarity with researching communication networks 
  • Must have strong troubleshooting and critical thinking skills 
  • Strong attention to detail, good documentation skills, ability to write clear, concise project reports 
  • Ability to function with minimal instruction or supervision, or as a part of larger team reporting to formal project management 

Desired Skills

  • Cisco Access Control System (ACS), specifically with “role-based” TACACS+ commands/profiles
  • PxGrid, ThreatGrid and Security Group Tags(SGT’s) for back-end communication between Cisco Firepower and ISE server
  • Cisco Prime, MDM, ASA, DNS/DHCP, Network Load-Balancing, and 802.11a/b/g/n Wireless technologies and industry best practices.
  • Active Directory knowledge(e.g. Organizational Unit(OU) identification, domain “trusts”, Domain Name System(DNS), identity resolution)

Physical Demands:

  • Must be able to lift up to 10-20 pounds 
  • Must be able to stand and walk for prolonged amounts of time 
  • Must be able to twist, bend and squat periodically

SECURITY CLEARANCE REQUIREMENTS: Must currently hold a security clearance at the Secret level. US Citizenship is a requirement for this contract.

 

#LI-JR1

Other facts

Tech stack
Cisco Identity Services Engine,Network Security,Endpoint Identification,Authentication,Authorization,TACACS+,802.1x,Cisco AnyConnect,Public Key Infrastructure,Device Hardening,Troubleshooting,Documentation,Critical Thinking,Performance Tuning,Network Performance,Security Policies

About Bowhead

UIC Government Services and its Bowhead Family of Companies are a division of Ukpeaġvik Iñupiat Corporation, an Alaskan Native Corporation.

Known simply as Bowhead, we are a top ANC that's been in business for nearly 25 years. Bowhead’s 3000 employees and 300 contracts provide premier support to defense and civilian government agencies across the United States, and the world.

Headquartered in Springfield, Virginia, and with 15 offices across the U.S., Bowhead offers services in Systems & Information Technology, Logistics & Marine, Engineering & Program Management, Manufacturing & Products, and Advanced Technology. Our unique, flexible, and streamlined contracting processes offer Sole Source options and numerous contract vehicles for customers’ convenience.

Team size: 1,001-5,000 employees
LinkedIn: Visit
Industry: IT Services and IT Consulting
Founding Year: 1999

What you'll do

  • The Cisco Identity Services Engineer will configure, implement, and troubleshoot ISE systems while ensuring compliance with network security policies. Responsibilities also include managing firewall systems, analyzing network security requirements, and developing documentation for security infrastructure.

Join Clera's Talent Pool

Get matched with similar opportunities at top startups

This role is hosted on Bowhead's careers site.
Join our talent pool first to get notified about similar roles that match your profile.

Frequently Asked Questions

What does a Cisco Identity Services Engineer/Administrator do at Bowhead?

As a Cisco Identity Services Engineer/Administrator at Bowhead, you will: the Cisco Identity Services Engineer will configure, implement, and troubleshoot ISE systems while ensuring compliance with network security policies. Responsibilities also include managing firewall systems, analyzing network security requirements, and developing documentation for security infrastructure..

Why join Bowhead as a Cisco Identity Services Engineer/Administrator?

Bowhead is a leading IT Services and IT Consulting company.

Is the Cisco Identity Services Engineer/Administrator position at Bowhead remote?

The Cisco Identity Services Engineer/Administrator position at Bowhead is based in King George County, Virginia, United States. Contact the company through Clera for specific work arrangement details.

How do I apply for the Cisco Identity Services Engineer/Administrator position at Bowhead?

You can apply for the Cisco Identity Services Engineer/Administrator position at Bowhead directly through Clera. Click the "Apply Now" button above to start your application. Clera's AI-powered platform will help match your profile with this opportunity and guide you through the application process. You can also learn more about Bowhead on their website.