Linux Network Security Engineer at Booz Allen Hamilton architecting and deploying Endace packet capture systems across a distributed enterprise. Integrating with analytics ecosystems and ensuring optimal performance.
Responsibilities
Architect, deploy, integrate, and operate Endace packet capture, monitoring, and network recording platforms across a large, distributed enterprise
Lead the design, deployment, and configuration of Endace appliances for enterprise-scale packet capture
Develop packet capture strategies aligned to network architecture, mission requirements, and Zero Trust visibility controls
Build high-availability, scalable, and resilient Endace clusters across data centers and cloud-connected environments
Integrate Endace with analytics ecosystems
Maintain and tune Endace hardware and software for optimal performance, including upgrades, patching, sensor tuning, and storage lifecycle
Monitor device health, capacity, and telemetry fidelity to ensure consistent and forensically sound data capture
Manage PCAP retention strategies, indexing policies, and storage allocation across distributed deployments
Ensure packet capture and telemetry support identity-aware network segmentation and policy enforcement
Support the development of traffic baselines, segmentation decisions, and enforcement models using Endace data
Automate deployment, configuration, and sustainment workflows using Ansible, Terraform, or scripting
Build dashboards, runbooks, playbooks, and investigation workflows for SOC, threat hunters, and IR teams
Partner with network engineering, cloud teams, and security operations to ensure full-spectrum telemetry coverage
Deliver training and guidance to operational teams on Endace platform usage and best practices
Requirements
5+ years of experience in cybersecurity engineering, Linux system administration, network security, or SOC tooling
Experience supporting regulated or high-security environments
Experience with PowerShell, Bash, Python, or Ansible
Experience integrating packet capture tools with SIEMs, SOAR tools, and investigation platforms
Knowledge of core network protocols
Active TS/SCI clearance; willingness to take a polygraph exam
Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, Master’s degree and 1+ year of experience supporting IT projects and activities, or 7+ years of experience supporting IT projects and activities in lieu of degree
DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
Benefits
Health, life, disability, financial, and retirement benefits
Senior Cybersecurity Advisor providing support to threat and vulnerability analysts at Exposant 3 in a hybrid work model. Collaborating on incident responses and vulnerability management in a dynamic team.
Technicien en installations de systèmes de sécurité électronique au sein de Chubb. Responsable de l’installation, mise en service et formation des utilisateurs sur divers systèmes de sécurité.
Lead Security Specialist overseeing security measures for classified programs at GE Aerospace. Managing compliance with ICD 705 standards and ensuring operational integrity of sensitive information.
Senior Manager overseeing IAM initiatives and strategic roadmap execution at RBC. Partnering with stakeholders to enhance organizational capabilities in Identity and Access Management.
Senior IAM Systems Support Analyst responsible for deploying and improving IAM services at RBC. Supporting MFA systems and ensuring platform reliability while collaborating with various teams.
Financial Security Advisor at RBC Insurance connecting clients with comprehensive insurance solutions. Building client relationships and leveraging RBC’s brand to grow the market.
Data Center Security Officer managing security operations at data center facilities. Responsibilities include monitoring premises, conducting patrols, and ensuring safety and security protocols.
Security Program Manager leading threat assessment and workplace violence prevention at Medtronic. Collaborating across departments to enhance workplace safety and security culture.
Information Security Specialist at Federal Reserve Bank, collaborating across teams to strengthen economic and financial systems. Focused on operating the DevSecOps program according to established standards and policies.
Protective Security Officer supporting information security and physical security processes at Telia. Collaborating with clients and team members for effective security management.