Senior Network Engineer IRES - SSFB/HSV/FBEL
- R0171962
- On Site
- Redstone Arsenal, Alabama, United States
- Colorado Springs, Colorado, United States
- Arlington, Virginia, United States
- Full time
- SECRET
Position Title: Senior Network Engineer
Location: Schriever Space Force Base, Colorado Springs, CO; Redstone Arsenal, Huntsville, AL or Fort Belvoir, VA
Relocation Assistance: None available at this time
Remote/Telework: NO - Not available for this position
Clearance Type: DoW Secret
Shift: Day shift
Travel Required: Up to 10% of the time
Description of Duties:
As a Senior Network Engineer supporting the Next Generation Environment (NGE) on the Integrated Research and Development for Enterprise Solutions (IRES) contract, you will serve as a senior technical contributor responsible for engineering, configuring, implementing, and securing the high-speed data center fabrics and software-defined network enclaves underpinning the Missile Defense Agency’s (MDA) unified digital environment.
In this role, you will turn high-level architectural designs into resilient, automated network solutions by configuring Cisco Nexus Spine-Leaf EVPN-VxLAN fabrics, VMware NSX software-defined networks, Versa SD-WAN edge transport, F5 BIG-IP application delivery controllers, and Infoblox enterprise DDI services. You will collaborate across engineering, systems architecture, systems security, multi-contractor consortium performers, and Government stakeholder teams to deliver cohesive hybrid cloud and on-premises network transport.
You will play a key role in standardizing infrastructure automation, resolving complex tier-3/4 routing issues, enforcing Zero Trust boundaries, and ensuring continuous network compliance with DoD, DISA, and MDA security requirements.
Description of Duties
Data Center Fabric Engineering:
· Configure, deploy, and administer Cisco Nexus (NX-OS) switches operating in high-performance Spine-Leaf topologies.
· Build, maintain, and optimize EVPN-VxLAN virtual overlay networks, Multi-Site fabrics, vPC domains, and complex underlay routing baselines.
Software-Defined Networking & Micro-segmentation:
· Deploy, configure, and manage VMware NSX components including NSX Edge nodes, Tier-0 and Tier-1 logical gateways, and distributed firewalls.
· Implement policy-driven micro-segmentation rules within virtualized compute environments (vSphere/VCF) to isolate mission workloads and support multi-tenant enclaves.
Application Delivery & Load Balancing:
· Deploy, configure, and maintain F5 BIG-IP physical and virtual appliances, specifically Local Traffic Managers (LTM) and Global Traffic Managers (GTM).
· Author and troubleshoot custom F5 iRules, and configure virtual servers, load-balancing pools, health monitors, and secure SSL/TLS decryption profiles.
SD-WAN & Edge Connectivity:
· Provision, deploy, and maintain Versa SD-WAN edge appliances (including Director, Analytics, and VOS) to establish secure transport across disparate WAN paths.
· Configure secure tunneling, dynamic traffic steering rules, QoS queue policies, and security boundaries for remote sites and tactical test networks.
Core DDI & IPAM Administration:
· Administer enterprise-wide IP Address Management (IPAM), authoritative internal DNS zones, and DHCP scopes utilizing Infoblox Grid Manager.
· Support the automation of DNS records and IP allocation using Infoblox APIs integrated with Infrastructure-as-Code pipelines.
Zero Trust & Network Security Hardening:
· Implement identity-aware access controls, 802.1X network access control (NAC), and FIPS-compliant cryptography tunnels (IPsec/MACsec).
· Harden all network assets in accordance with DISA STIGs, Risk Management Framework (RMF) guidelines, and MDA cybersecurity requirements to support continuous ATO (cATO).
Consortium & Program Integration (Program-Facing):
· Coordinate and collaborate directly with external contractor performers and systems administrators across the program consortium during joint integration events, lab setups, and production cutovers.
· Author and execute comprehensive Low-Level Designs (LLDs), Interface Control Documents (ICDs), standard operating procedures (SOPs), deployment runbooks, and cutover plans.
Automation, DevSecOps & Scripting:
· Develop and sustain Infrastructure-as-Code (IaC) playbooks and configuration management scripts (Ansible, Terraform, Python, Bash) to automate configuration deployments, perform validation checks, and remediate compliance drift.
Resumes, in month and year format, must be submitted with application in order to be considered for the position. The selected candidate may be assigned as an employee for one of our teammate companies.
Basic Requirements:
· Must have 12, or more, years of general (full-time) work experience
o May be reduced with completion of advanced education
· Must have 6, or more, years of directly related experience
· Must have 1, or more, years of experience working in a management or leadership role
· Must have demonstrated, hands-on, engineering and administration experience with:
· Cisco Nexus (NX-OS) switches configured in Spine-Leaf / EVPN-VxLAN topologies.
· VMware NSX software-defined network segmentation and gateway routing.
· F5 BIG-IP LTM/GTM application delivery controllers.
· Infoblox DDI/IPAM grid managers.
· Versa SD-WAN enterprise solutions or equivalent software-defined WAN transport.
· Must hold a current DoW 8140/8570 IAT Level II or higher certification (e.g., Security+ CE, CySA+, CASP+ CE, CISSP).
· Must have an active DoW Secret security clearance with verified eligibility to obtain a Top Secret clearance (or active Top Secret).
· Must have an active DoW Secret Security Clearance
Desired Requirements:
· Active DoW Top Secret security clearance.
· Professional-level network and platform certifications:
o Cisco Certified Network Professional (CCNP Enterprise or Data Center)
o VMware Certified Professional - Network Virtualization (VCP-NV) or VCAP-NV
o F5 Certified Technology Specialist (F5-CTS)
o Versa Certified SD-WAN Associate/Specialist
o Infoblox Core DDI Configurator Associate (CDCA)
· Have practical experience scripting or automating network changes with Python, Ansible, or Terraform.
· Have experience supporting the Missile Defense Agency (MDA), the IRES contract, or secure DISA networks.
· Have experience with Agile/SAFe development methodologies and tools (Jira, Confluence).
This position will be posted for a minimum of 3 days. If a candidate has not been selected at that time, it will continue to be posted until a suitable candidate is selected or the position is closed.
Compensation Details:
$170,000 – $220,000
The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.
Benefits Overview:
Our health and welfare benefits are designed to support you and your priorities. Offerings include:
Health, dental, and vision insurance
Paid time off and holidays
Retirement benefits (including 401(k) matching)
Educational reimbursement
Parental leave
Employee stock purchase plan
Tax-saving options
Disability and life insurance
Pet insurance
Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.
Original Posting:
10/01/2026 - 10/15/2026Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.
Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters.
People also viewed
| Electrician | Waimea, Hawaii, United States |
| AutoCAD/Specialist | Mossville, Illinois, United States |
| DevSecOps Engineer IRES - SSFB/HSV | Redstone Arsenal, Alabama, United States. Colorado Springs, Colorado, United States |
| Systems Administrator 2 (Linux) | Waimea, Hawaii, United States |
| Aircraft Mechanic I (UH-60) Wheeler AAF, HI - CBA | Honolulu, Hawaii, United States |
| IT Manager - Diego Garcia | Diego Garcia, British Indian Ocean Territory |
Already an Amentum Employee?
Accessibility/Reasonable Accommodations
If you are an applicant with a disability that requires a reasonable accommodation to complete any part of the application process, or are limited in the ability—or unable to use—the online application system and need an alternative method for applying, please submit requests to: Accessibility/Reasonable Accommodations