ENS Solutions logo

Illumio Zero Trust Engineer - Active TS/SCI with CI Poly

ENS Solutions

Reston, VAJobSeen 1mo agoSeen in employer's feed 2 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Reston, VA
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

DoD 8570.01-M CSSP-IS CertificationDoD 8570 IAT Level III CertificationTS/SCI clearanceBachelor's degree

Job overview

ENS Solutions seeks a Zero Trust Engineer to design, deploy, and optimize Illumio solutions across on‑prem, virtualized, and cloud environments, collaborating with security architects and application owners while adhering to DoD clearance and certification requirements.

Skills & qualifications

RequiredNice to have

Skills

Illumio CoreIllumio EdgeZero Trust SegmentationLinuxWindowsVMwareHyper‑VAWSAzureGCPAnsibleTerraformPythonBashPowerShellREST APIsSIEMSOARCMDBServiceNowVulnerability ScannersCloud‑Native ControlsAutomation PipelinesNIST 800‑207

Qualifications

5+ Years Cybersecurity Experience3+ Years Linux/Windows Virtualization Experience2+ Years Regulated Environment Experience1+ Year Infrastructure Automation Experience1+ Year REST API Scripting ExperienceActive TS/SCI ClearanceAssociate DegreeBachelor's DegreeMaster's DegreeDoD 8570.01-M CSSP-IS CertificationDoD 8570 IAT Level III CertificationIllumio Platform Associate Certification

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
401(k) Match
Paid Time Off
Tuition Assistance
Relocation Assistance

Full job description

Assist in the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments. Support the architecting and implementation of Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls. Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications. Integrate Illumio with SIEM, SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.

Conduct traffic flow analysis using Illumio VEN telemetry and assist in building policy recommendations to reduce attack surface and limit east-west movement. Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure. Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes. Perform lifecycle management, including upgrades, health checks, certificate operations, and policy governance. Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies. Contribute to architectural standards, documentation, and enterprise security playbooks.

Key Responsibilities

  • Assist in the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.

  • Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.

  • Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.

  • Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.

  • Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.

  • Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.

  • Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.

  • Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.

  • Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.

  • Contribute to architectural standards, documentation, and enterprise security playbooks.

Requirements

  • 5+ years in cybersecurity, cloud security, or infrastructure engineering.

  • 3+ years of expertise in Linux/Windows systems, virtualization (VMware, Hyper-V), and cloud environments (AWS, Azure, or GCP).

  • 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments (finance, healthcare, federal, or energy).

  • 1+ year experience with infrastructure automation tools (Ansible, Terraform, or similar).

  • 1+ year experience with REST APIs, scripting (Python, Bash, PowerShell), or automation frameworks.

  • Active TS/SCI clearance; willingness to take a polygraph exam

  • Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, or Master’s degree and 1+ years of experience supporting IT projects and activities

  • Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support (CSSP-IS) Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of offer accept

  • Ability to obtain a DoD 8570 IAT Level III Certification such as SecurityX (formerly CASP+), CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, CCSP certification within 45 days of CSSP-IS date (or offer accept if candidate already has CSSP-IS Cert).

Additional Qualifications:

  • Experience deploying and managing Illumio Adaptive Security Platform (ASP) in enterprise environments

  • Experience with CMDB systems such as ServiceNow, SIEM and SOAR tools, or vulnerability management platforms

  • Knowledge of Zero Trust principles, micro-segmentation, and lateral movement mitigation

  • Ability to translate policies into technical controls

  • Possession of strong analytical and problem-solving skills

  • Illumio certifications such as Illumio Platform Associate, Illumio Platform Specialist, Illumio Platform Expert, or Illumio Platform On-Prem PCE Administrator

Benefits

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS

  • 401k Contribution from Day 1

  • PTO + 11 Paid Federal Holidays

  • Long & Short Term Disability Insurance

  • Group Term Life Insurance

  • Tuition, Certification & Professional Development Assistance

  • Workers’ Compensation

  • Relocation Assistance

Candidate AI Usage Policy

AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.