
System/Network Engineer
- Chantilly, VA
- Permanent
- Full-time
- Perform configuration, patching, image management, troubleshooting, and Tier III escalation support across multiple classification domains.
- Provide engineering-level support for Microsoft AVD and thin-client infrastructure, including host pool design, session management, and FSLogix integration.
- Develop, manage, and maintain standard operating environments (SOEs) and gold images for thin-client/AVD deployments.
- Implement and optimize Group Policy Objects (GPOs), Conditional Access policies, and Intune configurations for thin-client environments.
- Support integration with identity, mobility, and endpoint management systems, including Entra ID (formerly Azure AD), Defender for Endpoint, and SCCM/Intune.
- Resolve escalated technical issues, perform root cause analysis, and ensure high system availability and performance.
- Support operational documentation, change board coordination, and engineering-level troubleshooting across classified and unclassified environments.
- Coordinate closely with other teams to ensure continuity of services.
- Support the design, implementation, operation, maintenance, and troubleshooting of Sponsor enterprise and site-level network environments across classified and unclassified domains.
- Support enterprise-scale networking environments.
- Understand Cisco ISR/ASR routers, Catalyst/Nexus switches, ASA and Firepower firewalls.
- Have knowledge of IP routing protocols (OSPF, EIGRP, BGP), VLAN design and spanning-tree protocols (STP/RSTP/MST), HSRP/VRRP/GLBP, IP services (NAT, ACL, QoS), and traffic monitoring.
- Experience performing configuration, patching, image management, troubleshooting, and Tier III escalation support across multiple classification domains.
- Experience providing support for Microsoft AVD and thin-client infrastructure, including host pool design, session management, and FSLogix integration
- Experience supporting integration with identity, mobility, and endpoint management systems, including Entra ID (formerly Azure AD), Defender for Endpoint, and SCCM/Intune.
- Experience implementing and optimizing Group Policy Objects (GPOs), Conditional Access policies, and Intune configurations for thin-client environments.
- Supporting enterprise-scale networking environments
- Cisco ISR/ASR routers, Catalyst/Nexus switches, ASA and Firepower firewalls.
- IP routing protocols (OSPF, EIGRP, BGP), VLAN design and spanning-tree protocols (STP/RSTP/MST), HSRP/VRRP/GLBP, IP services (NAT, ACL, QoS), and traffic monitoring.
- SolarWinds, PRTG, Cisco Prime, and packet capture tools (Wireshark, tcpdump).
- Strong understanding of DHCP, DNS, NTP, IP subnetting, and route summarization.
- IPsec, SSL, DMVPN, site-to-site, and remote access VPN technologies.
- Understanding NIST and IC cybersecurity policies, standards, and best practices.
- Network automation platforms and tooling such as Python or Ansible.
- SD WAN technologies such as Cisco SD WAN/Viptela.
- Cloud networking services such as AWS or Azure.
- Network virtualization platforms such as VMware, Hyper V, or Cisco UCS.