Koam Engineering Systems, Inc. (KES Inc.) is an employee-owned small business specializing in technology innovation and systems integration by combining innovative products and reliable engineering services. Headquartered in San Diego, California and with offices in Gig Harbor, WA KES provides services globally in systems engineering & technical assistance, requirements analysis, software design & development, systems integration & testing, independent verification & validation, and operational & logistic support.
Position Summary
We are currently seeking a Network Engineer III to support the engineering, configuration, integration, sustainment, and troubleshooting of enterprise network infrastructure within a Department of Defense Network Operations Center (NOC) environment. This position supports multiple network enclaves, security domains, and mission systems requiring reliable, secure, and highly available network communications for daily operations, testing, and mission execution.
This position is responsible for designing, configuring, maintaining, and troubleshooting complex network environments consisting of enterprise routers, switches, firewalls, encryption devices, and supporting network services. The selected candidate will perform hands-on network engineering across routing, switching, network security, encrypted communications, multicast, network segmentation, and end-to-end connectivity while supporting new system integrations, network changes, technology refreshes, and ongoing network sustainment.
The role requires a strong hands-on skillset across Cisco routing and switching, enterprise firewalls, TACLANE encryption devices, network monitoring and diagnostics, cybersecurity compliance, and technical documentation. Experience supporting classified networks, multiple security enclaves, DoD Programs of Record, Network Operations Centers, C4I environments, or other mission-critical enterprise networks is highly desired.
Responsibilities
- Configure, maintain, and troubleshoot enterprise routers, switches, firewalls, TACLANE encryption devices, and supporting network infrastructure across multiple network enclaves and security domains
- Engineer and implement network solutions using technologies and protocols such as TCP/IP, OSPF, VLANs, 802.1Q trunking, RPVST+, GRE, IPsec, ACLs, multicast, PIM, and IGMP
- Diagnose complex routing, switching, firewall, encryption, multicast, connectivity, and network performance issues using packet analysis, logging, monitoring, and other diagnostic tools; perform root cause analysis and implement corrective actions
- Plan and execute network installations, configuration changes, software and firmware upgrades, migrations, cutovers, system integrations, technology refreshes, and network expansions while minimizing impacts to mission operations
- Configure and maintain Cisco network and security technologies, including Cisco routers, switches, Firepower security appliances, Firepower Management Center (FMC), and associated network services
- Apply Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs), Risk Management Framework (RMF) requirements, and applicable cybersecurity controls while supporting vulnerability remediation, patching, configuration compliance, and Assured Compliance Assessment Solution (ACAS) findings
- Maintain network configuration baselines, backups, physical and logical diagrams, IP address plans, interface mappings, technical procedures, troubleshooting guides, and as-built documentation
- Coordinate with system administrators, cybersecurity personnel, government engineers, external sites, vendors, and other technical teams to resolve cross-functional connectivity and interoperability issues and support implementation of new capabilities
Required Knowledge, Skills, & Abilities
Education/Licensure/Credentials
Required:
- Bachelor's degree in related fields such as computer science, computer engineering, information systems, network engineering, systems engineering, software engineering or a closely related discipline
OR
- Equivalent specialized knowledge customarily acquired through a combination of military training, formal technical instruction, certifications, and substantial progressively responsible practical experience performing work of comparable scope, complexity, and independent judgment
- Security+ (DoD IAT Level II) or ability to meet requirements within three months of employment
- This position requires an existing U.S. Government DoD granted security clearance/eligibility at the final Secret level, and a favorably adjudicated T5/T5R (or equivalent) background investigation. Individuals must maintain the necessary security requirements for continued employment. U.S. Citizenship is required.
Preferred:
- Cisco Certified Network Associate (CCNA), Cisco Certified Network Professional (CCNP) Enterprise, or equivalent advanced networking certification
Experience
Required:
- Minimum of 5-7 years of progressively responsible experience in network administration, network operations, or network engineering, including at least 3 years performing hands-on network engineering within a DoD, enterprise, NOC, lab, test, or other complex technical environment
- Hands-on experience configuring and troubleshooting enterprise routers, switches, firewalls, and network security devices using technologies and protocols such as TCP/IP, OSPF, VLANs, trunking, spanning tree, GRE, IPsec, ACLs, and network segmentation
- Experience independently troubleshooting complex network connectivity, routing, switching, security, and performance issues using network monitoring, packet analysis, logging, and diagnostic tools
- Experience supporting network installations, upgrades, configuration changes, system integrations, and sustainment while maintaining accurate network diagrams, configurations, and technical documentation
Preferred:
- Experience with Cisco Firepower/FMC, Cisco ASA, TACLANE encryption devices, multicast networking including PIM/IGMP, and network monitoring or diagnostic tools such as Wireshark, SolarWinds, Nagios, Splunk, or similar technologies
- Experience supporting DISA STIG, RMF, ACAS, vulnerability remediation, configuration compliance, and Authorization to Operate (ATO) requirements within classified or highly regulated DoD network environments
- Working knowledge of Windows Server, Active Directory, DNS, VMware/vSphere, Hyper-V, and network automation or scripting using Python, PowerShell, Ansible, or similar technologies
- Experience supporting DoD, Navy, NIWC Pacific, Ballistic Missile Defense (BMD), C4I/C5ISR, NOC, lab, test, integration, or operational evaluation environments
Since 1995, KES continues to foster the entrepreneurial spirit of a growing small business that focuses on the needs of its customers and employees and serves to provide a rewarding and challenging career. KES offers a competitive salary and full range of benefits. KES, Inc. is an EEO/AA Employer committed to hiring and retaining a diverse workforce.
|