ISE Network Engineer - Top Secret Clearance (SCI Eligible)
JFL ConsultingRole Overview
JFL Consulting is hiring a mid-level ISE Network Engineer - Top Secret Clearance (SCI Eligible). This is a contract role in Takoma Park. Part of JFL Consulting's Security hiring. Full responsibilities, required qualifications, and the apply link are listed in the description below.
Resume Keywords to Include
Make sure these keywords appear in your resume to improve ATS scoring
Sign up free to auto-tailor your resume with all these keywords and get a higher ATS score
Job Description
Description
Job Title: ISE Network Engineer
Place of Performance: Washington, DC 20392
Mandatory Requirements: Top Secret Clearance (SCI Eligible)
Experience Level: Mid-Senior-Level (8+ years)
About JFL Consulting
With more than 20 years of securing some of the U.S. Department of Defense and the Intelligence Communitys most critical networks, JFL Consulting, LLC provides advanced network security solutions to a range of US Government and US commercial clients.
Our cybersecurity operators are experts at assessing and defending mission-critical data and the networks that facilitate their operation. We are focused on delivering advanced products and industry best practices that meet each customers unique requirements. Visit
What we offer
Free on-site parking in Washington, DC 100% employer-paid medical, dental, and vision for employees and dependents Flexible Spending Accounts (healthcare, dependent care, and commuter) Life insurance, short-term disability and long-term disability 401(k) with immediate vesting of company contribution Generous PTO policy (15 vacation, 5 sick, 2 personal days, 11 holidays)
Job Description
We are seeking an experienced ISE Network Engineer with 8+ years of hands-on experience in enterprise network infrastructure, with deep expertise in Cisco Identity Services Engine (ISE) and Cisco DNA Center (DNAC) . The ideal candidate will collaborate to design, implement, secure, and automate complex network environments in a DoD environment.
Responsibilities
Design, implement, and sustain enterprise network infrastructures supporting high availability and mission operations Serve as a senior technical resource for network troubleshooting, outage resolution, and performance optimization Perform root-cause analysis on complex network issues and drive permanent fixes Configure, maintain, and troubleshoot Cisco and Juniper routing and switching platforms Configure, administer, and troubleshoot Cisco Identity Services Engine (ISE), including policy sets and authentication/authorization workflows Configure and support next-generation firewalls, including Juniper SRX and Cisco Firepower platforms Support firewall rule management, policy validation, and traffic-flow troubleshooting across secured boundaries Maintain accurate technical documentation, diagrams, and standard operating procedures Participate in planning and implementation of network upgrades and architectural improvements Ensure compliance with DoD security and configuration standards Requirements: 8+ years of hands-on network engineering experience in enterprise or government environments Strong understanding of TCP/IP, IPv4, routing, switching, and network troubleshooting Proven experience with Cisco and/or Juniper network devices Hands-on experience configuring and administering Cisco ISE Experience supporting Juniper SRX firewalls and Cisco Firepower (FMC-managed) Strong understanding of firewall policies, security zones, and traffic inspection Familiarity with DoD STIGs and operating in compliance-driven environments CCNA, CCNP, JNCIS, or JNCIP certification (active or previously held) DoD 8570 IAT Level II certification (Security+ or equivalent)
Desired Skills
Experience integrating Cisco ISE with 802.1X, TACACS+, or network access control workflows Exposure to advanced firewall features such as IDS/IPS, URL filtering, or application-layer inspection Familiarity with vulnerability scanning tools (e.g., Nessus) Basic scripting or automation exposure (PowerShell, Ansible, etc.)
JFL Consulting, LLC is an Equal Opportunity Employer.
We do not discriminate against any applicant for employment on any legally recognized basis including, but not limited to: race, religion or creed, color, national origin, sex, age, disability, marital status, sexual orientation, genetic information, veteran status, status with regard to public assistance or any other protected class under federal, state or local statute. It is also the policy of JFL Consulting, LLC to provide reasonable accommodations for qualified individuals with disabilities.
Compensation details: Yearly Salary
PI00441b4187d
Frequently Asked Questions
How do I apply for the ISE Network Engineer - Top Secret Clearance (SCI Eligible) position at JFL Consulting?
Use the Apply button above to submit your application directly to JFL Consulting. Most applications take less than 5 minutes if your resume and contact details are ready, and you'll be routed to the employer's official application system to finish.
Where is the ISE Network Engineer - Top Secret Clearance (SCI Eligible) position at JFL Consulting located?
This position is based in Takoma Park. JFL Consulting has not indicated remote or hybrid options for this role, so candidates should plan for on-site work.
What does a ISE Network Engineer - Top Secret Clearance (SCI Eligible) at JFL Consulting earn?
JFL Consulting has not disclosed a salary range in this posting. Many employers share specifics later in the interview process; you can also ask during a recruiter screen if compensation transparency is important to you.
When was the ISE Network Engineer - Top Secret Clearance (SCI Eligible) role at JFL Consulting posted?
This role was posted on April 11, 2026 (58 days ago). It's still listed as actively hiring; we re-confirm openings against the source system multiple times per day and remove closed roles.
AI-powered job search
Get every job scored to your resume
Upload your resume and get jobs ranked, your resume tailored, and employee contacts found automatically.
Get Started FreeNo credit card to start