About this Senior Security Consultant role at Gruve
About Gruve
Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.
Position Summary
Network Security Consultant specializing in Cisco ISE and NAC, with 7+ years of experience in enterprise network security. Skilled in ISE design, implementation, upgrades, troubleshooting, 802.1X, RADIUS, TACACS+, profiling, authentication/authorization, guest access, and integration with AD, network, firewall, and endpoint security solutions. Working knowledge of Cisco DNAC, SDA, and AWS..
Key Responsibilities
- 7+ years of experience in Network Security / Cisco ISE / Network Access Control (NAC).
- Strong hands-on experience with Cisco ISE implementation, configuration, administration, troubleshooting, upgrades, patching, and health checks.
- Experience designing and managing ISE Policy Sets, Authentication & Authorization policies and network access policies.
- Strong knowledge of 802.1X, RADIUS, TACACS+, EAP, MAB, endpoint profiling, posture assessment, and guest access.
- Deploy and operationalize TrustSec / Security Group Tag (SGT) policy architecture
- Experience integrating Cisco ISE with Microsoft Active Directory (AD), switches, routers, wireless infrastructure, firewalls, and endpoint security platforms.
- Hands-on troubleshooting of authentication/authorization failures, RADIUS/TACACS+, 802.1X, profiling, wireless access, and policy enforcement issues.
- Experience with ISE backup/restore, patching, upgrades, configuration changes, and incident troubleshooting.
- Optimize and troubleshoot 802.1X, MAB, profiling, posture, TrustSec, and pxGrid.
- Ability to monitor ISE nodes, services, authentication logs, system health, and security events.
- Good understanding of enterprise network security and AAA concepts.
Experience creating technical documentation, troubleshooting guides, incident reports, and configuration documents.
Basic Qualifications
- Bachelor’s degree in computer science, Information Technology, Engineering, or related field
- 7+ years of experience in Network Security / Enterprise Network Infrastructure.
- Strong hands-on experience with Cisco ISE, including implementation, configuration, administration, troubleshooting, upgrades, patching, and NAC operations.
- Good understanding of NAC, 802.1X, RADIUS, TACACS+, authentication, authorization, and endpoint access control.
- Experience working with Cisco ISE integrations such as Active Directory, switches, wireless, firewalls, and endpoint security platforms.
- Familiar with other technologies like Cisco DNA Center (DNAC), Software-Defined Access (SDA) and AWS.
- Strong troubleshooting and incident-resolution skills in enterprise network security environments.
Preferred Qualifications
- Cisco Security: Cisco ISE, NAC, 802.1X, RADIUS, TACACS+, EAP, Device Profiling, Posture Assessment, Guest Access, Authentication & Authorization, Policy Sets, TrustSec.
- Identity & Integration: Microsoft Active Directory, Endpoint Security.
- Networking: Cisco/Aruba Switches, Routers, Wireless Access Points/Controllers, VLANs, CLI, Network Troubleshooting.
- Familiar with Technologies: Cisco DNA Center (DNAC), Software-Defined Access (SDA) and Cloud: AWS
Why Gruve
At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.
Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will be contacted.