Jobs Companies CACI SME Network Engineer (Firewall)

About this SME Network Engineer (Firewall) role at CACI

CACI · Onsite · Ashburn, VA, US
Job Title: SME Network Engineer (Firewall)

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: Secret

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Local

* * *

The Opportunity: 

CACI is seeking a SME Network Engineer (Firewall) for the Global Mission Operations Support (GMOS) contract, supporting the Department of State. This role offers a unique opportunity to enhance national security through advanced IT solutions. You will collaborate with experienced professionals in an innovative environment, guiding a high-performing team to deliver excellence. The GMOS contract aims to provide world-class IT support by modernizing and maintaining applications and infrastructure using an integrated IT Service Management approach. Join us to make a meaningful impact on a program of national importance.

Responsibilities: 

  • Provide technical and management leadership for web application firewalls and Next-Generation Firewalls (NGFWs) implementation across global enterprise infrastructure

  • Direct troubleshooting of complex firewall issues, coordinating with DT teams and facilitating secure connectivity with Government agencies and interagency partners

  • Establish enterprise firewall rule design, creation, implementation, and troubleshooting strategy for networking devices and applications across 350+ facilities

  • Establish enterprise high-availability load balancing, denial of service detection and remediation strategy leveraging modern security technologies and threat intelligence

  • Direct coordination with DT Firewall Advisory Board for rule submissions, ensuring enterprise-wide compliance with Department of State firewall policies and security mandates

  • Establish enterprise network component tuning strategy to maintain optimum performance, security posture, and availability across 350+ global facilities

  • Direct development of firewall standards, procedures manuals, and performance management procedures meeting DT/EA/CST requirements and federal compliance frameworks

  • Excel in DevSecOps tooling (e.g., Ansible, Terraform, SonarQube) and design and construct advanced CI/CD pipelines with extensive experience automating continuous build, test, security validation, results collection, and success/failure analysis

  • Develop strategic roadmaps for firewall modernization, security architecture evolution, and threat mitigation aligned with Department of State cybersecurity objectives

  • Provide technical and management leadership on major assignments, establishing strategic goals and plans that meet project objectives while directing activities with overall responsibility for financial management, methodology selection, and staffing decisions

Qualifications: 

Required –

  • Bachelor's degree + 13 years of experience in related fields, such as network engineering, network security, firewall administration, cybersecurity architecture, or infrastructure engineering; equivalencies considered.

  • Active Secret Clearance

  • Proven experience providing strategic leadership for enterprise firewall architectures across large-scale, geographically distributed federal environments

  • Demonstrated expertise in Next-Generation Firewalls (NGFWs), web application firewalls, high-availability configurations, and advanced threat mitigation strategies

  • Strong proficiency with DevSecOps tools and advanced CI/CD pipeline architecture, particularly with Ansible, Terraform, and security automation frameworks

  • Excellent leadership abilities with proven experience directing technical teams, managing program budgets, and making strategic staffing and resource allocation decisions

Desired –

  • Prior experience supporting federal agencies, especially the Department of State

  • Professional certifications such as Palo Alto Networks Certified Network Security

  • Engineer (PCNSE), Cisco CCIE Security, CISSP, or F5 Certified Technology Expert

  • Experience with Firewall Advisory Boards, enterprise security policy development, and compliance with federal security frameworks (NIST, FISMA, FedRAMP)

  • Knowledge of Zero Trust Architecture, Software-Defined Security, and experience supporting diplomatic missions with mission-critical security infrastructure



 

-

What You Can Expect:

 A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.


Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:

$120,800 - $265,800

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Ready to apply to CACI?
Apply to CACI

How this Network Engineer salary compares

This role pays $193,300/yrabove the typical range for Network Engineer roles.

$91,753 median $137,550 $208,000

Typical range $115,000–$174,500/yr, from 787 comparable Network Engineer listings on JobsRadar (pay annualized to USD). See Network Engineer salary insights →

About CACI

Click on Search Jobs to find and apply to CACI openings.

See all jobs at CACI →

Similar jobs

Sign up for suggestions tailored to the jobs you open and the searches you save.

More jobs at CACI

See all jobs at CACI →

Apply now
🤖

Whoa — hold up

JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.

Come back later. If you're genuinely job hunting, we've got your back — just act like a human.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Get an edge on your job hunt.

Join our Telegram channel for the stuff that helps you land the role — salary benchmarks, the weekly market pulse, and new-feature drops. No spam, just signal.

Join the channel — it's free