You’ll need
Certifications
✓Design and implement network segmentation and microsegmentation controls using roles, VLANs, ACLs, security-group constructs, downloadable policy, dynamic authorization, and firewall policy enforcement.
✓Engineer and support wired 802.1X, EAP-TLS, MAC Authentication Bypass, RADIUS, TACACS+, certificate-based authentication, device profiling, posture assessment, and guest onboarding.
✓Integrate NAC platforms with identity directories, PKI and certificate services, endpoint-management platforms, firewalls, switching platforms, SIEM solutions, and other security tools.
✓Monitor service health, authentication success rates, policy outcomes, capacity, availability, certificate expiration, and operational trends
✓Advanced networking or security certification such as CCNP Enterprise, CCNP Security, CCIE, CISSP, or a relevant vendor NAC certification.
✓Experience integrating NAC with Active Directory, LDAP, MDM/UEM, SIEM, vulnerability-management, endpoint-security, and certificate-enrollment services.
Education
✓Bachelor's Degree computer science, information technology, network engineering, or a related field (Required)
Qualifications
✓One year of relevant education may be substituted for one year of required work experience or one year of relevant professional-level work experience may be substituted for one year of required education.
✓Minimum 5 Years of Experience in network engineering or IT required (Required)
✓Support the design, deployment, and lifecycle management of enterprise network access control solutions across wired, guest, contractor, BYOD, and device-access use cases.
✓Develop and maintain identity- and context-based access policies using platforms such as Aruba ClearPass, AGNI, Cisco Identity Services Engine (ISE), Forescout, and Easy NAC.
✓Configure and troubleshoot Cisco and Arista switching and routing functions required for secure access, including VLANs, trunks, spanning tree, Layer 3 routing, DHCP relay, access controls, and RADIUS-based policy enforcement.
✓Partner with firewall and security teams to align access decisions with internal segmentation, least-privilege, Zero Trust, and lateral-movement reduction objectives.
✓Develop high-level and low-level designs, standards, implementation plans, test plans, migration procedures, rollback plans, operational runbooks, diagrams, and knowledge articles.
✓Participate in pilot deployments and phased production rollouts; coordinate maintenance windows, validate outcomes, manage risk, and communicate status, impact, and remediation plans to technical and nontechnical stakeholders.
✓recommend corrective and preventive improvements.
✓Support incident response, root-cause analysis, audit evidence, security assessments, and remediation of access-control or segmentation findings.
✓Provide technical leadership, facilitate design reviews, and serve as an escalation point for complex NAC, authentication, segmentation, and connectivity issues.
✓Evaluate emerging products and features through structured proofs of concept, documented test criteria, and evidence-based recommendations.
✓Knowledge of Zero Trust architecture, network policy automation, infrastructure as code, APIs, Python, PowerShell, or other scripting and orchestration methods.
✓Experience in regulated, high-availability, healthcare, government, financial, or similarly complex enterprise environments.
Benefits
Wellness and mental health resources
More support jobs near Baltimore, MDMore support jobs nearby
All 275 in Maryland →All 275 →Highest-paying support roles in Maryland
Employer-posted ranges only