Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Endace Platform Engineer - Active TS/SCI with CI Poly image - Rise Careers
Job details

Endace Platform Engineer - Active TS/SCI with CI Poly

We are seeking a seasoned Endace Implementation & Sustainment Engineer to architect, deploy, integrate, and operate Endace packet capture, monitoring, and network recording platforms across a large, distributed enterprise. The ideal candidate has deep experience in network forensics, packet analytics, and telemetry architecture, combined with hands-on familiarity supporting Zero Trust visibility and segmentation strategies.

This role owns the end-to-end lifecycle for Endace systems—including design, installation, configuration, maintenance, and long-term optimization—while integrating the platform with SIEM/SOAR, detection engineering, analytics tooling, and broader Zero Trust security controls.

Responsibilities include leading the design, deployment, and configuration of Endace appliances for enterprise-scale packet capture. Developing packet capture strategies aligned to network architecture, mission requirements, and Zero Trust visibility controls. Building high-availability, scalable, and resilient Endace clusters across data centers and cloud-connected environments. Integrating Endace with analytics ecosystems (SIEM, SOAR, NDR, EDR, threat intel, investigation platforms). Maintaining and tuning Endace hardware and software for optimal performance, including upgrades, patching, sensor tuning, and storage lifecycle. Troubleshooting packet loss, timing drift, flow indexing issues, clock synchronization, and performance bottlenecks. Monitoring device health, capacity, and telemetry fidelity to ensure consistent, forensically-sound data capture. Managing PCAP retention strategies, indexing policies, and storage allocation across distributed deployments. Aligning Endace visibility architecture with Zero Trust telemetry requirements and continuous verification workflows; Ensuring packet capture and telemetry support identity-aware network segmentation and policy enforcement. Supporting development of traffic baselines, segmentation decisions, and enforcement models using Endace data. Automating deployment, configuration, and sustainment workflows using Ansible, Terraform, or scripting. Building dashboards, runbooks, playbooks, and investigation workflows for SOC, threat hunters, and IR teams. Partnering with network engineering, cloud teams, and security operations to ensure full-spectrum telemetry coverage. Deliverin training and guidance to operational teams on Endace platform usage and best practices.

  • 5+ years of experience in cybersecurity engineering, network security, or SOC tooling.
  • Strong understanding of packet analysis, network forensics, deep packet inspection, and PCAP workflows.
  • Proficiency in Linux administration and scripting (Python, Bash, PowerShell).
  • Experience supporting regulated or high-security environments (DoD, IC, FedRAMP, PCI, HIPAA).
  • Familiarity with Zero Trust Architecture, segmentation principles, and identity-centric policy models.
  • Demonstrated experience integrating Endace with SIEMs, SOAR tools, and investigation platforms.
  • Solid understanding of core network protocols (TCP/IP, TLS, DNS, HTTP/S, NetFlow/IPFIX, etc.)
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, or Master’s degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
  • DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
  • Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CHFI, CFR, Cloud+, or CND certification within 30 days of start date

Additional Qualifications:

  • Proven hands-on experience deploying, configuring, and managing Endace DAG/EndaceProbe solutions in production.
  • Familiarity with complementary network tools (Zeek, Suricata, Arkime, NDR platforms).
  • Experience with cloud networking and packet capture strategies in AWS, Azure, or GCP.
  • Certifications such as CISSP, GCIA, GNFA, GCIH, or vendor-specific credentials.
  • Strong analytical and problem-solving ability.
  • Excellent communication and documentation skills.
  • Able to collaborate with cross-functional technical and non-technical stakeholders.
  • Comfortable leading architecture conversations and driving platform strategy.

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
  • 401k Contribution from Day 1
  • PTO + 11 Paid Federal Holidays
  • Long & Short Term Disability Insurance
  • Group Term Life Insurance
  • Tuition, Certification & Professional Development Assistance
  • Workers’ Compensation
  • Relocation Assistance

Average salary estimate

$152500 / YEARLY (est.)
min
max
$130000K
$175000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs

Essential Network Security (ENS) seeks a cleared Trellix Endpoint DLP Engineer to design, deploy, and operationalize enterprise endpoint data protection for DoD/IC environments.

Essential Network Security (ENS) seeks a cleared Trellix Endpoint DLP Engineer to design, deploy, and operationalize enterprise endpoint data protection for DoD/IC environments.

Photo of the Rise User

A Senior Cybersecurity Engineer to lead development and automation of AbbVie's secrets discovery program, combining software development, cyber intelligence, and data analytics to identify and remediate exposed secrets.

Photo of the Rise User
Posted 20 hours ago

Reliable Robotics is hiring a Client Platform Engineer in Mountain View to develop and automate end-user IT platforms, manage SaaS/on‑prem/cloud infrastructure, and support company-wide standardization and security efforts.

Serve as the technical architect leading a comprehensive assessment and modernization strategy for a 52-application School Finance portfolio, producing risk-scored evaluations, architecture diagrams, and a phased modernization roadmap.

Trase Systems is hiring a Cloud Security Engineer to secure production multi‑cloud infrastructure, implement cloud-native security controls, and partner with engineering teams to ensure systems are secure by design.

Photo of the Rise User

CloudLinux is hiring a Lead Security Operations Engineer to lead detection, incident response, and threat intelligence initiatives across a global remote infrastructure.

Posted 18 hours ago

Experienced enterprise architect needed to lead architecture, governance, and roadmap activities for a federal digital modernization program in Washington, DC.

Photo of the Rise User
Posted 21 hours ago

Northwestern Medicine is hiring an Application Analyst Associate to provide application support, resolve production issues, and assist with system integration and quality assurance across the IS environment.

Photo of the Rise User
NBCUniversal Hybrid 1 Blachley Road, Stamford, Connecticut
Posted 12 hours ago

NBCUniversal is hiring a Sr Cyber Security Manager to drive threat-centric security strategy, stakeholder engagement, and operational cyber programs for NBC Sports and major live events.

Daxko Hybrid 600 University Park Place, Suite 500, Birmingham, Alabama, United States
Posted 11 hours ago

Daxko is hiring a Manager of Security Operations & Engineering to lead SOC maturity, incident response, and cloud/IAM security programs while coaching and growing a team of security engineers and analysts.

Posted 13 hours ago

Integres seeks a seasoned Senior Database Administrator/Systems Engineer to manage Oracle and SQL Server databases, virtualization, storage, backups, BI tools, and AWS migrations supporting statewide educational data infrastructure.

Photo of the Rise User

Experienced security professional needed to run vulnerability scanning, manage STIG compliance, and support RMF accreditation for enterprise assets at Agile Defense in Quantico, VA.

Photo of the Rise User
Posted 5 hours ago

Rice University seeks a detail-oriented Support Specialist II to provide high-quality, user-focused IT support and contribute to continuous improvement across campus technology services.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, unknown
DATE POSTED
December 13, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!