Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Illumio Zero Trust Segmentation Platform Engineer - Active TS/SCI with CI Poly image - Rise Careers
Job details

Illumio Zero Trust Segmentation Platform Engineer - Active TS/SCI with CI Poly

You will directly shape our enterprise Zero Trust program, influence architectural decisions, and help safeguard mission-critical systems by deploying one of the most advanced segmentation platforms in the industry. This is a high-impact engineering role with visibility across security, cloud, and executive leadership.

We are seeking an experienced Illumio Zero Trust Segmentation Platform Engineer to lead the design, implementation, and operational support of our enterprise micro-segmentation strategy. This role will own the Illumio Adaptive Security Platform (ASP) across hybrid environments and play a critical part in our Zero Trust initiative, partnering with security architects, cloud engineers, application teams, and IT operations to reduce lateral movement risk and strengthen our overall security posture.

Key Responsibilities:

  • Lead the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.
  • Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.
  • Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.
  • Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
  • Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.
  • Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
  • Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.
  • Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.
  • Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.
  • Contribute to architectural standards, documentation, and enterprise security playbooks.
  • 5+ years in cybersecurity, cloud security, or infrastructure engineering.
  • 3+ years of expertise in Linux/Windows systems, virtualization (VMware, Hyper-V), and cloud environments (AWS, Azure, or GCP).
  • 2+ years of experience with network security (firewalls, routing, segmentation models, TCP/IP).
  • 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments (finance, healthcare, federal, or energy).
  • 1+ year experience with infrastructure automation tools (Ansible, Terraform, or similar).
  • 1+ year experience with REST APIs, scripting (Python, Bash, PowerShell), or automation frameworks.
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, or Master’s degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
  • Active DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
  • Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of start date

Additional Qualifications

  • Prior Hands-on experience deploying and managing Illumio Adaptive Security Platform (ASP) in enterprise environments.
  • Illumio certifications (e.g., Illumio ASP Professional or Expert).
  • Experience with CMDB systems (ServiceNow), SIEM/SOAR tools, or vulnerability management platforms.
  • Strong understanding of Zero Trust principles, micro-segmentation, and lateral movement mitigation
  • Strong analytical and problem-solving skills with the ability to translate policies into technical controls.

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
  • 401k Contribution from Day 1
  • PTO + 11 Paid Federal Holidays
  • Long & Short Term Disability Insurance
  • Group Term Life Insurance
  • Tuition, Certification & Professional Development Assistance
  • Workers’ Compensation
  • Relocation Assistance

Average salary estimate

$165000 / YEARLY (est.)
min
max
$140000K
$190000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs

ENS Solutions is hiring an Arkime Engineer with active TS/SCI and CI poly to lead packet-capture architecture, integrations, and sustainment for high-security, Zero Trust environments.

Lead the engineering, tuning, and operational support of enterprise IDS/IPS systems (Suricata/Snort/Corelight) on RHEL for DoD/IC customers while holding TS/SCI with CI polygraph eligibility.

Posted 18 hours ago

StemWave is hiring a Head of IT & Business Systems to lead IT strategy and hands-on systems integrations (Salesforce, NetSuite, website, cloud) from our Boston office.

Photo of the Rise User
CATHEXIS Hybrid No location specified
Posted 5 hours ago

A multidisciplinary Principal Engineer is needed to coordinate web-scraping onboarding, create technical documentation and UI/UX designs, and build SharePoint-based collaboration solutions for a mission-driven government contracting team.

ENS Solutions is hiring an Arkime Engineer with active TS/SCI and CI poly to lead packet-capture architecture, integrations, and sustainment for high-security, Zero Trust environments.

Photo of the Rise User

DreamWorks Animation seeks a Senior Systems Administrator to design, administer, and automate its large-scale Linux environment supporting studio production and enterprise services.

Photo of the Rise User
TechFlow, Inc. Hybrid No location specified
Posted 2 hours ago

TechFlow is hiring Help Desk Support specialists to deliver Tier II/III troubleshooting and on-call support for DoD logistics systems, providing technical resolutions, documentation, and coordination with government platforms.

Lead the engineering, tuning, and operational support of enterprise IDS/IPS systems (Suricata/Snort/Corelight) on RHEL for DoD/IC customers while holding TS/SCI with CI polygraph eligibility.

Photo of the Rise User

Provide hands-on desktop and classroom technology support for the School of Fine Arts, managing device deployments, troubleshooting Windows/Mac/iOS systems, and supporting instructional AV environments.

Photo of the Rise User
NBCUniversal Hybrid 100 Universal City Plaza, Universal City, CALIFORNIA
Posted 24 hours ago

Lead FCAR technology strategy and operations as Senior Manager, Business Solutions at NBCUniversal, driving cross-functional projects and system reliability for Participations and Residuals.

Nooks Hybrid San Fransisco
Posted 15 hours ago

Nooks is hiring an IT Engineer to lead internal IT, device and AV operations, SSO/MDM provisioning, and security/compliance support for its San Francisco office.

Avint Hybrid No location specified
Posted 12 hours ago

Avint is hiring a seasoned Database Administrator to secure, optimize, and manage Oracle, SQL Server, and Sybase databases for mission-critical systems.

Photo of the Rise User
Posted 20 hours ago

Experienced Systems Administrator needed to manage, monitor, and maintain federal IT infrastructure with hands-on endpoint provisioning and troubleshooting responsibilities.

Photo of the Rise User

Reflect Orbital seeks an IT Systems & Network Engineer to maintain and secure corporate and mission-critical network and IT infrastructure across office, cloud, and ground station environments.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, unknown
DATE POSTED
December 13, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!