VMware NSX Security Engineer

  • Spring, United States
  • Contract
  • POSTED 6 DAYS AGO

About the job

Job Summary

We are seeking an experienced VMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment.

The role bridges traditional networking, cloud infrastructure, and cybersecurity, with a primary focus on establishing a zero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads.

Location: Spring, TX – Day 1 Onsite Duration: 6–12+ Months Contract

Key Responsibilities

Security Architecture & Micro-Segmentation

Design and enforce granular Distributed Firewall (DFW) and Gateway Firewall rules.

Implement micro-segmentation to isolate virtual machines and applications.

Prevent lateral or east-west threat propagation across workloads.

Support zero-trust security architecture and policies.

Network Virtualization Management

Deploy and manage logical switching within VMware NSX.

Configure and administer Tier-0 and Tier-1 routing.

Manage distributed load balancing and VPN services.

Troubleshoot network virtualization across hybrid environments.

Lifecycle Management

Perform maintenance, scaling, upgrades, patches, and configuration management.

Administer NSX Managers, Edge Nodes, and Transport Nodes.

Ensure platform stability, availability, and disaster recovery readiness.

Infrastructure Automation

Develop and maintain Infrastructure-as-Code (IaC) solutions.

Create automation scripts to streamline security rule deployment.

Automate configuration and operational processes using PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs.

Monitoring & Log Analysis

Monitor infrastructure health, capacity, and security events.

Utilize VMware Aria Operations, Network Insight, or equivalent monitoring platforms.

Integrate and analyze security events through SIEM platforms such as Splunk.

Cross-Team Collaboration

Collaborate with systems engineers, network administrators, and Security Operations Center (SOC) teams.

Troubleshoot physical-to-virtual network connectivity and overlay issues.

Support integration between networking, infrastructure, and security environments.

Incident Response Support

Assist security teams during network and security incidents.

Perform deep-packet inspection and network flow tracing.

Apply emergency isolation and firewall rules during active security events.

Required Technical Skills

VMware Ecosystem

Deep hands-on experience with:

VMware vSphere

VMware ESXi

VMware vCenter

VMware NSX-T / NSX architecture

Networking

Expert knowledge of:

BGP

OSPF

Geneve / VXLAN overlay encapsulation

VLANs

TCP/IP

Firewall & Security

Strong understanding of:

Layer 4–7 firewall rules

Distributed Firewall (DFW)

Gateway Firewall

IDS/IPS

Network micro-segmentation

Zero-trust security concepts

Automation & Scripting

Proficiency with one or more of:

PowerShell / PowerCLI

Python

Terraform

NSX REST APIs

Third-Party & Cloud Integration

Experience integrating NSX with physical next-generation firewalls such as:

Palo Alto Networks

Check Point

Familiarity with cloud networking environments such as AWS and Azure.

Preferred Certifications

VMware Certified Professional – Network Virtualization (VCP-NV)

VMware Certified Advanced Professional – Network Virtualization (VCAP-NV Design or Deploy)

Cisco Certified Network Associate (CCNA)

Cisco Certified Network Professional (CCNP)