Illumio Zero Trust Segmentation Platform Engineer - Active TS/SCI with CI Poly

ENS Solutions, LLC
Reston, VA

You will directly shape our enterprise Zero Trust program, influence architectural decisions, and help safeguard mission-critical systems by deploying one of the most advanced segmentation platforms in the industry. This is a high-impact engineering role with visibility across security, cloud, and executive leadership.

We are seeking an experienced Illumio Zero Trust Segmentation Platform Engineer to lead the design, implementation, and operational support of our enterprise micro-segmentation strategy. This role will own the Illumio Adaptive Security Platform (ASP) across hybrid environments and play a critical part in our Zero Trust initiative, partnering with security architects, cloud engineers, application teams, and IT operations to reduce lateral movement risk and strengthen our overall security posture.

Key Responsibilities:

  • Lead the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.
  • Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.
  • Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.
  • Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
  • Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.
  • Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
  • Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.
  • Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.
  • Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.
  • Contribute to architectural standards, documentation, and enterprise security playbooks.

Requirements

  • 5+ years in cybersecurity, cloud security, or infrastructure engineering.
  • 3+ years of expertise in Linux/Windows systems, virtualization (VMware, Hyper-V), and cloud environments (AWS, Azure, or GCP).
  • 2+ years of experience with network security (firewalls, routing, segmentation models, TCP/IP).
  • 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments (finance, healthcare, federal, or energy).
  • 1+ year experience with infrastructure automation tools (Ansible, Terraform, or similar).
  • 1+ year experience with REST APIs, scripting (Python, Bash, PowerShell), or automation frameworks.
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, or Master’s degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
  • Active DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
  • Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of start date

Additional Qualifications

  • Prior Hands-on experience deploying and managing Illumio Adaptive Security Platform (ASP) in enterprise environments.
  • Illumio certifications (e.g., Illumio ASP Professional or Expert).
  • Experience with CMDB systems (ServiceNow), SIEM/SOAR tools, or vulnerability management platforms.
  • Strong understanding of Zero Trust principles, micro-segmentation, and lateral movement mitigation
  • Strong analytical and problem-solving skills with the ability to translate policies into technical controls.

Benefits

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
  • 401k Contribution from Day 1
  • PTO + 11 Paid Federal Holidays
  • Long & Short Term Disability Insurance
  • Group Term Life Insurance
  • Tuition, Certification & Professional Development Assistance
  • Workers’ Compensation
  • Relocation Assistance
Posted 2026-01-14

Recommended Jobs

Travel Cath Lab RN - St. Mary's Hospital, Richmond, VA

ATC - Southern Virginia Locations
Richmond, VA

Job Description: Travel Cath Lab RN - St. Mary's Hospital, Richmond, VA Location: St. Mary's Hospital - 5801 Bremo Road, Richmond, VA 23226 Payrate: $60 - $70 per hour (Assignment) | $22 per hou…

View Details
Posted 2025-08-28

Treatment Foster Care Case Worker

HumanKind
Danville, VA

As a Treatment Foster Care Case Worker at {EMPLOYER-DESC}, you will be entrusted with the critical role of supporting foster children and their substitute families by coordinating necessary services a…

View Details
Posted 2026-01-09

Entry-level Sales Representative

Visionary Insights
Leesburg, VA

About Us Our team is proud to be an authorized partner of Leaf, delivering gutter protection solutions directly to homeowners in a retail setting. We are passionate about providing exceptional custo…

View Details
Posted 2026-01-14

Laborer - Intern Instrumentation

AI Signal Research, Inc (ASRI)
Dahlgren, VA

Thank you for your interest in AI Signal Research, Inc. (ASRI). ASRI accepts applications for employment for current career opportunities only.  Education: High School Diploma or GED Months/…

View Details
Posted 2025-12-01

DOW - Database Analyst

cFocus Software Incorporated
Alexandria, VA

cFocus Software seeks a Database Analyst to join our program supporting the Department of Defense (DoD). This position is remote. This position requires the ability a Public Trust clearance. Qualif…

View Details
Posted 2026-01-14

Manager, Product Management, CDN DO

Capital One
McLean, VA

Manager, Product Management, CDN DO Manager, Product Management (PXDP50) Product Management at Capital One is a booming, vibrant craft that requires reimagining the status quo, findi…

View Details
Posted 2025-12-04

Telephonic Triage Nurse - OB/GYN Practice

WomanCare Centers
Norfolk, VA

Telephonic Triage Nurse – OB/GYN Practice   Location: Norfolk, VA Position Type: Full-Time (Monday–Friday typically 8-hour shifts between 7:45am-5:30pm)  About Us   We are a busy, patie…

View Details
Posted 2025-11-06

Mobile Auto Service Technician — Diagnose, Repair & Grow

Sheehy Auto Stores, Inc.
Richmond, VA

A leading auto service provider in Washington, DC, is seeking skilled Service Technicians to diagnose and repair vehicles. The ideal candidate will have a high school diploma or GED, and 1-3 years of…

View Details
Posted 2026-01-14

Board Certified Behavior Analyst (BCBA) | Arlington, VA (Arlington)

Get Set ABA
Arlington, VA

Board Certified Behavior Analysts (BCBA) Maryland LBA Required! Pay Rate: $100 per hour Benefits: Sign on bonus $5,000 Flexible Scheduling: Manage your own caseload and schedule for …

View Details
Posted 2025-12-29

Transportation Operator III

Virginia Department of Transportation
Prince George, VA

Job Identification 11355 Job Category Transportation Operations Posting Date 01/06/2026, 01:30 PM Locations Prince George AHQ Apply Before 01/13/2026, 04:59 AM Job Schedule Full time…

View Details
Posted 2025-12-15