Forescout NAC Engineer - Chicago

Only for registered members Chicago, United States

3 days ago

Default job background
$85 - $100 (USD)
Project Overview / Contractor's Role: · The Principal Network Security Engineer plays a pivotal role in safeguarding the organization's infrastructure by architecting, deploying, and managing advanced network security platforms. · This is a high-impact position within a newly for ...
Job description

Project Overview / Contractor's Role:


The Principal Network Security Engineer plays a pivotal role in safeguarding the organization's infrastructure by architecting, deploying, and managing advanced network security platforms.

This is a high-impact position within a newly formed team dedicated to mission-critical initiatives, where reliability, resilience, and exceeding expectations are standard.

We're seeking a strategic thought leader and self-driven engineer with a deep security-first mindset and a strong sense of product ownership—someone who can lead the transformation and continuous evolution of our network security ecosystem in alignment with our business and cybersecurity objectives.

Experience Level: 3 – Senior


Core Skills & Experience:
Expert-level in NAC platform administration and configuration (Forescout preferred)
Strong understanding of network security principles. CISSP certification is desired but not required
Working experience deploying and operating Identity platforms (Cisco ISE preferred)
Exposure to Microsoft Active Directory, Microsoft Entra ID, and LDAP
Knowledge of network fundamentals (TCP/IP, VLANs, VRFs, VPN, Dynamic Routing). CCNP certification preferred
Strong understanding of how Network and Securiomty infrastructure operate at Layer 2, Layer 3 & Layer 4-7
Knowledge of network authentication protocols including EAP/802.1x, TACACS, RADIUS, OAuth
Experience working with Public Key Infrastructure and tools (Venafi)
Expert-level experience working with Linux, Windows, and MacOS operating systems
Experience with scripting languages (Bash, Python, Perl, Powershell) and IaC tools like Ansible or Terraform
Proficient with packet data tools like Wireshark to perform deep-level forensic analysis
Ability to perform security analysis using SIEM and Analytics tools (Azure Sentinel, Log Analytics)
Expert-level writing skills to create playbooks and standard operating procedures
Experience with web APIs and data serialization languages (JSON, YAML)
Excellent problem-solving and troubleshooting abilities with an emphasis on security
Strong communication skills to collaborate with technical and non-technical stakeholders
Exposure to cloud service providers such as Azure or AWS
Working experience with Next Generation Firewalls (Checkpoint, Palo Alto) or host-based firewalls (Illumio)
Good understanding of DNS, DHCP, and IPAM systems
Previous experience at a financial organization is a plus


Certifications:
The following certifications are strongly preferred

FSCA - Forescout Certified Administrator

FSAA - Forescout Advanced Administrator

FSCE - Forescout Certified Engineer


Tasks & Responsibilities:


As the product owner for Network Access Control (NAC) and Identity Services platforms, the Principal Network Security Engineer will lead the strategic direction, architecture, and operational excellence of these technologies.

This role demands a proactive security mindset and a deep sense of ownership to ensure the platforms are resilient, scalable, and aligned with enterprise security goals.


Solution Architecture & Design Partner with cross-functional stakeholders to architect and deliver secure, scalable solutions tailored to evolving business and security requirements.

Deployment & Configuration Lead global deployment and configuration of NAC appliances and Identity Services platforms across data centers, ensuring consistency, reliability, and compliance.

Device Discovery & Profiling Implement advanced profiling techniques to identify and classify all network-connected devices, enforcing access only for authorized and trusted endpoints.

Policy Creation & Enforcement Define and enforce granular access control policies based on device posture, driving network segmentation and strengthening the organization's security posture.

Threat Detection & Response Monitor for anomalous device behavior and orchestrate automated responses to mitigate potential threats in real time.

Compliance Management Leverage platform capabilities to ensure continuous compliance with internal standards and external regulatory requirements through robust reporting and audit trails.

Security Ecosystem Integration Seamlessly integrate NAC and Identity platforms with next-gen firewalls, SIEMs, endpoint protection, and other security tools to create a unified defense strategy.

Customer Support & Enablement Provide expert-level support to internal teams, manage escalations, and deliver training to promote platform adoption and operational readiness.

Automation & Orchestration Utilize modern development tools and GitOps practices to automate deployment, configuration, and lifecycle management of security platforms.

Standards & Documentation Establish architectural patterns, define operational standards, and maintain comprehensive documentation using Confluence and to ensure transparency and repeatability.

Pay Rate Range

USD hourly

Additional Notes


The above listed pay range is a good faith estimate of what the employer reasonably expects to pay for this position.

Benefits Information

Optional benefits offering includes medical, dental, vision and retirement benefits via Hiregenics.


Similar jobs

  • Work in company

    Principal Network Security Engineer

    Only for registered members

    The Principal Network Security Engineer plays a pivotal role in safeguarding the organization's infrastructure by architecting, deploying, and managing advanced network security platforms. · ...

    Chicago, IL $180,000 - $260,000 (USD) per year

    3 days ago

  • Work in company Remote job

    Principal Network Security Engineer

    Only for registered members

    The Principal Network Security Engineer plays a pivotal role in safeguarding the organization's infrastructure by architecting, deploying, and managing advanced network security platforms. · ...

    Chicago, IL

    4 days ago

  • Work in company Remote job

    Principal Network Security Engineer

    Only for registered members

    We are seeking a Principal Network Security Engineer to lead the transformation of our network security ecosystem. The ideal candidate will have a deep security-first mindset and strong understanding of network security principles. · Solution Architecture & Design Partner with cr ...

    Chicago, IL $180,000 - $260,000 (USD) per year

    3 days ago

  • Work in company

    Lead Network Engineer

    Only for registered members

    This Lead Network Engineer position requires experience with network infrastructure design deployment support and documentation routing switching firewalls AWS cloud-base solutions Python automation key ACI built ACI from ground up. · ...

    Chicago, IL

    1 month ago

  • Work in company

    Senior Network Engineer

    Only for registered members

    We are seeking Senior Network Engineer for our client in Chicago, IL. The ideal candidate will have experience directing use of tools such as Ansible, Terraform and Python.Responsibilities include supporting, administrating and overseeing network support, design and analysis of n ...

    Chicago, IL

    1 month ago

  • Work in company

    Project Manager Wireless DAS

    Only for registered members

    Description · Project Manager Wireless DAS  JOB DESCRIPTION for JR#5875 · The Wireless 5G/DAS Project Management Office (PMO) consists of program and project management delivery, resource management, quality management, continuous improvement, professional development and knowled ...

    Chicago, IL, United States

    3 days ago

  • Work in company

    Project Manager Wireless DAS

    Only for registered members

    The Wireless 5G/DAS Project Management Office (PMO) consists of program and project management delivery, resource management, quality management, continuous improvement, professional development and knowledge management. · ...

    Chicago, IL

    1 month ago

  • Work in company

    Senior Manager, Network Engineering

    Only for registered members

    The Senior Network Lead will act as a strategic technical authority responsible for designing implementing and optimising secure resilient and scalable network solutions across hybrid and multi-cloud environments. · Oversee network segmentation initiatives at both macro and micro ...

    Chicago, IL

    1 month ago

  • Work in company

    Senior Administrator, IT Infrastructure

    Only for registered members

    Invenergy drives innovation in energy. Powered by decades of entrepreneurial experience and unparalleled execution, we solve the energy challenges facing our customers and communities. We provide power generation and storage solutions at scale around the world to create a cleaner ...

    Chicago, IL

    22 hours ago

  • Work in company

    Senior Manager, Network Engineering

    Only for registered members

    The Senior Manager, Network Engineering will act as a strategic technical authority responsible for designing implementing and optimising secure resilient and scalable network solutions across hybrid and multi cloud environments. · ...

    Chicago, IL

    1 month ago

  • Work in company Remote job

    Arista Wireless Architect

    Only for registered members

    The Wireless Domain Architect is a senior technical leadership role within a professional IT services organization. · ...

    Chicago, IL

    3 weeks ago

  • Work in company

    Principal Network Security Engineer

    Only for registered members

    The Principal Network Security Engineer plays a pivotal role in safeguarding the organization's infrastructure by architecting, deploying, and managing advanced network security platforms. · ...

    Chicago

    5 days ago

  • Work in company

    Principal Network Security Engineer

    Only for registered members

    We are seeking a Principal Network Security Engineer to lead the transformation of our client's network security ecosystem in alignment with business and cybersecurity objectives. · ...

    Chicago $180,000 - $260,000 (USD) per year

    4 days ago

  • Work in company

    Principal Network Security Engineer

    Only for registered members

    + Safeguarding the organization's infrastructure by architecting, deploying and managing advanced network security platforms.+ This is a high-impact position within a newly formed team dedicated to mission-critical initiatives,+ We're seeking a strategic thought leader and self-d ...

    Chicago

    5 days ago

  • Work in company

    Network Security Engineer

    Only for registered members

    The Principal Network Security Engineer will lead the strategic direction, architecture, and operational excellence of NAC platforms. · Solution Architecture & Design Partner with cross-functional stakeholders to architect and deliver secure solutions. · Deployment & Configuratio ...

    Chicago $90,000 - $150,000 (USD) per year

    4 days ago

  • Work in company

    Security Technology Lead

    Only for registered members

    The organization is seeking a strategic thought leader and self-driven engineer with a deep security-first mindset to lead the transformation and continuous evolution of their network security ecosystem. · Expert-level experience working with NAC platforms. · Strong understanding ...

    Chicago $85 - $98 (USD)

    3 days ago

  • Work in company

    Network Security Engineer

    Only for registered members

    Network security engineer job in Chicago and Dallas. · Palo Alto firewall – in depth knowledge and experience with Palo Alto Next generation firewall in a large environment including HA setup, VSYS, Panorama, Log Collectors, Wildfire, MindMeld, Autofocus. · Familiarity with blade ...

    Chicago

    3 weeks ago

  • Work in company

    Lead Network Engineer

    Only for registered members

    Dice is seeking a Lead Associate Principal, · Network Engineering - ACI and AWS with experience in Cisco ACI checkpoint F5 · and hybrid Lan Cloud AWS Network IT security governance routing switching layer 3 Python automation key is ACI built ACI from ground up. · This position ov ...

    Chicago

    1 month ago

  • Work in company

    Senior Network Engineer

    Only for registered members

    Sr Network Eng - Contract to Hire The keys are AWS , networking , checkpoint , python scripting and ACI is a nice to have. · ...

    Chicago

    1 month ago

  • Work in company

    Senior Manager, Network Engineering

    Only for registered members

    +Job summary · The Senior Network Lead will act as a strategic technical authority, responsible for designing, implementing, and optimising secure, resilient, and scalable network solutions, · +Minimum 7 years of experience in enterprise network engineering, · Deep understanding ...

    Chicago $70,000 - $200,000 (USD)

    1 month ago