{"id":1152186,"url":"https://alion.io/job/hudson-manpower-vmware-nsx-security-engineer","title":"VMware NSX Security Engineer","company":{"id":678128,"name":"Hudson Manpower","domain":"hudsonmanpower.com","url":"https://alion.io/company/hudsonmanpower","size_band":"1001-5000","is_staffing_agency":true,"is_intermediary":false,"ats_vendor":"Recruitee","truth_index":{"grade":"A","score":94,"open_postings":115,"ghost_share":0,"stale_share":0.035,"repost_share":0,"time_to_fill_p50_days":184,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":null,"employment_type":"contractor","work_mode":"on_site","remote_scope":null,"hiring_geo_confidence":"structured","locations":["Spring, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":63000,"max_usd":143000,"period":"year","method":"role_country_seniority_unknown","sample_n":1647},"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"BGP","optional":false},{"name":"OSPF","optional":false},{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"Rest API","optional":false},{"name":"SIEM","optional":false},{"name":"Splunk","optional":false},{"name":"TCP/IP","optional":false},{"name":"Terraform","optional":false},{"name":"VMWare","optional":false},{"name":"VPN","optional":false},{"name":"Zero Trust","optional":false}],"status":"live","first_seen_at":"2026-09-23T16:55:27Z","employer_posted_date":"2026-09-23","last_verified_at":"2026-09-24T10:57:53Z","board_verified":true,"closed_at":null,"days_open":0,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":0},"description":"Job Summary\nWe are seeking an experienced VMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment.\nThe role bridges traditional networking, cloud infrastructure, and cybersecurity, with a primary focus on establishing a zero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads.\nLocation: Spring, TX - Day 1 Onsite\nDuration: 6-12+ Months Contract\nKey Responsibilities\nSecurity Architecture & Micro-Segmentation\nDesign and enforce granular Distributed Firewall (DFW) and Gateway Firewall rules.\n\nImplement micro-segmentation to isolate virtual machines and applications.\n\nPrevent lateral or east-west threat propagation across workloads.\n\nSupport zero-trust security architecture and policies.\n\nNetwork Virtualization Management\nDeploy and manage logical switching within VMware NSX.\n\nConfigure and administer Tier-0 and Tier-1 routing.\n\nManage distributed load balancing and VPN services.\n\nTroubleshoot network virtualization across hybrid environments.\n\nLifecycle Management\nPerform maintenance, scaling, upgrades, patches, and configuration management.\n\nAdminister NSX Managers, Edge Nodes, and Transport Nodes.\n\nEnsure platform stability, availability, and disaster recovery readiness.\n\nInfrastructure Automation\nDevelop and maintain Infrastructure-as-Code (IaC) solutions.\n\nCreate automation scripts to streamline security rule deployment.\n\nAutomate configuration and operational processes using PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs.\n\nMonitoring & Log Analysis\nMonitor infrastructure health, capacity, and security events.\n\nUtilize VMware Aria Operations, Network Insight, or equivalent monitoring platforms.\n\nIntegrate and analyze security events through SIEM platforms such as Splunk.\n\nCross-Team Collaboration\nCollaborate with systems engineers, network administrators, and Security Operations Center (SOC) teams.\n\nTroubleshoot physical-to-virtual network connectivity and overlay issues.\n\nSupport integration between networking, infrastructure, and security environments.\n\nIncident Response Support\nAssist security teams during network and security incidents.\n\nPerform deep-packet inspection and network flow tracing.\n\nApply emergency isolation and firewall rules during active security events.\n\nRequired Technical Skills\nVMware Ecosystem\nDeep hands-on experience with:\nVMware vSphere\n\nVMware ESXi\n\nVMware vCenter\n\nVMware NSX-T / NSX architecture\n\nNetworking\nExpert knowledge of:\nBGP\n\nOSPF\n\nGeneve / VXLAN overlay encapsulation\n\nVLANs\n\nTCP/IP\n\nFirewall & Security\nStrong understanding of:\nLayer 4-7 firewall rules\n\nDistributed Firewall (DFW)\n\nGateway Firewall\n\nIDS/IPS\n\nNetwork micro-segmentation\n\nZero-trust security concepts\n\nAutomation & Scripting\nProficiency with one or more of:\nPowerShell / PowerCLI\n\nPython\n\nTerraform\n\nNSX REST APIs\n\nThird-Party & Cloud Integration\nExperience integrating NSX with physical next-generation firewalls such as:\nPalo Alto Networks\n\nCheck Point\n\nFamiliarity with cloud networking environments such as AWS and Azure.\n\nPreferred Certifications\nVMware Certified Professional - Network Virtualization (VCP-NV)\n\nVMware Certified Advanced Professional - Network Virtualization (VCAP-NV Design or Deploy)\n\nCisco Certified Network Associate (CCNA)\n\nCisco Certified Network Professional (CCNP)\n\nRequirements\nRequired Qualifications\nDeep hands-on experience with VMware vSphere, ESXi, vCenter, and VMware NSX-T/NSX architecture.\n\nExpert-level knowledge of BGP, OSPF, Geneve/VXLAN overlay encapsulation, VLANs, and TCP/IP.\n\nStrong experience with NSX Distributed Firewall (DFW), Gateway Firewall, micro-segmentation, and zero-trust security concepts.\n\nHands-on experience with logical switching, Tier-0/Tier-1 routing, distributed load balancing, and VPNs within VMware NSX.\n\nExperience managing the NSX lifecycle, including NSX Managers, Edge Nodes, Transport Nodes, upgrades, patches, scaling, and configuration.\n\nProficiency with PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs for automation and infrastructure-as-code.\n\nExperience with Layer 4-7 firewall rules, IDS/IPS, and network security policies.\n\nExperience monitoring VMware infrastructure and security events using VMware Aria Operations, Network Insight, Splunk, or similar tools.\n\nExperience troubleshooting physical-to-virtual network overlays and collaborating with networking, systems, and SOC teams.\n\nFamiliarity with integrating NSX with next-generation firewalls such as Palo Alto Networks or Check Point and/or cloud networking platforms such as AWS and Azure.\n\nAbility to work onsite from Day 1 in Spring, TX.","description_format":"text","description_chars":4779,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Network Security"],"lifecycle":[{"event":"open","at":"2026-09-23T18:21:24Z"}],"liveness":{"score":54,"band":"ok","label":"Likely open","p_open":1,"p_active":0.542,"p_room":1,"age_days":0,"expected_fill_days":184,"reasons":["conf:2","agency","velocity","win:early","comp:brand"],"computed_at":"2026-09-24T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/hudson-manpower-vmware-nsx-security-engineer","json_url":"https://alion.io/job/hudson-manpower-vmware-nsx-security-engineer.json","meta":{"generated_at":"2026-09-24T12:29:29Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}