VMware NSX Security Engineer
Job Summary
We are seeking an experienced VMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment.
The role bridges traditional networking, cloud infrastructure, and cybersecurity , with a primary focus on establishing a zero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads.
Location: Spring, TX – Day 1 Onsite Duration: 6–12+ Months Contract
Key Responsibilities
Security Architecture & Micro-Segmentation
- Design and enforce granular Distributed Firewall (DFW) and Gateway Firewall rules.
- Implement micro-segmentation to isolate virtual machines and applications.
- Prevent lateral or east-west threat propagation across workloads.
- Support zero-trust security architecture and policies.
Network Virtualization Management
- Deploy and manage logical switching within VMware NSX.
- Configure and administer Tier-0 and Tier-1 routing .
- Manage distributed load balancing and VPN services.
- Troubleshoot network virtualization across hybrid environments.
Lifecycle Management
- Perform maintenance, scaling, upgrades, patches, and configuration management.
- Administer NSX Managers, Edge Nodes, and Transport Nodes .
- Ensure platform stability, availability, and disaster recovery readiness.
Infrastructure Automation
- Develop and maintain Infrastructure-as-Code (IaC) solutions.
- Create automation scripts to streamline security rule deployment.
- Automate configuration and operational processes using PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs.
Monitoring & Log Analysis
- Monitor infrastructure health, capacity, and security events.
- Utilize VMware Aria Operations, Network Insight , or equivalent monitoring platforms.
- Integrate and analyze security events through SIEM platforms such as Splunk.
Cross-Team Collaboration
- Collaborate with systems engineers, network administrators, and Security Operations Center (SOC) teams.
- Troubleshoot physical-to-virtual network connectivity and overlay issues.
- Support integration between networking, infrastructure, and security environments.
Incident Response Support
- Assist security teams during network and security incidents.
- Perform deep-packet inspection and network flow tracing.
- Apply emergency isolation and firewall rules during active security events.
Required Technical Skills
VMware Ecosystem
- Deep hands-on experience with:
- VMware vSphere
- VMware ESXi
- VMware vCenter
- VMware NSX-T / NSX architecture
Networking
- Expert knowledge of:
- BGP
- OSPF
- Geneve / VXLAN overlay encapsulation
- VLANs
- TCP/IP
Firewall & Security
- Strong understanding of:
- Layer 4–7 firewall rules
- Distributed Firewall (DFW)
- Gateway Firewall
- IDS/IPS
- Network micro-segmentation
- Zero-trust security concepts
Automation & Scripting
- Proficiency with one or more of:
- PowerShell / PowerCLI
- Python
- Terraform
- NSX REST APIs
Third-Party & Cloud Integration
- Experience integrating NSX with physical next-generation firewalls such as:
- Palo Alto Networks
- Check Point
- Familiarity with cloud networking environments such as AWS and Azure .
Preferred Certifications
- VMware Certified Professional – Network Virtualization (VCP-NV)
- VMware Certified Advanced Professional – Network Virtualization (VCAP-NV Design or Deploy)
- Cisco Certified Network Associate (CCNA)
- Cisco Certified Network Professional (CCNP)
Sourced from a public career listing. Jobverse is an aggregator, not the employer.