Cisco Network Security Engineer/ Senior Consultant
Cisco
Cisco Identity Services Engine
Cloud
Cloud Platforms
Consulting
Dns Security
Engineering
Firewall
Firewall Management
Identity and Access Management
Information Security
Information Technology (IT)
InfoSec
Intrusion Prevention System
Next Generation Firewall
Sd Access
Security
Security Automation
Solution Architecture
Ssl/tls Decryption
Trustsec
Job Description
Within Deloitte Cyber, the Cisco Network Security Engineer / Senior Consultant will lead the design, deployment, and integration of Cisco security solutions across enterprise, cloud, and hybrid environments. The role combines hands-on engineering with advisory work to align security architectures with client objectives.
Position Details
- Location: Tampa, FL (onsite)
- Salary: USD 105,400 - 207,800 per year
- Minimum experience: 3 years
- Education: BA/BS degree in a technical field
Responsibilities
- Design, deploy, and manage Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC) across on‑premises, virtual, and cloud deployments.
- Implement Cisco Identity Services Engine (ISE) capabilities, including 802.1X network access control, device profiling, guest lifecycle management, TrustSec segmentation, and integration with enterprise identity stores.
- Configure and optimize advanced security features such as intrusion prevention, malware protection, URL filtering, DNS‑based security, security intelligence, and SSL/TLS decryption policies.
- Deploy and integrate Cisco Secure Firewall solutions in cloud environments (AWS, Azure, and GCP), enabling centralized policy management and secure connectivity across hybrid infrastructures.
- Develop client‑facing security architectures that integrate Cisco platforms with SIEM and automation tools, delivering guidance that aligns technical requirements with compliance and business goals.
Requirements
- BA/BS degree in a technical field (e.g., Computer Science, Cyber Security, Information Technology, or equivalent work experience)
- CCNP Security or CCIE Security certification
- 5+ years of experience in network security engineering with Cisco technologies
- 5+ years of experience designing, deploying, and managing Cisco FTD and FMC in enterprise environments, including physical appliances, virtual instances, and cdFMC
- 5+ years of experience designing and implementing Cisco ISE, including distributed node architectures, high availability configurations, patch management, and upgrade planning
- 3+ years of experience with Cisco ISE 802.1X NAC, guest lifecycle management, profiling policies, TrustSec segmentation, and Cisco Firepower capabilities including IPS, malware protection, URL filtering, DNS‑based security, SSL/TLS decryption, and cloud firewall deployments in AWS, Azure, and GCP
- Ability to travel up to 50% on average, depending on client engagements
- Limited immigration sponsorship may be available
Technologies
- Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC)
- Cisco Identity Services Engine (ISE)
- 802.1X Network Access Control and TrustSec
- Intrusion Prevention System (IPS), malware protection, URL filtering, DNS‑based security
- SSL/TLS decryption, Secure Firewall across cloud and on‑premises
- Cloud platforms: AWS, Amazon Web Services, Microsoft Azure, Google Cloud Platform (GCP)
- Security Information and Event Management (SIEM)
- REST APIs, Ansible, Terraform, Python
- Cisco Catalyst Center, SD‑Access
The Team
The Enterprise Security practice integrates security into digital transformation initiatives, securing the technical backbone while enabling secure innovation. The team encompasses security architecture, secure development and deployment, cloud security, application security, and protection for emerging technologies and connected products.