Cisco Network Security Engineer/ Senior Consultant
Job Description
Join Deloitte's Cyber team as a Senior Consultant, shaping Cisco network security deployments across on-premises, cloud, and hybrid environments. You will design, deploy, and manage Cisco Firepower Threat Defense (FTD), Firepower Management Center (FMC), and Identity Services Engine (ISE) solutions, delivering security architectures and SIEM integrations that align technical requirements with business objectives. This role is based onsite in Miami, FL, with a competitive annual salary range of USD 105,400 to 207,800.
Responsibilities
- Designing, deploying, and managing Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC) across enterprise environments, including physical, virtual, and cloud-delivered deployments
- Implementing and supporting Cisco Identity Services Engine (ISE) capabilities, including 802.1X network access control, device profiling, guest lifecycle management, TrustSec segmentation, and integration with enterprise identity stores
- Configuring and tuning advanced Cisco security features, such as IPS, malware protection, URL filtering, DNS-based security, Security Intelligence, and SSL/TLS decryption policies
- Deploying and integrating Cisco Secure Firewall solutions in cloud environments (AWS, Azure, GCP) with centralized policy management and secure connectivity across hybrid infrastructures
- Developing client-facing security architectures, integrating Cisco platforms with SIEM and automation tools, and delivering recommendations that balance technical requirements with compliance and business objectives
Requirements
- BA/BS degree in a technical field (e.g., Computer Science, Cyber Security, Information Technology, or equivalent work experience)
- CCNP Security or CCIE Security certification required
- 5+ years of experience in network security engineering with Cisco security technologies
- 5+ years designing, deploying, and managing Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC) in enterprise environments, including physical appliances, virtual instances, and cdFMC
- 5+ years of experience designing and implementing Cisco Identity Services Engine (ISE), including distributed node architectures, high availability configurations, patch management, and upgrade planning
- 3+ years of experience with Cisco ISE 802.1X Network Access Control (NAC), guest lifecycle management, profiling policies, TrustSec segmentation, and Cisco Firepower capabilities including IPS, malware protection, URL filtering, DNS-based security, SSL/TLS decryption, and cloud firewall deployments in AWS and Azure
- Ability to travel up to 50% on average, based on client needs
- Limited immigration sponsorship may be available
Technologies
- Cisco Firepower Threat Defense (FTD)
- Cisco Firepower Management Center (FMC)
- Cisco Identity Services Engine (ISE)
- 802.1X Network Access Control (NAC)
- TrustSec segmentation
- Cisco Secure Firewall
- AWS, Microsoft Azure, Google Cloud Platform (GCP)
- Security Information and Event Management (SIEM) tools
- REST APIs, Ansible, Terraform, Python
- Cisco Catalyst Center, Cisco Umbrella, Cisco Secure Client
- Duo Security, Cisco SecureX, Cisco Extended Detection and Response (XDR)
The Team
Our Enterprise Security practice embeds security across digital transformation, safeguarding a client’s technical backbone while enabling secure progress. The team encompasses security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.