Cisco Network Security Engineer/ Senior Consultant
Cisco
Cisco Identity Services Engine
Cloud
Cloud Infrastructure
Cloud Platforms
Cloud Technology
Consultant
Cybersecurity Tools
Dns Security
Engineering
Firewall
Firewall Management
Identity and Access Management
Information Security
Information Technology (IT)
Malware Protection
Network Access Control
Next Generation Firewall
Security
Security Automation
Security Compliance
Ssl/tls Decryption
Trustsec
Url Filtering
Job Description
Deloitte seeks a Cisco Network Security Engineer / Senior Consultant to join its Milwaukee, onsite Cyber team.
Responsibilities
- Design, deploy, and manage Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC) across enterprise environments, including on‑premises appliances, virtual instances, and cloud‑delivered deployments
- Implement and support Cisco Identity Services Engine (ISE) capabilities, covering 802.1X network access control, device profiling, guest lifecycle management, TrustSec segmentation, and integration with enterprise identity stores
- Configure and tune advanced Cisco security features, including IPS, malware protection, URL filtering, DNS‑based security, Security Intelligence, and SSL/TLS decryption policies
- Deploy and integrate Cisco Secure Firewall solutions in cloud environments (AWS, Azure, GCP), with centralized policy management and secure connectivity across hybrid infrastructures
- Develop client‑facing security architectures, integrate Cisco platforms with SIEM tools and automation solutions, and deliver recommendations aligned with technical requirements, compliance needs, and business objectives
Requirements
- BA/BS degree in a technical field or equivalent work experience
- CCNP Security or CCIE Security certification required
- 5+ years of experience in network security engineering with Cisco security technologies
- 5+ years designing, deploying, and managing Cisco FTD and FMC in enterprise environments, including physical appliances, virtual instances, and cloud‑delivered cdFMC
- 5+ years designing and implementing Cisco ISE, including distributed node architectures, high availability configurations, patch management, and upgrade planning
- 3+ years of experience with ISE 802.1X NAC, guest lifecycle management, profiling policies, TrustSec segmentation, and Firepower capabilities including IPS, malware protection, URL filtering, DNS‑based security, SSL/TLS decryption, and cloud firewall deployments in AWS, Azure, and GCP
- Ability to travel up to 50%, on average, based on client engagements
- Limited immigration sponsorship may be available
- Additional cybersecurity certifications such as CISSP, GSEC, or GCED
- Experience with Cisco Secure Access, Cisco Umbrella, Cisco Secure Client, or Duo Security in Zero Trust architectures
- Experience with Cisco Extended Detection and Response (XDR), Cisco SecureX, or integration of Firepower and ISE telemetry for threat detection, investigation, and response
- Experience using REST APIs, Ansible, Terraform, or Python for policy provisioning, compliance checks, configuration drift detection, or network security automation
- Experience with Cisco Catalyst Center and ISE integration for SD‑Access deployments and segmentation policy enforcement
- Experience delivering network security, network access control, segmentation, or Zero Trust engagements in consulting environments
Technologies
- Cisco Firepower Threat Defense (FTD)
- Cisco Firepower Management Center (FMC)
- Cisco Identity Services Engine (ISE)
- 802.1X network access control
- TrustSec
- IPS
- Malware protection
- URL filtering
- DNS‑based security
- SSL/TLS decryption
- Cisco Secure Firewall
- AWS
- Microsoft Azure
- Google Cloud Platform (GCP)
- SIEM tools
- REST APIs
- Ansible
- Terraform
- Python
- Cisco Secure Access
- Cisco Umbrella
- Cisco Secure Client
- Duo Security
- Cisco Extended Detection and Response (XDR)
- Cisco SecureX
- Cisco Catalyst Center
- Software-Defined Access (SD‑Access)
Benefits
- Discretionary annual incentive program
The Team
Our Enterprise Security offering integrates security across digital transformation initiatives, securing a client’s technical backbone while enabling secure innovation. It encompasses security architecture, secure development and deployment, end‑to‑end cyber cloud capabilities, application security, and security for emerging technologies and connected products.