VMware NSX Security Engineer

Hudson Manpower

  • Spring, Texas
  • 7 days ago

    Highlights

    The role bridges traditional networking, cloud infrastructure, and cybersecurity , with a primary focus on establishing a zero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads. We are seeking an experienced VMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment.

    Numbers & Facts

    LocationSpring, Texas
    Websitehttps://www.hudsonmanpower.com

    Description

    Job description

    Job Summary

    We are seeking an experienced VMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment.

    The role bridges traditional networking, cloud infrastructure, and cybersecurity, with a primary focus on establishing a zero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads.

    Location: Spring, TX – Day 1 Onsite
    Duration: 6–12+ Months Contract

    Key Responsibilities

    Security Architecture & Micro-Segmentation

    • Design and enforce granular Distributed Firewall (DFW) and Gateway Firewall rules.

    • Implement micro-segmentation to isolate virtual machines and applications.

    • Prevent lateral or east-west threat propagation across workloads.

    • Support zero-trust security architecture and policies.

    Network Virtualization Management

    • Deploy and manage logical switching within VMware NSX.

    • Configure and administer Tier-0 and Tier-1 routing.

    • Manage distributed load balancing and VPN services.

    • Troubleshoot network virtualization across hybrid environments.

    Lifecycle Management

    • Perform maintenance, scaling, upgrades, patches, and configuration management.

    • Administer NSX Managers, Edge Nodes, and Transport Nodes.

    • Ensure platform stability, availability, and disaster recovery readiness.

    Infrastructure Automation

    • Develop and maintain Infrastructure-as-Code (IaC) solutions.

    • Create automation scripts to streamline security rule deployment.

    • Automate configuration and operational processes using PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs.

    Monitoring & Log Analysis

    • Monitor infrastructure health, capacity, and security events.

    • Utilize VMware Aria Operations, Network Insight, or equivalent monitoring platforms.

    • Integrate and analyze security events through SIEM platforms such as Splunk.

    Cross-Team Collaboration

    • Collaborate with systems engineers, network administrators, and Security Operations Center (SOC) teams.

    • Troubleshoot physical-to-virtual network connectivity and overlay issues.

    • Support integration between networking, infrastructure, and security environments.

    Incident Response Support

    • Assist security teams during network and security incidents.

    • Perform deep-packet inspection and network flow tracing.

    • Apply emergency isolation and firewall rules during active security events.

    Required Technical Skills

    VMware Ecosystem

    • Deep hands-on experience with:

      • VMware vSphere

      • VMware ESXi

      • VMware vCenter

      • VMware NSX-T / NSX architecture

    Networking

    • Expert knowledge of:

      • BGP

      • OSPF

      • Geneve / VXLAN overlay encapsulation

      • VLANs

      • TCP/IP

    Firewall & Security

    • Strong understanding of:

      • Layer 4–7 firewall rules

      • Distributed Firewall (DFW)

      • Gateway Firewall

      • IDS/IPS

      • Network micro-segmentation

      • Zero-trust security concepts

    Automation & Scripting

    • Proficiency with one or more of:

      • PowerShell / PowerCLI

      • Python

      • Terraform

      • NSX REST APIs

    Third-Party & Cloud Integration

    • Experience integrating NSX with physical next-generation firewalls such as:

      • Palo Alto Networks

      • Check Point

    • Familiarity with cloud networking environments such as AWS and Azure.

    Preferred Certifications

    • VMware Certified Professional – Network Virtualization (VCP-NV)

    • VMware Certified Advanced Professional – Network Virtualization (VCAP-NV Design or Deploy)

    • Cisco Certified Network Associate (CCNA)

    • Cisco Certified Network Professional (CCNP)

    Job requirements

    Required Qualifications

    • Deep hands-on experience with VMware vSphere, ESXi, vCenter, and VMware NSX-T/NSX architecture.

    • Expert-level knowledge of BGP, OSPF, Geneve/VXLAN overlay encapsulation, VLANs, and TCP/IP.

    • Strong experience with NSX Distributed Firewall (DFW), Gateway Firewall, micro-segmentation, and zero-trust security concepts.

    • Hands-on experience with logical switching, Tier-0/Tier-1 routing, distributed load balancing, and VPNs within VMware NSX.

    • Experience managing the NSX lifecycle, including NSX Managers, Edge Nodes, Transport Nodes, upgrades, patches, scaling, and configuration.

    • Proficiency with PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs for automation and infrastructure-as-code.

    • Experience with Layer 4–7 firewall rules, IDS/IPS, and network security policies.

    • Experience monitoring VMware infrastructure and security events using VMware Aria Operations, Network Insight, Splunk, or similar tools.

    • Experience troubleshooting physical-to-virtual network overlays and collaborating with networking, systems, and SOC teams.

    • Familiarity with integrating NSX with next-generation firewalls such as Palo Alto Networks or Check Point and/or cloud networking platforms such as AWS and Azure.

    • Ability to work onsite from Day 1 in Spring, TX.

    All done!

    Your application has been successfully submitted!

    You've already applied for this job

    Thank you for your interest - we've already received your application, so this new submission can't be accepted. Your previous application is on file.

    If you need assistance or believe this is an error, please email us at

    apply@hudsonmanpower.recruitee-inbox.com

    Similar Jobs

    See more jobs