Posted today
Top Secret/SCI
Unspecified
CI Polygraph
McLean, VA (On-Site/Office)
Recro, a Certified Small Business, helps federal agencies achieve their goals through IT infrastructure, cybersecurity, DevOps, cloud services, and digital transformation. We prioritize innovation, employee growth, and a collaborative work environment, guided by our core value - to make a difference.
Currently, Recro is seeking a motivated, career and customer oriented Illumio Zero Trust Segmentation Platform Engineer, to join our team in McLean, VA, JB Andrews, MD, Norfolk, VA, Tampa, FL, Colorado Springs, CO, Reston, VA, College Park, MD
Clearance
• TS/SCI (Willing to Obtain a CI Poly)
Responsibilities:
You will directly shape our enterprise Zero Trust program, influence architectural decisions, and help safeguard mission- critical systems by deploying one of the most advanced segmentation platforms in the industry. This is a high-impact engineering role with visibility across security, cloud, and executive leadership. We are seeking an experienced Illumio Zero Trust Segmentation Platform Engineer to lead the design, implementation, and operational support of our enterprise micro-segmentation strategy. This role will own the Illumio Adaptive Security Platform (ASP) across hybrid environments and play a critical part in our Zero Trust initiative, partnering with security architects, cloud engineers, application teams, and IT operations to reduce lateral movement risk and strengthen our overall security posture.
Required Qualifications:
Preferred Qualifications:
Benefits at Recro
Working at Recro
Currently, Recro is seeking a motivated, career and customer oriented Illumio Zero Trust Segmentation Platform Engineer, to join our team in McLean, VA, JB Andrews, MD, Norfolk, VA, Tampa, FL, Colorado Springs, CO, Reston, VA, College Park, MD
Clearance
• TS/SCI (Willing to Obtain a CI Poly)
Responsibilities:
You will directly shape our enterprise Zero Trust program, influence architectural decisions, and help safeguard mission- critical systems by deploying one of the most advanced segmentation platforms in the industry. This is a high-impact engineering role with visibility across security, cloud, and executive leadership. We are seeking an experienced Illumio Zero Trust Segmentation Platform Engineer to lead the design, implementation, and operational support of our enterprise micro-segmentation strategy. This role will own the Illumio Adaptive Security Platform (ASP) across hybrid environments and play a critical part in our Zero Trust initiative, partnering with security architects, cloud engineers, application teams, and IT operations to reduce lateral movement risk and strengthen our overall security posture.
- Lead the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on- premises, virtualized, and cloud environments.
- Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.
- Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.
- Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
- Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.
- Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
- Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.
- Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.
- Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.
- Contribute to architectural standards, documentation, and enterprise security playbooks.
Required Qualifications:
- 5+ years in cybersecurity, cloud security, or infrastructure engineering.
- 3+ years of expertise in Linux/Windows systems, virtualization (VMware, Hyper-V), and cloud environments (AWS, Azure, or GCP).
- 2+ years of experience with network security (firewalls, routing, segmentation models, TCP/IP).
- 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments (finance, healthcare, federal, or energy).
- 1+ year experience with infrastructure automation tools (Ansible, Terraform, or similar).
- 1+ year experience with REST APIs, scripting (Python, Bash, PowerShell), or automation frameworks.
- Active TS/SCI clearance; willingness to take a polygraph exam
- Associate's degree and 5+ years of experience supporting IT projects and activities, Bachelor's degree and 3+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
- Active DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
- Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
Preferred Qualifications:
- Experience with scripting languages (Bash, Python, YAML/Ansible, etc.) to automate Suricata configuration and deployment tasks.
- Proficient understanding of network protocols, intrusion detection methodologies, and security event correlation.
- Experience integrating Suricata with Splunk, or other SIEM solutions.
- Knowledge of containerized deployments of Suricata (Docker/Kubernetes) in enterprise environments.
- Detection and Response (NDR) solutions, including Trellix/FireEye, Corelight, Endace, Vectra AI, Dark Trace, Cisco Security Network Analytics, Open XDR, Fortinet FortiNDR, Trend Vision, etc.
- Ability to be a self-starter, work without considerable direction, and work with a team.
- Possession of excellent verbal and written communication skills, including client briefings and coordinating efforts
Benefits at Recro
- 100% paid medical, dental, and vision
- 401k - 6% matching and 401k profit sharing
- PTO - 120 Hours
- Federal Holidays
- Education and Tuition Reimbursements
- Wellness Benefits
- A lot of cool gear!
Working at Recro
- A Great Culture - We are building a culture at Recro where amazing people (like you) can do their best work. If you are ready to grow your career and recro (re-invent) the way our clients operate, you have come to the right place.
- A Great Place to Work - Employees are treated like people, not line items. We work smart when we can and hard when we must but we always do it together, as a team. We are a team with tons of passion and enthusiasm to blaze new trails and improve the state of our clients, the broader community, and even the world.
- A Great Place to Contribute - We believe diverse perspectives improve each challenge that we face. We trust and enable our amazing people to accomplish amazing feats. At Recro, you will be empowered to deliver your best work.
- A Great Place to Grow - We believe in our people and maximizing your potential. At Recro, we continue to look into the future and invest in each other through teamwork, collaboration, and training.
group id: 91090960