Network Architect Subject Matter Expert; SME
Listed on 2026-01-23
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
Network Architect Subject Matter Expert (SME)
2 months ago Be among the first 25 applicants
About NDiNetwork Designs, Inc. (NDi) is a leading Federal contractor that specializes in designing, developing, and delivering information technology and network solutions for government customers. Founded in 1985, NDi's firmly defined core values have driven all aspects of the business, which have been paramount to our company's success and the establishment of an enjoyable workplace atmosphere. At NDi, we believe that our people are the cornerstone of our success, and we value collaboration, career growth, and winning ideas.
Military Veterans Encouraged to Apply.
Job DescriptionWe are seeking an experienced and highly skilled Network Architect Subject Matter Expert (SME) to join our IT team. The Network Architect will lead the design, integration, and optimization of secure, large‑scale enterprise networks. This role requires advanced expertise in routing, switching, wireless, firewall ecosystems, and identity services, as well as the ability to mentor junior to senior engineers and collaborate with enterprise operations staff.
The ideal candidate will have strong analytical skills, deep technical knowledge, and proven experience designing resilient, scalable, and compliant federal network infrastructures.
- U.S. Citizenship is required
- Must be able to obtain a Public Trust clearance
- This position requires working onsite in Washington D.C., 5 days per week
- Bachelor's degree in Computer Science, Information Technology, or related field (advanced degree preferred) – 10+ years of enterprise network engineering/architecture experience; or 13+ years of equivalent experience in lieu of degree
- 15+ years of enterprise network engineering/architecture experience
- Must have at least one of the following security certifications: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, SSCP, or other
- Proven expertise in enterprise‑scale network design, integration, and operations; expert‑level proficiency with Cisco routing, switching, and wireless platforms
- Strong experience with Cisco ISE, 802.1X certificate authentication, RADIUS, and TACACS+
- Advanced knowledge of firewall ecosystems, including Palo Alto Panorama and NGFWs, and Cisco ASA
- Hands‑on experience with VXLAN, BGP EVPN, and IPSec tunneling
- Deep familiarity with Catalyst Center (DNAC) and streaming telemetry
- Solid understanding of PKI concepts, certificate management, and Active Directory (LDAP/LDAPS)
- Significant experience with network monitoring and analytics platforms (Solar Winds or equivalent)
- Excellent written and verbal communication skills
- Strong leadership, documentation, and mentoring abilities
- Knowledge of Justice Net and worldwide networking architecture is a plus
- ITIL v4 Foundation or higher
- CCNP/CCIE Enterprise or Security
- Palo Alto Networks PCNSE
- Lead the architecture, design, and implementation of enterprise network infrastructure across LAN, WAN, WLAN, and data center environments
- Integrate Cisco Identity Services Engine (ISE) with wireless and wired networks using 802.1X certificate authentication (RADIUS)
- Design, configure, and manage TACACS+ and RADIUS attributes to support Cisco and non‑Cisco systems
- Architect and manage firewall ecosystems, including Palo Alto Panorama and next‑generation firewalls, as well as Cisco ASA/Firepower platforms
- Implement and support advanced routing and switching solutions (OSPF, BGP, VXLAN, BGP EVPN overlays)
- Develop and maintain IPSec tunnel architectures and secure integrations with the Justice Management Network (JUTNet)
- Oversee Catalyst Center (DNAC) integration with Wireless LAN Controllers, including streaming telemetry
- Leverage network management tools (Solar Winds and others) for monitoring, analytics, and proactive remediation
- Define, document, and enforce PKI, certificate‑based authentication, and Microsoft Active Directory (LDAP/LDAPS) integrations
- Prepare and maintain architecture documentation, runbooks, and operational guides
- Experience with Net Box as a source of truth for network management and documentation
- Provide advanced troubleshooting and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).