
VMware NSX Security Engineer
- VMware
- Zero Trust
- Load Balancing
- Configuration Management
- Disaster Recovery
- IaC
- PowerShell
- Python
- Terraform
- REST API
- SIEM
- Splunk
- Incident Response
- BGP
- OSPF
- VLANs
- TCP/IP
- Palo Alto Networks
- AWS
- Azure
- CCNA
- CCNP
- Network Security
Job Summary
We are seeking an experiencedVMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment.
The role bridgestraditional networking, cloud infrastructure, and cybersecurity, with a primary focus on establishing azero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads.
Location: Spring, TX β Day 1 Onsite
Duration: 6β12+ Months Contract
Key Responsibilities
Security Architecture & Micro-Segmentation
Design and enforce granularDistributed Firewall (DFW) and Gateway Firewall rules.
Implement micro-segmentation to isolate virtual machines and applications.
Prevent lateral or east-west threat propagation across workloads.
Support zero-trust security architecture and policies.
Network Virtualization Management
Deploy and manage logical switching within VMware NSX.
Configure and administerTier-0 and Tier-1 routing.
Manage distributed load balancing and VPN services.
Troubleshoot network virtualization across hybrid environments.
Lifecycle Management
Perform maintenance, scaling, upgrades, patches, and configuration management.
AdministerNSX Managers, Edge Nodes, and Transport Nodes.
Ensure platform stability, availability, and disaster recovery readiness.
Infrastructure Automation
Develop and maintainInfrastructure-as-Code (IaC) solutions.
Create automation scripts to streamline security rule deployment.
Automate configuration and operational processes using PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs.
Monitoring & Log Analysis
Monitor infrastructure health, capacity, and security events.
UtilizeVMware Aria Operations, Network Insight, or equivalent monitoring platforms.
Integrate and analyze security events through SIEM platforms such as Splunk.
Cross-Team Collaboration
Collaborate with systems engineers, network administrators, and Security Operations Center (SOC) teams.
Troubleshoot physical-to-virtual network connectivity and overlay issues.
Support integration between networking, infrastructure, and security environments.
Incident Response Support
Assist security teams during network and security incidents.
Perform deep-packet inspection and network flow tracing.
Apply emergency isolation and firewall rules during active security events.
Required Technical Skills
VMware Ecosystem
Deep hands-on experience with:
VMware vSphere
VMware ESXi
VMware vCenter
VMware NSX-T / NSX architecture
Networking
Expert knowledge of:
BGP
OSPF
Geneve / VXLAN overlay encapsulation
VLANs
TCP/IP
Firewall & Security
Strong understanding of:
Layer 4β7 firewall rules
Distributed Firewall (DFW)
Gateway Firewall
IDS/IPS
Network micro-segmentation
Zero-trust security concepts
Automation & Scripting
Proficiency with one or more of:
PowerShell / PowerCLI
Python
Terraform
NSX REST APIs
Third-Party & Cloud Integration
Experience integrating NSX with physical next-generation firewalls such as:
Palo Alto Networks
Check Point
Familiarity with cloud networking environments such asAWS and Azure.
Preferred Certifications
VMware Certified Professional β Network Virtualization (VCP-NV)
VMware Certified Advanced Professional β Network Virtualization (VCAP-NV Design or Deploy)
Cisco Certified Network Associate (CCNA)
Cisco Certified Network Professional (CCNP)
Required Qualifications
Deep hands-on experience withVMware vSphere, ESXi, vCenter, and VMware NSX-T/NSX architecture.
Expert-level knowledge ofBGP, OSPF, Geneve/VXLAN overlay encapsulation, VLANs, and TCP/IP.
Strong experience withNSX Distributed Firewall (DFW), Gateway Firewall, micro-segmentation, and zero-trust security concepts.
Hands-on experience withlogical switching, Tier-0/Tier-1 routing, distributed load balancing, and VPNs within VMware NSX.
Experience managing theNSX lifecycle, including NSX Managers, Edge Nodes, Transport Nodes, upgrades, patches, scaling, and configuration.
Proficiency withPowerShell/PowerCLI, Python, Terraform, or NSX REST APIs for automation and infrastructure-as-code.
Experience withLayer 4β7 firewall rules, IDS/IPS, and network security policies.
Experience monitoring VMware infrastructure and security events usingVMware Aria Operations, Network Insight, Splunk, or similar tools.
Experience troubleshootingphysical-to-virtual network overlays and collaborating with networking, systems, and SOC teams.
Familiarity with integrating NSX withnext-generation firewalls such as Palo Alto Networks or Check Point and/or cloud networking platforms such asAWS and Azure.
Ability to workonsite from Day 1 in Spring, TX.
VMware NSX Security Engineer Β· Hudson Manpower