We are seeking an experienced Aruba Network Engineer to support our federal government client using Aruba core and access switches. The role requires deep expertise in Aruba networking (including ClearPass wireless controllers switches) and working knowledge of Granite SDWAN and Zscaler. This position involves designing and implementing a 100% wireless solution for designated floors managing interoperability with Cisco equipment and adhering to federal security and compliance requirements. A current Public Trust clearance and demonstrated federal government experience are essential.
KEY RESPONSIBILITIES
Aruba 6400/6300 Implementation & Migration
Phase 1: Deploy and configure Aruba 6400 core switches (VSX VLAN routing trunk links to Cisco Nexus 7Ks).
Phase 2: Implement Aruba 6300M switches for a 100% wireless environment on testing floors then scale to all floors.
Configure VLANs default routes to Granite SDWAN and ActiveGateway (VSX) for redundancy and routing between VLANs.
Ensure compatibility and interoperability with existing Cisco Nexus 7Ks verifying routing and transit VLAN functionality.
- Aruba Solution Design & ClearPass Architect configure and deploy Aruba network solutions including Mobility Controllers (Aruba OS 8.x) Access Points (AP3xx/5xx) and CX Switches. Configure and manage Aruba ClearPass (Policy Manager Guest OnGuard Onboard) for AAA rolebased access control and NAC. Optimize wireless networks for high performance secure 802.1X authentication and PoE configurations.
- SDWAN Integration (Granite) Collaborate with crossfunctional teams to integrate Granite SDWAN solutions ensuring resilient and efficient connectivity. Manage WAN circuit upgrades and failover testing for multisite deployments; verify default routes to Granite Edge for internet access.
- Zscaler Configuration Deploy configure and maintain Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) for secure cloudbased internet and SaaS access. Align Zscaler policies and configurations with broader cybersecurity strategies and federal regulations.
- Network Security & Compliance Ensure compliance with federal security standards (e.g. NIST FISMA FedRAMP) and maintain documentation per Public Trust guidelines. Implement zerotrust security principles including network segmentation firewalls rolebased access and NAC across all layers.
- Testing & Troubleshooting Conduct comprehensive testing and validation (VLAN propagation default routes VSX failover simulations endtoend connectivity). Investigate and resolve complex network issues spanning Aruba SDWAN and Zscaler providing rootcause analysis and effective remediation. Provide oncall support as needed to ensure the high availability of critical network infrastructure.
- Performance Optimization & Automation Monitor network performance metrics perform capacity planning and recommend best practices for improved availability/security. Automate repetitive tasks using scripting tools (Python Ansible etc.) to streamline network management and operations.
- Technical Documentation & Stakeholder Collaboration Develop and maintain comprehensive documentation of network architectures migration plans configurations and operational procedures. Communicate with internal/external stakeholders and vendors for project updates technical requirements and progress reports. Coordinate with helpdesk server and enduser teams to minimize disruptions during migration or system changes.
REQUIRED SKILLS & COMPETENCIES
- Border Gateway Protocol (BGP) Configuring and optimizing internet routing.
- Firewalls Controlling and securing traffic across network boundaries; advanced rule management.
- Load Balancers Managing network traffic distribution for reliability and performance.
- Network Administration Provisioning monitoring and troubleshooting network devices and services.
- Network Architecture Designing connecting and implementing services and systems to achieve organizational goals.
- Network Engineering Building and maintaining complex networks to ensure performance security and scalability.
- Network Management Overseeing network infrastructure to maintain high availability and optimal use of resources.
- Network Security Ensuring confidentiality integrity and availability of data with tools like NAC IPS and firewalls.
- Networking Hardware Configuring and maintaining routers switches access points and other hardware.
- Routing and Switching Implementing advanced LAN/WAN routing and switching protocols (e.g. OSPF EIGRP STP).
- Routing Protocols Managing protocols that determine the paths data follows (BGP OSPF etc.).
- Troubleshooting Diagnosing and resolving complex issues in a multivendor multitechnology environment.
BASIC QUALIFICATIONS
- Clearance: Active Public Trust clearance.
- Federal Experience: Minimum 3 years of experience working on federal government contracts or in a federal agency environment.
- Aruba & Networking Expertise: Handson experience designing and deploying Aruba solutions (Controllers AP3xx/5xx Aruba CX Switches). Strong proficiency with Aruba ClearPass (AAA NAC rolebased access). Working knowledge of Granite SDWAN and Zscaler solutions.
- Education & Experience: Typically requires a BS degree in Information Technology Computer Science or a related technical field with 812 years of relevant experience; OR A Masters degree with 610 years of prior relevant experience; OR A Doctorate in a technical domain with commensurate experience.
- Communication & Documentation: Excellent oral and written communication skills with the ability to explain complex concepts to both technical and nontechnical audiences. Proven track record of producing clear concise documentation including detailed network designs and test results.
- Located in the D.C. Metro Area and available to come onsite in D.C.
PREFERRED QUALIFICATIONS
- Advanced Aruba Certifications (e.g. Aruba Certified Mobility Expert Aruba Edge certifications).
- Additional Networking/Security Certifications (e.g. Cisco CCNP/CCIE Palo Alto PCNSA/PCNSE).
- Advanced SDWAN Orchestration & WAN Optimization experience.
- Expertise with additional cloud security products and zerotrust architectures (e.g. Netskope Microsoft Defender for Cloud Apps).
- Strong automation/scripting capabilities (Python Ansible) for network management.
- Familiarity with federal compliance (NIST FISMA FedRAMP).