Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Network Security Engineer - Cisco ISE & Zero Trust Segmentation

$90 - $100 per hour

KonnectIT

We are seeking a Senior Network Security Engineer with deep expertise in Cisco Identity Services Engine (ISE) and identity-driven network segmentation to support and enhance a modern enterprise security architecture. This role will focus on designing, implementing, and operating network access control (NAC) and TrustSec-based segmentation across wired, wireless, and data center environments.

The ideal candidate will have extensive hands-on experience deploying and managing Cisco ISE platforms and will play a key role in advancing Zero Trust Network Access (ZTNA) strategies. This position requires strong technical depth across authentication protocols, identity-based policy enforcement, and enterprise networking fundamentals. This position requires regular onsite presence at client locations within the Chicago metropolitan area (3-4 days per week). Candidates must currently reside within commuting distance of Chicago and be able to attend onsite meetings, deployments, and troubleshooting activities on short notice.

**** Applicants who are not currently located in the Chicago area will not be considered. ****

Key Responsibilities
  • Design, deploy, and operate Cisco ISE (2.x and 3.x) environments supporting enterprise NAC and identity-based policy enforcement.
  • Develop and manage ISE policy sets, profiling policies, posture assessment, and guest/BYOD access workflows.
  • Implement and maintain 802.1X and MAB authentication across wired and wireless environments.
  • Integrate ISE with Active Directory, PKI infrastructures, certificate-based authentication, and MDM platforms.
  • Configure and maintain TACACS+ device administration for network infrastructure access control.
  • Support pxGrid integrations to enable identity and context sharing across security platforms.
  • Design and implement TrustSec segmentation architectures using Security Group Tags (SGTs) and SGACL policies.
  • Enable identity-to-role mapping and enforce segmentation policies across Catalyst switches, Nexus platforms, and wireless controllers.
  • Lead the design and implementation of microsegmentation strategies across campus and data center environments.
  • Perform advanced troubleshooting using ISE live logs, session directory, packet captures, and switch/WLC debugging tools.
  • Collaborate with network and security teams to implement Zero Trust principles, minimizing lateral movement and enforcing least-privilege access.
  • Manage network security changes through structured implementation plans, pilot deployments, and staged rollouts.
  • Develop testing procedures and rollback strategies to ensure stable production operations.
  • Travel to multiple sites within the city of Chicago as needed and work onsite 3-4 days per week to support network deployments and troubleshooting activities.
Mandatory Skills
  • 5+ years of hands-on experience deploying and operating Cisco Identity Services Engine (ISE).
  • Strong expertise in:
    • ISE Policy Sets
    • Profiling and Posture Assessment
    • Guest and BYOD access workflows
    • pxGrid integrations
    • TACACS+ device administration
  • Deep understanding of 802.1X and MAB authentication for wired and wireless networks.
  • Strong knowledge of supplicant behavior, Change of Authorization (CoA), and EAP methods such as PEAP and EAP-TLS.
  • Experience integrating ISE with:
    • Active Directory / Identity Providers
    • PKI and certificate-based authentication
    • Mobile Device Management (MDM) platforms
  • Hands-on experience with Cisco TrustSec:
    • SGT classification and propagation
    • SGACL policy design and enforcement
  • Experience implementing segmentation across Catalyst switches, Nexus platforms, and wireless controllers.
  • Advanced troubleshooting skills using ISE logs, packet captures, session directory, and network device debugging tools.
  • Strong knowledge of Layer 2 and Layer 3 networking fundamentals.
  • Experience with routing protocols including OSPF and BGP.
  • Experience with ACLs, QoS, NAT, Spanning Tree, and wireless networking (WLC / 802.11).
  • Familiarity with enterprise network services including NTP, DNS, and DHCP.
  • Proven experience supporting enterprise campus and data center network architectures.
Desirable Skills
  • Experience designing or supporting Zero Trust Network Access (ZTNA) architectures.
  • Strong understanding of identity-driven access control and least-privilege security models.
  • Knowledge of north-south vs. east-west traffic patterns in enterprise environments.
  • Experience performing threat modeling and lateral movement analysis within segmented networks.
  • Experience implementing data center or host-based microsegmentation.
  • Experience with large-scale network policy orchestration and automation.
  • Cisco certifications such as CCNP Security, CCIE Security, or Cisco ISE Specialist.

Additional Requirements
• Candidates must currently reside in the Chicago metropolitan area.
• Identity will be verified during the interview process.
• Candidates should expect live technical interviews and onsite verification meetings as part of the hiring process.
• This role cannot be performed fully remotely.

Compensation

$90-$100 per hour (1099/W2)

Department Technology Locations Chicago
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Senior Network Security Engineer - Cisco ISE & Zero Trust Segmentation in Chicago, IL vacancy
  • Prairie Consulting Services is seeking a Senior Security Architect in Chicago to shape the enterprise-wide security strategy focused on cloud, SaaS, and hybrid environments. This role involves leading security architecture reviews and implementing secure design patterns... 
    Senior
    Work at office

    Prairie Consulting Services

    Chicago, IL
    4 days ago
  •  ..., Zscaler ZIA/ZPA and Zero Trust Architecture - Overview...  ...Zscaler (ZIA/ZPA) and secure access transformation....  ..., eliminating legacy network assumptions, and delivering...  ...forwarding and ZPA segmentation. Design, implement,...  ...best practices. Mentor engineers and elevate client... 
    Suggested
    Shift work

    Medium

    Chicago, IL
    2 days ago
  • $170k - $200k

     ...perspectives at AHEAD. Senior Technical...  ...firewall, network access control...  ...deployment (Cisco Secure Firewall, Palo...  ...Networks), Cisco ISE‑based network...  ..., and SASE/Zero Trust architectures...  ...Design network segmentation architectures...  ...Identity Services Engine (ISE) for 802.... 
    Senior
    Work at office
    Remote work

    Medium

    Chicago, IL
    3 days ago
  •  ...Senior Network Security Engineer The Senior Network Security Engineer will work within a team of Network Engineers at OneMain. The engineer’s primary responsibility is to lead the network segmentation strategy and lifecycle to maturity. The engineer must take part in... 
    Senior

    Software Technology Inc

    Chicago, IL
    2 days ago
  • $150k - $300k

     ...technology company is seeking a Principal Consultant to spearhead Zero Trust architecture solutions with a focus on Zscaler (ZIA/ZPA). The role requires a minimum of 8 years of experience in network security, expertise in Zero Trust frameworks, and proven skills in... 
    Suggested

    Medium

    Chicago, IL
    4 days ago
  •  ...Title: Senior Cyber Recovery Engineer Location: Chicago, IL Hybrid - onsite 3 days per week Duration: 12+ months...  ...recovery automation. ~ Strong understanding of network segmentation, identity isolation, and zero-trust concepts as applied to clean room... 
    Senior
    For contractors
    3 days per week

    Spectraforce Technologies

    Chicago, IL
    2 days ago
  • $140k - $165k

     ...Senior Security Engineer Chicago, IL (Hybrid) At Beyond Finance, we've made it our mission...  .... Reduce risk across IAM, network segmentation, ECS and container security, secrets...  ...day: Wiz, Cloudflare (WAF, Gateway, Zero Trust), GitHub Advanced Security, Spacelift... 
    Senior
    Full time

    Beyond Finance, Inc.

    Chicago, IL
    3 days ago
  • $95 - $110 per hour

     ...Senior Cyber Recovery Engineer Location: Chicago, Illinois (Onsite) Employment Type:...  ...replication pipelines. Engineer network segmentation and identity isolation controls within...  ..., identity isolation, and zero-trust concepts in clean room environments... 
    Senior
    Hourly pay
    Contract work

    Apex Systems

    Chicago, IL
    3 days ago
  •  ...Senior Security Architect At Snowflake, we are powering...  ...AI as a high-trust collaborator that is...  ...Security Applied Field Engineering (AFE) organization is...  ...in Data, Security, Networking, Infrastructure or AI...  ...architectures, including micro-segmentation, zero-trust principles,... 
    Senior

    Snowflake Computing

    Chicago, IL
    5 days ago
  • $80k - $92k

     ...are looking for a highly qualified Senior Network Security Engineer to join our Network & Security Business...  ...(Fortinet, Palo Alto Networks, Cisco, F5) and a proven track record of managing...  .../FTD, ASA). Knowledge of Cisco ISE (Identity Services Engine) and... 
    Senior
    Local area
    Remote work

    NPO USA, Inc.

    Chicago, IL
    4 days ago
  • $170.6k - $390k

     ...career in information security! The opportunity The Senior Network Security...  ...in Cybersecurity Engineering, where you will play...  ...technical experience in Zero Trust and Network...  ...standards for firewalls, segmentation, VPNs, secure...  ...Experience with Cisco, Palo Alto... 
    Senior
    Summer holiday
    Remote work
    Flexible hours

    EY

    Chicago, IL
    2 days ago
  • $122.4k - $228k

     ...design and maturity of end-to-end cloud security across multi-cloud environments (AWS...  ...cloud architecture aligned to Zero Trust principles Act as enterprise SME...  ...key management, data protection Network Security - segmentation, private access, WAF, DDoS Workload... 
    Senior
    Contract work
    Part time
    Local area
    Immediate start

    BMO Financial Group

    Chicago, IL
    4 days ago
  •  ...Title: Senior Security Architect - SaaS / Cloud Platforms Location...  ...platforms Deep hands-on engineering work Important...  ...Very strong understanding of network architecture concepts...  ...Very good understanding of zero-trust architecture and working experience... 
    Senior
    Work experience placement
    Work at office

    Spectraforce Technologies

    Chicago, IL
    2 days ago
  • $115k - $135k

    Auria is seeking a Senior Network Engineer to manage and optimize enterprise network infrastructure in Chicago, IL. The role involves leading troubleshooting efforts and collaborating on cybersecurity initiatives to ensure high availability across all sites. Qualified candidates... 
    Senior

    Auria

    Chicago, IL
    5 days ago
  • $124k - $280k

     ...vulnerabilities, develop secure systems, and...  ..., and network to deliver...  ...Cyber Defense and Engineering team, you will...  ...engineering, segmentation, and security...  ...transformation. As a Senior Manager, you...  ...serve as a trusted advisor to...  ...certifications - Cisco CCNP Security,... 
    Senior

    PwC (US)

    Chicago, IL
    10 hours ago
  • $130k - $170k

     ...# of Openings: 1 Auria is seeking a Senior Cloud Security Engineer to support the security architecture...  ...identity, encryption, logging, and network security withing AWS environments. RMF...  ...monitoring tools Knowledge of Zero Trust Architecture principles DoD 8570 / 8... 
    Senior
    Contract work
    Work at office
    Remote work
    Flexible hours

    Auria

    Chicago, IL
    5 days ago
  •  ...Role- Sr. Network Security Engineer Role onsite in North Chicago, long-term contract. Requirements...  ...2 years of exp. ~ Experience in Cisco Switches is a plus. ~ Provide...  ...engineering for firewalls, network segmentation technologies, web proxies, email proxies... 
    Senior
    Long term contract

    3B Staffing LLC

    Chicago, IL
    2 days ago
  •  ...Bridge Head servers and Replication Connectors, Forest and Domain Trusts and Federation technologies Expert level knowledge of DNS,...  ...such as: Kerberos, NTLM, TCP, UDP, IPv4, IPv6, SAML, LDAP and Secure LDAP Expert level knowledge of Windows server operating systems... 
    Senior

    3B Staffing LLC

    Chicago, IL
    2 days ago
  • $131k - $169k

     ...Senior Security Engineer Seeking a development & cloud focused Senior Security Engineer to join our...  ...Engineers who are confident in network & security fundamentals, driven to grow...  ...understand the need to build relationships and trust across the organization to enhance... 
    Senior
    Work at office
    Work from home
    Flexible hours
    Day shift

    Karbon

    Chicago, IL
    1 day ago
  • $145k - $175k

     ...unforgettable campaigns. By combining real creator relationships, trusted intelligence, and expert guidance, Later removes fear and...  ...Learn more at later.com. About this position: As a Senior Security Engineer at Later, you will play a critical role in strengthening... 
    Senior
    Permanent employment
    Local area
    Remote work

    Later

    Chicago, IL
    3 days ago
  • $80k - $120k

    A leading professional services firm is seeking a Tax Senior Associate focused on Trust & Estate tax work. This role involves reviewing tax returns, providing consulting for high-net-worth clients, and managing engagements. Ideal candidates will have a Bachelor's degree... 
    Senior
    Remote work
    Flexible hours

    CohnReznick

    Chicago, IL
    10 hours ago
  •  ...our talented Team. Job Title: Network Security Engineer - Strata EEC Location(s): Chicago...  ...Checkpoint Migration Experience * Senior-Level Experience in Engineering *...  ...to Have: * XSOAR Experience * Zero Trust Experience (AppID, UserID, DeviceID,... 

    Ampcus

    Chicago, IL
    10 hours ago
  •  ...Network Security Controls Senior Manager The Boeing Company is currently...  ...) platforms, and Zero Trust architecture, you...  ...lead cross-functional engineering teams to foster a...  ...(NAC), micro-segmentation, wireless, Wi-Fi, and...  ...with NAC platforms (Cisco ISE, Aruba ClearPass),... 
    Senior
    Contract work
    Remote work

    Boeing

    Chicago, IL
    1 day ago
  •  ...actively seeking a Sr. Cyber Security Engineer/Architect to join the team!...  ...Strong knowledge of network security, cloud security, and...  ...Wireshark Experience with Zero Trust Architecture and IAM Industry...  ...****@*****.*** Seniority level Seniority level Mid-... 
    Senior
    Permanent employment
    Contract work
    Remote work

    Swoon

    Chicago, IL
    5 days ago
  • $164.6k - $288k

    Northern Trust in Chicago is seeking a Senior Relationship/Trust Advisor in Wealth Management to manage complex client relationships, particularly high net worth (HNW) and ultra-high net worth (UHNW) clients. This role requires 12-15 years of experience in trust administration... 
    Senior

    Northern Trust

    Chicago, IL
    5 days ago
  •  ...Principal Cloud Security Architect About the Role What...  ...Level : Principal / Senior What You'll Do Assess...  ...configurations, permission models, network segmentation, and resource policies...  ...Familiarity with zero-trust architecture principles and... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Chicago, IL
    3 days ago
  • $164.6k - $288k

    A leading financial institution in Chicago is seeking a Senior Relationship/Trust Advisor to manage complex wealth management client relationships and deliver high-quality fiduciary services. Candidates should have 12-15 years of experience in trust or estate administration... 
    Senior

    Northern Trust Corp

    Chicago, IL
    5 days ago
  • $100k - $202k

    Plante-Moran is seeking a Tax Manager to oversee advanced trust tax operations, ensuring compliance with IRS regulations and managing the PMT tax requirements. The ideal candidate will have a Bachelor's degree in accounting or finance, CPA certification, and 8-10 years... 
    Senior

    Plante-Moran

    Chicago, IL
    2 days ago
  • $175k - $200k

    A mid-sized law firm in Chicago is looking for a seasoned legal professional to enhance their Trusts & Estates practice. The ideal candidate will have over 10 years of experience serving high-net-worth clients, licensed to practice in Illinois, and possess extensive knowledge... 
    Senior
    Flexible hours

    Jobot

    Chicago, IL
    2 days ago
  • $180k - $250k

     ...planning, compliance, and advisory functions across complex structures. This role requires profound knowledge of individual, partnership, trust, gift, and investment taxation, along with 10+ years of experience. The Tax Director will collaborate with internal leadership,... 
    Senior

    Staff Financial Group

    Chicago, IL
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Network Security Engineer - Cisco ISE & Zero Trust Segmentation. Be the first to apply!