Posted 1mo ago

Illumio Zero Trust Segmentation Platform Engineer - Active TS/SCI with CI Poly

@ ENS Solutions
Reston, Virginia, United States
OnsiteFull Time
Responsibilities:designing policies, deploying Illumio, onboard workloads
Requirements Summary:5+ years in cybersecurity; 3+ years Linux/Windows; 2+ years network security; 1+ year automation; TS/SCI with poly; DoD 8570.01-M certs; degree flexibility.
Technical Tools Mentioned:Illumio Core, Illumio Edge, Illumio ASP, Illumio VEN, ServiceNow, CMDB, SIEM, SOAR, Terraform, Ansible, Python, Bash, PowerShell
Save
Mark Applied
Hide Job
Report & Hide
Job Description

You will directly shape our enterprise Zero Trust program, influence architectural decisions, and help safeguard mission-critical systems by deploying one of the most advanced segmentation platforms in the industry. This is a high-impact engineering role with visibility across security, cloud, and executive leadership.

We are seeking an experienced Illumio Zero Trust Segmentation Platform Engineer to lead the design, implementation, and operational support of our enterprise micro-segmentation strategy. This role will own the Illumio Adaptive Security Platform (ASP) across hybrid environments and play a critical part in our Zero Trust initiative, partnering with security architects, cloud engineers, application teams, and IT operations to reduce lateral movement risk and strengthen our overall security posture.

Key Responsibilities:

  • Lead the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.
  • Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.
  • Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.
  • Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
  • Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.
  • Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
  • Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.
  • Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.
  • Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.
  • Contribute to architectural standards, documentation, and enterprise security playbooks.