Skip to content

VMware NSX Security Engineer

  • On-site
    • Spring, Texas, United States
  • Information Technology

Hiring VMware NSX Security Engineer in Spring, TX. Must have strong NSX-T, vSphere, BGP/OSPF, VXLAN/Geneve, DFW, micro-segmentation, zero-trust, and automation skills.

Job description

Job Summary

We are seeking an experienced VMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment.

The role bridges traditional networking, cloud infrastructure, and cybersecurity, with a primary focus on establishing a zero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads.

Location: Spring, TX – Day 1 Onsite
Duration: 6–12+ Months Contract

Key Responsibilities

Security Architecture & Micro-Segmentation

  • Design and enforce granular Distributed Firewall (DFW) and Gateway Firewall rules.

  • Implement micro-segmentation to isolate virtual machines and applications.

  • Prevent lateral or east-west threat propagation across workloads.

  • Support zero-trust security architecture and policies.

Network Virtualization Management

  • Deploy and manage logical switching within VMware NSX.

  • Configure and administer Tier-0 and Tier-1 routing.

  • Manage distributed load balancing and VPN services.

  • Troubleshoot network virtualization across hybrid environments.

Lifecycle Management

  • Perform maintenance, scaling, upgrades, patches, and configuration management.

  • Administer NSX Managers, Edge Nodes, and Transport Nodes.

  • Ensure platform stability, availability, and disaster recovery readiness.

Infrastructure Automation

  • Develop and maintain Infrastructure-as-Code (IaC) solutions.

  • Create automation scripts to streamline security rule deployment.

  • Automate configuration and operational processes using PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs.

Monitoring & Log Analysis

  • Monitor infrastructure health, capacity, and security events.

  • Utilize VMware Aria Operations, Network Insight, or equivalent monitoring platforms.

  • Integrate and analyze security events through SIEM platforms such as Splunk.

Cross-Team Collaboration

  • Collaborate with systems engineers, network administrators, and Security Operations Center (SOC) teams.

  • Troubleshoot physical-to-virtual network connectivity and overlay issues.

  • Support integration between networking, infrastructure, and security environments.

Incident Response Support

  • Assist security teams during network and security incidents.

  • Perform deep-packet inspection and network flow tracing.

  • Apply emergency isolation and firewall rules during active security events.

Required Technical Skills

VMware Ecosystem

  • Deep hands-on experience with:

    • VMware vSphere

    • VMware ESXi

    • VMware vCenter

    • VMware NSX-T / NSX architecture

Networking

  • Expert knowledge of:

    • BGP

    • OSPF

    • Geneve / VXLAN overlay encapsulation

    • VLANs

    • TCP/IP

Firewall & Security

  • Strong understanding of:

    • Layer 4–7 firewall rules

    • Distributed Firewall (DFW)

    • Gateway Firewall

    • IDS/IPS

    • Network micro-segmentation

    • Zero-trust security concepts

Automation & Scripting

  • Proficiency with one or more of:

    • PowerShell / PowerCLI

    • Python

    • Terraform

    • NSX REST APIs

Third-Party & Cloud Integration

  • Experience integrating NSX with physical next-generation firewalls such as:

    • Palo Alto Networks

    • Check Point

  • Familiarity with cloud networking environments such as AWS and Azure.

Preferred Certifications

  • VMware Certified Professional – Network Virtualization (VCP-NV)

  • VMware Certified Advanced Professional – Network Virtualization (VCAP-NV Design or Deploy)

  • Cisco Certified Network Associate (CCNA)

  • Cisco Certified Network Professional (CCNP)

Job requirements

Required Qualifications

  • Deep hands-on experience with VMware vSphere, ESXi, vCenter, and VMware NSX-T/NSX architecture.

  • Expert-level knowledge of BGP, OSPF, Geneve/VXLAN overlay encapsulation, VLANs, and TCP/IP.

  • Strong experience with NSX Distributed Firewall (DFW), Gateway Firewall, micro-segmentation, and zero-trust security concepts.

  • Hands-on experience with logical switching, Tier-0/Tier-1 routing, distributed load balancing, and VPNs within VMware NSX.

  • Experience managing the NSX lifecycle, including NSX Managers, Edge Nodes, Transport Nodes, upgrades, patches, scaling, and configuration.

  • Proficiency with PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs for automation and infrastructure-as-code.

  • Experience with Layer 4–7 firewall rules, IDS/IPS, and network security policies.

  • Experience monitoring VMware infrastructure and security events using VMware Aria Operations, Network Insight, Splunk, or similar tools.

  • Experience troubleshooting physical-to-virtual network overlays and collaborating with networking, systems, and SOC teams.

  • Familiarity with integrating NSX with next-generation firewalls such as Palo Alto Networks or Check Point and/or cloud networking platforms such as AWS and Azure.

  • Ability to work onsite from Day 1 in Spring, TX.

or