Ashburn Consulting is looking for a Cyber Security Engineer to join us in supporting the Washington Metropolitan Area Transit Authority’s (WMATA) Digital Modernization’s Office of Cybersecurity’s (DMCS) Cyber Technology Unit On-Site at either Eisenhower Metro or New Carrollton Metro, with Wednesdays at Eisenhower. This work supports the security of WMATA’s systems and networks by proactively managing access to WMATA's data and systems.DMCS requires a meticulous and expert-level Cybersecurity Engineer to provide support for leading and managing the implementation of enterprise network perimeter (firewall) security solutions. This role is needed to implement and support critical WMATA initiatives including, but not limited to the Payment Card Industry (PCI) Audit required configurations, firewall re-design, Juniper and F5 upgrades, and the related needed upgrade, redesign, and maintenance of the WMATA’s firewall environments. This role requires a strong background in Juniper firewalls and F5 load balancers (both legacy and current models) along with expertise in firewall management and an understanding of perimeter security controls best practices.This work will be On-Site 4 days per week until July 1, 2025, and 5 days a week, thereafter. WMATA anticipates the onsite location for this position is either Eisenhower or New Carrollton with Wednesdays at Eisenhower.Responsibilities:Provide expert-level network security support, security engineering, and implementation on network security firewalls, load balancer, and VPN devices.Design, implement, and manage network security devices including firewalls, load balancers, VPNs, and Intrusion Detection/Prevention Systems (IDS/IPS).Continuous monitoring and assessment of network security by testing and implementing new security technologies.Provide customers with enterprise network security solutions based on application and infrastructure requirements.Provide network security support on Microsoft Azure infrastructure.Collaborate in the design and implementation of complex network technologies (Data Center, Cloud, Hybrid).Develop and maintain technical documentation, network diagrams, Standard Operating Procedures (SOP), and Work Instructions.Perform platform lifecycle management activities (patching, upgrades, policy configuration, etc.) for assigned platforms and/or tools.The SME will be responsible for leading initiatives related to network security, including upgrading firewalls, replacing end-of-life (EOL) and end-of-support (EOS) firewalls and F5, devices, as well as consolidating and redesigning load balancers. Migrate legacy Juniper firewalls from Juniper NetScreen OS to Juno OS.Consolidate legacy F5 systems by migrating and upgrading to modern versions.Provide strategic insights to enhance the overall security posture of the WMATA’s environment.