ForgeApply
Try it free

ForgeApply · Job listing

Staff Mission Network Engineer

True Anomaly

Denver, CO or Long Beach, US$170k – $250konsite

See all 180 open roles at True Anomaly

Tailor your resume for this True Anomaly job in about a minute.

ForgeApply rewrites your resume for this exact posting, then autofills the application on True Anomaly's site with it. You review everything before it's sent. Free trial, no card required.

About this role

Space is a warfighting domain. True Anomaly seeks those with the talent and ambition to build the technology that secures it.

OUR MISSION

True Anomaly delivers decisive capabilities for space superiority. We build autonomous spacecraft, advanced payloads, mission software, and space-based interceptors — enabling the U.S. and its Allies to secure the space environment and counter threats from the ultimate high ground.

OUR VALUES

• Be the offset. We create asymmetric advantages with creativity and ingenuity.

• What would it take? We challenge assumptions to deliver ambitious results.

• It’s the people. Our team is our competitive advantage and we are better together.

YOUR MISSION

As a Staff Mission Network Engineer, you will be a critical hands-on technical contributor responsible for the deployment, configuration, and operation of terrestrial and cloud network infrastructure supporting classified U.S. Government programs. You will work as part of the Mission Security Engineering team, executing against defined network architectures to deliver secure, compliant, and operational networks across multiple classification levels and locations across the United States.

This is an execution-focused role for a senior network engineer who thrives in the field — someone equally comfortable racking hardware in a classified facility and configuring cloud network infrastructure in AWS. You will work across on-premise and IL-6+ cloud environments, partnering closely with the Staff Security Architect – Networks and cross-functional engineering teams to bring network designs to life and keep them running at mission tempo.

This position requires an active Secret clearance to start, with the ability to obtain and maintain a TS/SCI.

Responsibilities

• Deploy, configure, and operate terrestrial network infrastructure for classified capabilities spanning multiple on-premise locations across the U.S., including switching, routing, cabling, and boundary protection hardware

• Implement and maintain network configurations in AWS GovCloud and classified cloud environments, including VPCs, transit gateways, route tables, security groups, and network access controls

• Configure and maintain network connectivity between AWS classified cloud environments, USG networks, and end-user physical networks in close coordination with cloud engineers

• Implement endpoint networks connecting on-premise and IL-6+ cloud environments across geographically distributed sites

• Deploy and configure network hardware in accordance with DoD Approved Products Lists (APLs) and Trade Agreements Act (TAA) compliance requirements

• Implement and validate network security controls including boundary protection, traffic segmentation, filtering, and encrypted communications across classification domains

• Implement and validate DISA STIG requirements at the network and infrastructure layer across on-premise and cloud environments

• Identify and remediate network-layer findings from STIGs, vulnerability scans, and SCA activities to maintain ATO posture

• Support RMF activities including network control implementation, STIG validation, and assessment preparation in coordination with ISSEs

• Maintain accurate and up-to-date network documentation including topology diagrams, as-built configurations, and security artifacts required for ATO activities

• Partner with ISSEs, industrial security personnel, cloud engineers, and the Staff Security Architect – Networks to ensure network deployments meet program security and compliance requirements

• Deploy, configure, and operate NSA Type 1 cryptographic devices (including KG-175 TACLANE and KG-142 units) within terrestrial classified networks, ensuring proper integration with network infrastructure and compliance with NSA/CSS operational policies

• Manage keying material (KEYMAT) handling, DTA transfers, and controlled cryptographic item (CCI) documentation in accordance with USG regulations and best practices

• Troubleshoot and resolve NSA Type 1 device connectivity, configuration, and interoperability issues across classified terrestrial network environments

• Troubleshoot and resolve network connectivity, configuration, and performance issues across classified on-premise and cloud environments

Required Qualifications

• 10+ years of hands-on experience in network engineering, with demonstrated experience deploying and operating classified DoD or IC networks at classification levels up to and including TS/SCI and special access networks

• Active Secret clearance required; must be able to obtain and maintain TS/SCI

• DoD 8140 IAT Level III certification (CASP+, CISSP, CISA, or equivalent) required

• Deep expertise in IP networking including routing protocols, switching, VLANs, subnetting, QoS, and network boundary protection

• Experience deploying and configuring network hardware in compliance with DoD APL and TAA requirements

• Working knowledge of NIST SP 800-53 and how network controls are implemented, documented, and validated within the RMF process

• Hands-on experience implementing STIGs at the network and infrastructure layer

• Experience supporting RMF and ATO activities including control implementation and assessment preparation

• Strong documentation skills, with experience producing network diagrams, as-built documentation, and hardware configuration records

• Ability to collaborate effectively with ISSEs, architects, cloud engineers, and cross-functional program teams

• Bachelor's degree in Computer Science, Cybersecurity, Engineering, Information Technology, or related field (or equivalent experience)

Preferred Qualifications

• Active Top Secret or TS/SCI clearance

• Professional networking certifications (e.g., CCNP, CCIE, or equivalent)

• Experience with AWS IL-6+ or Microsoft Azure IL-6+ classified cloud environments, including VPC/VNet design, transit gateway configuration, and network security controls

• Experience supporting classified ground st

Salary insight

The midpoint of this range ($210k) is about 44% above the median disclosed salary for Los Angeles roles listed on ForgeApply ($145k across 2,538 jobs).

Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.

Tailor your resume for this True Anomaly role before you apply.

Tailor my resume for this job

Similar jobs

Free ATS checker · How to Autofill Greenhouse Job Applications (Without Sending Junk)