Skip to content

VMware NSX Security Engineer

Hudson Manpower

Spring, Texas, United States

Applying for this one?

We write the CV against this exact posting — its wording, its requirements — not a template with your name in it.

Get my CV for this job

$25, one-time. No subscription.

Job Summary

We are seeking an experienced VMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment.

The role bridges traditional networking, cloud infrastructure, and cybersecurity, with a primary focus on establishing a zero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads.

Location: Spring, TX – Day 1 Onsite Duration: 6–12+ Months Contract

Key Responsibilities

Security Architecture & Micro-Segmentation

  • Design and enforce granular Distributed Firewall (DFW) and Gateway Firewall rules.
  • Implement micro-segmentation to isolate virtual machines and applications.
  • Prevent lateral or east-west threat propagation across workloads.
  • Support zero-trust security architecture and policies.

Network Virtualization Management

  • Deploy and manage logical switching within VMware NSX.
  • Configure and administer Tier-0 and Tier-1 routing.
  • Manage distributed load balancing and VPN services.
  • Troubleshoot network virtualization across hybrid environments.

Lifecycle Management

  • Perform maintenance, scaling, upgrades, patches, and configuration management.
  • Administer NSX Managers, Edge Nodes, and Transport Nodes.
  • Ensure platform stability, availability, and disaster recovery readiness.

Infrastructure Automation

  • Develop and maintain Infrastructure-as-Code (IaC) solutions.
  • Create automation scripts to streamline security rule deployment.
  • Automate configuration and operational processes using PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs.

Monitoring & Log Analysis

  • Monitor infrastructure health, capacity, and security events.
  • Utilize VMware Aria Operations, Network Insight, or equivalent monitoring platforms.
  • Integrate and analyze security events through SIEM platforms such as Splunk.

Cross-Team Collaboration

  • Collaborate with systems engineers, network administrators, and Security Operations Center (SOC) teams.
  • Troubleshoot physical-to-virtual network connectivity and overlay issues.
  • Support integration between networking, infrastructure, and security environments.

Incident Response Support

  • Assist security teams during network and security incidents.
  • Perform deep-packet inspection and network flow tracing.
  • Apply emergency isolation and firewall rules during active security events.

Required Technical Skills

VMware Ecosystem

  • Deep hands-on experience with: VMware vSphere VMware ESXi VMware vCenter VMware NSX-T / NSX architecture

Networking

  • Expert knowledge of: BGP OSPF Geneve / VXLAN overlay encapsulation VLANs TCP/IP

Firewall & Security

  • Strong understanding of: Layer 4–7 firewall rules Distributed Firewall (DFW) Gateway Firewall IDS/IPS Network micro-segmentation Zero-trust security concepts

Automation & Scripting

  • Proficiency with one or more of: PowerShell / PowerCLI Python Terraform NSX REST APIs

Third-Party & Cloud Integration

  • Experience integrating NSX with physical next-generation firewalls such as: Palo Alto Networks Check Point
  • Familiarity with cloud networking environments such as AWS and Azure.

Preferred Certifications

  • VMware Certified Professional – Network Virtualization (VCP-NV)
  • VMware Certified Advanced Professional – Network Virtualization (VCAP-NV Design or Deploy)
  • Cisco Certified Network Associate (CCNA)
  • Cisco Certified Network Professional (CCNP)

Required Qualifications

  • Deep hands-on experience with VMware vSphere, ESXi, vCenter, and VMware NSX-T/NSX architecture.
  • Expert-level knowledge of BGP, OSPF, Geneve/VXLAN overlay encapsulation, VLANs, and TCP/IP.
  • Strong experience with NSX Distributed Firewall (DFW), Gateway Firewall, micro-segmentation, and zero-trust security concepts.
  • Hands-on experience with logical switching, Tier-0/Tier-1 routing, distributed load balancing, and VPNs within VMware NSX.
  • Experience managing the NSX lifecycle, including NSX Managers, Edge Nodes, Transport Nodes, upgrades, patches, scaling, and configuration.
  • Proficiency with PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs for automation and infrastructure-as-code.
  • Experience with Layer 4–7 firewall rules, IDS/IPS, and network security policies.
  • Experience monitoring VMware infrastructure and security events using VMware Aria Operations, Network Insight, Splunk, or similar tools.
  • Experience troubleshooting physical-to-virtual network overlays and collaborating with networking, systems, and SOC teams.
  • Familiarity with integrating NSX with next-generation firewalls such as Palo Alto Networks or Check Point and/or cloud networking platforms such as AWS and Azure.
  • Ability to work onsite from Day 1 in Spring, TX.

Seen 13 hours ago.

Original posting on Hudson Manpower's site ↗

Posting text belongs to the employer. Removal requests: contact us.

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

One job at a time

One posting. One CV. $25.

Pick the job you actually want and we write for it.

Get my CV for this job