VMware NSX Security Engineer

Hudson ManpowerSpringJob.bopublished 09/23/2026
Must-have:PythonAWSAzureCloudSecurityHybrid

Job Summary

We are seeking an experienced VMware NSX Security Engineer / Administrator responsible for the architecture, deployment, configuration, and day-to-day administration of network virtualization and security policies within a VMware environment. The role bridges traditional networking, cloud infrastructure, and cybersecurity , with a primary focus on establishing a zero-trust network posture through advanced logical routing, distributed firewalls, and micro-segmentation across hybrid cloud workloads.

Location: Spring, TX – Day 1 Onsite Duration: 6–12+ Months Contract

Key Responsibilities

Security Architecture & Micro-Segmentation

  • Design and enforce granular Distributed Firewall (DFW) and Gateway Firewall rules.
  • Implement micro-segmentation to isolate virtual machines and applications.
  • Prevent lateral or east-west threat propagation across workloads.
  • Support zero-trust security architecture and policies.

Network Virtualization Management

  • Deploy and manage logical switching within VMware NSX.
  • Configure and administer Tier-0 and Tier-1 routing .
  • Manage distributed load balancing and VPN services.
  • Troubleshoot network virtualization across hybrid environments.

Lifecycle Management

  • Perform maintenance, scaling, upgrades, patches, and configuration management.
  • Administer NSX Managers, Edge Nodes, and Transport Nodes .
  • Ensure platform stability, availability, and disaster recovery readiness.

Infrastructure Automation

  • Develop and maintain Infrastructure-as-Code (IaC) solutions.
  • Create automation scripts to streamline security rule deployment.
  • Automate configuration and operational processes using PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs.

Monitoring & Log Analysis

  • Monitor infrastructure health, capacity, and security events.
  • Utilize VMware Aria Operations, Network Insight , or equivalent monitoring platforms.
  • Integrate and analyze security events through SIEM platforms such as Splunk.

Cross-Team Collaboration

  • Collaborate with systems engineers, network administrators, and Security Operations Center (SOC) teams.
  • Troubleshoot physical-to-virtual network connectivity and overlay issues.
  • Support integration between networking, infrastructure, and security environments.

Incident Response Support

  • Assist security teams during network and security incidents.
  • Perform deep-packet inspection and network flow tracing.
  • Apply emergency isolation and firewall rules during active security events.

Required Technical Skills

VMware Ecosystem Deep hands-on experience with:

  • VMware vSphere
  • VMware ESXi
  • VMware vCenter
  • VMware NSX-T / NSX architecture

Networking Expert knowledge of:

  • BGP
  • OSPF
  • Geneve / VXLAN overlay encapsulation
  • VLANs
  • TCP/IP

Firewall & Security Strong understanding of:

  • Layer 4–7 firewall rules
  • Distributed Firewall (DFW)
  • Gateway Firewall
  • IDS/IPS
  • Network micro-segmentation
  • Zero-trust security concepts

Automation & Scripting Proficiency with one or more of:

  • PowerShell / PowerCLI
  • Python
  • Terraform
  • NSX REST APIs

Third-Party & Cloud Integration Experience integrating NSX with physical next-generation firewalls such as:

  • Palo Alto Networks
  • Check Point

Familiarity with cloud networking environments such as AWS and Azure .

Preferred Certifications

  • VMware Certified Professional – Network Virtualization (VCP-NV)
  • VMware Certified Advanced Professional – Network Virtualization (VCAP-NV Design or Deploy)
  • Cisco Certified Network Associate (CCNA)
  • Cisco Certified Network Professional (CCNP)

Required Qualifications

  • Deep hands-on experience with VMware vSphere, ESXi, vCenter, and VMware NSX-T/NSX architecture .
  • Expert-level knowledge of BGP, OSPF, Geneve/VXLAN overlay encapsulation, VLANs, and TCP/IP .
  • Strong experience with NSX Distributed Firewall (DFW), Gateway Firewall, micro-segmentation, and zero-trust security concepts .
  • Hands-on experience with logical switching, Tier-0/Tier-1 routing, distributed load balancing, and VPNs within VMware NSX.
  • Experience managing the NSX lifecycle , including NSX Managers, Edge Nodes, Transport Nodes, upgrades, patches, scaling, and configuration.
  • Proficiency with PowerShell/PowerCLI, Python, Terraform, or NSX REST APIs for automation and infrastructure-as-code.
  • Experience with Layer 4–7 firewall rules, IDS/IPS, and network security policies .
  • Experience monitoring VMware infrastructure and security events using VMware Aria Operations, Network Insight, Splunk, or similar tools .
  • Experience troubleshooting physical-to-virtual network overlays and collaborating with networking, systems, and SOC teams.
  • Familiarity with integrating NSX with next-generation firewalls such as Palo Alto Networks or Check Point and/or cloud networking platforms such as AWS and Azure .
  • Ability to work onsite from Day 1 in Spring, TX .