Required Skills: Python, hybrid DNS, IPAM, Cisco, Juniper, Palo Alto, Fortinet
Job Description
Role Overview:
We are looking for an experienced Network Engineer with strong enterprise networking and AWS hybrid connectivity experience. The role will focus on designing, securing, and supporting large-scale network infrastructure across on-premises and AWS environments.
Key Responsibilities:
- Design, maintain, and troubleshoot enterprise routing, switching, firewalls, ACLs, and secure connectivity.
- Design and support redundant IPsec VPNs, including BGP-based routing and failover.
- Configure and manage AWS networking services including VPC, Subnets, Route Tables, Security Groups, NACLs, Transit Gateway, Direct Connect, Site-to-Site VPN, and Route 53.
- Support hybrid cloud migration and post-migration network operations.
- Implement network security, segmentation, encryption, and high-availability solutions.
- Work with AWS Network Firewall and cloud security/inspection architectures.
- Develop Infrastructure-as-Code using Terraform, CloudFormation, or Ansible.
- Monitor network performance using logging, telemetry, SNMP, dashboards, and alerting tools.
- Troubleshoot production incidents and participate in a 24x7 on-call rotation.
- Maintain network diagrams, documentation, runbooks, standards, and operational procedures.
- Support vulnerability remediation, disaster recovery, and network security compliance activities.
Required Skills:
- 10+ years of hands-on enterprise network engineering experience.
- Strong experience with routing, switching, firewalls, VPNs, and network security.
- Extensive experience with IPsec VPN, BGP, and high-availability/failover solutions.
- Strong AWS networking experience, particularly VPC, Transit Gateway, Direct Connect, Site-to-Site VPN, Route 53, Security Groups, and NACLs.
- Experience with Terraform or CloudFormation.
- Strong understanding of network segmentation, encryption, MFA, and device hardening.
- Experience supporting production environments and on-call operations.
- Experience with ITSM tools such as ServiceNow or FootPrints.
- Ability to work in security-sensitive/regulatory environments and successfully complete required background screening.
Preferred:
-
Experience with Cisco, Juniper, Palo Alto, Fortinet, or Check Point.
-
Experience with SD-WAN, MPLS, and carrier networks.
-
Python/Ansible-based network automation experience.
-
Experience with AWS Network Firewall and inspection architectures.
-
Knowledge of hybrid DNS, IPAM, and large-scale CIDR planning.
-
Certifications such as CCNP/CCIE, JNCIP/JNCIE, PCNSE, or AWS Advanced Networking