We are seeking a Senior Network Engineer to design, secure, and support our enterprise network infrastructure. The ideal candidate brings strong Cisco expertise (NX-OS, IOS-XE, ASR), deep routing and switching knowledge, hands-on firewall and wireless experience, and a solid understanding of network security and monitoring best practices.
Responsibilities:
- Design, deploy, and maintain core network infrastructure across switching, routing, firewalls, wireless, and WAN environments.
- Troubleshoot complex technical issues, perform root-cause analysis, and ensure high availability, resilience, and performance.
- Implement and enforce network security controls including segmentation, firewall policies, VPNs, MFA/2FA, and L2/L3 security mechanisms.
- Manage and optimize wireless environments (Ruckus, Mikrotik, Ubiquiti).
- Maintain routing policies and high-availability technologies (VPC, LACP, load balancing, etc.).
- Operate, tune, and improve monitoring and observability systems (SNMP, telemetry, Prometheus, Grafana, Splunk, PRTG, Zabbix, SolarWinds).
- Produce clear network documentation, standards, and diagrams, and participate in knowledge sharing with the team.
Required Skills:
- Minimum 3 years of hands-on experience in network engineering or a similar technical role.
- Strong experience with Cisco NX-OS, IOS-XE, ASR platforms, and Firepower appliances.
- Deep understanding of L2/L3/L4 networking (VLANs, STP, ACLs, QoS, NAT, VRFs, VPC, EtherChannel/LACP).
- Hands-on experience with firewalls: Fortigate, Mikrotik, pfSense, OPNsense.
- Expert-level knowledge of VPN and tunneling technologies: IPsec, WireGuard, OpenVPN, SSL-VPN, L2TP, PPTP, ZeroTier.
- Strong routing protocol experience: OSPF, EIGRP, BGP.
- Experience with WAN, SD-WAN, load balancing, and HA solutions.
- Linux administration fundamentals.
- Wireless expertise with Ruckus, Mikrotik, Ubiquiti, etc.
- Understanding of MFA/2FA, access controls, and network security principles.
- Knowledge of VoIP traffic requirements (jitter, latency, QoS).
Preferred Skills:
- Network automation: Ansible, Terraform, Python.
- Understanding of HTTP/HTTPS, REST APIs, and general web communication concepts.
- Familiarity with PKI, certificates, and encryption.
- Experience integrating logs with SIEM tools.
- Understanding of microservices and container networking (Docker, Kubernetes).
- Exposure to ITIL or similar service-management frameworks.
- Preferred Certifications (any of the following):
- Cisco: CCNA, CCNP Enterprise, CCNP Security
- Fortinet: NSE4 or above
- CWNP: CWNA (for wireless)
- Linux Foundation: LFCS or LPIC
- VMware VCP/VCAP