Browse
···
Log in / Register

Senior Network Engineer

ICE Consulting

Milpitas, CA 95035, USA

Favourites
Share

Description

Description: Work with clients to provide advanced network support utilizing a deep understanding of routing and switching protocols, network security, good operational experience to isolate, analyze and resolve issues in a fast-paced environment with limited supervision to maintain SLAs and Service Agreements. Duties include: Serve as the Subject Matter Expert (SME) for network technologies that include switching, routing, routing protocols, cloud services (AWS, Azure, etc.) Provide network design, implementation and installation of firewalls, switches, Wi-Fi infrastructure at client offices Provide network security services related to implementing firewall security policies for BioTech labs Design and implement cloud, hybrid, and Wi-Fi networks with security in mind. Serve as the primary network engineer for key clients including US Government Contractors, Global, and Hi-demand clients. Maximize network performance by monitoring performance; troubleshooting network problems and outages; scheduling upgrades; collaborating with network architect on network optimization projects. Automate the network manual process with proven tools Design and implement network architecture based on Industry and vendor best practices. Participates in IT security audits. Responds to existing audits and ensures required controls are implemented as required. Mentor other network engineers on various network technologies and industry developments Develop network runbooks and automation to minimize routine manual work. Automate tasks and monitor their effectiveness. Serve as the escalation point for Security Operations Center issues. Serve as the Tier 2 escalation point for network operations support to include On-Premises, Hybrid Cloud, and Cloud Based Networking Report network operational status to clients by gathering, prioritizing information; writing reports and root cause analysis (RCA) Secure network system by establishing and enforcing policies; defining and monitoring access. Create, oversee, and test security measures (e.g., access authentication and disaster recovery) Maintain complete documentation. Suggest improvements to network performance, capacity, and scalability. Requirements Excellent knowledge of routing, switching, network security, and associated hardware platforms Multi-Vendor Knowledge of Edge, Core, and Access Switches, Firewalls, and Wireless Networks.  Standard platform vendors include but not limited to: firewalls (Palo Alto Network, FortiGate, Meraki, etc.), switches (Cisco, Aruba, FortiNet, Arista, Meraki, etc.), Wi-Fi (Aruba, FortiAP, Meraki, etc.) Extensive knowledge of Next Generation Firewalls (NGFW), stateful packet inspection and ACLs Universal Threat Management (UTM) Features, Capabilities, and Firewall Objects, Rules, and Policies Extensive experience with Layer 3 Routing and Protocols, and SDWan knowledge. Experience with Layer 2 protocols and associated enhancements (LACP, 802.1x, etc.) required. Knowledge of the following areas is required: VPN (IPSec, and SSL VPNs,), Wireless (802.1b/g/n/ac/ax Wi-Fi 6 and 6E), and DNS/DHCP Knowledge/experience in the following areas is highly desired: Zero Trust Networks NAC SD-WAN Network Monitoring using Nagios / CheckMK Network Virtualization (Virtual Firewalls, Network Analyzers, etc.) Radius QOS VoIP Knowledge/experience in any of the following areas is a plus: ZTNA (zScaler ZPA, ZIA, and ZTA) PAM (BeyondTrust and CyberArk) SIEM (Azure Sentinel, Splunk) Bachelor’s Degree or equivalent work experience 7 Years in a senior level network engineering/operations role Skills: Excellent analytical skills and the ability to operate independently. Excellent verbal and written skills Excellent time management and organizational skills Strong interpersonal skills both with clients and within the organization Bachelor’s Degree in Computer Science or Computer Engineering a plus

Source:  workable View Original Post

Location
Milpitas, CA 95035, USA
Show Map

workable

You may also like

Avint
Network Engineer (Dragos Experience)
Camp Lejeune, NC 28547, USA
Avint LLC is seeking a dedicated and technically skilled Mid-Level Network Engineer for an on-site position in Camp Lejeune, NC. In this critical role, you will support and maintain enterprise network infrastructure in a mission-driven environment, ensuring secure, reliable, and high-performance connectivity across systems and sites. You’ll be responsible for configuring and monitoring routers, switches, firewalls, and load balancers, performing network troubleshooting, and supporting both LAN and WAN environments. Experience with network technologies such as Cisco, Juniper, or Palo Alto; protocols including TCP/IP, BGP, OSPF, and VPNs; and tools for monitoring and diagnostics is essential. Familiarity with network security best practices—including DISA STIGs, vulnerability mitigation, and support for accreditation and compliance processes—is highly desirable. This position involves close collaboration with cybersecurity, systems, and operations teams to ensure robust and compliant network operations in support of organizational goals. Location: 100% on-site in Camp Lejeune, NC **THIS POSITION REQUIRES AT LEAST 1 YEAR OF EXPERIENCE WITH THE DRAGOS PLATFORM** Responsibilities: Support network infrastructure integration with Nutanix Hyperconverged environments, ensuring reliable connectivity for Regional FRCS Monitoring systems and virtualized platforms. Provide network configuration and support for the deployment of the Cyber Monitoring Services OT Monitoring Platform, including secure communications between Central Store, Site Store, and distributed Sensors. Collaborate with database and systems teams to ensure secure, efficient network access to Microsoft SQL Server resources in support of operational requirements. Coordinate network-related tasks within the Marine Corps Certification and Accreditation Support Tool (MCCAST V2) to support system authorization and security posture tracking. Design, maintain, and troubleshoot network infrastructure in a DoD environment, including secure LAN/WAN connectivity and mission-critical data transmission. Understand and support network requirements related to high voltage systems, water/wastewater facilities, and mechanical infrastructure to ensure operational continuity. Apply knowledge of TCP/IP, VLANs, ACLs, and routing protocols to secure and optimize Unix and Windows system communications across enterprise and field environments. Assist in the implementation and network integration of Host-Based Security System (HBSS) for monitoring and enforcing endpoint security policies. Support network connectivity and security for Automated Metering Infrastructure (AMI) and energy management systems. Ensure network design and data flows comply with USMC DEVSECOPS policy, particularly as it applies to ICS/OT environments. Collaborate with ICS teams to ensure proper network integration and secure communications for platforms such as Metasys, Niagara AX, Alerton, Honeywell, and Rockwell. Configure and troubleshoot communication protocols including BACnet/MSTP, BACnet/IP, N2, LON, and SCADA systems used in high voltage and water/wastewater operations. Coordinate with system teams to plan and validate secure network paths for software updates, patch deployments, and version control in ICS/OT environments. Support network requirements and data security measures in alignment with the USMC Assessment and Authorization (A&A) process, including RMF and CNSSI 1253. Collaborate in tracking and resolving network-related findings in POA&Ms to maintain security compliance. Apply DISA STIGs to network devices, ensuring secure baseline configurations and audit readiness. Interpret and implement NIST 800-53 and DoDI 8510.01 standards to guide secure network architecture and operations. Conduct network vulnerability and risk assessments, implementing mitigation strategies in coordination with cybersecurity teams. Support integration and monitoring of Dragos platform data over network infrastructure to detect and respond to OT cyber threats. Requirements Experience: Minimum 3 years of relevant IT/system administration experience supporting virtualized environments, networks, and OT systems. Minimum 1 year of experience using the Dragos Platform. Education: Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field. Security Clearance: Active Secret clearance required. Certifications: One or more of the following certifications (or equivalent) are highly desired: Cyber Monitoring Services Platform Certified User Certification ITIL v4 Foundations ICS-VLP Certificate (Courses 210W-01 through 210W-10) Risk Management Framework (RMF) Training – USMC specific Cisco Certified Entry Networking Technician (CCENT) or Cisco Certified Network Associate (CCNA) CompTIA Security+ (Sec+) Certified Information Systems Security Professional (CISSP) Microsoft Certifications (Server, Azure, or related) Benefits Joining Avint is a win-win proposition! You will feel the personal touch of a small business and receive BIG business benefits. From competitive salaries, full health, and generous PTO and Federal Holidays. Additionally, we encourage every Avint employee to further their professional development. To assist you in achieving your goals, we offer reimbursement for courses, exams, and tuition. Interested in a class, conference, program, or degree? Avint will invest in YOU and your professional development! Avint is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity and Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. The salary range for this position is: $90,000-$100,000
$90,000-100,000
Delaware Nation Industries
Network Engineer
San Antonio, TX, USA
DNI/Creative IT Solutions is providing all systems administration and network engineering skill sets for the US Army's global email systems for the Defense Information Systems Agency (DISA). Install, configure, administer and maintain currently supported and subsequent versions of network offerings within a commercial cloud tenant construct. Create Standard Operating Procedures (SOP), and Tactics, Techniques, and Procedures (TTP), The contractor shall ensure all documents and reports are written and formatted properly. Monitor tenant performance utilizing cloud based monitoring and alerting software. Ensures that all projects they are supporting have the latest updates on and that government leadership is tracking any priority efforts that are not expected to meet mission timelines. The contract should be prepared to participate in high level briefings for workload they are supporting. All contractor actions must be done in accordance with official government guidelines to maintain compliance with all government policies and process. The contractor shall deliver Quality Assurance and Service Level Management project reports using Government owned data to perform and provide weekly, monthly, quarterly, and annual Quality Assurance (QA) reports. The contractor shall ensure projects follow government processes for assigning, categorizing, and documenting from start to completion. Maintain the current dashboard and implement necessary changes to report up to date metrics and analyses. The contractor shall have privileged access to a DISA information system, which shall have an ability and authority to control and change program files, and other users’ access to data. Evaluate and engineer highly available network solutions based upon customers’ requirements which are capable of meeting strict uptime requirements. Use the established change management process to provide changes in response to policies, security, or customer requests. Ensure compliance with Joint Task Force (JTF) directives for ports and protocols. Supported functions include but are not limited to installing, configuring, monitoring, operating, upgrading, patching, technical refresh, troubleshooting, deep packet inspection, network packet capture, quality assurance, and Return Material Authorization (RMA) network communications equipment. Ensure the migration and implementation efforts conform to the physical and logical infrastructure and security configurations (such as Access Control List (ACLs) and deny-by-default). Implementation and configurations of hardware or software devices and network functions to support new services and applications. Compliance with security controls, including, but not strictly limited to, providing confidentiality, integrity, and availability as well as government compliance with Security Technical Implementation Guidelines (STIG), Zero Trust and Defense in depth. Interact/coordinate with service desks, technical staff and customers to resolve technical problems or provide information. Perform backups IAW applicable regulations, policies and guidance and ensure backup failures are properly addressed. Provide callback and after-hours support. Work non-prime shift Requirements 5+ years of network engineering experience An active Secret security clearance is REQUIRED. Security+ certification is REQUIRED. Benefits This is a full time/permanent position with excellent benefits, and outstanding compensation including full medical, dental, 401K vacation and holiday pay. AAP/EEO Statement:  DNI complies with all federal, state and local laws designed to protect employees and job applicants from discrimination based on race, religion, color, sex, parental status, national origin, age, disability, genetic information, military service, or other non-merit-based factors.  Other Duties:  Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. 
Cookie
Cookie Settings
Our Apps
Download
Download on the
APP Store
Download
Get it on
Google Play
© 2025 Servanan International Pte. Ltd.