Jumbo Group is looking for a hands‑on Senior Network Engineer to manage and secure enterprise network infrastructure across retail and service center operations, spanning switching, wireless, firewall, SASE/Zero Trust, and Microsoft cloud security stacks.
Enterprise Switching & Wireless
- Design, configure, and maintain enterprise switching infrastructure (VLANs, STP, LACP, OSPF, BGP) across multi-site retail and corporate locations
- Manage enterprise wireless environments (Aruba/Cisco), including RF planning, 802.1X authentication, and seamless roaming for retail floor and warehouse coverage
Firewall & Perimeter Security
- Administer and optimize firewall infrastructure (Check Point and/or Fortinet) — NAT, IPS, and Application Control policies
- Conduct regular rule‑base reviews, cleanups, and migrations with minimal business disruption
VPN & Remote Connectivity
- Manage IPSec and SSL VPN infrastructure for site‑to‑site and remote access connectivity between stores, warehouses, and corporate offices
- Drive adoption and ongoing management of SASE and Zero Trust architecture (ZTNA, SWG, CASB, FWaaS) to secure distributed retail locations and remote users
Identity & Endpoint Security (Microsoft Stack)
- Manage Microsoft Entra ID and Conditional Access policies for secure, risk‑based access control
- Administer Microsoft Intune for endpoint management, compliance policies, and device security across the organization
- Own Active Directory, DNS, DHCP, PKI, and NPS/RADIUS infrastructure supporting authentication and network access
Network Security & Segmentation
- Implement and maintain network segmentation, Network Access Control (NAC), MFA, and micro‑segmentation strategies to reduce attack surface across retail and back‑office environments
- Support and extend cloud networking on Azure and/or AWS, including VNet design and VPN gateway connectivity between on‑prem and cloud environments
Availability, Monitoring & Resilience
- Manage load balancers, WAF, and reverse proxy configurations for critical applications
- Monitor network health using SIEM and packet‑level analysis tools; proactively identify and resolve performance and security anomalies
- Design and maintain High Availability (HA) and Disaster Recovery (DR) configurations for critical network infrastructure
- Lead root cause analysis (RCA) for critical network incidents, coordinating with vendors and internal stakeholders through to resolution
- Provide L3 escalation support for complex network and security issues across retail, service center, and corporate environments