Senior Network Engineer – Bengaluru
Reporting to CoE Network Manager. Core responsibilities include end-to‑to‑end project delivery, complex network operations, incident and change management, and governance based on ITIL and Eurofins ENNA.
Project Delivery (Primary Focus)
A senior technical resource will manage complex network infrastructure projects from initiation to hand‑over, covering new site build‑outs, datacentre migrations, firewall refreshes, SD‑WAN rollouts, VoIP integrations, WAF deployments and Zero Trust initiatives.
- Own and deliver projects end‑to‑end: planning, design validation, execution, testing, cut‑over, hyper care and hand‑over.
- Create and maintain LLDs, HLDs, BoMs, implementation plans, rollback plans, test plans and Run/Operate documentation.
- Coordinate with cross‑functional teams – Security, Cloud, Service Desk, Regional IT, Vendors, ISPs.
- Provide status updates, RAID logs and escalations to the CoE Network Manager and IT Infrastructure leadership.
- Contribute to capacity planning, lifecycle management and technology refresh roadmaps.
Operations, Incident & Change Management
- Manage CoE Network ITSM queue – triage, troubleshoot and resolve network incidents (P1/P2/P3).
- Fulfil service requests for new device installation, configuration changes and documentation updates.
- Own and manage network changes following Eurofins Change Management Process (RFC creation, CAB presentation, implementation, post‑implementation review).
- Participate in Problem Management and SWOT analysis to drive proactive service improvements.
- Support technical escalations and elevate support to maintain SLAs.
Standards, Documentation & Governance
- Contribute to creation and review of Key Group Documents, SOPs, Work Instructions and Guidelines aligned with ENNA standards.
- Deliver services following ITIL methodology – IT Service Cards, SOPs/WIs, Training, and Service Transition.
Required Technical Skills
Network Security (Multi‑Vendor)
- Check Point Firewalls & MDSM – policy management, VSX, clustering, upgrades, migrations.
- Fortinet FortiGate – FortiManager, FortiAnalyzer, SD‑WAN features, SSL VPN, IPSec.
- Palo Alto Networks – Panorama, NGFW features, App‑ID, User‑ID, GlobalProtect, Prisma.
- Cisco Secure Firewall (Firepower/FTD/ASA) – FMC, threat policies, migrations from ASA to FTD.
- Web Application Firewalls – Cloudflare, AWS WAF, Azure WAF, F5 ASM, Imperva.
- Cloudflare – DNS, CDN, WAF, Zero Trust / Cloudflare Access, DDoS protection, Magic Transit.
- DDoS mitigation, IPS/IDS, TLS inspection and modern Zero Trust / SASE architectures.
Routing & Switching
- Cisco – Catalyst (29xx/3xx/9xx), Nexus (5K/7K/9K), ASR, ACI (optional), IOS/IOS‑XE/NX‑OS.
- Juniper – EX/QFX series, Junos OS, virtual chassis, EVPN‑VXLAN (optional).
- HPE/Aruba and Dell switching platforms.
- Layer 2/3 protocols – VLAN, STP/RSTP/MSTP, LACP, OSPF, EIGRP, BGP, MPLS, VRF, multicast.
- Routing convergence optimisation and traffic engineering.
WAN, SD‑WAN & Connectivity
- SD‑WAN – Arista VeloCloud (primary), awareness of Cisco Viptela / Versa / Fortinet SD‑WAN.
- MPLS, Internet breakout design, hybrid WAN, DIA circuits.
- VPN – IPSec (policy & route‑based), SSL VPN, Remote Access VPN, DMVPN.
Wireless
- Cisco Wireless – WLC, LAP/CAPWAP, autonomous APs.
- Cisco Meraki, Aruba, Aerohive/HiveManager.
Load Balancing & Application Delivery
- A10 (preferred), F5, KEMP – VIPs, SSL offload, persistence, health monitors, iRules/aFleX basics.
Voice & Collaboration
- Cisco Call Manager, Cisco Unity, UCS, RingCentral, MS Teams Voice awareness.
Authentication & Access
- RADIUS, TACACS+, Cisco ISE/ACS, 802.1X, NAC fundamentals.
Cloud & Modern Networking
- Networking in AWS, GCP, Azure – VPC/VNet, Transit Gateway, VNet Peering, ExpressRoute, Direct Connect.
- Infrastructure‑as‑Code – Terraform, Ansible.
- Monitoring & observability – SolarWinds, PRTG, ThousandEyes, Splunk.
QoS, Traffic Engineering & Tools
- QoS, queuing, traffic shaping, policy management.
- Packet capture & analysis – Wireshark, tcpdump.
Personal Qualities / Profile
- Project‑focused – drive tasks to completion under tight deadlines.
- Autonomous, proactive, analytical, rigorous.
- Business‑focused with strong risk sensitivity.
- Excellent coordination skills across teams, vendors, and geographies.
- Strong written and verbal communication.
- Comfortable operating in a tightly controlled change‑managed environment.
Qualifications
- University Degree in IT, Computer Science, Electronics or comparable field (or equivalent experience).
- Minimum 6‑8 years enterprise networking and security experience, at least 2‑3 years in project delivery or lead capacity.
- Certifications preferred: CCNP (Enterprise/Security), CCSA/CCSE, NSE 4/5/6, PCNSA/PCNSE, ITIL v4 Foundation, PMP/Prince2 Foundation.
- Strong English communication – present to technical and business stakeholders.
- Proven experience in geographically diverse, multi‑vendor environments.