Job Description:
We are seeking a Senior Network Engineer to support, design, and maintain our enterprise network infrastructure. This role owns day-to-day network operations while also driving architecture and configuration work for new deployments and upgrades. The ideal candidate has deep hands‑on expertise with Layer 2/Layer 3 switching, enterprise firewalls, and VPN technologies, and can troubleshoot complex issues across multi‑vendor environments with minimal supervision. Security experience is a strong plus.
Responsibilities include:
Network Operations & Support
- Serve as an escalation point for complex network incidents, performing root cause analysis and driving issues to resolution within SLA
- Monitor network health, capacity, and performance; proactively identify and remediate bottlenecks before they impact users
- Troubleshoot connectivity issues across VLANs, routing, switching, DNS, DHCP, TCP/IP, and WAN/ISP links
- Use packet capture and network monitoring tools to diagnose latency, packet loss, and application performance problems
- Manage firmware upgrades, patching, and configuration backups following established change management procedures
- Participate in an on‑call rotation and support scheduled maintenance windows
Network Design & Architecture
- Design scalable, resilient LAN, WAN, and remote‑access solutions that support business growth
- Develop network diagrams, IP addressing schemes, VLAN plans, and routing designs
- Evaluate and recommend hardware, software, and circuits; participate in vendor selection and technical evaluations
- Lead network components of infrastructure projects - site build‑outs, migrations, refreshes, and cloud connectivity
- Define and maintain network standards, baseline configurations, and technical documentation
Configuration & Implementation
- Configure and maintain Layer 2/Layer 3 switches, including VLANs, trunking, spanning tree, port security, link aggregation, and inter‑VLAN routing
- Configure and maintain routing protocols (OSPF, BGP, EIGRP, static routing) across the enterprise WAN
- Administer enterprise firewalls: security policies, NAT, application control, and access control rules
- Build and maintain site‑to‑site IPsec VPN tunnels between offices, data centers, and third‑party partners, including troubleshooting Phase 1/Phase 2 negotiation, rekeying, and tunnel stability issues
- Deploy and support remote‑access VPN (SSL/IPsec) for end users, including authentication integration and client troubleshooting
- Implement network segmentation and access control between environments
Collaboration & Documentation
- Maintain accurate network documentation, runbooks, and as‑built diagrams
- Provide technical mentorship to junior engineers and help‑desk staff
- Work with systems, application, and security teams on cross‑functional initiatives
- Communicate clearly with non‑technical stakeholders during outages and project planning