On-site Full Time
--
Company

Job Details

  1. Provide architecture-level network support for enterprise and hybrid cloud environments.

  2. Review, validate, and challenge High-Level Designs (HLDs) and Low-Level Designs (LLDs) for complex network and security solutions.

  3. Drive network optimization, scalability, resiliency, and performance improvements.

  4. Act as the technical authority for multi-vendor network architecture decisions.

  5. Serve as the final escalation point for business-critical and complex network incidents.

  6. Lead critical incident bridges, drive service restoration, and minimize business impact.

  7. Identify systemic issues and implement long-term improvements to network availability and stability.

  8. Lead firewall architecture and security design reviews for Palo Alto and Cisco FTD environments.

  9. Optimize firewall rule bases, network segmentation, and least-privilege access controls.

  10. Drive the implementation of Zero Trust network architecture.

  11. Ensure security controls align with enterprise security frameworks and compliance requirements.

  12. Design and support Microsoft Azure networking, including VNets, routing, UDRs, NSGs, VPN Gateway, and hybrid connectivity.

  13. Optimize cloud network performance, security, and availability.

  14. Manage and optimize enterprise routing and switching using BGP and OSPF.

  15. Oversee SD-WAN architecture and WAN performance optimization.

  16. Govern enterprise DNS, DHCP, and other critical network services.

  17. Provide expert support for Cisco DNA Center (DNAC), Cisco Identity Services Engine (ISE), and Cisco Wireless LAN Controllers (WLC).

  18. Oversee F5 Load Balancers, including application delivery optimization and high-availability design.

  19. Lead network capacity planning, forecasting, and performance management initiatives.

  20. Ensure compliance, configuration governance, and audit readiness across network platforms.

  21. Support internal and external audits by maintaining architecture documentation and evidence.

  22. Chair or participate as a senior member of the Change Advisory Board (CAB).

  23. Review and approve high-risk network changes, upgrades, and migrations.

  24. Mentor L2/L3 engineers and provide technical and architectural guidance.

Desired Candidate Profile

  • Bachelor's degree in Computer Science, Information Technology, Computer Engineering, or a related field.

  • 8–10 years of experience in enterprise network engineering with senior L3 or network architect-level ownership.

  • Proven experience managing and supporting large-scale, mission-critical enterprise network environments.

  • Expert-level knowledge of CCIE Enterprise Infrastructure or Security (Mandatory).

  • Hands-on expertise in Palo Alto Firewalls, including network segmentation and Zero Trust architecture.

  • Strong experience with Cisco Firepower Threat Defense (FTD).

  • Advanced knowledge of Microsoft Azure Networking (L3 level).

  • Experience with Cisco DNA Center (DNAC), Cisco Identity Services Engine (ISE), and Cisco Wireless LAN Controllers (WLC).

  • Hands-on experience managing F5 Load Balancers.

  • Strong expertise in BGP, OSPF, SD-WAN, LAN/WAN, routing, and switching technologies.

  • Solid understanding of DNS, DHCP, and enterprise network services.

  • Excellent analytical, troubleshooting, leadership, and stakeholder management skills.

Preferred Certifications

  • CCIE – Enterprise Infrastructure or Security (Mandatory)

  • Palo Alto Networks Certified Network Security Engineer (PCNSE)

  • Microsoft Certified: Azure Network Engineer Associate (AZ-700)

  • F5 Certified Administrator or F5 Certified Specialist

  • ITIL® 4 Foundation Certification

Similar Jobs