Engineer - Network Security
Listed on 2026-06-04
-
IT/Tech
Systems Engineer, Cybersecurity, Network Engineer, Systems Administrator
Job Description
We are seeking an experienced Senior Network Engineer with 8–10 years of hands‑on expertise in enterprise data center and campus networking. The ideal candidate will have a strong track record of managing day‑to‑day network operations, handling incidents and changes, executing deployments, and maintaining complex Cisco SD‑ACCESS and ACI environments in large‑scale enterprise settings. This role requires deep technical knowledge, strong ITIL discipline, and the ability to work independently across multiple concurrent activities.
Responsibilities- Handle incidents, changes, and problems delegated by the Network Operations team across SD‑ACCESS, ACI, and related campus/data center technologies
- Deploy, configure, and maintain Cisco ACI fabric (EPGs, BDs, VRFs, L3
Outs, contracts, service graphs) and SD‑ACCESS infrastructure (fabric nodes, DNA Center, ISE integration) - Manage day‑to‑day Cisco ACI operations including Multi‑Pod, VMM integration, access policies, in‑band/OOB management, and P configurations
- Operate and administer Cisco SD‑ACCESS fabric — provisioning edge nodes, border nodes, control plane nodes, Virtual Networks, SGTs, and anycast gateways via DNA Center
- Perform end‑to‑end ACI and SD‑ACCESS deployments including new site rollouts, fabric expansions, and workload migrations
- Execute and manage ACI firmware upgrades (APIC cluster, leaf/spine nodes) and DNA Center/IOS‑XE software upgrades following approved change processes
- Adhere to ITIL standards — follow incident, change, and problem management policies; maintain SLA compliance across all operational activities
- Engage with external suppliers and vendors — log support cases, coordinate follow‑ups, and drive issues to resolution (Cisco TAC and third parties)
- Collaborate with application, server, and security teams to securely attach workloads to ACI and SDA fabric with correct policies and access controls
- Provide support for site visit activities at various client locations, ensuring network compliance and operational standards are met
- Maintain, support, and upgrade production network devices including on‑call responsibilities outside of regular business hours
- Provide after‑hours support for critical incident response and approved change activities
- Manage multiple concurrent projects and tasks effectively as a shared resource across the team
- Create and maintain technical documentation including network diagrams, SOPs, runbooks, and change records
- Travel to client locations as required for implementation, support, and audit activities
- Demonstrate strong hands‑on experience with routing and switching technologies including BGP, OSPF, EIGRP, MPLS, VRF, vPC, STP, Ether Channel, and VLAN management across enterprise‑grade Cisco platforms
Education
Bachelor's degree in Computer Science, Information Technology, Telecommunications, or related field
Total Experience8–10 years in enterprise networking — data center and campus environments
Core ExperienceMinimum 5 years hands‑on Cisco ACI; minimum 4 years Cisco SD‑ACCESS / DNA Center; ITIL‑driven operational support
Required Certifications- CCNP Data Center — Implementing and Operating Cisco Data Center Core Technologies
- CCNP Enterprise — Implementing Cisco Enterprise Network Core Technologies
- ITIL Foundation (v3 or v4) — Incident, Change & Problem Management
- Cisco Certified Specialist — Data Center ACI Implementation
- Cisco Certified Specialist — Enterprise SD‑Access Implementation
- CCIE Data Center (Written + Lab) — Highly Preferred
- CCIE Enterprise Infrastructure (Written + Lab)
- Cisco Certified Specialist — Enterprise Advanced Infrastructure Implementation
- Cisco DNA Specialist Certification
- Cisco Certified Dev Net Specialist — Data Center Automation & Programmability
- VMware NSX‑T Data Center Professional / Advanced
Cisco ACI — Data Center SDN
- EPGs, Bridge Domains, VRFs, Multi‑Tenancy, contracts, and filters
- L3
Outs, external routing, and ACI Multi‑Pod / Multisite design - VMM domain integration (VMware vCenter, Microsoft SCVMM)
- Access policy definition — single, Port‑Channel, and vPC interfaces
- L4‑L7 service graphs and Policy‑Based Routing…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).