
Lead Engineer – Network
Iberdrola
full-time
Posted on:
Location Type: Office
Location: Orange • Connecticut • Massachusetts • United States
Visit company websiteExplore more
Salary
💰 $128,320 - $167,600 per year
Job Level
About the role
- Architects, deploys, and optimizes a scalable, highly available, and secure enterprise network across 350+ locations.
- Designs and maintains MPLS, DIA, P2P circuits, AWS Direct Connect, and Azure ExpressRoute to ensure high-performance connectivity.
- Engineers and supports IPSec VPN tunnels for secure remote access and inter-site connectivity.
- Implements advanced routing policies using BGP, EIGRP, OSPF, static routes, prefix lists, ACLs, and route maps.
- Designs and maintains enterprise wireless solutions including Cisco WLCs and Access Points.
- Administers and maintains Cisco routers (ISR, ASR) and switches (Catalyst, Nexus).
- Manages Infoblox DDI (DNS, DHCP, IPAM) for resilient name resolution.
- Configures and maintains Cisco ISE for network access control and authentication policies.
- Oversees network performance monitoring, SNMP-based alerting, and traffic analysis.
- Utilizes ExtraHop and other deep packet inspection (DPI) tools for real-time traffic visibility and network security monitoring.
- Troubleshoots network issues, latency, packet loss, and performance bottlenecks across WAN, LAN, and cloud interconnects.
- Enforces AAA, TACACS+, RADIUS, and 802.1X authentication policies.
- Develops and enforces firewall policies, NAT configurations, and access control lists (ACLs).
- Ensures compliance with ISO 27001, NIST, PCI-DSS, and other industry security frameworks.
- Works with Security Operations (SOC) teams to mitigate threats, monitor anomalies, and secure network boundaries.
- Deploys and maintains SNMP-based monitoring solutions (SolarWinds, PRTG, Thousand Eyes, Cisco DNA Center, etc.).
- Implements ExtraHop for deep packet analysis, application monitoring, and network anomaly detection.
- Automates network tasks using Python, Ansible, Terraform, or equivalent.
- Optimizes QoS policies, WAN acceleration, and traffic engineering techniques to enhance application performance.
- Performs capacity planning and proactive performance analysis to optimize network usage and prevent congestion.
- Designs, deploys, and manages hybrid cloud network architectures in AWS and Azure.
- Implements AWS Direct Connect and Azure ExpressRoute for high-speed cloud connectivity.
- Optimizes cloud Networks, VPN peering, and virtual network gateways.
- Maintains up-to-date network documentation, topology diagrams, and runbooks.
- Collaborates with IT, Security, and Infrastructure teams to align network initiatives with business objectives.
- Provides technical mentorship to junior network engineers and cross-functional teams.
Requirements
- Bachelor’s degree in Computer Science, Network Engineering, or relevant field and a minimum of 7 years of hands-on experience with network engineering, architecture, and/or operations.
- An equivalent combination of education and experience may be considered.
- Strong expertise in MPLS, DIA, P2P circuits, AWS Direct Connect, and Azure ExpressRoute.
- Deep knowledge of routing protocols (BGP, EIGRP, OSPF), IPSec VPN, NAT, ACLs, route maps.
- Solid experience with Cisco routers (ISR, ASR) and switches (Catalyst, Nexus).
- Proficiency in network monitoring and SNMP-based solutions (SolarWinds, PRTG, ThousandEyes, Cisco DNA Center, etc.).
- Hands-on experience with ExtraHop for deep packet inspection and traffic analytics.
- Experience with Infoblox (DNS, DHCP, IPAM) and Cisco ISE (802.1X, NAC, authentication).
- Solid knowledge of wireless networking (Cisco WLCs, Access Points, RF design, and security policies).
- Scripting and network automation experience (Python, Ansible, Terraform, or equivalent tools).
- Ability to analyze packet captures, NetFlow, SNMP logs, and real-time network telemetry.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
MPLSDIAP2P circuitsAWS Direct ConnectAzure ExpressRouteBGPEIGRPOSPFIPSec VPNNAT
Soft Skills
technical mentorshipcollaborationproblem-solvingcommunicationcapacity planningperformance analysisnetwork optimizationteam alignmentinterpersonal skillsleadership
Certifications
Bachelor’s degree in Computer ScienceBachelor’s degree in Network EngineeringISO 27001 complianceNIST compliancePCI-DSS compliance