Salary
💰 $97,500 - $162,500 per year
Tech Stack
AnsibleAWSAzureCloudDNSDockerFirewallsGoogle Cloud PlatformKubernetesPythonTCP/IPTerraform
About the role
- Architect and manage secure, scalable enterprise network infrastructure connecting cloud and on-premises environments
- Design and implement enterprise network architectures for hybrid cloud environments
- Configure and manage Microsoft Azure networking services (VNets, ExpressRoute, VPN Gateway, Network Security Groups)
- Deploy and maintain Fortinet security appliances (FortiGate firewalls, FortiAnalyzer, FortiManager)
- Configure and optimize Cisco enterprise networking equipment (switches, routers, wireless controllers)
- Implement network segmentation and microsegmentation strategies for secure multi-tenant environments
- Design and deploy software-defined WAN (SD-WAN) solutions and configure QoS for business-critical applications
- Develop network monitoring and performance optimization strategies
- Implement zero-trust network security architectures and network access control (NAC) solutions
- Perform network security assessments, vulnerability remediation, and implement intrusion prevention/advanced threat protection
- Support compliance requirements (SOX, PCI-DSS, HIPAA, SOC 2)
- Manage network automation and infrastructure-as-code initiatives; provide escalation support for complex network issues
- Collaborate with business units and security teams; be available on-call and come into MAG offices when requested
Requirements
- 5+ years enterprise network engineering experience
- Strong understanding of TCP/IP and routing protocols (OSPF, BGP, EIGRP)
- Hands-on experience with Microsoft Azure networking (Virtual Networks, Load Balancers, Application Gateway, ExpressRoute, VPN Gateway, Network Security Groups)
- Proficiency with Fortinet security platforms (FortiGate configuration, FortiOS, FortiAnalyzer, FortiManager)
- Proficiency with Fortigate SD-WAN implementation
- Experience with Cisco enterprise equipment (Catalyst switches, ISR/ASR routers, Wireless LAN Controllers)
- Knowledge of network security protocols (IPSec, SSL/TLS, 802.1X)
- Experience with network virtualization and software-defined networking
- Familiarity with VLAN design, spanning tree protocols, and link aggregation
- Understanding of DNS, DHCP, and directory services integration
- Must be eligible for Secret security clearance
- U.S. Citizenship required
- Bachelor's degree in Computer Science, Information Technology, or related field
- Preferred: multi-cloud networking (Azure, AWS, GCP), Cisco ACI, Fortinet Security Fabric
- Preferred: network automation tools (Ansible, Terraform, Python scripting)
- Preferred: container networking (Kubernetes, Docker) and SD-WAN solutions (Cisco Viptela, Silver Peak, VeloCloud)
- Preferred: experience with network monitoring tools (SolarWinds, PRTG, Nagios) and secure remote access solutions (VPN, ZTNA)
- Preferred: knowledge of Wi-Fi 6 and enterprise wireless design
- Preferred certifications: CCNA/CCNP, Azure certifications, Fortinet NSE certifications
- Health, life, disability, financial, and retirement benefits
- Paid leave
- Professional development and certification support
- Tuition assistance
- Access to MAG's Total Rewards programs for employees working at least 30 hours/week
- Competitive compensation with performance-based advancement
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
enterprise network engineeringTCP/IProuting protocolsMicrosoft Azure networkingFortinet security platformsCisco enterprise equipmentnetwork security protocolsnetwork virtualizationsoftware-defined networkingnetwork automation
Soft skills
collaborationproblem-solvingcommunicationavailability on-call
Certifications
CCNACCNPAzure certificationsFortinet NSE certifications