Job Title: Network Architect
Location: Vacaville, CA
Job Summary:
This position will act as a primary technical principal and is responsible for delivery of network solutions at an enterprise level. Expertise with network infrastructure technologies such as LAN, WAN, Wireless, Security, VoIP, Video and Data Center. Ideal candidates must have Data Center experience. Candidates for this position must be able to, from day one, roll up their sleeves and hit the ground running, and bring their experience to the team to make the project deployments much smoother.
Roles and responsibilities:
Oversee planning, design, implementation, and operation of network infrastructure projects and participate in the specification of business requirements and implementation plans for technically advanced internetworking solutions.
Manage implementation of network infrastructure projects, from both technical and communication aspects.
Review network design for network security and other risks during course of projects. Serve as a liaison to vendors and/or third-party providers as assigned.
Provide on-site and remote technical assistance to other resources and to customers.
Build and document new Infrastructure environments following industry best practices and internal security policies and standards.
Provide infrastructure design, implementation planning, deployment support, software strategy, system troubleshooting, performance engineering and optimization, maintenance strategy.
Provide technical guidance, knowledge transfer and mentorship to State Fund internal engineering peers as required and lead technical staff responsibilities.
Establishes networking environment by designing system configuration; directing system installation; defining, documenting, and enforcing system standards.
Maximizes network performance by monitoring performance; troubleshooting network problems and outages; scheduling upgrades; collaborating with other teams on network optimization.
Secures network and server systems by establishing and enforcing policies, defining, and monitoring access.
Accomplishes information systems and organization mission by completing related results as needed.
Provide 24 by 7 support.
Reporting network operational status by gathering and prioritizing information.
Participate in capacity planning and demand forecasting, software performance analysis and network tuning.
Be able to collaborate well with cross functional teams to ensure timely delivery of solutions which drive successful business outcomes.
Technical knowledge and skills:
Expertise with Palo Alto Network Firewall, Prisma Cloud and Cisco ASA.
Expertise with F5 Load Balancers and AWS ELB.
Strong OSI layer 2 knowledge and practical experience, including various flavors of STP, ARP, QOS, etc.
Comprehensive knowledge of OSI layer 3 networks and protocols, including broadcast, multicast, anycast concepts, routing, etc.
Expertise with various routing protocols (BGP, OSPF, EIGRP) and multi-homing Internet circuit configuration
Understanding of network security methodologies, including but not limited to ACLs, Stateful firewalls, VPNs (tunneling, IPsec, SSL, etc.)
Fluency with common network admin and monitoring tools such as Rancid, OpenNMS, Nagios, Solarwinds, Wireshark, Nmap, Nessus, Netflow, Sflow etc.
Administrative scripting skills (Perl, UNIX shell scripting)
In-depth knowledge of Cisco IOS, NX-OS, both Cisco Nexus 1K, 2K, 5K 7K, 9K and non-Nexus series switches, Cisco routers and other Cisco networking gear.
Solid understanding of data center related technology and collocation environment.
In-depth knowledge of MPLS network.
Experience in Cisco Fabric interconnect configuration
Must have Nexus 9K and VPC experience.
Advanced knowledge of Cisco, F5, Palo Alto Firewall, Websense/Forcepoint, Juniper and other vendor equipment and configuration
Advanced knowledge and experience with Routing Protocols (BGP, RIP, OSPF, etc.
Must have experience in Pulse Secure VPN.
In-depth knowledge and hands-on experience on Cisco Network Devices automation
Expertise and Hands-on experience with Ansible or Python scripting for Network automation
Deep domain expertise in networking, network security and public/private clouds
Preferred skills:
Experience deploying and maintaining wireless networks.
Working knowledge of AWS services i.e. EC2, ELB, RDS, S3, Route53, Transit Gateway, VPC, Cloud formation, SSM and Transit gateway
Experience deploying and maintaining VOIP deployments (network side, not telecom), SIP Trunking and Content Center.
Project Management Experience.
Experience with Scripting and Automation Technologies.
Desired qualifications and certifications:
Bachelor's degree in a technical field (e.g. Computer Science, IT, or similar disciplines).
Equivalent work experience implementing and operating enterprise level data center and/or office networks.
Experience operating in a modern cloud environment such as AWS, GCP, or Azure or large-scale data centers is a plus.
CCNP is the very minimum requirement. CCIE R&S, or CCIE data center certifications and AWS certified solutions architect is a big plus.