Senior Network Engineer
Role details
Job location
Tech stack
Job description
We are seeking a Senior Network Engineer with deep hands-on experience designing, deploying, and operating Fortinet-based network and security solutions in complex enterprise environments. This role leads technical direction for network/security initiatives, drives standards and automation, and provides escalation support to ensure secure, highly available connectivity across LAN/WAN/Wi-Fi and data center/cloud environments.
This position may require participation in an on-call rotation and occasional after-hours work to support maintenance windows and incident response. Some travel to sites/data centers may be required based on business needs.
Apply in minutes with a resume, even from your mobile device! Responsibilities
You Will be Responsible for. . .
- Lead the design, implementation, and lifecycle management of Fortinet solutions including FortiGate firewalls, FortiManager, FortiAnalyzer, FortiSwitch, and FortiAP (as applicable)
- Own network security architecture and policy governance: firewall rules, NAT, VPN (site-to-site and remote access), web filtering, IPS/IDS, application control, and segmentation/zero trust patterns
- Serve as the escalation point for complex troubleshooting and security incidents; perform root-cause analysis, drive corrective/preventive actions, and document lessons learned
- Architect and optimize SD-WAN, routing, and switching (e.g., OSPF/BGP, VLANs, STP) for multi-site resiliency, performance, and cost efficiency
- Define standards for configuration management, firmware/patch strategy, backups, PKI/certificates, and high availability; maintain accurate network diagrams, runbooks, and as-built documentation
- Design and support secure access integrations (e.g., RADIUS/TACACS+, LDAP/AD, SAML/MFA where applicable) for administrative access and remote connectivity
- Partner with Security, Systems, and Application teams to deliver secure designs; lead change planning, risk assessment, and implementation using change-management best practices
- Mentor engineers and influence cross-team practices; participate in on-call rotation and provide Tier 3/4 support, including maintenance window leadership
Requirements
- Bachelor's degree in computer science, Data Science, Engineering, or a related technical field
- 7+ years of hands-on network engineering experience in enterprise environments, including ownership of critical network/security services
- Advanced FortiGate experience, including complex policy design, VPN, SD-WAN, high availability, and production troubleshooting
- Expert knowledge of TCP/IP, subnetting, DNS/DHCP, NAT, and packet capture/analysis (e.g., Wireshark) with the ability to diagnose complex issues end-to-end
- Strong routing and switching background (VLANs, trunking, OSPF/BGP, STP), including multi-site design and operational excellence
- Experience with enterprise monitoring/logging and security analytics; able to tune alerting and translate logs into actionable remediation
- Proven ability to lead technical workstreams, produce high-quality documentation/standards, and communicate effectively with stakeholders, * Fortinet certifications (NSE 5/6/7 or current Fortinet Certified Professional/Solutions Specialist equivalents)
- Cisco or Meraki Certifications such as CCNP
- Strong Hands-on experience with Cisco or other vendors such as Palo Alto or Juniper
- Strong FortiManager/FortiAnalyzer experience at scale (ADOMs, policy packages, templates, reporting, retention, and operational workflows)
- Experience leading SD-WAN and redundant ISP design (SLA-based routing, brownout handling, and performance optimization)
- Demonstrated experience implementing segmentation/zero trust strategies and aligning network controls to security frameworks and audit requirements
- Cloud networking depth (Azure/AWS), including hybrid connectivity, routing, and security controls (VPN/ExpressRoute/Direct Connect concepts)
- Automation mindset with scripting (PowerShell/Python), APIs, and configuration management/IaC to reduce toil and improve consistency
- Architect and maintain secure connectivity solutions including site-to-site VPNs, remote access VPNs, SD-WAN, and SASE
- Additional Experience with Cisco (routing, switching, firewalls)
Physical Demands / Working Environment:
- We require the ability to pass a drug screen and background checks. Candidates must have the ability to perform the requirements of the job with or without accommodations
- This is a hybrid role based out of our Atlanta, GA Home Office.
- This position may require participation in an on-call rotation and occasional after-hours work to support maintenance windows and incident response. Some travel to sites/data centers may be required based on business needs., The Experience You Will Bring (Minimum Requirements):
- Bachelor's degree in computer science, Data Science, Engineering, or a related technical field
- 7+ years of hands-on network engineering experience in enterprise environments, including ownership of critical network/security services
- Advanced FortiGate experience, including complex policy design, VPN, SD-WAN, high availability, and production troubleshooting
- Expert knowledge of TCP/IP, subnetting, DNS/DHCP, NAT, and packet capture/analysis (e.g., Wireshark) with the ability to diagnose complex issues end-to-end
- Strong routing and switching background (VLANs, trunking, OSPF/BGP, STP), including multi-site design and operational excellence
- Experience with enterprise monitoring/logging and security analytics; able to tune alerting and translate logs into actionable remediation
- Proven ability to lead technical workstreams, produce high-quality documentation/standards, and communicate effectively with stakeholders
Benefits & conditions
- Challenging position with a financially stable and reputable company (NYSE: ROL)
- Comprehensive benefits package including medical, dental, vision, maternity & life insurance
- 401(k) plan with company match, employee stock purchase plan
- Teammate discounts, tuition reimbursement, and dependent scholarship awards
- Paid Time Off
- Work Environment: Opportunity for hybrid office and home-based working arrangements once onboarded and trained. Must currently reside in the Atlanta metro area.