Network Engineer
Role details
Job location
Tech stack
Job description
-
Serve as a Tier 3 escalation point for complex firewall and network security issues.
-
Provide advanced troubleshooting and root cause analysis for Cisco Secure Firepower Firewall incidents.
-
Perform day-to-day firewall operational support using Cisco Secure FMC, including but not limited to:
o Creating and maintaining operational and compliance reports,
o Monitoring firewall health and system performance,
o Analyzing traffic flows and connection behavior, and
o Supporting routing protocols within secured environments.
-
Troubleshoot and support VPN technologies, including site-to-site and remote access VPNs.
-
Analyze, implement, and optimize firewall access control and security policies.
-
Participate in formal change management processes, including documentation, peer review, approvals, and scheduled implementations.
-
Execute approved changes during after-hours change windows, as required.
-
Participate in a team-based on-call rotation to support after-hours and emergency incidents.
-
Collaborate with engineering teams and operational stakeholders to meet Managed Network Services (MNS) obligations.
Requirements
General Abilities
- Familiarity with large-scale enterprise or government environments
- Strong written and verbal communication skills
- Ability to clearly document technical findings, configurations, and change activities
- Ability to communicate effectively within structured, process-driven environments, Strong understanding of routing concepts and protocols in secured network environments
Specific Technical Skills
- Strong hands-on experience with Cisco Secure Firepower Firewalls
- Advanced troubleshooting experience, including but not limited to:
- Snort 3 (Intrusion Prevention System [IPS] and file policies)
- Traffic flow analysis and packet inspection
- NAT and/or PAT configuration and troubleshooting
- Security Intelligence policies
- Access control rule analysis
- OSI Layers 1 through 7, with particular emphasis on Layers 1 through 4
- Solid operational experience with Cisco Secure FMC
- Proven experience in troubleshooting VPN technologies (i.e., Cisco Secure Client/AnyConnect)