> Markdown version of [/jobs/ext/1340567-network-engineer-2](https://www.wearedevelopers.com/jobs/ext/1340567-network-engineer-2). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Network Engineer 2 - **Company:** The Construction - **Location:** Dothan, AL, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Application Firewall, Border Gateway Protocol, Software Documentation, CompTIA Security+, Cyber Security, Dynamic Host Configuration Protocol, Domain Name System (DNS), Intrusion Detection Systems, Virtual Private Networks (VPN), Network Architecture, Network Diagrams, Network Installation Services, Routing, Network Segmentation, Open Shortest Path First (OSPF), Security Information and Event Management, Virtual Local Area Networks, Software Vulnerability Management, Wide Area Networks, Wireless Networks, Identity Services Engine, Network Access Control, Cyber Threat Analysis, Firewalls (Computer Science), Information Technology, Palo Alto Networks, Operational Systems, Fortinet, Cisco, SSL VPN - **Published:** July 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=35d4fb99a9287b92 ## About the Role * 5+ years of networking experience in a multi-site or enterprise environment. * Hands-on proficiency with enterprise-grade managed switching (Ubiquiti, Cisco, Dell, or equivalent); vendor preference for Ubiquiti UniFi/UISP. * Working knowledge of at least one enterprise next-gen firewall platform (Palo Alto preferred; Fortinet, Cisco FTD, or equivalent acceptable). * Solid understanding of routing and switching: VLANs, STP, OSPF, and BGP fundamentals. * Experience designing and implementing VLAN segmentation and network zone isolation strategies. * Familiarity with network access control (NAC) concepts and implementation. * Experience with SSL VPN and S2S VPN configuration and troubleshooting. * Working knowledge of firewall policy, threat vectors, and network hardening practices. * Proficiency with DNS, DHCP, and IPAM tools (Netbox preferred). * Experience leading multi-site network deployments or infrastructure replacements. * Strong documentation skills; experience maintaining network diagrams and asset records. Preferred Experience * Networking or security certifications: CCNA, CCNP, CompTIA Security+, Palo Alto PCNSA/PCNSE, or equivalent. * Hands-on experience with Palo Alto firewalls and Panorama. * Familiarity with BGP configuration in a multi-site WAN environment. * Experience with or exposure to operational technology (OT) or industrial network environments. * Experience with network access control (NAC) platforms such as Aruba ClearPass, Cisco ISE, or similar. * Familiarity with IDS/IPS concepts and security monitoring tools. * Bachelor's degree in IT, Computer Science, Cybersecurity, or related field (or equivalent experience). ## Description A mid-level network professional with a strong security-first mindset who has grown beyond break-fix and is ready to take ownership of projects and sites. You are comfortable configuring enterprise switching, wireless, firewall, and VPN infrastructure with limited oversight, can lead an acquisition deployment from start to finish, and know when to loop in a Senior engineer. A strong mid-level engineer who bridges entry-level operations and senior-level architecture: execution-focused, security-conscious, and continuing to grow., * Independently configure and deploy enterprise-grade switching and wireless infrastructure at existing sites and acquisition locations; preferred experience with Ubiquiti UniFi/UISP, Dell, and Cisco. * Perform firewall administration tasks including policy review, rule implementation, and troubleshooting under Senior engineer sign-off; preferred experience with Palo Alto and Panorama. * Design and enforce network segmentation strategies using VLANs and zone-based security to isolate end-user, server, guest, OT, and management traffic. * Implement and maintain network access control (NAC) policies to enforce least-privilege access and device compliance at the network edge. * Apply security-first practices across all network changes: enforce change control, document security implications, and proactively identify misconfigurations or vulnerabilities. * Lead acquisition network replacement projects end-to-end: site survey, cabling, switch/AP deployment, circuit coordination, and cutover; escalate to Senior engineers for firewall policy and BGP changes. * Manage and troubleshoot Cradlepoint, Starlink, fiber, and broadband circuits, including ISP coordination and circuit turn-ups. * Configure and maintain SSL VPN and S2S VPN connections; escalate firewall rule and policy changes to Senior Network Engineers for review and approval. * Assist with vulnerability management and network hardening initiatives; remediate identified findings within assigned systems. * Maintain thorough and accurate records in Netbox (IPAM/documentation integration); enforce documentation standards across junior engineers. * Provide escalation support to Network Engineer 1 staff for complex LAN/WAN, wireless, and security issues. * Monitor and respond to network incidents; perform root cause analysis and document findings. * Patch and maintain all network infrastructure; proactively identify end-of-life or at-risk devices. * Mentor Network Engineer 1 staff; provide knowledge transfer on tools, security practices, and procedures. * Willingness to travel to branch and acquisition sites when necessary (multi-state). ## Related Videos - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Creating a routing app with Google Maps API from scratch](https://www.wearedevelopers.com/videos/831-creating-a-routing-app-with-google-maps-api-from-scratch) - [Your Infrastructure Is Not a Playground: AI Agents for Infra Done Right](https://www.wearedevelopers.com/videos/2084-your-infrastructure-is-not-a-playground-ai-agents-for-infra-done-right) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [A Technical Introduction to Bitcoin's 2nd Layer- The Lightning Network](https://www.wearedevelopers.com/videos/15-a-technical-introduction-to-bitcoin-s-2nd-layer-the-lightning-network) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)