Network Administrator 2

The University Of Connecticut
Mansfield, CT, United States
8 days ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

IEEE 802.1X Access Network Active Directory Configuration Management Computer Networks Data Centers Dynamic Host Configuration Protocol Disaster Recovery Domain Name System (DNS) Virtual Private Networks (VPN) Python (Programming Language) Network Security
+28 more
Lightweight Directory Access Protocols (LDAP) Network Architecture Routing Network Service Network Administration Public Key Infrastructure Windows PowerShell Azure Active Directory Ansible Simple Network Management Protocols Syslog Systems Integration Virtualization Technology Wireless Networks Data Logging Network Switches Identity Services Engine Load Balancing Firewalls (Computer Science) Juniper Information Technology Patch Management Fortinet TACACS+ Protocol Restful APIs Cisco Switches Cisco Vmware

Job description

This position within the University of Connecticut’s Information Technology Services department is responsible for the administration, operation, integration, and lifecycle management of the University’s Cisco Identity Services Engine (ISE) deployment. The successful candidate will ensure that this deployment provides highly available RADIUS and TACACS+ services. They will be responsible for leading the continued evolution of identity-aware networking through integrations between various networking and identity services and leveraging the features of ISE or subsequent systems. The successful candidate will possess a broad foundation in enterprise networking while serving as the technical lead for identity-based network access technologies that support academic, research, administrative, and residential computing environments., + Administer and maintain a highly available Cisco Identity Services Engine (ISE) deployment consisting of redundant virtual Policy Administration, Monitoring, and Policy Service Nodes located across geographically separated data centers.

  • Manage enterprise RADIUS authentication supporting secure wireless services ensuring reliable authentication for thousands of campus users and devices.

  • Administer Cisco ISE TACACS+ infrastructure providing authentication, authorization, and accounting services for enterprise network infrastructure devices.

  • Lead lifecycle management of the Cisco ISE environment, including software upgrades, patch management, certificate lifecycle management, licensing, backup and recovery, health monitoring, and disaster recovery testing.

  • Design, implement, and continuously improve authentication and authorization policies supporting wired, wireless, VPN, and infrastructure administration services.

  • Integrate Cisco ISE with Microsoft Entra ID, Active Directory, PKI, Cisco Catalyst Center, wireless controllers, network switching infrastructure, and other enterprise identity and security platforms.

  • Diagnose complex authentication issues involving IEEE 802.1X, EAP-TLS, PEAP, RADIUS, TACACS+, certificate services, Active Directory, Microsoft Entra ID, DNS, DHCP, wireless controllers, and campus network infrastructure.

  • Assist with administration of related network services, such as monitoring/management applications, firewalls, load balancers, and DDI infrastructure.

  • Develop automation utilizing REST APIs, Python, PowerShell, or Ansible to improve operational efficiency and reduce repetitive administrative tasks.

  • Produce and maintain operational documentation, disaster recovery procedures, architectural diagrams, standards, and knowledge base documentation.

  • Participate in after-hours maintenance activities, emergency response, and on-call support for critical enterprise authentication and network management services.

  • Other related duties as required or directed.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Engineering, or related field and four (4) years of progressively responsible experience supporting enterprise network infrastructure; or eight (8) years of equivalent experience.

  • Demonstrated experience administering production enterprise network infrastructure including routing, switching, wireless networking, or network security technologies.

  • Demonstrated experience supporting enterprise authentication services utilizing RADIUS, TACACS+, IEEE 802.1X, or comparable authentication technologies.

  • Experience troubleshooting authentication issues between ISE and Active Directory, Microsoft Entra ID, LDAP, certificate services, or other enterprise identity providers.

  • Experience administering systems on dedicated appliances and/or hosted on virtualization platforms such as VMWare.

  • Experience using enterprise network monitoring, logging, and management systems.

  • Experience preparing technical documentation, operational procedures, and change management documentation.

  • Demonstrated written communication skills with technical and non-technical stakeholders.

PREFERRED QUALIFICATIONS

  • Experience integrating Cisco ISE with Microsoft Entra ID, Active Directory, PKI, Cisco Catalyst Center, or enterprise certificate services.

  • Experience implementing or supporting EAP-TLS onboarding software such as SecureW2 Join Now, EduRoam Configuration Assistance Tool (CAT), or similar.

  • Experience administering Cisco Catalyst and/or Juniper (HPE) Mist wireless infrastructure supporting EduRoam or other federated wireless authentication services.

  • Experience administering Infoblox IPAM, DNS, and DHCP services.

  • Experience administering enterprise network monitoring and management platforms including SNMP, Syslog, telemetry, configuration management, and performance analytics.

  • Experience automating enterprise infrastructure administration utilizing Python, PowerShell, REST APIs, or Ansible.

  • Experience administering or performing policy management on enterprise firewalls such as Palo Alto, Fortinet, or Cisco.

  • Experience with using ISE to implement user security tagging in an enterprise environment.

  • Cisco CCNP Enterprise, CCNP Security, Cisco Certified Specialist - Identity Services, Microsoft Identity and Access Administrator Associate, or comparable professional certifications.

  • Experience supporting large, complex higher education, healthcare, research, or similarly distributed enterprise environments.

Benefits & conditions

  • Defined contribution with employer match or defined benefit program retirement options.

  • Excellent and affordable health care options.

  • 35-hour work week.

  • 22 paid vacation days per year, in addition to paid sick leave and (13) paid holidays.

  • Annual merit increase program.

  • Employee and dependent tuition waivers.

  • A highly desirable work environment and work-life balance with opportunities for hybrid-work arrangement., This is a full-time, permanent position. The University offers a competitive salary, and outstanding benefits (https://hr.uconn.edu/benefits-leaves/benefits/health-benefits/) , including employee and dependent tuition waivers at UConn, and a highly desirable work environment.

Other rights, terms, and conditions of employment are contained in the collective bargaining agreement between the University of Connecticut and the University of Connecticut Professional Employees Association (UCPEA).

About the company

All members of the University of Connecticut are expected to exhibit appreciation of, and contribute to, an inclusive, respectful, and diverse environment for the University community.

The University of Connecticut aspires to create a community built on collaboration and belonging and has actively sought to create an inclusive culture within the workforce. The success of the University is dependent on the willingness of our diverse employee and student populations to share their rich perspectives and backgrounds in a respectful manner. This makes it essential for each member of our community to feel secure and welcomed and to thoroughly understand and believe that their ideas are respected by all. We strongly respect each individual employee’s unique experiences and perspectives and encourage all members of the community to do the same. All applicants will receive consideration for employment without regard to race, color, ethnicity, religion, age, sex, marital status, national origin, ancestry, sexual orientation, genetic information, physical or mental disabilities, veteran’s status, status as a victim of domestic violence and/or sexual assault and/or trafficking in persons as defined by Connecticut law, prior conviction of a crime, workplace hazards to the reproductive systems, or gender identity or expression.

The University of Connecticut is an AA/EEO employer including for Disability and Veteran status.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:32 min

Ensuring secure and reliable connectivity for remote employees

Kyle Daigle · Coffee With Developers

46 sec

Automating telemetry collection through robust Telegraf deployment

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

2:30 min

Discovering and instrumenting services using systemd process enumeration

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

Videos

See all

Related articles

See all