Network Engineer Sr

ASM
Madison, WI, United States
4 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Compensation
$100,000.0 - $117,000.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Application Programming Interfaces (APIs) User Authentication Cloud Computing Configuration Management Complex Networks Computer Networks System Configuration Network Congestion Data Centers Distributed Data Store Domain Name System (DNS)
+37 more
IP Addressing Intrusion Detection and Prevention Python (Programming Language) Kerberos (Protocol) Network Security Network Layer Lightweight Directory Access Protocols (LDAP) Network Architecture Network Diagrams Network Monitoring Routing Network Segmentation Network Service Packet Analyzer Ansible Zero Trust Network Access Runbook Simple Network Management Protocols Software Deployment Syslog Virtual Local Area Networks Data Logging Dynamic Routing Load Balancing Computer Network Operations Cloud Platform System Facebook Flow Firewalls (Computer Science) Git Infrastructure Automation Frameworks Information Technology Low Latency Firewall Services Module Restful APIs Terraform Software Version Control Cisco

Job description

The Senior Network Engineer designs, implements, and sustains secure enterprise network infrastructure supporting highly available identity, authentication, authorization, and directory-replication services across distributed data centers and cloud environments. The role maintains reliable routing, switching, firewall, load-balancing, and application-delivery capabilities for a large, mission-critical user population.

This engineer applies Zero Trust-aligned network principles through segmentation, least-privilege traffic policies, secure administrative access, and continuous monitoring. The position works closely with directory engineering, security, and infrastructure teams to resolve complex connectivity and performance issues, strengthen resiliency, and protect critical identity-service communications., * Design and implement resilient Layer 2 and Layer 3 network architectures, including IP addressing, VLANs, routing domains, dynamic routing protocols, route filtering, redundancy, and WAN/data-center connectivity.

  • Configure, maintain, and troubleshoot enterprise routers, switches, next-generation firewalls, load balancers, and application delivery controllers that support critical authentication, directory-service, and user-access traffic flows.
  • Analyze network dependencies supporting directory sites, replication paths, DNS, Kerberos, LDAP/LDAPS, Global Catalog access, and authentication workflows to isolate latency, packet loss, asymmetric routing, MTU, firewall-policy, and name-resolution issues.
  • Implement Zero Trust-aligned network controls, including network segmentation, least-privilege access policies, identity-aware access patterns, secure management planes, and controlled east-west traffic flows.
  • Develop and maintain firewall rules, security zones, access-control lists, intrusion detection and prevention integrations, and logging requirements that protect sensitive identity infrastructure without interrupting authorized service communications.
  • Establish network performance, availability, and capacity monitoring for critical paths using telemetry, flow data, packet analysis, SNMP, syslog, and alert thresholds; translate findings into remediation and scaling actions.
  • Engineer high-availability and disaster-recovery connectivity through redundant paths, device failover designs, routing-convergence testing, recovery validation, and documented operational procedures.
  • Develop repeatable network provisioning, configuration validation, compliance checks, and operational reporting through infrastructure-as-code practices, APIs, templates, source control, and configuration-management tooling.
  • Produce network diagrams, technical standards, implementation plans, change records, and troubleshooting runbooks; provide technical mentorship to junior engineers on secure network design and structured fault isolation., Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM’s overall compensation and benefits package for employees.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent relevant experience.
  • At least four years of professional experience in network engineering and design, including progressively responsible experience supporting enterprise-scale, highly available network infrastructure.
  • Strong hands-on experience designing, configuring, and troubleshooting enterprise routing and switching environments, including Layer 2 and Layer 3 networking concepts, VLANs, routing protocols, route filtering, and network redundancy.
  • Experience configuring and supporting network security technologies, including next-generation firewalls, access-control lists, network segmentation, intrusion detection/prevention capabilities, and secure administrative-access controls.
  • Experience troubleshooting complex network connectivity and performance issues using packet analysis, telemetry, flow data, SNMP, syslog, and network-monitoring tools.
  • Working knowledge of load balancers and application delivery controllers supporting highly available application and identity-service traffic flows.
  • Ability to obtain and maintain a Public Trust background investigation; U.S. citizenship is required.

Preferred Qualifications

  • Cisco CCNP Enterprise, CCNP Security, or a comparable advanced network certification.
  • Experience supporting identity-related network services, including Active Directory sites and replication, DNS, Kerberos, LDAP/LDAPS, Global Catalog access, and authentication workflows.
  • Hands-on experience with cloud networking, including virtual networks, routing, private connectivity, security groups, cloud firewalls, load balancing, and hybrid connectivity.
  • Experience automating network operations using Ansible, Terraform, Python, REST APIs, Git-based configuration workflows, or comparable infrastructure-as-code tooling., The physical requirements described in “Knowledge, Skills and Abilities” above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, “light office duties’ or “lifting up to 50 pounds” or “some travel” required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.

About the company

ASM Research, An Accenture Federal Services Company

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:32 min

Grasping core networking and infrastructure automation components

Michael Cade · LIVE

46 sec

Automating telemetry collection through robust Telegraf deployment

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

2:30 min

Discovering and instrumenting services using systemd process enumeration

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

Videos

See all

Related articles

See all