Network Infrastructure Engineer, AVP

State Street
Quincy, MA, United States
7 days ago
Apply on www.jofdav.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
5 years minimum
Compensation
$90,000.0 - $157,500.0
Working hours
Regular working hours
Job source

Tech stack

Border Gateway Protocol Cloud Computing Computer Networks Internet Protocol Security (IP SEC) Virtual Private Networks (VPN) Local Area Networks Network Security Network Architecture Routing Network Segmentation Open Shortest Path First (OSPF) Zero Trust Network Access
+9 more
Systems Integration Virtual Local Area Networks Wide Area Networks Identity Services Engine Information Technology Firewall Services Module Splunk Cisco Servicenow

Job description

We are seeking a Network Infrastructure Engineer to design, build, and operate a modern global network based on Versa, Cisco and Arista technologies including SD-WAN, Network Segmentation, Wireless, Client and Vendor Connectivity and Cloud Computing. The engineer will also be responsible for third party connectivity for SD-WAN and IPSec access. This role sits at the intersection of networking and security and is critical to our transition toward Zero Trust and cloud-first architectures. The engineer will work across campus, office, WAN, cloud, and third party access environments within large, globally distributed enterprise environments, integrating SD-WAN, segmentation, and cloud-delivered security controls to deliver resilient, scalable, and secure connectivity. This role plays a key part in evolving the firm’s global network, security and segmentation posture. The engineer will implement standards and architecture decisions across campus, branch, and cloud environments globally.

This role is ideal for an engineer who is strong in one or more of these domains and motivated to deepen their expertise across secure edge, Zero Trust, and modern network architectures.

We value curiosity, adaptability, and sound engineering judgment as much as prior exposure to specific tools or platforms.

Requirements

Candidates are not expected to have deep expertise in every area listed below. Strength in several of these domains, combined with the ability to learn and adapt, is highly valued.

  • Strong routing and switching especially strong BGP and BGP to OSPF routing redistribution.
  • SD-WAN technologies and architectures (Versa SD-WAN preferred).
  • Network segmentation including VRFs, VLANs, access control, and micro segmentation.
  • Designing and supporting enterprise campus networks, including wired and wireless with Cisco and Arista technology.
  • Engineering and configuration of IPSec VPNs.
  • Configuration and Troubleshooting skills across WAN, LAN, wireless, and secure access domains both with management tools and CLI.
  • Experience with Dot1X and Port Level Security deployments., Candidates are not expected to have deep expertise in every area listed below. Strength in several of these domains, combined with the ability to learn and adapt, is highly valued.
  • Strong understanding of why the technology is being deployed.
  • Strong sense of ownership and accountability.
  • Ability to work across networks, security, and cloud teams.
  • Clear and effective communication of complex technical concepts.
  • Analytical thinking and structured problem-solving.
  • Continuous learning mindset in a rapidly evolving technology landscape., * Bachelor’s degree in computer science, Engineering, or equivalent practical experience.
  • 5-10 years of experience in enterprise network engineering roles.
  • Relevant networking or security certifications are desirable but not mandatory.
  • Past experience in Banking or the Finance vertical

Experience or exposure to

  • Security Service Edge / Zero Trust platforms such as Zscaler (ZIA, ZPA, ZDX, Zero Trust Branch) or similar.
  • Identity-aware networking and integration with NAC / identity platforms - Cisco ISE and Arista Agni.
  • Palo Alto Firewall Configuration and Troubleshooting
  • Enterprise Network tooling - Splunk, Forward Networks and Service NOW

Benefits & conditions

$90,000 - $157,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.

For a full overview, visit https://hrportal.ehr.com/statestreet/Home.

About State Street

Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.

We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.jofdav.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira ¡ Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 ¡ LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark ¡ LIVE

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos ¡ LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler ¡ LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 ¡ LIVE

Videos

See all

Related articles

See all