Senior Network Engineer

Red Rock Information Security LLC
Grand Rapids, MI, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Compensation
$95,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Microsoft Azure Cloud Computing Software Documentation Complex Networks Dynamic Host Configuration Protocol Distributed File Systems Disaster Recovery Domain Name System (DNS) IT Management Internet Protocol Security (IP SEC)
+21 more
Intrusion Detection Systems Virtual Private Networks (VPN) Python (Programming Language) Windows Servers Network Diagrams Network Planning and Design Routing Network Virtualization Public Key Infrastructure Windows PowerShell Microsoft SharePoint Virtual Local Area Networks Wide Area Networks Network Switches Firewalls (Computer Science) Microsoft InTune Information Technology Fortinet 3-tier Architectures Veeam Network Server

Job description

The Senior Network Engineer (Tier 3) is RedRock’s highest-level technical resource, serving as an escalation point for both the Project Team and the MSP Team. On the project side, this role leads client onboarding, infrastructure deployments, migrations, and complex installations end-to-end. On the MSP side, this role serves as the final escalation point for issues that exceed Tier 2 scope, stepping in to resolve the most technically complex or client-sensitive situations. Beyond execution, the Senior Network Engineer contributes to pre-sales engineering, supports the vCIO function with strategic client deliverables, and mentors Tier 1 and Tier 2 staff. This is a high-trust, high-visibility role that demands both engineering depth and executive-level communication ability., Project Delivery

  • Lead the full lifecycle of client infrastructure projects: scoping, planning, scheduling, execution, documentation, and handoff to the MSP team.
  • Deploy and configure client environments, including workstations, servers, storage, network switching, and firewall infrastructure.
  • Lead Microsoft 365 migrations and advanced tenant buildouts, including hybrid configurations, Entra ID, Intune policy deployment, and Defender security stack.
  • Architect and implement network designs including firewall policy frameworks, SD-WAN, VLAN segmentation, and site-to-site VPN.
  • Manage vendor coordination, hardware procurement timelines, and third-party integrations throughout project execution.
  • Produce complete project documentation in IT Glue, network diagrams, device configurations, and client-specific knowledge base articles prior to project close.
  • Participate in client-facing project kickoffs, status updates, and closeout meetings with technical and non-technical stakeholders.

MSP Escalation

  • Serve as the final escalation point for Tier 2 issues that cannot be resolved within the MSP team.
  • Resolve the most complex network, server, identity, and cloud infrastructure incidents with full root cause documentation.
  • Review escalated tickets for completeness; provide guidance to Tier 2 engineers on resolution approach and documentation quality.
  • Identify recurring escalation patterns and develop runbooks or SOPs to reduce repeat escalations at Tier 1 and Tier 2.
  • Participate in on-call rotation (approximately one week primary, one week backup every three months).

Pre-Sales Engineering

  • Partner with leadership and account managers on new client proposals, conduct discovery, define scope, produce bills of materials (BOMs), and validate technical assumptions in statements of work (SOWs).
  • Perform infrastructure assessments and gap analyses for prospective clients; present findings to technical and executive audiences.
  • Ensure all proposed solutions are technically sound, within RedRock’s delivery capability, and correctly sized for client budget and risk posture.

Mentorship & Standards

  • Formally mentor Tier 1 and Tier 2 engineers through knowledge-sharing, ticket reviews, and structured training sessions.
  • Set and enforce documentation standards across both teams; ensure IT Glue records are complete and accurate.
  • Contribute to internal tooling, automation, and process improvement initiatives.
  • Perform client onsite visits as needed.

Requirements

Do you have a valid Driver’s License license?, Do you have experience in VPN management?, Do you have a High school diploma or GED?, * High school diploma or equivalent required; Bachelor’s degree in IT, Computer Science, or a related field preferred.

  • 5+ years of experience in an MSP, systems integrator, or enterprise IT environment.
  • 5+ years of Windows Server administration (2016-2025): Active Directory, GPO, PKI, DNS, DHCP, DFS/DFSR, file and print services.
  • 5+ years of firewall and network engineering experience, including routing protocols, VPN architecture, and IDS/IPS.
  • Expert-level Microsoft 365 administration: Exchange Online, Teams, SharePoint, Intune, Entra ID, and the Defender security suite.
  • Demonstrated experience leading end-to-end IT infrastructure projects independently.
  • Proven ability to communicate at the executive level, presenting technical risks, strategy, and recommendations to C-suite and board audiences.
  • Valid Michigan driver’s license and acceptable driving record.
  • Must be able to pass a criminal and civil background check.
  • Must be able to lift up to 50 lbs. unassisted., * Direct MSP experience serving community banks, credit unions, or other regulated financial institutions.
  • FortiGate experience: FortiOS, SD-WAN, FortiAnalyzer, FortiManager, IPSec VPN.
  • Microsoft Azure administration: virtual networking, compute, storage, Entra Connect, and Azure Site Recovery.
  • Veeam Backup & Replication administration
  • Familiarity with regulatory compliance frameworks applicable to financial institutions (FFIEC, GLBA, NCUA, FDIC).
  • ConnectWise Manage administration and reporting experience.
  • Experience contributing to or leading audit preparation for NCUA, FDIC, or Michigan DIFS IT examinations.
  • Scripting and automation experience (PowerShell or Python) for MSP operational tooling., * IT Help Desk: 1 year (Required)

License/Certification:

  • Drivers License (Required)

Benefits & conditions

Pulled from the full job description

  • Professional development assistance
  • 401(k)
  • Health insurance
  • 401(k) matching
  • Paid time off
  • Vision insurance
  • Health savings account, * CompTIA Security+
  • Microsoft 365 Certified: Enterprise Administrator Expert (MS-102) or Security Administrator Associate (SC-300 / SC-200)
  • Fortinet NSE 4 or higher

Pay: From $95,000.00 per year, * 401(k)

  • 401(k) matching
  • Dental insurance
  • Health insurance
  • Health savings account
  • Paid time off
  • Professional development assistance
  • Vision insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Fortinet firewall administrative passwords leaked on the dark net

Chris Heilmann +1 Ā· LIVE

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos Ā· LIVE

1:32 min

Ensuring secure and reliable connectivity for remote employees

Kyle Daigle Ā· Coffee With Developers

1:51 min

Overview of the three Google Maps routing applications

GermÔn Álvarez · LIVE

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder Ā· LIVE

1:59 min

Abstracting complexity via dynamic language model routing and evaluation

Fabian Hedin Fabian Hedin Ā· WWC Europe 2026

Videos

See all

Related articles

See all