Senior Network Engineer
Philadelphia, PA - USA
Job Summary
The Senior Network Engineer is a hands-on technical leader responsible for designing implementing securing and supporting CESs enterprise network infrastructure across North America India Vietnam and Japan. This position reports to the Senior Cloud and Network Security Architect.
The role serves as the primary owner of on-premises routing switching firewall and network security platforms and supports their integration with CESs cloud and hybrid environments. The successful candidate must be able to manage competing priorities lead complex network projects and maintain reliable day-to-day operations.
This position works directly with internal stakeholders and external clients to address connectivity requirements resolve service-impacting issues and communicate clearly with both technical and non-technical audiences.
This is an on-site position based at CESs Philadelphia headquarters. A hybrid work arrangement may be considered in the future based on operational needs and demonstrated performance.
Key Responsibilities
Network Engineering
- Design implement upgrade and maintain routing and switching infrastructure across CES locations.
- Manage a multi-site multi-circuit WAN environment with appropriate redundancy availability and failover.
- Configure and support advanced routing protocols including BGP OSPF and EIGRP.
- Establish and maintain network standards configuration baselines and change management procedures.
- Lead network projects from requirements and planning through implementation validation and post-implementation review.
- Evaluate and recommend network technologies vendors and platforms based on business security and growth requirements.
Network Security
- Manage Cisco ASA Cisco Firepower/FMC Palo Alto Networks and other network security platforms.
- Administer Cisco ISE including 802.1X NAC RADIUS/TACACS guest access and endpoint profiling.
- Configure and maintain F5 BIG-IP load balancers and web application firewalls.
- Develop and maintain firewall rules access control policies and network segmentation strategies.
- Serve as the senior escalation point for firewall and network security incidents.
WAN and Cloud Connectivity
- Manage primary and failover circuits carrier relationships SLA performance and connectivity issues.
- Design and maintain site-to-site DMVPN and remote-access VPN infrastructure.
- Implement QoS policies for business-critical traffic.
- Integrate on-premises networks with AWS Azure and other cloud environments using Direct Connect ExpressRoute Transit Gateway and IPsec VPN technologies.
- Configure and support VPCs VNets security groups routing tables and network ACLs.
- Collaborate with Cloud and IS teams on secure and scalable hybrid network architecture.
Operations and Support
- Monitor network availability performance and capacity and proactively address potential issues.
- Provide Tier 3 incident support root cause analysis and permanent corrective actions.
- Maintain network diagrams IP address records runbooks configuration documentation and change history.
- Coordinate with internal teams and external clients regarding connectivity and service-impacting incidents.
- Manage multiple concurrent priorities and communicate status risks and recommendations to stakeholders.
- Participate in a rotating on-call schedule supporting 24x7 network operations.
- Mentor junior team members on networking technologies and operational practices.
Qualifications :
Required Qualifications
- Bachelors degree in Information Technology Computer Science Network Engineering or a related field preferred; equivalent professional experience will be considered.
- 7 years of hands-on enterprise network engineering experience in a multi-site multi-vendor environment.
- Experience supporting globally distributed networks across remote locations and hybrid on-premises and cloud infrastructure.
- Advanced experience administering Cisco ASA and Cisco Firepower/FMC including policy management NAT IPS/IDS and SSL inspection.
- Advanced experience with Cisco ISE including 802.1X NAC RADIUS/TACACS endpoint profiling and posture assessment.
- Hands-on experience with F5 BIG-IP including LTM and ASM/WAF; AFM experience is strongly preferred.
- Advanced proficiency configuring and troubleshooting BGP OSPF and EIGRP in complex multi-path environments.
- Strong knowledge of WAN architecture multi-circuit connectivity redundancy failover and fault-tolerant design.
- Hands-on experience integrating on-premises networks with AWS Azure or GCP including hybrid routing connectivity and security.
- Experience supporting physical network equipment across multiple vendors. Experience with Palo Alto Networks or Fortinet is preferred.
- Ability to manage multiple projects and operational priorities in a fast-paced environment.
- Excellent written and verbal communication skills including the ability to communicate with technical and non-technical audiences.
- Demonstrated client-facing experience coordinating solutions explaining service impact and managing high-pressure incidents
Preferred Experience
- SD-WAN platforms such as Cisco Viptela Meraki Palo Alto Prisma or comparable technologies.
- Network automation and infrastructure-as-code tools such as Python Ansible or Terraform.
- Regulated or compliance-driven environments including SOC 2 or NERC CIP.
- Enterprise monitoring and observability platforms such as SolarWinds PRTG or Kentik.
- Zero-trust network access or Secure Service Edge frameworks.
Preferred Certifications
- CCNP Enterprise or Security
- CCIE
- Cisco security or Firepower certification
- Palo Alto Networks PCNSE
- F5-CA or F5-CTS
- Cisco ISE certification
- Fortinet certification
Additional Information :
CES offers a competitive salary commensurate with experience plus a performance bonus profit-sharing a Medical Savings Account comprehensive health insurance disability and life insurance 401(k) matching and tuition reimbursement.
Beyond the package heres what you can expect at CES:
- Meaningful responsibility and the opportunity to make a real impact in dynamic energy markets.
- The chance to learn from and collaborate with experienced professionals across global teams.
- Ongoing opportunities to strengthen your technical analytical and leadership skills.
- A supportive culture that values initiative accountability and continuous professional growth.
Customized Energy Solutions provides equal employment opportunities to all applicants without regard to race color religion sex sexual orientation gender identity national origin disability or status as a protected veteran.
Customized Energy Solutions provides equal employment opportunities to all applicants without regard to race color religion sex sexual orientation gender identity national origin disability or status as a protected veteran.
Remote Work :
No
Employment Type :
Full-time
About Company
Customized Energy Solutions (CES), a privately-held company, is a leading service provider of market intelligence and operational support services to companies participating in the retail and wholesale electric and natural gas markets. Utilizing deep know-how developed since the incep ... View more