Network Engineer
BayNova LLC
- Alexandria, VA
- Permanent
- Full-time
- Supports the design and implementation of hybrid enterprise network architecture.
- Maintains hybrid network integrity and connectivity while ensuring compliance with policies and maintains system backup and recovery capability.
- Collaborate with system engineers to support hybrid network architecture and ensure consistent network performance across cloud and on-prem environments.
- Document hybrid network configurations, changes, and topology diagrams for operational and compliance purposes.
- Provide escalated support for hybrid network incidents.
- Configure site-to-site VPNs and Direct Connect links between on-premises infrastructure and cloud environments.
- Configuring and maintaining cloud-based virtual networks, subnets, routing configurations, and network security controls.
- Support the monitoring and troubleshooting of cloud network connectivity issues using native logging, monitoring, and flow analysis tools.
- Perform routine audits of network access control lists (ACLs) and security group rules to ensure compliance with organizational policies.
- Manage public IP resources, network address translation (NAT), and internet connectivity components to support scalable cloud deployments.
- Implement cloud transit networking solutions to optimize connectivity between virtual networks across regions and accounts.
- Support the deployment and testing of network automation scripts using command-line tools and infrastructure-as-code (IaC) frameworks such as Terraform.
- Independently performs maintenance and upgrade of on-perm networks components including appliances, routers, switches, firewalls, and remote access systems.
- 4+ years of network administration
- Proficient in using network management and monitoring platforms such as Riverbed, NetFlow, TAPs, SPANs, AWS Network Manager, Azure Network Watcher, or equivalent third-party solutions for visibility, diagnostics, and topology tracking.
- Experience configuring and supporting secure remote access solutions in hybrid environments, including site-to-site VPNs, client VPNs, and cloud-native access services (e.g., AWS Client VPN, Azure VPN Gateway, Zero Trust solutions).
- Experience with cloud-native and virtual network appliances for routing, switching, and traffic management, including deployment, configuration, and troubleshooting using packet capture and analysis tools (e.g., VPC Traffic Mirroring, Wireshark).
- Experience in the end-to-end design and implementation of on-premises network infrastructure for enterprise environments, including market research, equipment selection, configuration, and deployment from the ground up.
- Experience with enterprise class routers and switches, installation, configuration, hardware/software updates and patching, advanced troubleshooting skills, including the ability to capture and analyst packet level data (i.e. Wireshark PCAPS)
- Experience with network management tools (e.g., Cisco Prime).
- Experience with wireless network configurations and installation.
- Knowledge of Switches, Routers, Firewalls, LAN, WAN, TCP/IP, UDP, QoS.
- Must demonstrate advanced understanding of TCP/IP including layer 2/3 VLANs and routing protocols such as BGP, EIGRP, OSPF, RIP.
- Ability to express complex technical concepts effectively, both verbally and in writing.
- Must be available for weekend and evening work if required.
- Must be able to document in detail all implementations and projects.
- Must be a US Citizen.
- Cloud or networking certifications (e.g., AWS Advanced Networking – Specialty, Azure Network Engineer Associate, or Cisco CCNP)