Network Engineer
Delaware Nation Industries
- Arlington, VA
- Permanent
- Full-time
- Manages all components and aspects of OIGNet network, provides assistance and support as necessary for OpenNet and ClassNet networks
- Manages routing, switching and firewall infrastructure for on-premises, co-location site and cloud environments
- Supports existing and new implementations from an operational perspective
- Designs, implements and supports new network and datacenter solutions such as voiceover-IP, IPv6, datacenter switches and routing
- Monitors performance of network infrastructure and provides last tier troubleshooting support as necessary
- Monitors availability of all applications, systems and networks per established SLAs
- Monitors overall security posture of applications, systems and networks and takes immediate action to address identified issues
- Implements and/or uses IT security tools to monitor and protect OIGNet network and all associated assets
- Implements zero-trust network architecture concepts to always keep OIGNet network secure
- Works with lead network engineer and datacenter manager to set priorities for projects and tasks
- Guides junior engineers as necessary on topics related to OIG projects and tasks
- Participates in team meetings, collaborates with other team members and teams on projects and tasks
- Creates detailed network diagrams, as built, and standard operating procedure documents
- Uses OIG ticketing system to resolve problem tickets
- Interfaces with external entities such as IRM, other federal agencies and internet service providers to work on projects and troubleshooting efforts when necessary
- Supports all FISMA A&A and continuous monitoring efforts for on-premise and cloud environments
- Provides last tier support during normal business and after hours in critical network outage situations to provide quick resolution
- A bachelor’s degree in engineering or computer science or related IT field and ten years of experience in support of Windows/Linux/Unix operating systems, Cisco networking equipment and systems integration for classified and unclassified networks.
- Experience in planning and executing systems engineering projects in support of system engineering life cycle development for classified and unclassified environments.
- Strong problem solving, leadership and project management skills.
- Proficiency with all aspects of Windows Server 2003, 2008 Active Directory Services.
- Understanding of the Border Gateway Routing Protocol (BGRP) and Generic Routing Encapsulation (GRE).
- Knowledge of CISCO routers and switches and networking technologies.
- Experience with VPN encryption devices, such as Cisco routers, Cisco ASA’s and Nortel Connectivity.
- Ability to troubleshoot network connectivity issues and resolve problems related to outages.
- Ability to evaluate residing systems for network, system and security readiness as well as provide troubleshooting for application environment issues.
- Eight years of experience with designing, installing and supporting routing, switching and
- firewall equipment
- Eight years of experience designing secure complex network solutions based upon requirements
- Eight years of experience working with Cisco, Juniper and Ciena switches
- Three years of experience with routing and switching protocols such as OSPF, BGP, HSRP, VRRP, spanning tree, various 802.1 protocols, trunking and traffic aggregation
- Three years of experience working with Palo Alto firewalls, Panorama
- Two years of experience working in Microsoft Azure cloud environment supporting and designing new solutions
- Two years of experience working directly with internet service providers
- Two years of experience with deploying or administering network configuration management solutions
- Three years for experience designing and implementing fault tolerant solutions to eliminate single points of failure and make networks as resilient as possible
- Experience supporting and managing enterprise wireless network solutions
- Experience supporting federal agency networks and datacenters
- Experience with implementing and using performance management and security management tools
- Good understanding of requirements for federal agencies network such as trusted internet connections (TIC 3.0), DHS Binding Operational Directives, OMB Memorandums etc.
- Knowledgeable about the zero trust networking technologies and hands-on experience with supporting solutions implementing this concept
- Experience working with and implementing IPv6 addressing and networking for the entire networks
- Familiarity with DHS CDM program implementation and/or support
- Strong knowledge and deep understanding of the OSI network stack and hands-on experience with layer 2 and 3 concepts
- Strong knowledge and deep understanding of network security concepts and implementation to protect federal networks
- Strong knowledge and deep understanding of protocols such as DNS, DHCP, HTTP, SMTP
- Understanding of and experience with ITIL, CMMI, and/or PMP processes and implementation.
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.