Overview
Skills
Job Details
Position: Network Architect
Location: Vacaville, CA/Remote (Stakeholder prefers someone local to the Bay Area. Travel will be as needed, depending on projects and/or issues.)
Duration: Long Term
Job Description:
- Extensive hands-on experience of implementing F5 WAF and Load balancer.
- Work experience in AWS VPC, EC2, ELB, Transit gateway
- Experience in implementing and managing DDoS solution with Cloudflare or Akamai
- Experience in managing Pala Alto global protect VPN
TECHNICAL KNOWLEDGE AND SKILLS:
Expertise with Palo Alto Network Firewall, Global Protect VPN, Prisma Cloud and Cisco ASA and Firepower.
Expertise with F5 Load Balancers and AWS ELB.
Strong OSI layer 2 knowledge and practical experience, including various flavors of STP, ARP, QOS, etc.
Comprehensive knowledge of OSI layer 3 networks and protocols, including broadcast, multicast, anycast concepts, routing, etc.
Expertise with various routing protocols (BGP, OSPF, EIGRP) and multi-homing Internet circuit configuration
Understanding of network security methodologies as a whole, including but not limited to: ACLs, Stateful firewalls, VPNs (tunneling, IPsec, SSL, etc.)
Fluency with common network admin and monitoring tools such as Rancid, Opmanager, Nagios, Solarwinds, Wireshark, Nmap, Nessus, Netflow, Sflow etc.
Administrative scripting skills (Perl, UNIX shell scripting)
In-depth knowledge of Cisco IOS, NX-OS, both Cisco Nexus 1K, 2K, 5K 7K, 9K and non-Nexus series switches, Cisco routers and other Cisco networking gear.
Solid understanding of data center related technology and collocation environment.
In-depth knowledge of MPLS network.
Experience in Cisco Fabric interconnect configuration
Must have Nexus 9K and VPC experience
Advanced knowledge of Cisco, F5, Palo Alto Firewall, Websense/Forcepoint, Juniper and other vendor equipment and configuration
Advanced knowledge and experience with Routing Protocols (BGP, RIP, OSPF, etc.)
Must have experience in PulseSecure and Global Protect (Palo Alto) VPN
In-depth knowledge and hands-on experience on Cisco Network Devices automation
Expertise and Hands-on experience with Ansible or Python scripting for Network automation
Deep domain expertise in networking, network security and public/private clouds
PREFERRED SKILLS:
Experience deploying and maintaining wireless networks.
Extensive hands-on experience of implementing F5 WAF and Cloudflare DDoS
Working knowledge of AWS services i.e. EC2, ELB, RDS, S3, Route53, VPC, Cloud formation, SSM and Transit gateway
Experience deploying and maintaining VOIP deployments (network side, not telecom), SIP Trunking and Content Center
Project Management Experience
Experience with Scripting and Automation Technologies