Role: Network Engineer
Job Description
Wireless networking experience o Clearpass is a MUST HAVE - Scripting experience is a MUST HAVE o Ideally with Ansible o HDscript, Python are okay.
REPORTS TO: Director of Network Engineering
POSITION SUMMARY:
The position will focus on the core functions of network and security support, engineering: planning, implementation, analysis, maintenance, administration and reporting for Retail and Corporate environment, as well as Supply Chain. This individual will be required to apply solid technical, business, and problem solving skills in any situation. Through initiative, leadership and teamwork, this individual will create productive relationships with buainess units and internal IT teams. This position will have the opportunity to perform tactical decision making that supports the strategic direction of Sephora, IT and the Network team. This person will exercise these responsibilities in compliance with Sephora policies and along with industry best practices.
RESPONSIBILITIES
- Engineer/Support 700 stores, Corporate offices, and Distribution Centers (warehouses)
- Work closely with business and application owners on design, troubleshooting, support, and documentation of new application deployment and enhancements
- Architect, engineer, and troubleshoot Palo Alto/Fortinet firewalls and services
- Engineer application and network designs to ensure compliance with corporate security policies and security best practices
- Attend planning meetings, including Discovery/Discovery Results/Architecture Council and provide suggestions on design.
- Provide technical expertise in business initiatives and projects
- Manage and lead internal IT initiatives and projects from other groups
- Participate in on-call rotation
- Create end-to-end project tasks and expect to be accountable for entire project completion
- Configure and install network and security related hardware and software
- Provide day-to-day support of the LAN (Cisco), WAN, and WLAN (Aruba) network
- Experience in WAN environments, installing and troubleshooting circuit problems (MPLS, OCxx, T1, DS3) and traffic shaping/QoS
- Perform scheduled and emergency network maintenance
- Manage and maintain network and security documentation through collaborative applications
- Work with application owners on troubleshooting issues, even though it may not be network related issue
- Troubleshoot network and provide Post Incident Writeup (PIR) and present to management
- Provide strong customer service and facilitate collaboration between project teams and clients.
- Proactively identify, isolate and resolve network problems to avoid minimal impact to the business
- Perform internal audits and reviews to ensure compliance with all security policies and procedures which includes internal penetration and vulnerability scans
- Evaluate new and emerging network security trends, products and technologies
- Create and update Jiras for Kanban and project related tasks
SKILLS AND KNOWLEDGE REQUIRED
- To meet the above responsibilities, we are looking for a well rounded individual, with communication, working with stakeholders, and working/tracking projects end-to-end.
- NOT all specific technologies are required
- Technologies:
- Building applications in Azure
- Experience configuring/troubleshooting of Fortinet, PAN, or other layer7 Firewalls Experience with corporate and supply chain build-out
- Load balancer experience (F5 and other lb technologies)
- Able to lead P1/P2 triage calls
- Experience using tools to gather data to present to manager/leadership:
- Splunk, Solarwinds, etc…
- Soft Skills – Verbal and written communication are key attributes to be successful in this position
- Be able to business needs and translate technical tasks
- Must be results orientated, self-motivated and possess high-energy
- Must be customer-service-minded and tactful when dealing with customers. Ability to establish and maintain effective working relationships with customers, vendors, coworkers, employees and upper management
- Must be proactive and come to management with suggestion on what we should be doing. Cannot be a person waiting for directions/instructions, only guidance.
- Must love documentation, including:
- Visio/Lucidchart
- Tracking tasks using Jira/SmartSheet/Onenote
- Highly Recommended
- Experience setting up, configuring of enterprise monitoring applications, Splunk, Solarwinds….
- Automation experience a big plus (Ansible, Python)
- Identify opportunities for automation within software processes, including configuration, backup, and troubleshooting processes.
- Set-up/configure monitoring tools, such as Solarwinds is a big plus
- Business Analyst experience EXTREMELY helpful
- Flexibility in work schedule, off-hours for project implementation and 7 by 24 on-call support
- Helpful
- SD-WAN/SASE
- Aruba Clearpass experience a must, including 802.1X, Radius, AAA, policy Management,
- Aruba wireless experience a plus
- Security, including SSL Certificate administration
- Must be comfortable working in a fast paced environment with shifting priorities
- Experience with Security preferred, including experience in the setup, tuning and management of security appliances (next gen firewalls, IPS/IDS, ACS, web filters)
- Experience with VPN technologies (both IPSec and SSL)
- Familiar with Layer 3-8 troubleshooting
- Knowledge of diagnostic networking tools (do you know how to read a packet capture)
- Flexibility in work schedule, off-hours for project implementation and 7 by 24 on-call support
SKILLS RECOMMENDED
- Relevant industry certification a plus (CISSP, CCSP, CCNP, CCWP)
- Aruba certifications and/or experience highly desirable
- Strong understanding network security concepts, technologies and trends
- Experience in WLAN design, implementation and security
- Knowledge in the following areas a plus (load balancing, compression technologies, SOA applications, network software protocols)
- 2+ year working with Splunk
- 6+ years of experience with networking and security technologies
- 8+ years of overall information technology experience
- Bachelors degree in technology related field or equivalent experience