Job Title: Network Engineer
Location: Hybrid-Hyderabad/Mumbai/Pune/Bengaluru/ChennaiAbout the Job:The Network Engineer role focuses on managing hybrid cloud and on-premises network infrastructures. It requires advanced expertise in AWS VPC, routing protocols, firewalls (Checkpoint and Cisco ASA), Meraki Wi-Fi, Big-IP F5 LTM/APM appliances, and Single Sign-On (SSO) technologies. This role involves coordinating with department teams to build, manage, and optimize both cloud and on-premises network solutions to ensure scalability, security, and high performance.What you will do:
- AWS Cloud Network Architecture:
- Design, implement, and manage AWS VPC, including transitive VPC, Transit Gateway, Direct Connect, Virtual Private Gateway (VGW), VPN, IPSec, Security Groups, Network ACLs, and ASM for robust and secure cloud-based networking.
- Routing Protocols and Network Design:
- Configure and manage routing protocols such as OSPF, EIGRP, BGP, RIP, PBR (Policy-Based Routing), Route-Filtering, Redistribution, Summarization, and Multicast Routing to ensure optimized data flow within cloud and on-premises networks.
- Firewall Management:
- Manage and configure Checkpoint Firewalls for both cloud and on-premises environments, including policy management, traffic filtering, and security auditing.
- Implement AWS security best practices, including configuring security groups, NACLs, and AWS firewalls to enforce network security.
- AAA Architecture:
- Implement and manage AAA (Authentication, Authorization, and Accounting) services using RADIUS and TACACS for secure access control across network devices.
- Big-IP F5 LTM & APM Management:
- Configure and manage Big-IP F5 Local Traffic Manager (LTM) and Access Policy Management (APM) cloud edition appliances for load balancing, traffic management, and high availability of cloud-based applications.
- Network Protocols:
- Strong expertise in network protocols such as IP, TCP, UDP, ICMP, NAT, DNS, DHCP, SNMP, IPSec, SSL, HTTP, SSH, SIP, RTP, QoS, and AAA for robust network operations.
- Meraki Wi-Fi Deployment:
- Deploy and manage Meraki Wi-Fi solutions, configure 802.1x, EAP-PEAP for secure wireless authentication, and manage Meraki MS, MX, and MR devices for network access, security, and monitoring.
- Single Sign-On (SSO):
- Strong understanding and hands-on experience with Single Sign-On (SSO) architecture and protocols (e.g., SAML 2.0, OAuth 2.0, OpenID Connect).
- Implement and manage Okta for SSO integration across enterprise applications, ensuring seamless user authentication and access management.
- VPN & Secure Connectivity:
- Manage and optimize site-to-site VPNs and IPSec tunnels to securely connect cloud resources with on-premises infrastructures.
- Manage Cisco VPN solutions, ensuring reliable, secure connectivity between distributed networks.
- Network Monitoring & Troubleshooting:
- Monitor and troubleshoot network performance using AWS CloudWatch, Meraki Dashboard, SolarWinds OpManager and Wireshark to identify and resolve connectivity, performance, and security issues across the hybrid network environment.
- Network Vulnerability Mitigation:
- Identify, assess, and mitigate vulnerabilities in both cloud and on-premises networks to ensure security and compliance.
- Collaborate with security teams for penetration testing, risk assessments, and incident response.
- Audit/SIEM Solutions:
- Implement and manage IPS/IDS, Nessus, Anti-virus, and vulnerability management tools to monitor and respond to security incidents.
- Use SIEM tools for threat analysis, network monitoring, and compliance with security standards.
- Automation & Infrastructure as Code:
- Utilize Terraform, AWS CloudFormation, and other Infrastructure as Code (IaC) tools to automate the deployment of cloud and on-premises network resources, ensuring consistency and repeatability.
- Collaboration and Documentation:
- Collaborate with cross-functional teams to ensure network scalability, high availability, and disaster recovery.
- Maintain clear, comprehensive documentation for network configurations, security policies, troubleshooting guides, and architectural designs.
Who you are:
Education & Experience:
- Bachelor’s degree in computer science, Network Engineering, or a related field, or equivalent work experience.
- 5+ years of experience in AWS cloud networking, with a focus on VPC, Transit Gateway, Direct Connect, VGW, VPN configurations, and on-premises network switching and routing (Cisco, Meraki, etc.).
Technical Skills:
- Strong experience with Checkpoint firewalls and Cisco ASA firewalls.
- Extensive knowledge and hands-on experience with routing protocols such as OSPF, EIGRP, BGP, RIP, and MPLS.
- In-depth experience with Meraki devices (MX, MS, MR), including Wi-Fi deployments, 802.1x, and EAP-PEAP.
- Experience with Big-IP F5 LTM/APM cloud edition for load balancing and application traffic management.
- Expertise in WAN technologies such as Ethernet, MPLS VPN, Frame Relay, T1/T3, and OC standards.
- Strong proficiency in networking protocols such as TCP/IP, DNS, DHCP, NAT, SNMP, SSL, HTTP, RTP, SIP, and QoS.
- Hands-on experience with AAA (RADIUS/TACACS) architecture and security protocols.
- Familiarity with WAN optimization technologies and best practices for optimizing network performance.
- Proficiency in VPN technologies (site-to-site and remote access) and secure network connectivity.
- Proficient in network vulnerability mitigation, including vulnerability assessment, patch management, and risk management.
- Strong experience with penetration testing, risk assessments, and incident response processes to identify and address security weaknesses in both cloud and on-premises environments.
- Experience with Audit/SIEM solutions (e.g., IPS/IDS, Nessus scanning, Anti-virus, vulnerability management) for real-time network monitoring and threat detection
- Cisco certifications such as CCNA, CCNP, or equivalent networking certifications are required
- AWS Certification (e.g., AWS Certified Advanced Networking – Specialty, AWS Certified Solutions Architect – Associate) is highly preferred.
Soft Skills:
- Able to assist non-technical users with technical issues and simplify complex concepts for both technical and non-technical stakeholders.
- Comfortable handling diverse tasks and adjusting priorities in a dynamic environment.
- English Languageproficiency is required to effectively communicate in a professional environment.
- Excellent communication skills are a must.
- Strong problem-solving skills and a creative mindset to bring fresh ideas to the table.
- Shoulddemonstrateconfidence and self-assurance in their skills and expertise enabling them to contribute to team success and engage with colleagues and clients in a positive, assured manner.
- Should be accountable and responsible for deliverables and outcomes.
- Should demonstrateownership of tasks, meet deadlines, and ensure high-quality results.
- Demonstrates strong collaboration skills by working effectively with cross-functional teams, sharing insights, and contributing to shared goals and solutions.
- Continuously explore emerging trends, technologies, and industry best practices to drive innovation and maintain a competitive edge.