Network Engineer
New York, NY
Full Time
Mid Level
Title: Network Engineer
Location: New York City, NY
Clearance or Background Needs
Experience 5+ years of network engineering experience
Compensation: Up to $130,000Summary
The Network Engineer will support the design, configuration, monitoring, and security of enterprise network infrastructure. This role requires strong hands-on experience with switching, routing, firewalls, network segmentation, AAA/TACACS, and network security monitoring. The ideal candidate will be comfortable working across Cisco, Juniper, and Palo Alto environments and able to analyze packet captures to troubleshoot and validate network behavior.
Key Responsibilities
- Design, configure, and support enterprise switches, routers, and firewalls.
- Implement and maintain AAA, TACACS, and access control mechanisms.
- Support network segmentation and isolation strategies across enterprise environments.
- Configure and troubleshoot routing protocols including static routing, BGP, and OSPF.
- Deploy, support, or integrate network taps and monitoring solutions.
- Analyze PCAP files to troubleshoot traffic flows, security events, and network performance issues.
- Work with Cisco, Juniper, and Palo Alto platforms across network and security infrastructure.
- Support network security monitoring tools and collaborate with security teams on visibility and incident investigation.
- Assist with network hardening, documentation, and operational standards.
- Contribute to automation or scripting initiatives where applicable.
Required Qualifications
- 5+ years of hands-on network engineering experience.
- Strong experience with AAA concepts and TACACS-based authentication.
- Experience designing or supporting network segmentation and isolation.
- Strong switching and routing knowledge.
- Hands-on experience with static routing, BGP, and OSPF.
- Experience configuring and supporting Cisco network infrastructure.
- Experience with Juniper and/or Palo Alto firewalls, routers, or switches.
- Familiarity with network taps and network visibility architecture.
- Experience using network security or network monitoring tools.
- Ability to perform PCAP analysis for troubleshooting and security validation.
- Strong understanding of firewall policies, routing behavior, and traffic flows.
- Ability to work in a production enterprise environment with proper change control.
Preferred / Nice-to-Have Qualifications
- Network automation experience.
- Python or other scripting experience.
- Experience with network IDS in an OT environment.
- Cisco Secure Network Analytics, formerly Stealthwatch.
- Cisco ISE experience.
- CCNA, CCNP, or CCIE certification.
- Experience supporting critical infrastructure, industrial, utility, transportation, or OT/ICS environments.
- Experience integrating network monitoring with security operations workflows.
Tools / Technologies / Systems
Cisco, Juniper, Palo Alto, Cisco ISE, TACACS, AAA, BGP, OSPF, static routing, firewalls, routers, switches, network taps, PCAP, Wireshark, Cisco Secure Network Analytics, Stealthwatch, IDS, network monitoring tools, Python
Certifications
CCNA, CCNP, CCIE, JNCIA, JNCIS, PCNSA, PCNSE, Security+, CISSP, GICSP
KPIs / Performance Outcomes
- Improve secure network access control through effective AAA/TACACS implementation.
- Maintain reliable routing, switching, and firewall operations across enterprise infrastructure.
- Reduce troubleshooting time through accurate PCAP and traffic-flow analysis.
- Improve network visibility using taps, monitoring tools, and security analytics platforms.
- Support segmentation and isolation efforts that reduce risk and improve compliance.
Apply for this position
Required*