Back to jobs
tags.new

Senior Network Engineer

Columbus, OH

Regent is a global private holding company focused on acquiring businesses and realizing exponential growth through operational improvements and strategic capital deployment. MCO is the shared operational infrastructure of Regent’s portfolio companies and an integral part of the firm’s overall approach to value creation. Our core mission is to transform businesses for our stakeholders by developing and delivering transformed and sustainable performance within our portfolio. We work with improvement-oriented executives to assist them in making strategic decisions, translate those decisions into actions and deliver the lasting success they need. With the help of these leaders, operating teams and individuals, MCO has the aptitude to support complex, global businesses across various industry verticals.

We are looking for a Senior Network Security Engineer to design, integrate, modernize and implement network and network-security solutions across Regent’s portfolio of companies. This role would report to the Director of Infrastructure and Security and support all corporate network and security operations. This individual must be a self-motivated professional, willing to take initiative and develop technical solutions for an evolving portfolio of IT infrastructure. Must be capable of working in a demanding environment within which the candidate will be the senior subject matter expert and is expected to resolve and manage complex technological issues, lead projects or restore outages without higher-level support.

Common Tasks:

- Design, implement and manage site-to-site IPSEC tunnels between various vendor and cloud technologies

- Engineer, troubleshoot and configure dual-homed BGP topologies with advanced import/export policy

- Implement and maintain micro and macro-segmentation designs with VRFs, security-zones, and access-layer 

- Test and implement extensive Palo Alto network-security policy framework with failover support across geographic regions

- Troubleshoot and maintain policy-based routing, OSPF, Meraki Auto-VPN, ether-channel and virtual port-channel architectures

- Quickly adapt and learn new technologies introduced via acquisitions

- Maintain extensive network diagrams and documentation

- Publish and update network and network-security governing policy

- Support the acquisition and integration of new companies and the decoupling (from parent) or new instantiation of their network and security resources

- Assist with the evaluation and procurement of new technology, equipment and software.

- Collaborate with systems and server infrastructure engineers to integrate with data operations

- Leverage varying levels of access or control to collaborate with network technicians of various skill-levels while integrating new acquisitions

- Manage SSL certificate operations (identity, root, SSL-decryption, DPI, forward-trust)

- Provision and manage internet service provider circuits and services for corporate and retail locations

- Troubleshoot NGFWs and network elements to restore or establish connectivity for users, servers, applications and services

- Provision new VPN portals, gateways, agents and cloud identity integrations

- Remotely support site-local network and security operations at retail locations, data centers, corporate branch offices, staff headquarters and manufacturing locations

- Collaborate with Directors, Managers and executive leaders to develop multi-year network and security strategy in a highly dynamic environment

- Design, configure and troubleshoot networking and security for multi-cloud environments

- Configure integrations between security tools and network elements

- Configure and troubleshoot network management protocols such as DNS, DHCP, TACACS+, NTP and SNMP

- Leverage automation and programmability to support IaC

- Configure and troubleshoot complex NAT (source, destination, bidirectional, port-forwarding) operations

- Provision and manage licensing for hardware/software firewalls, XDR, network elements and cloud services

- Provide monitoring and response for network-security related alerts or cyber incidents.

- Travel to premise locations within the portfolio to conduct equipment installs, upgrades or LAN/WAN setup for new offices

- Assist or lead the logical or physical migration of data center resources into colocations or cloud infrastructure

- Conduct training and mentorship for junior network and security personnel.

- Generate highly professional correspondence, presentations and assist with strategic business proposals

Should have the following qualifications:

- Minimum 7 years experience working at professional level in advanced networking and network-security.

- Minimum Bachelors Degree in IT field.

- Valid CCNA - strongly prefer CCNP.

- Valid PCNSA - strongly prefer PCNSE.

- Valid AZ-700 or AZ-900.

- At least one valid, professional-level security certification (CASP, CISSP, CISM, CEH etc).

Nice to have:

- Juniper, Fortigate, Meraki, AWS, GCP certifications.

Must have professional level competency in the following technologies:

- Palo Alto Next-Generation Firewalls (virtual and hardware)

- Fortinet Next-Generation Firewalls and SDWAN

- Global Protect VPN

- Cisco Adaptive Security Appliance (ASA)

- Firepower Threat Detection

- Palo Alto Cloud Identity Engine

- Azure Enterprise Applications

- Cisco Nexxus and associated Virtual Port-Channel (vPC) architectures

- Meraki Cloud-Managed Network Elements (MX/vMX, MS, MR)

- Azure Networking (vNets, vNets peerings, NVAs, Virtual Network Gateway)

- AWS Networking (VPCs, Virtual Private Gateway, Transit Gateway)

- Cisco L2/L3 Networking

- Juniper L2/L3 Networking

- 802.1x Authentication

- Wireless Network Technologies

- Virtualized Network Appliances

- Cisco AnyConnect VPN

- VXLAN and layer-2 tunneling technology

Should have a basic level of competency in the following technologies:

- Cortex XDR

- Barracuda Web-App Firewall

- Microsoft Defender XDR

- ZScaler

- F5 load-balancers

- Sophos Endpoint Protection

- Google Cloud

- Entra Identity Services

- Cloudflare DNS

- Mimecast Secure Mail Gateway

- Optical Transport

- Voice-over-IP Network Technology

- Broadcast (Studio) Network Operations

Apply for this job

*

indicates a required field

Phone
Resume/CV

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...