Senior Network Architect- onsite at NY 10036
hace 4 días
New York
Job Title: Senior Network Architect- onsite Duration: Permanent Location: NEW YORK: 1211 6th Ave, New York, NY 10036 OR BOSTON: Prudential Tower, 800 Boylston Street, Boston, MA 02199-3600 Overview • Generic LAN and WAN (switches and routers for a Cisco shop), • SD-WAN, • Checkpoint firewalls, • VPN support, • Wireless (currently Aruba, but moving to Cisco) o The person coming on board will need to support the Cisco wireless. o They are configuring two SSIDs: guest and corporate. o The person would need to understand 802.1x authentication and Cisco ISE. • F5 load balancers, • DNS and DHCP (using Infoblocks), • SSL certificate installation, • Taps (Gigamon), • NetScout sniffers (packet capture) or Wireshark, • Sienna dense wave division multiplexing (nice to have) Qualities • Not mavericks; they should work collaboratively. o "We want to give people projects to say, hey, you own this, go do it. But not without collaboration in, you know, in agreement, in understanding what we're doing." • Able to learn and demonstrate growth through experience., • Not reliant on vendors., • Professionals with experience and a strong background., • Enterprise experience is preferred over consulting experience. o Consulting is different from the day-to-day issues and owning the systems. • Allumio for micro-segmentation (they would be expected to learn and own it), • OSPF routing and BGP (once they connect to Azure and AWS), • High-end Cisco switches (Nexus series) o Nexus 9000s in the cores o Virtual Port Channel, WCCP, ITD o Basic HSRP for router redundancy on the core switches Technical Environment • Switches: o Catalyst 9300s and 9500s are used. o Offices: Catalyst 9410s (core switch and IDF closet switches), except for Boston and New York (9500s). o Data centers: 9516s. • Network Design: o Redundancy: Designed to maintain uptime even if a chassis fails. o Technologies: Virtual port channel, HSRP, ITD, spanning tree. • Uptime Goal: The firm aims for nine nines (near 100%) uptime., • Redundancy: Two WIN carriers that are diverse. This position in the IT Department is responsible for the strategic design and architecture of the firm's data, wireless, video, and VOIP networks. Responsibilities include ensuring the stability, integrity and performance of these network services. This is achieved by planning, designing, and developing local area networks (LANs), metropolitan area networks (MANs), wide area networks (WANs), wireless networks and security infrastructure across the organization. This individual will assist in the analysis and resolution of network, VOIP, and video hardware and software problems in a timely and accurate fashion. In addition, the Senior Network Architect will provide technical leadership across the organization, from strategic decision making down to the project planning level. Responsibilities ESSENTIAL FUNCTIONS: · Oversee the strategic design and architecture of the firm's data network environment. · Oversee design, deployment, and maintenance of various network systems and components including: routers, switches, internet services, wide area network services, wireless networks, VPNs, firewalls, video networks and related infrastructure, VoIP network and related infrastructure, Security, and performance management and monitoring systems. · Participate in physical build planning and design for new spaces. Scope, recommend, design, plan, oversee and test inter-rack and station cabling for office, MDF, IDF and datacenter builds and refreshes. · Configure networks to ensure their smooth and reliable operation for fulfilling business objectives and processes. · Evaluate emerging technologies and recommend purchase, development, or enhancement of network hardware and software. · Establish performance standards, processes, policies, and procedures. · Provide senior level technical support for network elements and systems. · Design and provide for the monitoring of network performance and troubleshoot problem areas as needed. · Collaborate with executive management and department leaders to assess near- and long-term network capacity needs. · Create and maintain documentation as it relates to network architecture and network configuration. · Assures knowledge transfer for new systems. · Coordinate with other members of the firm for business continuance program. Qualifications · Bachelor's Degree or equivalent experience · 10+ years experience in network field · Proven experience and success with planning, installing and managing networks including LAN, MAN, WAN, Optical Networking, DWDM, Wi-Fi, Silverpeak SDWAN or Riverbed WAN Optimizers, F5 Load Balancers, F5 GTM Global Traffic Manager, Cisco Catalyst Center, and security (firewalls, VPN, DMZ, IDS/IPS, WebProxy, content filter, FireEye, NAC and Cisco TrustSec) infrastructure. · Proven experience with network capacity planning, network security principles, and general network management best practices. · Strong hands-on knowledge of LAN/WAN protocols and technologies including Carrier Ethernet, T1, DS3, optical, DWDM, NTP, Spanning Tree, VLAN’s, 802.1q, VFR, LFA, SMTP, SNMP v1-v3, OSPF, BGP, MPLS, VPLS, Ethernet, TCP/IP, SSL, SSH, SIP, H.323, QoS, Multicast, Anycast, 802.1x, Radius, NAC, DHCP, DNS, F5 Wide-IP, VRRP, HSRP, GLBP, PBR, VPC, LACP, SGT, SGACL, SXP, VxLAN, OTP, LISP, SPAN, WCCP, PfR, IPSLA, iWAN, VPN, IPSec, Wi-Fi 6, 6E, 7. · Strong working knowledge of Cisco routers and switches (Nexus 9K, 7K, 5K, 2K, 1K; C9410, C9300, 3850, 4500, ISR-4451, 8300, FPR-1010, and Microsoft certificate servers. · Experience with Infoblox/BloxONE DNS and DHCP, Ciena DWDM, 10 Gig optics, DNS Traffic Control, F5 iRules, Cisco ACI, SDN, network segmentation, Checkpoint firewall rule creation and administration, Cisco ISE, Cisco CLI, ACL management, SNMP MIB’s, Cisco or Aruba wireless controllers and AP’s, SDWAN and SSL certificate creation and management. · Network monitoring systems: Gigamon, APCON, Tufin, Netscout sniffers and UC Performance Management tools; Infoblox NetMRI, Cacti, MRTG, Solarwinds, SmokePing, NetFlow, Splunk and syslog. · Strong hands-on knowledge of DNS record management: A, CNAME, TXT, SRV, NS, PTR, SPF, DMARC, and DKIM. · Data Center, server room and IDF design; station cabling layout design and implementation; UPS management and monitoring. · Preferred certifications, not required: CCNA/CCNP, CCDA, CCSP · Strong verbal and interpersonal skills · Strong analytical and problem solving skills · Strong customer service skills · Strong team skills · Strong leadership skills · Strong project management skills · Experience working in a multi-office environment ESSENTIAL CAPABILITIES: · Ability to influence at all levels of the organization. · Must be a self-starter who understands the details within a much larger content. · Ability to work effectively in a culturally and educationally diverse environment. · Ability to work in a teamwork/collaborative style and environment. · Must be creative and flexible in order to respond quickly and positively to shifting demands and opportunities; ability to work under tight deadlines and handle multiple, detailed tasks. · Must be a team-oriented person who can share information, goals, opportunities, successes and failures with the appropriate parties. · Ability to organize, plan and carry out multiple related activities. · Must pay attention to details and have the ability to follow up and follow through. · Ability to work effectively in a multi-office environment. Thank you, Shiva Mittal