Network Engineer
Company | Mach Industries |
---|---|
Location | Huntington Beach, CA, USA |
Salary | $125000 – $140000 |
Type | Full-Time |
Degrees | |
Experience Level | Mid Level, Senior |
Requirements
- 3–5 years of hands-on experience in enterprise network administration.
- Strong expertise in configuring and troubleshooting firewalls.
- In-depth knowledge of Cisco/Juniper/Aruba switches and Cisco/Aruba wireless infrastructure.
- Proficiency with cloud networking (VPC, VPN, security groups, Transit Gateway).
- Proven track record designing and managing multi-site environments and bridging solutions.
Responsibilities
- Configure, maintain, and monitor firewalls, including NAT policies, security zones, and VPN.
- Ensure compliance with security best practices and participate in regular firewall audits and rulebase optimization.
- Design and maintain Layer 2 and Layer 3 networks using Cisco switches and APs.
- Oversee network segmentation (VLANs, trunking, spanning tree), QoS policies, and access control policies.
- Monitor and optimize wireless coverage and performance across all facilities.
- Manage VPCs, subnets, route tables, internet/NAT gateways, and security groups.
- Integrate cloud networking with on-prem infrastructure using VPNs and/or Direct Connect.
- Design and implement resilient bridging and routing solutions across geographically dispersed locations.
- Utilize technologies such as IPsec tunnels, MPLS, SD-WAN, or VXLAN for inter-site connectivity and performance optimization.
- Use monitoring tools (e.g., SolarWinds, PRTG, Panorama) to proactively identify and resolve issues.
- Troubleshoot connectivity, latency, and security-related incidents across all layers.
- Create and maintain detailed network diagrams, configurations, runbooks, and SOPs.
- Support audits, disaster recovery planning, and business continuity initiatives.
Preferred Qualifications
- PCNSE – Palo Alto Networks Certified Network Security Engineer
- CCNP – Cisco Certified Network Professional
- AWS Certified Advanced Networking – Specialty
- Network+ or Security+