Urgent Hiring: Senior Network Engineer (Remote) | TTEC
Drive your career forward with Percepta and join the people powering the world’s leading automotive experiences. As a Senior Network Engineer, you’ll be a part of creating and delivering amazing customer experiences, while also enjoying the satisfaction of being part of our award-winning, people-first culture.
The Senior Network Engineer is the primary technical owner of the organization’s network infrastructure across on-premises sites, data centers, and cloud environments. This role requires deep expertise across traditional LAN/WAN networking, next-generation firewall administration, wireless infrastructure, and AWS cloud networking. This role requires equal expertise in managing physical switching and routing and architecting scalable, secure AWS VPC environments under a multi-account governance model.
This role partners closely with Security, Systems, and Identity teams and requires a solid understanding of Active Directory, DNS, DHCP, and SAML SSO to collaborate effectively. In this role you will support US operations and will work Eastern timezone hours.
What You’ll Be Doing
Firewall & Network Security- Administer, document, and maintain Palo Alto Networks next-generation firewalls, including security policy management, App-ID/User-ID configuration, Threat Prevention, URL Filtering, and GlobalProtect VPN.
- Design, implement, and maintain site-to-site VPN tunnels with business partners; troubleshoot IKE/IPsec issues and maintain tunnel documentation.
- Monitor network security posture, analyze firewall logs, and respond to security events; stay current on CVEs and Palo Alto security advisories.
- Define and enforce network segmentation policies; ensure firewall rule bases are reviewed regularly and follow least-privilege principles.
- Coordinate with the broader security team on vulnerability management, compliance controls, and security architecture reviews.
- Design, document, configure, and support Cisco Nexus switching infrastructure in the data center and across site locations, including VLANs, VPCs (virtual port-channels), spanning tree, and QoS.
- Administer Cisco Meraki SD-WAN/switching for branch and site connectivity; manage Meraki Dashboard, configure MX security appliances, MS switches, and maintain templates.
- Own BGP and OSPF routing design and operations; manage peering relationships, route policy, prefix filtering, and troubleshoot complex routing issues.
- Maintain and optimize WAN connectivity (MPLS, SD-WAN, broadband); manage circuit lifecycle and work with carrier partners on provisioning and fault resolution.
- Provide Tier III escalation support for LAN/WAN incidents; participate in on-call rotation with a target 15-minute response SLA for critical issues.
- As the organization exits owned data center facilities (target: within 6 months), support the network decommission workstream, including graceful cutover of site connectivity to cloud transit models.
- Administer and maintain documentation of Ruckus wireless infrastructure, including access point deployment, controller management (SmartZone or cloud), RF planning, and SSID/VLAN policy configuration.
- Troubleshoot wireless connectivity, RF interference, and roaming issues; conduct periodic wireless site surveys and capacity planning.
- Maintain wireless security standards, including 802.1X/RADIUS integration, guest network isolation, and rogue AP detection.
- Design, document, and manage AWS VPC architecture across a multi-account environment governed by AWS Control Tower, including subnet design (public/private/isolated), CIDR planning, and inter-VPC connectivity.
- Implement and maintain AWS Transit Gateway for hub-and-spoke or full-mesh connectivity across accounts and regions; manage route tables and TGW attachments.
- Configure and manage AWS Direct Connect or VPN connectivity for on-premises-to-cloud hybrid networking during and after data center migration.
- Administer AWS security constructs: Security Groups, Network ACLs, VPC Flow Logs, and ensure alignment with organizational network segmentation policy.
- Understand and work within AWS IAM as it applies to network resource governance: SCPs, permission boundaries, and least-privilege role design for network automation.
- Leverage Amazon CloudWatch and AWS Network Manager for network visibility, alerting, and troubleshooting across the multi-account topology.
- Collaborate with Systems and Dev teams on Infrastructure as Code (CloudFormation or Terraform) for network resource provisioning and change management.