Network Infrastructure Engineer - Cisco ACI / SDA / ISE / Palo Alto - Onsite

Clinton, MO, US • Posted 1 day ago • Updated 1 day ago
Full Time
Occasional Travel Required
Able to Sponsor
On-site
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Access Control
  • Analytical Skill
  • Analytics
  • Ansible
  • Authentication
  • Authorization
  • Border Gateway Protocol
  • Cisco
  • Cisco Nexus
  • Collaboration
  • Communication
  • Computer Networking
  • Cyber Security
  • DNA
  • Data Link Layer
  • Documentation
  • Enterprise Networks
  • Firewall
  • Firewall Administration
  • Network
  • Network Design
  • Network Engineering
  • ISE
  • IoT
  • Network Security
  • OSPF
  • Palo Alto
  • Leadership
  • Management
  • Mapping
  • Multicast
  • Network Layer
  • Performance Monitoring
  • Python
  • QoS
  • Routing
  • SDA
  • Security Policy
  • Spanning Tree Protocol
  • Switches
  • TACACS+
  • TCP/IP
  • Training
  • VLAN
  • VMM
  • Virtualization
  • Wireless Communication
  • Workflow

Summary

We are seeking a highly skilled and experienced Network Infrastructure Engineer to support and advance an enterprise networking environment. This is a hands-on engineering position responsible for designing, deploying, securing, and operating data center and campus network infrastructure.

The engineer will work with Cisco ACI, Cisco Nexus, Software-Defined Access (SDA), Cisco Identity Services Engine (ISE), Cisco Catalyst, Palo Alto firewalls, ThousandEyes, Cyber Vision, and DNA Spaces.

The ideal candidate will have extensive Cisco networking experience and a strong background supporting large-scale, highly available, secure, and mission-critical environments.

Key Responsibilities

<>Cisco ACI & Data Center Networking

  • Design, implement, and maintain Cisco Nexus platforms running in ACI mode.

  • Configure and administer VRFs, Bridge Domains, EPGs/ESGs, L3Out, contracts, and fabric policies.

  • Integrate ACI with virtualization and container platforms, including OpenShift VMM and Cilium/Isovalent.

  • Configure and optimize RoCEv2 within ACI fabrics for high-performance, low-latency workloads.

  • Troubleshoot ACI fabric health, faults, endpoint learning, contracts, and multi-tenant segmentation.

  • Develop and maintain fabric documentation, standards, and operational procedures.

<>Cisco Catalyst & Software-Defined Access

  • Deploy and support Cisco Catalyst platforms in enterprise campus environments.

  • Design and maintain Cisco SDA architectures, including wired fabric and fabric-enabled wireless.

  • Manage fabric underlay and overlay, policy mapping, authentication integrations, and assurance operations.

  • Collaborate with wireless engineering teams to optimize coverage, performance, and policy enforcement.

<>Identity-Driven Networking & Security

  • Configure and administer Cisco ISE for TACACS+ device administration.

  • Develop and maintain authentication and authorization policy sets.

  • Implement endpoint profiling and identity-based access controls.

  • Integrate Cyber Vision intelligence into profiling, segmentation, and access-control workflows.

  • Support Zero Trust initiatives through identity-centric segmentation across ACI and SDA environments.

<>Visibility, Analytics & Observability

  • Deploy and manage ThousandEyes for end-to-end visibility, routing path analysis, and performance monitoring.

  • Implement and support Cisco Cyber Vision for OT/IoT asset visibility, device classification, and behavioral analysis.

  • Manage DNA Spaces for location analytics, telemetry, device behavior, and wireless intelligence.

  • Analyze observability data and provide meaningful technical insights to leadership.

<>Core Network Engineering & Security

  • Troubleshoot complex Layer 2 and Layer 3 network issues.

  • Work with VLANs, OSPF, BGP, STP, multicast, QoS, and TCP/IP.

  • Design, implement, and troubleshoot Palo Alto Networks security solutions.

  • Develop and maintain firewall policies and security configurations.

  • Create architecture diagrams, standards, runbooks, and asset inventories.

  • Support platform upgrades, lifecycle planning, modernization initiatives, and technology projects.

  • Provide operational support for mission-critical enterprise network services.

Required Technical Skills

  • Extensive production experience with Cisco ACI.

  • Strong knowledge of Cisco Nexus platforms and multi-tenant segmentation.

  • Deep understanding of ACI constructs:

    • VRF

    • Bridge Domains

    • EPG / ESG

    • L3Out

    • Contracts

    • Fabric policies

  • Experience integrating ACI with OpenShift VMM and Cilium/Isovalent.

  • Strong experience with Cisco Catalyst platforms.

  • Hands-on experience with Cisco SDA wired and wireless fabric technologies.

  • Strong Cisco ISE experience, including:

    • TACACS+

    • Authentication/authorization

    • Policy sets

    • NAC

    • Endpoint profiling

  • Experience with ThousandEyes, Cyber Vision, and DNA Spaces or comparable observability platforms.

  • Strong L2/L3 networking knowledge.

  • Routing and switching expertise, including OSPF, BGP, STP, multicast, VLANs, and QoS.

  • Palo Alto firewall administration and security policy development.

  • Strong understanding of TCP/IP and network security fundamentals.

  • Experience supporting highly available, enterprise-scale infrastructure.

  • Strong documentation and network architecture skills.

Experience Requirement

  • Minimum 15 years of experience working with Cisco networking technologies.

  • Demonstrated hands-on experience supporting production enterprise network environments.

  • Experience working in fast-paced, mission-critical environments.

  • Strong analytical, troubleshooting, communication, and collaboration skills.

Preferred Skills & Certifications

  • CCNA

  • CCNP Data Center

  • CCNP Enterprise

  • CCIE or equivalent experience

  • Cisco Specialist certifications in ACI, SDA, or ISE

  • PCNSA

  • PCNSE

  • PCCSA

  • ThousandEyes training/certification

  • Cyber Vision training

  • Network automation using Python, Ansible, or REST APIs

  • Container networking and virtualization integration experience

  • Familiarity with NIST frameworks and cybersecurity requirements

  • Experience supporting government or large enterprise network environments

Palo Alto Security Knowledge

Experience with Palo Alto Networks technologies, including:

  • Next-generation firewall administration

  • Security policies and profiles

  • NAT

  • App-ID

  • URL Filtering

  • WildFire

  • Threat prevention

  • Network security troubleshooting

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10481525
  • Position Id: 9103667
  • Posted 1 day ago
Contact the job poster
AP

Alex Pesci

Seasoned Recruiting Manager with a Passion for Talent Acquisition @ Shiro Technologies
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Olathe, Kansas

•

Today

Full-time

No location provided

•

Today

Full-time

Remote or Virginia

•

Today

Full-time

USD 105,000.00 - 141,750.00 per year

Bentonville, Arkansas

•

Today

Full-time

USD 80,000.00 - 155,000.00 per year

Search all similar jobs