Senior Network Engineer (Palo Alto / Meraki / Security Operations)
Needs to work in PST time zone
100% Remote
Contract
Overview
We are seeking a highly experienced Senior Network Engineer to design, implement, and manage a secure, scalable, and high-performing enterprise network infrastructure. This role will focus on Layer 3 and Layer 2 networking, advanced firewall management, and security operations, leveraging Palo Alto Networks and Cisco Meraki technologies.
The ideal candidate will bring deep expertise in network security architecture, centralized management, and log analytics, ensuring resiliency, visibility, and compliance across the enterprise environment. You will be instrumental in ensuring the organization's network infrastructure is secure, reliable, and future-ready.
Key Responsibilities
Network Architecture & Operations
Design, deploy, and maintain enterprise network infrastructure:
o Layer 3 routing and security using Palo Alto firewalls
o Layer 2 switching and access networks using Cisco Meraki
Ensure high availability, scalability, and performance of network services.
Manage routing protocols, VLAN segmentation, NAT, VPNs, and traffic flows across distributed environments.
Troubleshoot complex network issues across LAN, WAN, and cloud environments.
Firewall & Security Management
Configure and manage Palo Alto Networks firewalls for:
o Policy enforcement
o Threat prevention
o Application and user-based controls
Administer and optimize Panorama centralized management for:
o Policy standardization
o Configuration consistency
o Device lifecycle management
Implement and maintain network segmentation and Zero Trust security principles.
Monitoring, Logging & Analytics
Manage and analyze logs using:
o Cortex Data Lake (CDL)
o Sumo Logic for aggregation, monitoring, and alerting
Develop dashboards, alerts, and reports for:
o Network performance
o Security incidents
o Compliance requirements
Perform proactive monitoring and incident response to minimize downtime and security risk.
________________________________________
Cloud & Network Integration
Support hybrid and cloud connectivity models, including:
o VPNs and secure tunnels
o SaaS and cloud service integrations
Collaborate with security and identity teams to integrate network controls with IAM and Zero Trust frameworks.
________________________________________
Automation & Optimization
Identify opportunities to automate network provisioning, configuration management, and monitoring.
Utilize APIs, scripting (Python, Bash, or PowerShell), and infrastructure-as-code approaches where applicable.
Continuously improve network performance, reliability, and operational efficiency.
________________________________________
Collaboration & Leadership
Partner with cross-functional teams including security, cloud, DevOps, and infrastructure teams.
Provide technical leadership and mentorship to junior engineers.
Act as an escalation point for complex network and security incidents.
________________________________________
Documentation & Compliance
Maintain accurate network diagrams, configurations, and technical documentation.
Develop and maintain standard operating procedures (SOPs) and runbooks.
Support audits and ensure adherence to security and compliance standards.
________________________________________
Required Qualifications
7 10+ years of experience in enterprise network engineering
Deep expertise in:
o Palo Alto Networks firewalls (L3 operations)
o Cisco Meraki switching (L2 environments)
Strong hands-on experience with:
o Panorama centralized management
o Cortex Data Lake and Sumo Logic
Solid understanding of:
o TCP/IP, routing protocols (BGP, OSPF), VLANs, NAT
o VPN technologies (IPSec, SSL VPN)
o Network segmentation and security best practices
________________________________________
Preferred Qualifications
Experience with Zero Trust architectures
Familiarity with cloud networking (Azure, AWS, or Google Cloud Platform)
Scripting/automation skills (Python, PowerShell, Bash)
Experience with SD-WAN or secure access service edge (SASE)
Relevant certifications:
o Palo Alto (PCNSE, PCNSA)
o Cisco (CCNP, CCIE)
o Security certifications (e.g., CISSP, Security+)