Previous state/city experience
The resource(s) covered under this SO will support the:
Temporarily fill the skill gap by the Chief Network Operations Officer leaving until a permanent replacement
can be hired. He is currently the lead of the network engineering and the most skilled technical network
engineer.
Position overview / Statement of Work
The Senior Network Engineer/Architect is a key leadership role responsible for the design, implementation,
and advanced support of the organization s mission-critical global network infrastructure. This position
requires deep, hands-on expertise with juniper and Palo Alto Networks, specializing in complex service
provider and large enterprise network technologies, including BGP, MPLS, Quality of Service (QoS), and
ensuring seamless transport for services like VoIP and high-volume IP Video Surveillance (IPVS). The ideal
candidate is a technical leader who bridges architectural vision with operational execution.
Work activities:
Architect, plan, and deploy highly available, scalable, and secure WAN, LAN, and Data center
networks using Juniper (e.g., MX Routers, EX/QFX Switches) and Palo Alto Networks firewalls
Develop and maintain the MPLS core network architecture, including L2/L3 VPNs, Traffic
Engineering (TE), and Label Distribution Protocol (LDP)/Resource Reservation Protocol (ESVP)
Design and implement complex BGP routing policies for multi-homed internet connectivity, inter-AS
communication, and global route optimization
Lead the network aspects of strategic projects, ensuring solutions align with business objectives,
security standards, and best practices
Design, implement, and fine-tune Quality of Service (QoS) policies (e.g., queuing, policing, shaping,
classification) across the network to guarantee optimal performance for critical services
Ensure reliable delivery and transport of VoIP services, including configuration and management of
related infrastructure (e.g., Session Border Controllers, gateways) and their seamless integration
Architect, plan, and support the network infrastructure specifically for IP Video Surveillance
(IPVS) systems, including camera-to-VMS communication and storage networking
Conduct network capacity planning and traffic analysis to accurately forecast bandwidth
requirements for high-resolution, continuous recording IP cameras (e.g., H.264/H.265 streams)
Design and manage the secure VLAN segmentation and network zoning strategy for all IPVS
infrastructure, including ensuring proper PoE/PoE+ power budgets on supporting switches
Configure and manage all features on Juniper SRX Series Firewalls and Palo Alto Networks Next-
Generation Firewalls (NGFWs), including Security Policies, NAT, VPNs, User-ID, and Application-ID
Enforce robust network security policies for all segmented networks, including
implementing 802.1x authentication for camera and other endpoint access where required
Provide Tier 3/4 escalation support for complex network incidents and performance issues, ensuring
rapid resolution and root cause analysis
Utilize network monitoring tools and packet capture analysis (Wireshark) to diagnose and resolve
high-level network, voice, and video stream issues
Skills/experience of the assigned staff:
Required
10+ years of progressive experience in network engineering, with at least 3 years in a Network
Architect or Lead Senior role
Deep hands-on expertise with Juniper Junos OS across routers (e.g., MX Series), switches (e.g.,
EX/QFX Series), and SRX firewalls
Expert-level knowledge of Border Gateway Protocol (BGP), including path manipulation, route
filtering, and peering
Extensive experience designing and operating Multi-Protocol Label Switching (MPPLS) networks,
including LDP, RSVP-TE, and L2/L3 VPNs
Proven expertise with Palo Alto Networks firewalls, including Panorama management, App-ID,
Content-ID, and WildFire integration
Strong, verifiable experience in designing and troubleshooting networks that support high-volume,
real-time traffic, including QoS for VoIP and IP Video