Mandatory:
Level I- Between three (3) and seven (7) years of experience as a DevOps
Engineer
Expert Microsoft Azure network infrastructure: VNets, subnets, NSGs, route
tables, VNGs, Site-to-site VPN, ExpressRoute Direct, load balancers, logging,
alerting, and
troubleshooting.
Advanced experience designing, implementing, and supporting hybrid Microsoft
Azure connectivity.
Proficiency in layer 3 routing including Border Gateway Protocol (BGP), VRFs,
route maps, redistribution, NAT, subnetting, etc.
Proficiency in Palo Alto PAN-OS including security policies, NAT policies, zones, routing, tunnels, upgrades, logging, and monitoring
Desirable Qualifications
Working knowledge of cloud application platforms and their networking
requirements (Kubernetes engines/services, serverless, etc.)
Proficiency in Terraform to assist in the development of Infrastructure as Code
(IaC) and CI/CD for uniform cloud configuration and backup solutions
Proficient AWS network infrastructure: VPCs, subnets, security groups, route
tables, Virtual Private GW, Transit Gateway, Cloud WAN, Site-to-Site VPN, Direct
Connect,
NACLs, load balancers, peering, logging, alerting, and troubleshooting.
Proficient Google Cloud Platform network infrastructure: VPCs, subnets, firewall rules, VPC
routing, Network Connectivity Center, Cloud Router, CloudVPN, Cloud
Interconnect, CloudNAT,
load balancers, private service connections, logging, alerting, and
troubleshooting.
Experience working with monitoring and packet capture/analysis tools such as
Zenoss, Splunk, Palo Alto Panorama, Arista Cloud Vision as a Service, NfSen,
Ixia, Gigastor,
Wireshark, etc
Proficiency in Microsoft Visio for solutions documentation
Proficiency in Domain Name System (DNS) and managing split-brain
public/private resolution designs
Duties and Responsibilities to be performed by the consultant
Manage and lead in the orchestration of multi-discipline technologies for the resolution
of complex problems; communicate with technology and business leaders for
problem resolution and make recommendations for system enhancements as required.
• Provide 24x7x365 on-call network support for advanced troubleshooting, escalation
and ticket resolutions on a rotating basis
• Design, deploy, and maintain cloud networking infrastructure in AWS, Azure, and Google Cloud Platform
to support new and existing NYS agency application deployments in the cloud
• Design, deploy, and maintain network virtual appliances as needed including Arista
CloudEOS and Palo Alto PAN-OS with integrations into CSP network
infrastructure (Google Cloud Platform NCC, AWS TGW Connect, etc.)
• Design and implement on-prem to cloud connectivity solutions as required by
application needs in collaboration with ISO and network/application architecture
teams
• Assist with application design to ensure connectivity compliance with NYS ITS
information security standards
• Collaborate and troubleshoot with direct cloud connectivity providers to develop
solutions and solve problems
• Assist in the development of Infrastructure as Code (IaC) uniform cloud configuration,
deployment, and backup solutions using Terraform
• Provide in-depth analysis on network performance using monitoring tools such as Zenoss, Splunk, Palo Alto Panorama, Arista Cloud Vision as a Service, NfSen, Ixia, Gigastor, Wireshark, etc.
• Ensure that network availability of cloud environments is maximized by overseeing
Change Control procedures, code upgrades, network monitoring, installations,
moves and changes, and troubleshooting complex issues.
• Oversee network monitoring to ensure maximum network availability.
• Participate in network performance analysis, training, and capacity planning.
• Document all design and implementation work using Microsoft Visio
• Participate in knowledge transfer and training sessions with junior staff