The Network Integration team combines network engineering and systems development to build and operate one of the worlds largest enterprise networks. We need creative engineers and technologists to help us build and manage the first lines of defense for the bank as well as advance the processes and monitoring capabilities that enable us to respond to events. Our ideal candidate should have a vision on how to compose traditional and non-traditional approaches to solve problems and achieve our goals.In addition to our transformational mission, the Network Integration team routinely works on functions related to: capacity management, technology lifecycle, deployment, regression testing and configuration management. We collaborate with our Engineering teams to control the release of new services and partner with our NOC teams to solve issues impacting the banks users and services.Contact: Gary@GaryLouisNelson.comKey Responsibilities
- Create technical execution plans based on industry best practices, engineering standards and security principles
- Ensure security controls and network policies are implemented and operating effectively as part of solutions delivery
- Articulate and defend approach to transition planning and execution
- Lifecycle management code upgrades, vulnerability patching and EOL replacement programs
- Complex service request fulfillment processes
- Create detailed implementation plans and run books for downstream execution teams
- Collaborate with engineering and operations teams from service design through operations transition process for new services
- Perform design validation and QA testing of new services to ensure successful production deployment
- Manage the overall lifecycle of the data network and security infrastructure
- Insure quality of the System of Record (SOR) for all network assets
- Liaise with Information Security partners to enforce compliance with all bank standards
- Review of all capacity metrics to ensure availability of all services
Core Technologies in Scope
- Perimeter Security (Checkpoint firewalls, Juniper Firewalls, IDS/IPS systems such as Tipping Point, Arbor, ISS, Imperva),
- Proxy and Malware-mitigation (BlueCoat, Radware, FireEye),
- Threat detection and data leakage protection (Network DLP/Vontu/Symantec, Guardium. Imperva, StealthAudit)
- IDS/IPS, e.g. Tipping Point, Imperva, IBM, Arbor PeakFlow, Web Application Firewalls, like Citrix.
- Routing and Switching (Cisco, Arista)
Solid Understanding of Security Concepts
- Exploit, backdoors, C&C
- Static, dynamic inspection, sandboxing
- Emulation techniques for sandboxing
- DOS/DDOS, web containment
- Forensics, cryptography, PKI, CASB
- Operational security including access controls, data privacy, monitoring and logging
Required Skills:
- Subject matter expertise proxy, load balancer, DNS, DHCP, firewall, IDS, IPS, SSL off loader, malware, routing, switching
- Expertise in planning, designing, and implementing enterprise-level global programs.
- Understanding of network protocols.
- Hands on troubleshooting, network-based forensics, and proficient with packet analysis tools like Wireshark, Opnet, etc
- Experience with root cause analysis, risk mitigation, security assessments, analysis of security threats, trends and architecture preferred.
- Programming/scripting experience (Perl, Python or Golang)
- Knowledgeable on network management and monitoring tools (HP NNMi, Syslog, Splunk, Entuity, Tivoli ITM, HPNA, Cisco CMCS, Netscout)
- Excellent written and verbal communication. Ability to present at an executive level.
- Experience managing large, globally dispersed teams of engineers
- 7-10+ years network engineering and/or technology management experience
- B.S. degree in Engineering, Information Technology or Computer Science or equivalent experience (Masters degree preferred)
- Proven ability to manage short and long term engagements with multiple project tracks and teams
- Ability to interact with clients at all level, from the C-Level to IT individual contributor
- Firm understanding of IT Service Management processes, ITIL Certification preferred
- Effective in working with service providers and staff augmentation vendors