Must Haves- Extensive hands-on experience of implementing F5 WAF and Load balancer.
- Work experience in AWS VPC, EC2, ELB, Transit gateway
- Experience in implementing and managing DDoS solution with Cloudflare or Akamai
- Experience in managing Pala Alto global protect VPN
TECHNICAL KNOWLEDGE AND SKILLS:
· Expertise with Palo Alto Network Firewall, Global Protect VPN, Prisma Cloud and Cisco ASA and Firepower.
· Expertise with F5 Load Balancers and AWS ELB.
· Strong OSI layer 2 knowledge and practical experience, including various flavors of STP, ARP, QOS, etc.
· Comprehensive knowledge of OSI layer 3 networks and protocols, including broadcast, multicast, anycast concepts, routing, etc.
· Expertise with various routing protocols (BGP, OSPF, EIGRP) and multi-homing Internet circuit configuration
· Understanding of network security methodologies as a whole, including but not limited to: ACLs, Stateful firewalls, VPNs (tunneling, IPsec, SSL, etc.)
· Fluency with common network admin and monitoring tools such as Rancid, Opmanager, Nagios, Solarwinds, Wireshark, Nmap, Nessus, Netflow, Sflow etc.
· Administrative scripting skills (Perl, UNIX shell scripting)
· In-depth knowledge of Cisco IOS, NX-OS, both Cisco Nexus 1K, 2K, 5K 7K, 9K and non-Nexus series switches, Cisco routers and other Cisco networking gear.
· Solid understanding of data center related technology and collocation environment.
· In-depth knowledge of MPLS network.
· Experience in Cisco Fabric interconnect configuration
· Must have Nexus 9K and VPC experience
· Advanced knowledge of Cisco, F5, Palo Alto Firewall, Websense/Forcepoint, Juniper and other vendor equipment and configuration
· Advanced knowledge and experience with Routing Protocols (BGP, RIP, OSPF, etc.)
· Must have experience in PulseSecure and Global Protect (Palo Alto) VPN
· In-depth knowledge and hands-on experience on Cisco Network Devices automation
· Expertise and Hands-on experience with Ansible or Python scripting for Network automation
· Deep domain expertise in networking, network security and public/private clouds
PREFERRED SKILLS:
· Experience deploying and maintaining wireless networks.
· Extensive hands-on experience of implementing F5 WAF and Cloudflare DDoS
· Working knowledge of AWS services i.e. EC2, ELB, RDS, S3, Route53, VPC, Cloud formation, SSM and Transit gateway
· Experience deploying and maintaining VOIP deployments (network side, not telecom), SIP Trunking and Content Center
· Project Management Experience
· Experience with Scripting and Automation Technologies