Design, configure, and manage enterprise-grade network infrastructure, including routers, switches, firewalls, and wireless systems (Cisco, Palo Alto, Fortinet, Meraki, Juniper, etc.)
Lead advanced troubleshooting and root cause analysis for complex network issues, including BGP and OSPF routing, inter-VLAN routing, QoS, and WAN performance problems
Architect and implement firewall policies, NAT rules, VPN tunnels (IPSec, SSL), and advanced security configurations across multi-vendor environments
Manage and optimize SD-WAN deployments, MPLS circuits, and hybrid WAN architectures for MSP clients
Administer and troubleshoot cloud networking components in AWS (VPC, Transit Gateway, Direct Connect) and Azure (VNet, ExpressRoute, Azure Firewall)
Perform in-depth DNS, DHCP, and network services administration and troubleshooting
Lead patching, firmware upgrades, and lifecycle management for network appliances across the client base
Develop and maintain network monitoring strategies using tools such as LogicMonitor, PRTG, SolarWinds, or equivalent platforms
Manage and resolve escalated tickets within MSP platforms (ConnectWise, FreshService, etc.), and document resolutions thoroughly
Conduct network assessments and produce architecture diagrams, runbooks, and technical documentation for client environments
Conduct periodic network security posture reviews, including vulnerability assessments, configuration audits, and hardening recommendations aligned with NIST, CIS, or client-specific frameworks
Evaluate emerging network technologies, vendor platforms, and tooling on behalf of the MSP, and provide recommendations for adoption into the standard service stack
Support pre-sales and scoping efforts by participating in client discovery calls, reviewing SOWs, and contributing to network design proposals and SOW development
Serve as the primary escalation point for network incidents and own resolution from escalation through closure
Lead change management activities, including planning, scheduling, implementing, and validating production network changes
Participate in on-call rotation and after-hours maintenance windows as required
Collaborate with ISPs, hardware vendors, and cloud providers to coordinate circuit provisioning, RMAs, and complex issue resolution
Assist in onboarding new MSP clients, including network discovery, documentation, and transition planning
Identify recurring issues and drive proactive improvements to reduce incident volume and improve client stability
Requirements
Five to seven or more years of hands-on network engineering experience
Deep expertise with at least two major network vendors (e.g., Cisco, Palo Alto, Fortinet, Meraki, Juniper)
Experience with network automation and scripting using Python, Ansible, PowerShell, or similar tools
Familiarity with compliance frameworks (HIPAA, SOC 2, NIST, PCI-DSS) as they apply to network security controls
Exposure to ITSM and ITIL practices within a managed services delivery model
A degree in Information Technology, Computer Science, Network Engineering, or equivalent experience
Required or highly preferred certifications include Cisco CCNP (Enterprise or Security), Palo Alto PCNSE, Fortinet NSE 5–7, or equivalent advanced vendor certifications