As Network Engineer, the incumbent will be responsible for configuring, supporting, monitoring and troubleshooting network infrastructure inside NCSC.
The Network Engineer reports to the Head, Capability Development (CapDev) Section and will work with engineers and analysts within CapDev and Infrastructure Branches.
Main responsibilities, but are not limited to the following:
Support network connectivity design and implementation of the new core infrastructure
Provide updates to existing Network Support documentation required resulting from the refresh and draft new documentation when needed
Configure firewalls, routers, switches, network proxies, VPN concentrators to maximise network efficiency and security according to NCSC Operational needs and NATO security policy
Support network connectivity during the transition from legacy to new infrastructure, with seamless/no services' interruption
Support the Initiation, preparation, follow-up and defence of any specialist applications upgrades in front of the Change Management Board
Support Intrusion Detection Systems (IDS) / Intrusion Prevention Systems (IPS)
Implement security settings relating to any of Cisco, Juniper, Linux, Unix, Microsoft operating systems
Maximise network performance and availability through ongoing monitoring and troubleshooting by using networking experience and management applications
Efficiently investigate faults in the network and propose improvements.
Report network status to key stakeholders inside NCSC
Required Security Clearance: NATO Cosmic Top Secret
Essential to have a Bachelor's Degree in Computer Science combined with a minimum of 3 years' experience in as Network Engineer or similar position,
or a Secondary education and completed advanced vocational education (loading to a professional qualification or professional accreditation) with 5 years post related experience, with demonstrated experience in following areas:
Expert level of experience
Excellent knowledge of multi-vendor switching/routing technology with proven technical experience with in depth understanding of communication protocols (mainly TCP/IP) and routing protocols e.g. BGP, OSPF)
Experience with network diagnostic, monitoring and analysis tools (e.g. Solar winds, Zabbix, Panorama, Junos Space)
Experience with virtualization technologies (e.g. VMWare NSX-T)
VPN installation, maintenance and troubleshooting with IDS and multi-firewall technologies (Palo Alto, Cisco ASA, Juniper SRX)
MS Exchange and message systems including content filtering technologies and mail Anti-Malware applications
Excellent communications and writing skills in English. High level of experience:
Hands-on demonstrable experience in troubleshooting and resolving complex technical infrastructure and system problems;
In depth knowledge of Cisco routers, switches and firewalls including knowledge of Cisco load balancers and virtual load balancers in NSX
Experience in management of Palo Alto firewall devices via CLI, GUI and Panorama management software.
Firewall configuration and support including traffic flow, dynamic routing & log analysis.
Experience with network taps and network traffic packet brokers
Knowledge level of experience
Development, enhancement and implementation of security settings relating to Microsoft operating systems and associated applications;
Demonstrate interest and passion for Cyber Security and Network Security
Experience with Enterprise Management Systems such as MS WSUS, McAfee ePO
Structured cable deployment, installation and documentation