Sr. Principal Network Administrator
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Well qualified candidates selected for this critical position may be entitled to additional fringe benefits, including Sign-On Bonuses (up to $50k), Enhanced PTO Accrual (up to 40 additional hours per year), and Relocation Assistance Packages (up to $30k). The Network Engineer Lead is responsible to provide the technical leadership to a team of Network Administrators while maintaining smooth operation of LAN/WAN/VPNs. Responsible to provide network architecture design, configuration, and installation of network hardware in support of customer requirements. Maintains technical expertise in all areas of data and voice networks and computer hardware / software interconnection, as well as interfacing, including routers, multiplexers, firewalls, switches, gateways, etc. Proposes solutions to management and to customers. Ensures all communication requirements (based on future needs and current usage) are configured to optimize cost savings. Creates and ensures that appropriate network documentation exists, including operational instructions. Developing and documenting technical processes and procedures as needed. Provides regular monitoring, and network analysis, regarding short and long-range planning for [in-house] systems. May coordinate third-party maintenance for network equipment. Designs networks, or portions of networks, including the selection of hardware and software packages. Exhibiting good communication skills, an energetic approach, and patience with customers and team members.Additional duties:
- Plan, manage and implement complex network designs in support of customer requirements.
- Develop technical solutions to complex problems which require the regular use of ingenuity and creativity.
- Provide technical leadership to a network team in day to day operations and non-recurring support.
- Clarify to the team the project requirements and provide network design solutions, in accordance with Northrop Grumman and industry standards.
- Perform troubleshooting analysis of network infrastructure and associated systems.
- Document network hardware and software technology components.
- Install and configure routers, switches and firewalls. (Cisco/Palo Alto)
- Implement and troubleshoot LAN technologies such as VLANs, trunking (port tagging), spanning-tree and protocols.
- Provide third-level support and troubleshooting of network problems. Periodically provide after-hours and weekend support.
- Implement and troubleshoot WAN technologies such as VRF, EIGRP, BGP, OSPF.
- Install, configure, and troubleshoot encryption/decryption hardware such as Taclanes
- Interface regularly with customers and manage customer installation timelines and deliverables to help facilitate successful deployments.
- Manage timely resolution of all critical and/or complex incidents meeting SLA requirements
- Work is performed without appreciable direction. Exercises considerable latitude in determining technical objectives of assignment. Completed work is reviewed from a relatively long- term perspective, for desired results.
- PhD with 4 years of IT experience; OR a Master's degree with 7 years of IT experience; OR a Bachelor's degree with 9 years of IT experience; OR an Associates degree with 11 years of IT experience; OR a High School Diploma/GED with 13 years of IT experience is required
- Must have at least 2 years of work experience with Cisco hardware including routers, switches, firewalls, hubs, and other related networking equipment
- Must have a professional certification specific to the networking industry (examples: CCNP, CCIE, or equivalent)
- Current expertise with network design, architecture, specifications, and equipment selection
- Must have a DOD 8570 IAT level 2 baseline certification (example: Security+ CE); OR must have the ability to obtain one within 6 months of start date
- Ability to lift equipment weighing up to 40 pounds
- Ability to work after hours, and weekends, as needed and carry a company phone for possible 'after hours' support
- Candidates must have the ability to obtain a DOD Secret level security clearance
- The ideal candidate will have a Bachelor's degree Network Engineering, a CCNP certification, and 10 years of Network design, analysis, and administration of routers, switches, hubs, and firewalls
- Familiar with network management applications, like Splunk, Firepower Management Center (FMC), and/or Cisco ISE
- Exposure to the Risk Management Framework, associated security controls, and STIGs
- Familiar with Windows, Linux, and VMWare configuration and troubleshooting
- Experience with HAIPE/TACLANE and other military COMSEC/CRYPTO equipment and procedures
- Experience with Cisco Unified Communications / VoIP and VTC
- Experience in the use of network analysis tools (i.e. WireShark, SolarWinds, Opnet, etc.) would be nice to have
- Experience with configuring TACLANES
- Experience designing and maintaining LAN & WAN based networks
- Experience with managing routing protocols on large LAN environments
- Previous experience troubleshooting network procedures and best practices; experience with network challenges associated with systems integration, including COTS integration, capacity analysis and system architecture design
- Expertise with IPv4 and IPv6 network design, including IP subnetting and protocols including BGP, OSPF and EIGRP
- Expertise with network device configuration and troubleshooting (ideally, Cisco IOS/IOS-XE)
- Strong understanding of features like GRE, IPSEC, DMVPN, IP quality-of-service, VLANs, and multicast
- Strong understanding network security features like IP access-lists and stateful protocol inspections
- Familiar with network management protocols, like SNMP, SSH, syslog, RADIUS/TACACS
- Ability to operate as part of an engineering team, including knowledge of related disciplines
- Ability to interact with senior customer organizations and personnel.
- Ability to operate with considerable independence, and to self-identify/pursue long-term interests
- Ability to communicate well, including proficiency with MS Office tools, including PowerPoint and Visio
- Demonstrated leadership skills, or previous management of small teams, would be helpful
- Active DOD Secret Clearance would be helpful