CISCO NETWORK ENGINEER -
LOCATION:Preferred in/near Beaverton-Portland ORJOB OVERVIEW:The Cisco Network Engineer plays a critical role in designing, implementing, managing, and continuously optimizing the enterprise network infrastructure built on Cisco hardware and software platforms. This individual is accountable for the performance, reliability, availability, and security of complex LAN/WAN environments that underpin all business operations. Working cross-functionally with IT, cybersecurity, and operations teams, the engineer serves as a trusted technical advisor ensuring the network aligns with and actively supports evolving business objectives. This role sits at the strategic intersection of infrastructure operations and network architecture, requiring both deep hands-on expertise and the ability to plan for long-term scalability and resilience.
KEY RESPONSIBILITIES: - Design, deploy, configure, and maintain Cisco routers, switches, firewalls, and wireless infrastructure across enterprise environments.
- Implement and manage dynamic routing protocols including OSPF, EIGRP, BGP, and MPLS to ensure optimal path selection and network convergence.
- Configure and manage Cisco SD-WAN (Viptela / Catalyst SD-WAN) and SD-Access solutions to support distributed branch and campus deployments.
- Plan, implement, and maintain VLANs, Spanning Tree Protocol (STP/RSTP), VTP, QoS policies, and network segmentation strategies.
- Manage Cisco ASA and Firepower (FTD) firewalls and administer Cisco Client for network access control, 802.1X enforcement, and policy-based segmentation.
- Monitor network performance, capacity, and availability using tools such as Cisco DNA Center, SolarWinds, PRTG, NetFlow, or equivalent enterprise platforms.
- Perform thorough root-cause analysis, troubleshoot complex Layer 2 and Layer 3 issues, and resolve network outages within defined SLA parameters.
- Implement and maintain IPsec VPN, DMVPN, and remote access VPN solutions to support secure connectivity for branch offices and remote users.
- Develop, maintain, and update network architecture diagrams, runbooks, standard operating procedures, and change management documentation.
- Collaborate actively with security teams to enforce network security policies, access control lists (ACLs), firewall rule sets, and micro-segmentation strategies.
- Support hybrid and cloud connectivity requirements including AWS Direct Connect, Microsoft Azure ExpressRoute, and GCP Interconnect integrations.
- Automate repetitive network tasks and drive operational efficiency using Python scripting, Ansible playbooks, or Cisco NSO.
- Participate in 24/7 on-call rotation to provide timely response and resolution for critical network incidents and escalations.
- Continuously evaluate and recommend new Cisco technologies, platform upgrades, and industry best practices to enhance network performance, security posture, and business resilience.
REQUIRED QUALIFICATIONS: - Bachelor's degree in Computer Science, Information Technology, Network Engineering, or a related field - or equivalent professional work experience.
- 3-5+ years of hands-on, enterprise-level network engineering experience with Cisco technologies in production environments.
- Active Cisco CCNP certification (Enterprise, Data Center, or Security track) required; CCIE preferred.
- Deep expertise in Cisco operating systems: IOS, IOS-XE, IOS-XR, and NX-OS.
- Strong proficiency in routing protocols including BGP, OSPF, and EIGRP in large-scale network environments.
- Proven hands-on experience with Cisco Catalyst, Nexus, and ASR series hardware platforms.
- Proficiency in supporting F5 configuration while upgrading Cisco.
- Solid understanding of network security principles including firewall policy management, network access control (NAC), and zero-trust segmentation.
- Demonstrated experience with network monitoring, capacity planning, and performance tuning methodologies.
- Excellent analytical, troubleshooting, and technical documentation skills with a structured problem-solving approach.
- Ability to translate and communicate complex technical concepts clearly and effectively to non-technical stakeholders and leadership.
PREFERRED QUALIFICATIONS: - Cisco CCIE certification (Enterprise Infrastructure, Data Center, or Security track) highly valued.
- Hands-on experience with Cisco SD-WAN (Viptela), Cisco DNA Center, and Catalyst Center platforms.
- Familiarity with cloud networking services: AWS Transit Gateway, Azure Virtual WAN, and GCP VPC architecture.
- Network automation experience using Python scripting, Ansible, Terraform, or Cisco NSO for infrastructure-as-code workflows.
- Knowledge of ITIL framework, change advisory board (CAB) processes, and enterprise change management procedures.
- Experience working in highly regulated industries such as financial services, healthcare, or federal government.
- Active or eligible security clearance (applicable for government and defense contractor positions).
TECHNICAL SKILLS SUMMARY: CISCO PLATFORMSCisco Platforms Catalyst 9000 Series, Nexus 7K/9K, ASR 1000/9000, ISR 4000, Firepower/FTD, ASA, Meraki, Cisco Client, DNA Center / Catalyst CenterCatalyst 9000 Series, Nexus 7K/9K, ASR 1000/9000, ISR 4000, Firepower/FTD, ASA, Meraki, Cisco Client, DNA Center / Catalyst Center Protocols & Technologies BGP, OSPF, EIGRP, MPLS, DMVPN, IPsec VPN, STP/RSTP, VLANs, QoS, VXLAN, EVPN SD-WAN / SDN Cisco Viptela SD-WAN, SD-Access, Cisco ACI (preferred) Security Cisco Firepower, ASA, Client, Cisco Umbrella, TACACS+/RADIUS, ACLs, 802.1X Cloud Networking AWS Direct Connect, Azure ExpressRoute, GCP Interconnect Automation & Tools Python, Ansible, NETCONF/RESTCONF, Cisco NSO, Git Monitoring & Diagnostics Cisco DNA Center, SolarWinds, PRTG, Wireshark, NetFlow
CERTIFICATIONS:Cisco CCNA (200-301)
Level: Associate
Status: Minimum Baseline
Cisco CCNP
Level: Enterprise Professional
Status: Required
Cisco CCNP
Level: Security Professional
Status: Preferred
Cisco CCIE
Level: Enterprise Infrastructure Expert
Status: Highly Preferred
CompTIA Network+
Level: Foundational
Status: Acceptable Alternative to CCNA
AWS / Azure Networking Specialty Level: Cloud
Status: Preferred