Network Engineer

Office Ally

• $100K — $120K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, IT, Network Engineering, or equivalent experience
  • 3+ years of hands-on network engineering experience in an enterprise or multi-site setup
  • Proficient in Palo Alto Networks firewalls and PAN-OS, including policy management and VPN
  • Experience with F5 BIG-IP LTM for load balancing and traffic management
  • Solid understanding of DNS fundamentals and hybrid DNS troubleshooting
  • Hands-on NGINX experience for reverse proxying and TLS termination
  • Experience with Ubiquiti UniFi environments and core networking protocols

Responsibilities

  • Design and secure enterprise network infrastructure with high availability
  • Administer Palo Alto firewalls and manage centralized policy configurations
  • Optimize application performance through F5 BIG-IP load balancing and SSL management
  • Deploy and support Ubiquiti networking solutions across office locations
  • Implement network security practices and support compliance initiatives
  • Monitor network performance and maintain documentation for infrastructure
  • Drive continuous improvement initiatives related to network operations

Benefits

  • Medical, dental, and vision coverage
  • 401(k) with company match
  • Paid time off and holidays
  • Performance-based bonuses
  • Support for travel-related expenses
Full Job Description
About the Role

The Network Engineer is responsible for designing, managing, and securing our enterprise network infrastructure. This is a hands-on role serving as the primary technical owner of our network stack spanning Palo Alto firewalls, F5 load balancers, DNS, NGINX reverse proxies, and Ubiquiti-based office networking, ensuring high availability, performance, and security across our data center, cloud, and office environments.

This role works closely with cloud engineering, security, and application teams to deliver a reliable, well-segmented network fabric that supports our business operations and compliance obligations including SOC 2 and HIPAA.

What You'll Do

Firewall & Perimeter Security
  • Administer and maintain Palo Alto Networks firewalls (PA-Series, VM-Series) and Panorama for centralized policy management
  • Design and enforce security policy rulesets, NAT policies, application-based controls, and URL filtering using PAN-OS
  • Manage GlobalProtect VPN for remote access, including gateway configuration, split tunneling, and MFA integration
  • Configure and maintain IPsec VPN tunnels for site-to-site connectivity with data centers and cloud environments
  • Operate and tune Palo Alto HA pairs, monitor threat logs, and respond to firewall-identified incidents
  • Stay current on PAN-OS releases, evaluate CVEs, and manage firmware upgrade cycles in coordination with the security team

Load Balancing & Traffic Management
  • Administer F5 BIG-IP LTM for application load balancing, SSL/TLS offload, and traffic steering across server pools
  • Configure and maintain virtual servers, pool members, health monitors, iRules, and persistence profiles
  • Manage SSL certificate lifecycle on F5, including certificate installation, renewal, and cipher suite hardening
  • Collaborate with application teams to optimize traffic policies, implement session persistence, and troubleshoot application delivery issues

Office Networking
  • Deploy, configure, and manage Ubiquiti UniFi switching, wireless access points, and security gateways across office locations
  • Administer UniFi Network Application / UniFi OS for centralized device management, VLAN segmentation, and SSID configuration
  • Design and maintain office network architecture including inter-VLAN routing, QoS policies, and guest network isolation
  • Support office expansions, equipment refreshes, and new site bring-ups including cabling coordination and wireless site surveys
  • Troubleshoot connectivity, throughput, and roaming issues across distributed office environments

Network Security
  • Implement and maintain network segmentation strategies using VLANs, micro-segmentation, and firewall zones
  • Support zero-trust network access (ZTNA) initiatives and enforce least-privilege access at the network layer
  • Manage network access control (NAC) and 802.1X authentication for wired and wireless endpoints
  • Conduct periodic network security reviews, firewall rule audits, and access path analysis
  • Support SOC 2 and HIPAA compliance obligations through network-level controls, evidence collection, and audit support
  • Collaborate with the security team on threat detection, network traffic analysis, and incident containment

Monitoring, Documentation & Operations
  • Implement and maintain network monitoring using SNMP, NetFlow, syslog, and dashboarding tools
  • Maintain accurate and up-to-date network topology diagrams, IP address management (IPAM), and runbooks
  • Drive continuous improvement initiatives including capacity planning, redundancy reviews,
    and technology refresh cycles

What You'll Need
  • Bachelor's degree in Computer Science, Information Technology, Network Engineering, or a related field; equivalent experience or relevant industry certifications will also be considered
  • 3+ years of hands-on network engineering experience in an enterprise or multi-site environment
  • Proficiency with Palo Alto Networks firewalls and PAN-OS including policy management, NAT, VPN, and HA configuration Network Engineer
  • Experience administering F5 BIG-IP LTM including virtual servers, iRules, SSL offload, and health monitors
  • Solid DNS fundamentals including zone management, split-horizon, record types, and hybrid DNS troubleshooting
  • Hands-on NGINX experience for reverse proxying, TLS termination, and upstream load balancing
  • Experience deploying and managing Ubiquiti UniFi environments across multiple sites
  • Thorough understanding of core networking protocols including TCP/IP, BGP, OSPF, VLAN/802.1Q, STP, and LACP
  • Familiarity with network security principles including segmentation, ACLs, NAC, 802.1X, and zero-trust concepts
  • Experience with packet capture and analysis tools (Wireshark, tcpdump) for troubleshooting
  • Ability to read and write basic automation scripts (Python, Bash) for network tasks

Nice to Have
  • Healthcare, SaaS, or regulated-industry experience
  • Palo Alto Networks certifications (PCNSA, PCNSE)
  • F5 certifications (F5-CA, F5 201/301)
  • CCNA, CCNP, or equivalent vendor-neutral networking certifications
  • Exposure to network automation and IaC tooling including Ansible and Terraform (network providers)
  • Experience with Azure networking including VNets, VPN Gateway, ExpressRoute, Azure Firewall, and Private Endpoints
  • Background in regulated environments (SOC 2, HIPAA, PCI-DSS) and evidence-based compliance support
  • Experience with SIEM integration for network log forwarding and correlation (Microsoft Sentinel, Rapid7)

Travel Requirements
  • This role requires up to 5% travel, which may include client meetings, team gatherings, or company events
  • Travel will typically be scheduled in advance and supported by the company


Pay Transparency

Office Ally is committed to fair and equitable compensation practices in alignment with pay transparency laws. Compensation for this position may vary based on individual skills, experience, and location. In addition to base pay, employees may be eligible for performance-based bonuses and a comprehensive benefits package, including medical, dental, and vision coverage, 401(k) with company match, paid time off, and other benefits. Actual compensation will be determined considering the candidate's qualifications, relevant experience, and internal equity.

Office Ally Pay Transparency

$100,000-$120,000 USD

Similar Jobs

More Jobs at Office Ally

More Information Technology Jobs

Find similar Network Engineer jobs: