Principal Network Engineer
Job Description
Job Description
About the organization
A well-established, community-focused financial institution headquartered in the Bay Area, known for its personalized banking services and long-standing commitment to local communities. The organization offers a full range of financial products including personal and business banking, mortgage lending, and wealth management. It distinguishes itself through relationship-based service, local decision-making, and support for regional economic growth through philanthropic initiatives and community engagement.
The Principal Network Engineer will design, implement, and manage complex network infrastructures. This position requires strong experience with Cisco and Palo Alto firewalls, SD-WAN using Meraki, routing and switching, load balancing (F5), and network design for multi-datacenter environments, including hybrid Azure Cloud solutions. As the Principal Network Engineer, you will play a key role in ensuring the stability, security, and scalability of the network, while adhering to regulatory standards and modern best practices. Roles and Responsibilities Network Architecture & Design:
- Lead the design and architecture of network infrastructure for multi-datacenter and hybrid Azure Cloud environments.
- Ensure high availability, scalability, and resilience of networks across on-premise and cloud environments.
- Design and implement advanced routing and switching solutions using Cisco technologies.
- Configure, manage, and optimize Palo Alto and Cisco firewalls to ensure comprehensive security and compliance. This includes knowledge of the following:
- IPSec VPN
- DMVPN
- Network Address Translation (NAT)
- SSL VPN
- Packet inspection/access rules
- Traditional Cisco Networking
- Catalyst/Nexus switching
- Routing (IOS/IOS-XE)
- EIGRP
- BGP
- Other routing protocol
- Firmware Management
- Develop and implement network security strategies, incorporating firewall rules, access controls, and threat detection.
- Integrate network security tools and solutions to monitor, detect, and mitigate threats across both datacenter and cloud environments.
- SD-WAN with Meraki:
- Design and manage SD-WAN solutions using Cisco Meraki, optimizing performance and security for remote and branch office connectivity.
- Ensure reliable and secure connectivity between multiple datacenters, cloud environments, and remote locations using SD-WAN technologies.
- Design, implement, and manage network infrastructure in Azure Cloud environments, ensuring secure and seamless integration with on-premise systems.
- Implement secure connectivity solutions between Azure, on-premise systems, and other cloud platforms.
- Utilize VPN, ExpressRoute, and other secure networking solutions to maintain high availability and security across hybrid environments.
- Design, configure, and manage F5 load balancers to optimize traffic distribution, performance, and availability.
- Implement global traffic management and local load balancing solutions for highly available systems.
- Automate network disaster recovery processes for datacenter and cloud environments, ensuring rapid failover and business continuity.
- Implement and manage disaster recovery strategies using automation tools and industry best practices.
- Oversee the implementation of robust security measures across the network, including firewalls, encryption, and access control.
- Working knowledge of Cisco specific security access - Cisco Secure ACS (TACACS/TACACS+/AAA) or similar (Cisco Identity Services Engine [ISE])
- Ensure the network infrastructure complies with industry regulations such as PCI, SOX, and GDPR.
- Stay updated on modern security frameworks and proactively implement security improvements.
- Implement and manage advanced network monitoring and troubleshooting tools to ensure network health and performance. Examples of specific required technologies
- Experience with currently used Network Monitoring Technology
- SolarWinds Orion
- Network Performance Manager (NPM) – Monitoring and alerting/reporting
- Network Configuration Manager (NCM) – Configuration/change mgt.
- Network Traffic Analyzer (NTA) – Netflow/traffic flow analysis
- Simple Network Management Protocol (SNMP) version 2 and 3
- WireShark or other packet capture/decode solution (sniffer
- Lead root cause analysis for network performance issues and implement solutions to prevent future occurrences.
- Work closely with security, cloud, and systems teams to ensure cohesive network design and security policies.
- Provide leadership and mentorship to junior network engineers and operational teams.
- Bachelor's degree in Computer Science, Engineering, or a related field (Master’s preferred).
- Minimum of 8-10 years of experience in network engineering, with a focus on Cisco, Palo Alto firewalls, SD-WAN (Meraki), F5, routing, switching, and network design.
- Proven experience in highly regulated environments such as banks, financial institutions, or government sectors.
- Strong experience in Azure Cloud networking is required, including Azure VPN, ExpressRoute, and hybrid connectivity.
- Experience with AWS and GCP networking is preferred.
- Expertise in designing and managing multi-datacenter and hybrid cloud network solutions (Azure required).
- Strong experience in firewall management and network security tools such as Palo Alto, Cisco ASA, or similar technologies.
- Proficiency in routing protocols (e.g., BGP, OSPF) and switching technologies.
- Strong experience with SD-WAN solutions using Cisco Meraki.
- Experience in load balancing solutions, particularly F5 LTM and GTM.
- Strong experience in automating network operations and disaster recovery processes.
- In-depth knowledge of network security protocols and standards, including encryption, VPNs, and access control.
- Excellent problem-solving and communication skills with the ability to work cross-functionally.
- Relevant certifications (e.g., CCNP, CCIE, PCNSE, F5, Meraki, Azure Networking certifications) are highly desirable.
- Hands-on experience with AWS and GCP networking.
- Experience with SDN (Software Defined Networking) and network automation tools.
- Experience in managing multi-location, enterprise-scale environments.
- Familiarity with Agile methodologies and DevOps principles for network operations.
- #FBIndeed
Powered by JazzHR
vf9NY1Czr5
Recommended Jobs
Parent Educator - Part Time
Position Compensation: $ 17.50- $25.00 per hour GENERAL INFORMATION: PACE Education provides high quality early childhood education with case management support services from birth to five years of …
Legal Secretary (Litigation) - San Francisco
ââââL egal Secretary â Litigation Location: San Francisco, CA Salary Range: $65,000 â $75,000 annually About the Role A leading national litigation firm is seeking an experien…
Dishwasher
Ready to Join a winning team? At Carefield Castro Valley, we value individuality and strong team connectivity. Our team members are compassionate, dedicated, and committed to providing high-quality …
Scientist, Crop Resiliency (berries)
About the Opportunity The Scientist, Crop Resiliency (berries) will lead and execute research trials to address current environmental challenges faced by cultivated berries, with a focus on obtaini…
Full-Stack Developer
Job Opening: Full-Stack Developer – GenAI & LLM Applications Location: South San Francisco (SSF) Start Date: Immediate About the Role We are seeking a hands-on Full-Stack Developer with Gene…
Accounts Receivable Collector
Wilson Elser is a leading defense litigation law firm with more than 1,250 attorneys in 43 offices throughout the United States. Founded in 1978, we rank among the top 100 law firms identified by Th…
Pediatric Speech Language Pathology Assistant (SLPA)
Join a Team That Supports, Empowers, and Invests in You! Pediatric Speech Language Pathology Assistant Position Location: Martinez, CA and across Northern California School Year: 2025-2026…
Registered Nurse, CF-Mule Creek State Prison, Ione
Job Description and Duties Effective July 1, 2025, in accordance with the applicable Memorandum of Understanding, the Personal Leave Program 2025 (PLP 2025) was implemented. PLP 2025 requires each…
Senior Director of Technical Program Management - Remote
PayNearMe develops technology to facilitate the end-to-end customer payment experience, making it easy for businesses to accept, disburse and manage payments. Our modern and reliable platform low…