Job Description
Location: Richmond, VA – Hybrid (3–4 days onsite during the first 6 months; statewide VA travel required)
\n
\n
Our client is seeking an experienced Network Engineer to design, implement, secure, and optimize enterprise network infrastructure supporting a large, multi-site environment across Virginia.
\n
This position requires strong hands-on expertise in Cisco routing and switching, Cisco SD-WAN, WAN/LAN infrastructure, network security, and Layer 2/Layer 3 networking protocols. The Network Engineer will support architecture, implementation, troubleshooting, monitoring, security, and optimization across a distributed enterprise network.
\n
\n
The ideal candidate brings deep Cisco networking experience, hands-on knowledge of IOS/NX-OS, vManage, vSmart, vEdge/IOS-XE SD-WAN, Cisco ISE, firewalls, VPNs, and enterprise routing protocols. This individual will also help drive network automation, Zero Trust initiatives, infrastructure modernization, and technical best practices.
\n
\n
Candidates must hold an active CCNA certification and be able to provide their Cisco certification ID and date received for verification.
\n
\n
Responsibilities:
\n
- \n
- Design, implement, administer, and optimize enterprise LAN/WAN infrastructure across multiple locations.
- Configure and support Cisco IOS/NX-OS, Catalyst, and Nexus routing and switching environments.
- Design and troubleshoot Layer 2 and Layer 3 technologies, including VLANs, STP, EtherChannel, OSPF, BGP, EIGRP, MPLS, VRF, and QoS.
- Support Cisco SD-WAN architecture and operations using vManage, vSmart, vEdge/IOS-XE SD-WAN, application-aware routing, centralized policies, segmentation, templates, and transport redundancy.
- Monitor and troubleshoot network connectivity, availability, latency, routing, and performance across distributed locations.
- Support Cisco ISE and Network Access Control (NAC), including 802.1X, MAB, profiling, TrustSec/SGT, posture, and access policies.
- Configure and support network security technologies, including Cisco Secure Firewall, NAT, IPS, VPN, and network segmentation.
- Support Zero Trust and identity-aware security initiatives using technologies such as Duo MFA and Cloudflare Zero Trust.
- Configure and support Cisco Meraki networking technologies and utilize Meraki Dashboard APIs for provisioning, automation, and reporting.
- Integrate enterprise networking with Azure and AWS cloud environments, including VPN, ExpressRoute, Direct Connect, and hybrid connectivity.
- Develop network automation and configuration-management solutions using Python, PowerShell, Ansible, REST APIs, and Git-based workflows.
- Automate configuration validation, compliance checks, telemetry, device onboarding, reporting, and large-scale network changes.
- Utilize tools such as ThousandEyes, SolarWinds/PRTG, NetFlow, and Splunk to monitor network health, performance, and availability.
- Perform advanced troubleshooting and root-cause analysis for complex network incidents and develop recommendations for long-term remediation.
- Support vulnerability management and remediation using tools such as Qualys and Tenable.
- Participate in change management and CAB processes, including implementation planning, documentation, testing, and rollback procedures.
- Provide technical leadership and guidance during statewide site deployments, network migrations, circuit turn-ups, infrastructure upgrades, and emergency repairs.
- Coordinate with telecommunications carriers and technology vendors for provisioning and troubleshooting.
- Collaborate with cybersecurity, cloud, server/storage, Active Directory/PKI, and application teams on enterprise infrastructure initiatives.
- Mentor junior network staff and promote network engineering, security, and documentation best practices.
- Travel to locations throughout Virginia for installations, troubleshooting, upgrades, and other network projects.
- Participate in on-call and after-hours support as required.
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
Required Skills/Education:
\n
- \n
- Active Cisco CCNA certification required. Candidates must be able to provide their Cisco certification ID and certification date for verification.
- 5+ years of Network/WAN administration or engineering experience within multi-site enterprise environments; 7+ years strongly preferred.
- Strong hands-on experience with Cisco routing and switching, including IOS/NX-OS, Catalyst, and/or Nexus platforms.
- Hands-on experience with Cisco SD-WAN, including vManage, vSmart, vEdge/IOS-XE SD-WAN, policies, templates, segmentation, and troubleshooting.
- Strong knowledge of Layer 2/Layer 3 networking technologies and protocols, including VLANs, STP, EtherChannel, OSPF, BGP, and EIGRP.
- Experience designing, supporting, and troubleshooting enterprise LAN/WAN infrastructure across distributed locations.
- Strong understanding of network security, including Cisco ISE, NAC, firewalls, VPNs, segmentation, and secure access.
- Experience with or exposure to Duo MFA, Zero Trust, and identity-aware network security.
- Experience with enterprise network monitoring and troubleshooting tools.
- Strong analytical and root-cause troubleshooting skills.
- Strong documentation, communication, and cross-functional collaboration skills.
- Ability to independently manage complex technical issues while supporting a distributed enterprise environment.
- Ability and willingness to travel throughout Virginia for onsite installations, troubleshooting, migrations, and projects.
- Ability to participate in on-call and after-hours support when required.
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
Preferred Qualifications:
\n
- \n
- CCNP certification or actively working toward CCNP.
- Bachelor’s degree in Information Technology, Computer Science, Engineering, or a related technical field.
- 10+ years of progressive enterprise network engineering experience.
- Experience with Cisco Meraki and Meraki APIs.
- Experience with network automation using Python, PowerShell, Bash, Ansible, REST APIs, and Git.
- Experience with ThousandEyes, SolarWinds, PRTG, Splunk, NetFlow, Qualys, or Tenable.
- Experience designing network connectivity within Microsoft Azure and/or AWS environments.
- Experience with data center networking technologies such as Cisco ACI, VXLAN, or Software-Defined Access (SDA).
- Experience implementing Zero Trust architecture and Network Access Control (NAC) best practices.
- Familiarity with NIST CSF, NIST SP 800-53, or other security and compliance frameworks.
- Experience mentoring junior engineers or providing technical leadership for multi-site network infrastructure projects.
- Public-sector or similarly large, highly regulated enterprise environment experience is a plus.
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
About Seneca Resources:
\n
At Seneca Resources, we are more than just a staffing and consulting firm, we are a trusted career partner. With offices across the U.S. and clients ranging from Fortune 500 companies to government organizations, we provide opportunities that help professionals grow their careers while making an impact. When you work with Seneca, you’re choosing a company that invests in your success, celebrates your achievements, and connects you to meaningful work with leading organizations nationwide. We take the time to understand your goals and match you with roles that align with your skills and career path. Our consultants and contractors enjoy competitive pay, comprehensive health, dental, and vision coverage, 401(k) retirement plans, and the support of a dedicated team who will advocate for you every step of the way. Seneca Resources is proud to be an Equal Opportunity Employer, committed to fostering a diverse and inclusive workplace where all qualified individuals are encouraged to apply.
