Network Security Engineer
Publication date: October 25, 2024
Together we make a difference. At Luminus, together we are building a CO2-neutral energy future, reconciling preservation of the planet, human well-being and economic development, through electricity and innovative solutions and services.
What will your mission be ?
- Design of network related projects
- Daily operational management of the IT Infrastructure
Which tasks will you be working on ?
- Keeping the IT infrastructure (such as WAN, LAN, WLAN, offices, DC, VPN, DNS, FW, ... up and running, as per the service level agreements
- Managing support tickets (second and third line)
- Ensuring that the standards & governance principles of the infrastructure are followed
- Participating in the Change Management process
- Ensuring that support documentation is kept up to date
- Proposing improvements on network and security level
- Validating the infrastructure and network deliverables in projects, as per the standards
- Ensuring version management is applied
- Supporting first line with inquiries
- Providing second line support
- Ensuring that the correct administrative process is applied when using follow up tools
- Managing third line support (coordinating and working closely with on/offshore third parties)
- Proposing solutions (HLD+LLD to meet business requirements
- Deploying solutions in the production network in a controlled way
- Ensuring transition without impact to operations
- Contributing to the writing of RFI/RFP’s
- FW/Network monitoring
- Creating documentation (migration plans, test plans, troubleshooting reports) in the context of changes/incidents
Skills & Knowledge
- The ideal candidate has a bachelor's or master's degree in a technology related field (e.g. Engineering, Computer Software, etc.) or has gained equivalent workexperience
- 7 years of experience in multiple IT areas of which 5 in NW/NWSEC
- Preferably able to prove an active experience in the following areas:
- MPLS technology (IGP/LDP/MP-BGP, L2VPN, L3VPN)
- Networks: LAN/MAN/WAN technologies, TCP/IP, Ethernet, and architectures (Layered model, Spanning-tree, multicast, QOS, VRF, HSRP, …)
- ROUTING (static, BGP, OSPF, redistribution) - thorough BGP knowledge is a must
- End-to-end QOS for business applications and RT streams (voice, video) and network optimization tools
- Tunnelling GRE, IPSEC
- DC LAN technology (Spanning-tree, Multi-Chassis EtherChannel, VSS, Thrill/Fabric Path, DC interconnect technologies (VPLS, OTV, ...)
- FW (Checkpoint, Palo Alto, Cisco ASA Firepower, experience in segregation networks (DMZ, ICS perimeters)
- Proxy/Zscaler/ZPA
- Radius/NAC/SSLVPN
- DNS
- Reverse Proxy/Load balancing
- Good troubleshooting skills
- WLAN centralized management
- AD with integrated Radius and CA
- Citrix/VPN
- Experience with Splunk, Skybox, Panorama, Cisco ISE, Infoblox, PRTG, Visio
- Fundamental understanding of IT processes and operational procedures
- AWS network and security components
- Experience with SDWAN/SASE is considered as an asset
- You must possess good interpersonal skills and strong communication skills
- You have abilities in a mediator role and able to ask the correct questions to understand both sides correctly and get to an agreement
- You can work in an autonomous way and are a good team player
- You can act as a Network champion and educate juniors in the team
- You are business proficient in English and have good knowledge of French. Dutch is an asset