The main purpose of this position is to engineer, deliver, architect, and support solutions to address business and technical requirements, leveraging standard principles and patterns that follow Eaton's security and networking standards. This position is focused on building, delivering, maintaining, and updating all aspects of site-based infrastructure security next generation firewalls, IT/OT segmentation, traditional networking services (routing, switching, wireless), F5 load balancers, DNS, automation technologies (Ansible/Terraform/Python), and team processes. This position is senior level on a team in excess of thirteen global contributors and will be called upon as a subject matter expert in security related network technologies.
• Provide high-level input as a subject matter expert and leader to security and network design principles, engineering/architecture, delivery, support, and life cycle management.
• Lead projects/initiatives and work with resources across multiple IT and business functions to deliver technology, platform, and system solutions to meet customer requirements, providing solution options, making recommendations, highlighting operational or security risks, as well as providing alternative solutions.
• Operate with little supervision in a complex environment that requires the contributor to often look beyond their direct responsibilities, and incorporate other IT and business groups into solutions.
• Contribute to the development of business or functional strategy, incorporating the Team’s vision into multi-year plans.
• Perform monitoring and lifecycle functions on platforms, networks, and systems to ensure required performance, availability, and capacity.
• Identify process improvements to drive overall team and IT efficiency, while delighting our customers.
• Work with Business Relationship Managers and various lines of business to deploy and secure network aware solutions.
• Configure, deploy, and maintain hardware-based and software-based security tools that support network and endpoint posture.
• Continually determine process, configuration, and deployment efficiencies with automation technologies including Ansible, Terraform, Python, Powershell, Perl, Security/Network Management systems, and homegrown solutions.
• Tune and optimize existing systems to minimize external threats and meet internal needs, balancing security, operations, engineering, and delivery.
• Collaborate with Cyber Security stakeholders to improve prevention, detection and response.
• Support network and security related activities for acquisitions/divestitures.
• Provide mentoring and growth opportunities to other team members and partners, contributing to overall growth and team capabilities.
• Bachelor's degree from an accredited institution in Information Systems or Cyber Security, advanced degree if preferred. 7-10 years of professional experience. Network and Security certifications preferred (Examples include applicable security certifications, CCIE/CCNP, Cloud-based certifications, F5)
Skills:• Excellent proficiency with the English language (written and verbal) – English is the standard global language of Eaton. The candidate must be able to communicate effectively with other English speakers in various world-wide locations.
• Agile mindset focusing on strong analytical and problem-solving skills, multi-tasking, time-management, and team-oriented initiatives.
• Firewall configuration, deployment and management (Checkpoint NGFW, Legacy Juniper SSG).
• Configuring Virtual Private Networks and DMZ segments (GRE, IPSEC, etc.)
• Expert knowledge of Layer 3 routed protocols including IPv4 and IPv6, as well as Layer 3 routing protocols including BGP, OSPF, static routing.
• Expert knowledge of Layer 4 transport layer protocols including TCP/UDP, port-filtering, etc.
• Cisco switching platforms including Catalyst 3600/3800/9200/9300 (IOS and IOS-XE), Nexus 9Ks (NX-OS and ACI), and associated network switching technologies.
• Cisco wireless platforms including various Wireless LAN controllers and Access Point models, and authentication/authorization technologies (Cisco ISE).
• Network Management/Monitoring Systems – Checkpoint Smartconsole, Algosec, Cisco DNA Center, Cisco Prime, IP Address Mgmt systems, SolarWinds, Dynatrace, etc.
• Engineering, management, and support of Eaton’s public cloud solutions (PaaS, SaaS, IaaS) working across multiple different providers (Azure, OCI, AWS, Alibaba, GCP).
• Remote computing and Intrusion Detection / Prevention systems.
• Familiarity with Linux/Unix operating systems via CLI.
• Domain Name System (DNS) and Security Proxy administration.
• Additional recommended specialized skills: Check Point GAIA firewalls (DMZ, VPN, IPS, PBR, VSX), Zscaler ZIA and ZPA, F5 Big IP platform (DNS, Load balancing, WAF, iRules), JIRA, Service Now, Cisco ISE (RADIUS & TACACS), WAN technologies and SD-WAN concepts, Certificate Management.