LAN

Network Engineer – Security Clearance Required - South West London - Full-Time, Permanent - £50,000 - £55,000

Network Engineer – Security Clearance Required
South West London
Full-Time, Permanent
£50,000 - £55,000

 

**Please note that due to the level of Security clearance required for this role, all candidates must be either; a UK or Irish National, Commonwealth Citizen or British protected person or a EEA (European Economic Area) citizen who has lived in the UK for a period of more than 5 years, without leaving for a period of more than 6 months. Candidates who do not meet these requirements will not qualify for clearance.**

 

About the role

The teams support in excess of 1,000 computers and 1,800 users across 25 residences, 7 days a week. The Network Team plays an integral part in this with the design, implementation and management of all IT infrastructure including LAN, WAN, wireless, telephony, network perimeter and network security. The Network Team supports multiple unique and prestige locations and organisations across the UK. In addition, the Network Team are responsible for BAU activities, 2nd and 3rd line fault finding, hardware procurement, firmware management and system security.

 

Role responsibilities

The Network Engineer reports to the Network Manager and is responsible for supporting the maintenance and evolution of the enterprise network and voice infrastructure.

 

The focus for the post holder is the administration of The network infrastructure, including: network operation, monitoring, design, expansion of the network, troubleshooting, fault fixing and all aspects of network security both internal and external.

 

The post holder will work closely with the rest of the Digital Services Team, to ensure the highest degree of functionality and reliability to all enterprise services. The post-holder will be expected to work with and supervise 3rd party contractors and suppliers and to liaise with other government departments in matters of security.

 

The role demands continued development of the IT systems to provide all computer users with the necessary access, independent of location.

 

Accountabilities

1.      Network Security

·        IT Health Check: Implement network security recommendations from annual IT health check

·        Implement and maintain network monitoring and intrusion detection solutions, including the management of Next-Generation Firewalls (NGFWs).

·        Work closely with the cyber team, ensuring that firewalls are managed and updated to protect the confidentiality and integrity of data.

 

2.      Network Infrastructure

·        LAN (Local Area Network)

o   Plan upgrades and design of the LAN (including installation of new hardware, commissioning new fibre optic links, and design considerations for future expansion).

o   Ensure that software and firmware is regularly updated on network devices.

·        WAN (Wide Area Network) and VPN (Virtual Private Network)

o   Support and monitoring of WAN and VPN connectivity.

o   Design and implementation of new remote installations.

o   Ensure quality of service to control network traffic to remote residences.

·        NAC (Network Access Control)

o   Enforce network security through policy based NAC.

o   Develop NAC usage to support VLAN assignment of network devices.

·        Cabling work

o   Specifying and prioritising new cabling work.

o   On-going work to build resilience into the network infrastructure.

 

 

·        Wi-Fi and IPTV networks

o   Installation, maintenance and support of stand-alone and wireless networks. Ensure firewalls are correctly configured and monitored.

o   Configure, operate and diagnose faults in the IPTV system.

·        Commercial and Retail Systems

o   Monitor and maintain 3rd party networks, Ticketing and Till network.

 

3.      VoIP Platform and Telephony Services

·        Maintaining a modern, secure and reliable VOIP telecoms service.

·        Escalating service / quality issues to telecoms suppliers and working with their engineers to deploy new services and resolve faults.

·        Tracing faults within the telecoms infrastructure.

·        End user training in telecoms use.

·        Configuring the Mitel VOIP platform with dial patterns, calling plans and user settings        .

·        Installing new VOIP hardware for users, including media gateway and streamline services.

·        The engineer will also have input into the telecoms system design and strategy, where appropriate and support continuous improvement of the service.

 

4.      Systems Maintenance and Out of Hours working

·        The role requires carrying out regular system maintenance and upgrades which can only be done outside of normal hours.

·        Fixing of network faults and providing technical leadership. The post holder will identify and eliminate single points of failure everywhere it is cost-effective to do so.

·        Maximises network performance through monitoring, troubleshooting problems and outages, planning and scheduling upgrades.

 

5.      Ensure the High Availability of Back Office Systems

·        Work closely with the other members of the IT Operations Team to ensure a high availability of all network resources and back office systems.

·        Monitor network availability and produce monthly reports

 

6.      Technical Training and Documentation

·        Create and maintain appropriate network documentation and diagrams

·        Maintain appropriate management and technical qualifications

·        Perform training and provide technical guidance to other Network Team members, supporting their development.

 

7.      Service Delivery

·        Produce and deliver service improvement plans

·        Deliver Network services within defined SLA, OLA and KPI’s

·        Manage escalated Incidents and Problems in line with ITIL best practice

8.      IT Business Continuity

·        Participate in test exercises of the IT Business Continuity Plan.

·        Ensure adequate redundancy and network backup measures are in place.

 

Role Requirements

Essential

1       Cisco CCNP Enterprise or equivalent qualification

2       Extensive network security and design experience

3       Experience working with VPNs and Network Security

4       Proven experience of routing and switching on Cisco devices

5       Experience with Next Generation Firewalls, ideally Palo Alto

6       Excellent switching and routing experience

7       WAN / LAN Routing experience

8       Experience working with wireless networks

9       Substantial experience in a telecoms engineering role including hands on experience of a VoIP UC Platform, mixed analogue / IP environment.

10     Excellent communication skills at all levels

11     Experience in managing 3rd party suppliers

12     Experienced in planning projects and prioritisation of work

13     Ability to manage a varied workload with conflicting priorities

14     Ability to build and maintain effective working relationships with a variety of internal and external stakeholders

15     Possess a supportive and flexible approach to work with a team focused attitude

 

Desirable

1       Network bandwidth management experience and Quality of Service

2       Experience with storage networks and disaster recovery solutions

3       Familiarity with thin client environments

4       Network Access Control experience

5       Windows Server 2008 R2 & 2012 R2 experience

6       Experience with VMWare ESX Server

7       3rd line support experience

8             PRINCE 2 and ITIL qualified