Network Engineer
About the Role
The Network Engineer is responsible for designing, managing, and securing our enterprise network infrastructure. This is a hands-on role serving as the primary technical owner of our network stack spanning Palo Alto firewalls, F5 load balancers, DNS, NGINX reverse proxies, and Ubiquiti-based office networking, ensuring high availability, performance, and security across our data center, cloud, and office environments.
This role works closely with cloud engineering, security, and application teams to deliver a reliable, well-segmented network fabric that supports our business operations and compliance obligations including SOC 2 and HIPAA.
What You’ll Do
Firewall & Perimeter Security
Administer and maintain Palo Alto Networks firewalls (PA-Series, VM-Series) and Panorama for centralized policy management
Design and enforce security policy rulesets, NAT policies, application-based controls, and URL filtering using PAN-OS
Manage GlobalProtect VPN for remote access, including gateway configuration, split tunneling, and MFA integration
Configure and maintain IPsec VPN tunnels for site-to-site connectivity with data centers and cloud environments
Operate and tune Palo Alto HA pairs, monitor threat logs, and respond to firewall-identified incidents
Stay current on PAN-OS releases, evaluate CVEs, and manage firmware upgrade cycles in coordination with the security team
Load Balancing & Traffic Management
Administer F5 BIG-IP LTM for application load balancing, SSL/TLS offload, and traffic steering across server pools
Configure and maintain virtual servers, pool members, health monitors, iRules, and persistence profiles
Manage SSL certificate lifecycle on F5, including certificate installation, renewal, and cipher suite hardening
Collaborate with application teams to optimize traffic policies, implement session persistence, and troubleshoot application delivery issues
Office Networking
Deploy, configure, and manage Ubiquiti UniFi switching, wireless access points, and security gateways across office locations
Administer UniFi Network Application / UniFi OS for centralized device management, VLAN segmentation, and SSID configuration
Design and maintain office network architecture including inter-VLAN routing, QoS policies, and guest network isolation
Support office expansions, equipment refreshes, and new site bring-ups including cabling coordination and wireless site surveys
Troubleshoot connectivity, throughput, and roaming issues across distributed office environments
Network Security
Implement and maintain network segmentation strategies using VLANs, micro-segmentation, and firewall zones
Support zero-trust network access (ZTNA) initiatives and enforce least-privilege access at the network layer
Manage network access control (NAC) and 802.1X authentication for wired and wireless endpoints
Conduct periodic network security reviews, firewall rule audits, and access path analysis
Support SOC 2 and HIPAA compliance obligations through network-level controls, evidence collection, and audit support
Collaborate with the security team on threat detection, network traffic analysis, and incident containment
Monitoring, Documentation & Operations
Implement and maintain network monitoring using SNMP, NetFlow, syslog, and dashboarding tools
Maintain accurate and up-to-date network topology diagrams, IP address management (IPAM), and runbooks
Drive continuous improvement initiatives including capacity planning, redundancy reviews,
and technology refresh cycles
What You’ll Need
Bachelor's degree in Computer Science, Information Technology, Network Engineering, or a related field; equivalent experience or relevant industry certifications will also be considered
3+ years of hands-on network engineering experience in an enterprise or multi-site environment
Proficiency with Palo Alto Networks firewalls and PAN-OS including policy management, NAT, VPN, and HA configuration Network Engineer
Experience administering F5 BIG-IP LTM including virtual servers, iRules, SSL offload, and health monitors
Solid DNS fundamentals including zone management, split-horizon, record types, and hybrid DNS troubleshooting
Hands-on NGINX experience for reverse proxying, TLS termination, and upstream load balancing
Experience deploying and managing Ubiquiti UniFi environments across multiple sites
Thorough understanding of core networking protocols including TCP/IP, BGP, OSPF, VLAN/802.1Q, STP, and LACP
Familiarity with network security principles including segmentation, ACLs, NAC, 802.1X, and zero-trust concepts
Experience with packet capture and analysis tools (Wireshark, tcpdump) for troubleshooting
Ability to read and write basic automation scripts (Python, Bash) for network tasks
Nice to Have
Healthcare, SaaS, or regulated-industry experience
Palo Alto Networks certifications (PCNSA, PCNSE)
F5 certifications (F5-CA, F5 201/301)
CCNA, CCNP, or equivalent vendor-neutral networking certifications
Exposure to network automation and IaC tooling including Ansible and Terraform (network providers)
Experience with Azure networking including VNets, VPN Gateway, ExpressRoute, Azure Firewall, and Private Endpoints
Background in regulated environments (SOC 2, HIPAA, PCI-DSS) and evidence-based compliance support
Experience with SIEM integration for network log forwarding and correlation (Microsoft Sentinel, Rapid7)
Travel Requirements
This role requires up to 5% travel, which may include client meetings, team gatherings, or company events
Travel will typically be scheduled in advance and supported by the company
Pay Transparency
Office Ally is committed to fair and equitable compensation practices in alignment with pay transparency laws. Compensation for this position may vary based on individual skills, experience, and location. In addition to base pay, employees may be eligible for performance-based bonuses and a comprehensive benefits package, including medical, dental, and vision coverage, 401(k) with company match, paid time off, and other benefits. Actual compensation will be determined considering the candidate’s qualifications, relevant experience, and internal equity.
Office Ally Pay Transparency
$100,000—$120,000 USD