Sr. Network / Security Systems Engineer at Hallmark Labs, LLC (Santa Monica, CA)
Network management and IaaS automation in building, securing, monitoring, maintaining, and alerting Linux systems in a cloud environment. This job is all about automation, IaaS, security, resiliency, and uptime. The responsibilities will include overseeing all aspects of the network including change management, access control, security/vulnerability management, addressing any issues that arise that isn’t already automated, and working with the Engineering teams to ensure the solution they’re deploying are supportable and scalable to support the growing customer base. We love innovation, and support efforts that provide automated systems for the purpose of 99.99% uptime.
Responsibilities:
In compliance with the Immigration Reform and Control Act of 1986, Hallmark Labs will hire only individuals lawfully authorized to work in the United States. Employment by Hallmark Labs is contingent upon the signing of the Employment Agreement, completing Form I-9 Employment Eligibility Verification and satisfactory reference and background checks.
Required Qualifications:
Preferred Qualifications:
Hallmark Labs is an equal employment opportunity employer. Qualified applicants will be considered for employment without regard to race, color, religion, sex, age, pregnancy, national origin, physical or mental disability, genetics, sexual orientation, gender identity, veteran status, or any other legally-protected status. To view your rights as an applicant please review the following EEO posters: “EEO is the Law” poster and the “EEO is the Law Supplement”.
Desired Skills and Experience
- Drive technical innovation and efficiency in networking and security via automation
- Create processes that enhance operational workflow and provide positive customer impact
- Dive deep to resolve problems at their root, looking for failure patterns amenable to long-term solutions via simplification and automation
- Handle problem tickets, change tickets, requests for information, data and status as needed
- Insure all network hardware has required monitors and alerts enabled and configured in requisite monitoring systems
- Stresses building automation and highly redundant systems to avoid phone calls on the weekends or weeknights
- Avoid re-inventing the wheel and prefer appropriately simple, repeatable solutions over more complex and failure prone ones
- Act as a technical point of escalation
- Recognize and adopt best practices in documentation, testing, security, operational support at scale, and efficient use of resources
- Develop appropriate metrics to demonstrate performance at improving operational efficiency
- Support the deployment, configuration, and administration of enterprise network security appliances and software
- Insure that all device management adheres to Hallmark Labs’ compliance standards policy and provide the mandatory documentation to meet the compliance requirements for each device
- Analyze, configure and maintain security components within a complex Local Area Network (LAN) and Wide Area Network (WAN)
- Work with other infrastructure, engineering and customer service teams to ensure all servers have required security compliance for patch management, anti-virus, other threat protection, and are available 24 x 7
- Implement, manage, refine disaster recovery solutions
- Support off-hours on-call
- Utilize strong problem solving & troubleshooting skills including ability to perform root cause analysis for preventative analysis
- Work on small, cross-functional, fast paced teams
- Utilize strong organizational skills and the ability to manage a diversified workload
- Communicate & work effectively with all levels of staff including senior management
- Work under minimal supervision on complex issues to deliver great results on schedule
- 5+ years enterprise networking experience
- 3+ years of public/private/hybrid cloud experience
- 3+ years’ experience with Network Intrusion Detection Systems (NIDS) and Host-Based Intrusion Detection Systems (HIDS) products
- 3+ years’ experience with one or more network vulnerability scanners such as Rapid7, Trustwave, Nmap, and other vulnerability scanners
- 3+ years’ experience with monitoring/alerting systems including log aggregation (SIEM) systems
- Previous role implementing and supporting highly available security solutions including server and network hardening
- Previous role supporting highly available network topologies in a hybrid cloud geographically diverse configuration including (but not limited to) 10G, load balancers, multiple VPN tunnels, BGP, EIGRP, OSPF, 802.1q, VRRP, and link aggregations
- Previous role in TCP/IP networking, architecture, core technologies (DNS, HTTP, Routing, etc.), firewalls, load balancers, and IDS/IPS systems
- BS in Computer Science or related field, or equivalent experience
- CISSP, CCNP, JNCIP-ENT, and/or JNCIS-ENT
- Experience with AWS NACLs and security group configurations
- Knowledgeable with automation technologies/languages such as Ansible, Jenkins, Rundeck, Python, Puppet, and Chef
- Experience with implementing disaster recovery, capacity planning, utilization review, and monitoring of availability and performance
- Knowledgeable in Microsoft Visio to effectively document and maintain system documentation
- Able to work under minimal supervision on complex issues to deliver results on schedule
- Comprehensive verbal and written communication skills including mentoring junior staff
- Strong organizational skills and the ability to manage a diversified workload
- Experience working on small, cross-functional, fast paced teams
- Familiar with Agile processes and DevOps manifesto