The Senior Network Engineer is a hands-on technical leader responsible for designing, implementing, securing, and supporting CES’s enterprise network infrastructure across North America, India, Vietnam, and Japan. This position reports to the Senior Cloud and Network Security Architect.The role serves as the primary owner of on-premises routing, switching, firewall, and network security platforms and supports their integration with CES’s cloud and hybrid environments. The successful candidate must be able to manage competing priorities, lead complex network projects, and maintain reliable day-to-day operations.This position works directly with internal stakeholders and external clients to address connectivity requirements, resolve service-impacting issues, and communicate clearly with both technical and non-technical audiences.This is an on-site position based at CES’s Philadelphia headquarters. A hybrid work arrangement may be considered in the future based on operational needs and demonstrated performance.Key ResponsibilitiesNetwork EngineeringDesign, implement, upgrade, and maintain routing and switching infrastructure across CES locations.Manage a multi-site, multi-circuit WAN environment with appropriate redundancy, availability, and failover.Configure and support advanced routing protocols, including BGP, OSPF, and EIGRP.Establish and maintain network standards, configuration baselines, and change management procedures.Lead network projects from requirements and planning through implementation, validation, and post-implementation review.Evaluate and recommend network technologies, vendors, and platforms based on business, security, and growth requirements.Network SecurityManage Cisco ASA, Cisco Firepower/FMC, Palo Alto Networks, and other network security platforms.Administer Cisco ISE, including 802.1X, NAC, RADIUS/TACACS+, guest access, and endpoint profiling.Configure and maintain F5 BIG-IP load balancers and web application firewalls.Develop and maintain firewall rules, access control policies, and network segmentation strategies.Serve as the senior escalation point for firewall and network security incidents.WAN and Cloud ConnectivityManage primary and failover circuits, carrier relationships, SLA performance, and connectivity issues.Design and maintain site-to-site, DMVPN, and remote-access VPN infrastructure.Implement QoS policies for business-critical traffic.Integrate on-premises networks with AWS, Azure, and other cloud environments using Direct Connect, ExpressRoute, Transit Gateway, and IPsec VPN technologies.Configure and support VPCs, VNets, security groups, routing tables, and network ACLs.Collaborate with Cloud and IS teams on secure and scalable hybrid network architecture.Operations and SupportMonitor network availability, performance, and capacity and proactively address potential issues.Provide Tier 3 incident support, root cause analysis, and permanent corrective actions.Maintain network diagrams, IP address records, runbooks, configuration documentation, and change history.Coordinate with internal teams and external clients regarding connectivity and service-impacting incidents.Manage multiple concurrent priorities and communicate status, risks, and recommendations to stakeholders.Participate in a rotating on-call schedule supporting 24x7 network operations.Mentor junior team members on networking technologies and operational practices.