Role:Network Engineer (L1 / L2 / L3)
Location: Singapore (Onsite)
Duration: 12 Months (Renewable) Contract
Department: Network Engineering
Experience Levels
- L1: 0–2 Years
- L2: 2–5 Years
- L3: 5–10 Years
About the Role
We are seeking skilled and motivated Network Engineers across multiple experience levels to design, implement, secure, and operate enterprise network infrastructure. The role encompasses LAN/WAN networking, Aruba switching, Fortinet and MikroTik firewall administration, VPN technologies, DNS/DHCP/IPAM management, load balancing, cloud networking, DDoS protection, and network security operations.
The ideal candidate will leverage Infrastructure as Code (IaC) practices using Terraform and Ansible to maintain network configurations in a version-controlled, repeatable, and auditable manner. You will also utilize advanced monitoring and observability platforms such as Cisco DNA Center and Cisco ThousandEyes to ensure network reliability, performance, and security.
Key Responsibilities
Network Infrastructure Management
- Design, implement, and maintain LAN and WAN environments.
- Configure and manage Aruba switches, VLANs, trunking, Spanning Tree Protocol (STP), and Layer 3 routing.
- Perform network capacity planning, optimization, and performance tuning.
Firewall & Security Operations
- Manage Fortinet FortiGate and MikroTik firewalls.
- Create, review, and maintain security policies, NAT configurations, and security profiles.
- Monitor network security posture and ensure compliance with security standards.
- Perform CVE remediation, firmware upgrades, and security patch management.
VPN Administration
- Configure and maintain SSL VPN and Client VPN services.
- Manage VPN user profiles, authentication mechanisms, and tunnel monitoring.
- Troubleshoot connectivity and performance issues.
Core Network Services
- Administer DNS, DHCP, and IP Address Management (IPAM) platforms.
- Manage DNS zones, DHCP scopes, reservations, and IP lifecycle processes.
- Ensure availability and reliability of critical network services.
Load Balancing & Traffic Management
- Configure load balancer listeners, pools, rules, and health checks.
- Monitor application delivery performance and optimize traffic distribution.
Cloud Networking
- Design and manage networking components across cloud environments.
- Configure virtual networks, routing, security groups, NSGs, and cloud-native firewall solutions.
- Deploy and maintain cloud virtual appliance (VA) firewalls.
DDoS Protection & Resilience
- Operate and maintain on-premises DDoS mitigation appliances.
- Manage cloud-native DDoS protection services.
- Investigate and respond to network attacks and anomalies.
Monitoring & Performance Management
- Monitor network health using Cisco DNA Center and Cisco ThousandEyes.
- Track QoS performance metrics and conduct trend analysis.
- Produce performance, capacity, and availability reports.
Automation & Infrastructure as Code
- Develop and maintain Terraform and Ansible automation for network deployments.
- Implement configuration management, compliance validation, and automated provisioning.
- Maintain version-controlled infrastructure repositories and audit trails.
Incident & Change Management
- Provide Level 2 and Level 3 support for network incidents and escalations.
- Participate in change advisory board (CAB) processes and network change implementation.
- Coordinate with vendors and internal teams during troubleshooting and maintenance activities.
Documentation & Compliance
- Maintain network diagrams, architecture documents, operational runbooks, and standard operating procedures.
- Ensure accurate asset inventories and configuration records.
- Support internal and external audit requirements.
Required Skills & Competencies
Networking
- Strong understanding of LAN/WAN technologies.
- VLAN configuration, trunking, STP, and Layer 3 routing.
- Network troubleshooting and performance analysis.
Switching
- Aruba switch deployment, configuration, and management.
- VLAN provisioning and port management.
Firewalls
- Fortinet FortiGate administration.
- MikroTik firewall configuration and policy management.
- NAT, security policies, and threat protection.
VPN Technologies
- SSL VPN and Client VPN deployment and administration.
- Authentication, profile management, and tunnel monitoring.
Core Services
- DNS, DHCP, and IPAM management.
- Zone administration and IP lifecycle management.
Load Balancing
- Configuration of load balancing policies, listeners, and health checks.
- Application traffic optimization.
Cloud Networking
- Virtual networking concepts across public cloud platforms.
- Security groups, NSGs, routing, and cloud firewalls.
- Cloud virtual appliance deployment and management.
Security & DDoS Protection
- Network security best practices.
- DDoS mitigation solutions and attack response.
- Vulnerability management and compliance monitoring.
Monitoring & Observability
- Cisco DNA Center.
- Cisco ThousandEyes.
- QoS monitoring and network analytics.
Automation
- Terraform.
- Ansible.
- Infrastructure as Code (IaC) principles.
- Configuration version control and automation workflows.
Preferred Qualifications
- Certifications such as CCNA, CCNP, NSE, Aruba Certified Professional (ACP), or MikroTik certifications.
- Experience with multi-cloud networking environments.
- Knowledge of network security frameworks and compliance standards.
- Familiarity with scripting languages such as Python, Bash, or PowerShell.
- Experience in enterprise-scale network operations environments.
Interested candidates can connect on +6586533349 (WhatsApp chat only)