CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.
Role Summary
The Network Engineer III is a senior technical engineer responsible for 24×7 operational support, troubleshooting, and optimization of complex enterprise network environments within a Managed Services (MS) organization.
This role serves as a Tier 3 escalation engineer, supporting customer networks built on Palo Alto, Fortinet, Cisco, Meraki, Aruba, and F5 Load Balancing platforms across hybrid, cloud, and global infrastructures. The engineer maintains strong multi‑vendor networking fundamentals, drives incident resolution, and supports adjacent technologies as required.
The Network Engineer III directly influences customer satisfaction, service quality, and incident outcomes, and collaborates closely with Managed Services Network, Managed Services Security, Engineering, Presales Architecture, Product, and Service Management teams.
Key Responsibilities
24×7 Operations & Tier‑3 Escalation
- Participate in a 24×7 on‑call rotation as a Tier‑3 escalation engineer.
- Troubleshoot and resolve complex network issues across:
- Palo Alto and Fortinet firewalls
- Cisco IOS/XE, Nexus, and Meraki environments
- Aruba switching and wireless infrastructures
- F5 LTM/GTM load balancing platforms
- Lead high‑severity incident response, including:
- Technical troubleshooting
- Customer communications
- Root cause analysis (RCA) and corrective actions
- Act as a senior technical escalation point during major outages and service-impacting events.
Enterprise Network Engineering & Lifecycle Management
- Provide senior‑level support for enterprise network architectures, including:
- Campus, WAN, and data center networking
- Firewall and security enforcement
- Load balancing and application delivery
- Own the full managed service lifecycle, including:
- Customer onboarding and service readiness
- Change management and risk assessment
- Hardware and software upgrades
- Platform migrations and decommissioning
- Validate and enforce:
- Network security policies and segmentation
- Routing and traffic flow design
- High availability, redundancy, and resiliency standards
Routing, WAN & Cloud Connectivity
- Support advanced routing implementations, including:
- BGP (required) – policy control, filtering, and failover
- OSPF
- Troubleshoot and support hybrid and cloud connectivity, including:
- AWS (VPC, Transit Gateway)
- Azure (vNET, vWAN, ExpressRoute)
- Google Cloud Platform (VPC)
- Ensure optimized:
- Traffic flow and path selection
- Application performance and availability
- SLA adherence and fault isolation
Security & Firewall Operations
- Support enterprise firewall and security platforms, including:
- Palo Alto Networks NGFW
- Fortinet FortiGate
- Troubleshoot and maintain:
- Security policies and rulebases
- NAT, VPN (IPsec/SSL), and remote access
- High availability firewall clusters
- Partner with security teams to align network enforcement with enterprise security posture.
Load Balancing & Application Delivery
- Support and troubleshoot F5 Load Balancers, including:
- LTM and GTM configurations
- Application availability and traffic distribution
- SSL offloading and persistence
- Assist in identifying and resolving application performance and availability issues related to network design.
Automation, Tooling & Operational Maturity
- Contribute to automation and standardization efforts using:
- APIs, Python, Ansible, or Terraform (preferred)
- Improve observability using:
- Network monitoring platforms (e.g., SNMP, API‑based telemetry, LogicMonitor)
- Develop and maintain:
- SOPs and operational runbooks
- Tier‑3 troubleshooting and escalation guides
- Service readiness documentation for new platforms
- Mentor and provide technical guidance to Tier‑1 and Tier‑2 engineers.
- Collaborate with Architecture, Product, and Service Management teams to continuously improve managed network offerings.
Required Technical Skills
Core Networking Technologies
- Strong hands‑on experience with:
- Palo Alto Networks firewalls
- Fortinet FortiGate
- Cisco routing and switching
- Cisco Meraki
- Aruba switching and wireless
- F5 Load Balancers
- Deep understanding of:
- TCP/IP, routing, and switching fundamentals
- NAT, firewalling, and VPN technologies
- High availability and redundancy design
- QoS and application‑aware networking
Routing & WAN Fundamentals
- BGP (required) – design, troubleshooting, and policy enforcement
- OSPF
- Experience supporting enterprise WAN and hybrid network designs
Multi‑Vendor Enterprise Networking
- Ability to translate architectures and concepts across vendors
- Strong troubleshooting skills in mixed‑vendor customer environments
- Experience supporting both hardware‑based and cloud‑connected network platforms
Qualifications & Experience
- 7+ years of hands‑on network engineering experience.
- Strong experience supporting:
- Routers, switches, firewalls, load balancers, and WAN infrastructure
- Experience working in a Managed Services or enterprise operations environment.
- Proficiency with:
- Network monitoring and performance analysis tools
- Visio or similar tools for detailed network diagrams
- Familiarity with:
- Wireless technologies and site deployments
- Security intelligence and vulnerability awareness
- Prior experience in network design or presales engineering is a plus.
Certifications
- Cisco Certified Network Associate (CCNA) – Required
- Cisco Certified Network Professional (CCNP) – Highly Recommended
- Vendor certifications (Palo Alto, Fortinet, F5, Aruba) are a strong plus.
Education
- Bachelor’s degree in a related field, or equivalent practical experience.
Supervisory Responsibilities
#LI-PK1 #LI-REMOTE #LI-CBTS
Due to U.S. Government requirements applicable to foreign-owned telecommunications providers, non-US citizens may be required to submit to an extensive government agency background check which will necessitate disclosure of sensitive Personally Identifiable Information.