Engineer-Network

Who we are: BALRichardson, TX
Onsite

About The Position

The Infrastructure/Network Engineer builds and evolves the company’s Palo Alto SASE & SD-WAN and Cisco Meraki campus networks to deliver secure, performant connectivity. Responsibilities include policy-driven networking via Strata Cloud Manager, GlobalProtect secure access, Meraki switching/wireless engineering, 802.1X/EAP-TLS integration, and network automation/observability. Collaborates with Cyber and Systems to enable identity-aware, zero-trust networking.

Requirements

  • 4+ years engineering enterprise networks with SD-WAN/SASE and campus access.
  • Hands-on with Palo Alto (Strata Cloud Manager, PAN-OS) and Cisco Meraki (switching/wireless).
  • Strong knowledge of 802.1X, EAP-TLS, RADIUS/NPS, VLANs, routing (OSPF/BGP), QoS, and HA.
  • Experience with Python/Ansible/APIs for network automation; strong documentation and change discipline.
  • Strata Cloud Manager policy stacks/templates; PAN-OS; Prisma Access/GlobalProtect.
  • Meraki Dashboard (switch/AP), RF fundamentals, and Wi-Fi troubleshooting.
  • RADIUS/NPS, certificate services for EAP-TLS; DHCP/DNS/IPAM.
  • Python/Ansible, REST APIs, Git; SolarWinds (or similar) telemetry.
  • Analytical problem solving and crisp technical communication.
  • Proactive risk identification and mitigation; bias for automation.
  • Palo Alto Strata Cloud Manager, Prisma Access/GlobalProtect, PAN-OS.
  • Cisco Meraki switch/AP, RADIUS/NPS, DHCP/DNS/IPAM.
  • SolarWinds (or similar), Python/Ansible, REST APIs, ServiceNow/Jira, Git.

Nice To Haves

  • Experience with Prisma Access/GlobalProtect and certificate-based access patterns.
  • Exposure to SolarWinds or similar tools; DNS/DHCP/IPAM best practices.
  • Certifications: PCNSE, Palo Alto SASE/SD-WAN, Cisco ENCOR/ENARSI, Meraki CMSS

Responsibilities

  • Designs and implements network solutions that improve reliability, performance, and security.
  • Drives standardization and documentation; influences architecture through peer reviews.
  • Partners with Cyber and Systems on certificate-based access, device posture, and telemetry to SIEM.
  • Engineer and optimize Palo Alto SD-WAN fabric (path selection, QoS, HA) and SASE policies in Strata Cloud Manager.
  • Configure and maintain Prisma Access/GlobalProtect for secure remote access; integrate identity and device posture.
  • Develop site cutover plans and playbooks; validate performance against SLOs.
  • Engineer Meraki switching/wireless: RF design, capacity planning, segmentation, and SSID architectures.
  • Implement 802.1X/EAP-TLS with RADIUS/NPS and certificate services; coordinate with Systems for device cert lifecycle.
  • Harden network services (DHCP/DNS/IPAM) and enforce least-privilege segmentation.
  • Automate repetitive tasks using Python/Ansible/APIs; build compliance checks and config templates.
  • Create health/telemetry dashboards (latency, loss, jitter, SNR, link quality); instrument alerting and runbooks.
  • Contribute logs/metrics to SIEM (e.g., Rapid7) and analyze trends to reduce MTTR.
  • Author CRs with impact analysis, testing plans, and backout; perform staged rollouts.
  • Execute root-cause analysis and implement durable fixes; maintain reference configurations.
  • Collaborate with Cyber to align with ISO/NIST/CIS controls and evidence collection.

Benefits

  • medical
  • dental
  • vision
  • disability
  • life insurance
  • sick time
  • unlimited vacation
  • 401(k) with company match
  • discretionary annual bonus
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service