Network Engineer

Canadian Breaks Consulting LLC•Amarillo, TX
•$140,000 - $180,000•Onsite

About The Position

The Network Engineer designs, engineers, and sustains the enterprise network infrastructure at a National Nuclear Security Administration (NNSA) site in the Texas Panhandle, on one of the most security-sensitive missions in the country. This is a hands-on engineering role: administering and hardening routers, switches, firewalls, VPNs, and wireless infrastructure, engineering complex routing and segmentation strategies, and resolving the difficult problems that surface on a network where availability and security are both non-negotiable. The Network Engineer works alongside client IT, cybersecurity, operations, and vendor personnel, operates within formal configuration control and change management discipline, and documents the network to a standard that withstands audit. This position is fully onsite in the Amarillo, TX area on a 9/80 schedule with every other Friday off and requires an active federal security clearance.

Requirements

  • 10+ years of relevant network engineering experience, including 5+ years supporting enterprise-scale routing, switching, and firewall infrastructure.
  • Active DOE Q clearance or active DoD Top Secret clearance, or previously held either with eligibility for reinstatement, along with the ability to obtain and maintain a DOE Q clearance. U.S. citizenship is required.
  • Hands-on command of enterprise routing and switching, including Cisco routers and switches, complex routing strategies using EIGRP, OSPF, and BGP, route redistribution, convergence, and path selection, plus next-generation firewall, VPN, and wireless infrastructure administration.
  • Bachelor's degree in an engineering, science, or information technology discipline, or a master's degree in one of those disciplines, or a combination of 10 or more years of relevant education, training, and experience in lieu of a degree.
  • Able to work fully onsite in the Amarillo, TX area, pass a federal background investigation and pre-employment and random drug testing, participate in medical monitoring, and, if assigned scope requires Materials Access Area entry, participate in the Human Reliability Program including a counterintelligence-scope polygraph pursuant to 10 CFR 709.
  • Proficient in Windows and Microsoft Office 365 (Excel, Word, Outlook, Power Point and Teams), and have a strong understanding of working within a computer network.
  • Experience in organizing technical data in a neat and accurate method.
  • Ability to work well and maintain a cooperative attitude in a fast-paced environment and manage multiple priorities.

Nice To Haves

  • Prior experience supporting DOE, NNSA, DoD, or other federal secure environments.
  • Next-generation firewall depth on Palo Alto or Cisco ASA/FirePower platforms, including high availability configuration, SSL decryption, policy optimization, and IDS/IPS.
  • Network access control experience with Cisco Identity Services Engine (ISE), including network access devices, authentication policies, identity groups, and endpoint compliance.
  • Cisco Catalyst Center (DNA Center) administration.
  • Wireless infrastructure experience with Cisco wireless LAN controllers and access point deployments.
  • Administration of load balancers (LTM/GTM), DNS, DHCP, and IP address management (IPAM) systems.
  • Unified communications and voice experience with Cisco Unified Communications Manager (CUCM), Unity Connection, voice gateways, and VoIP infrastructure.
  • Hybrid and cloud networking experience, including Microsoft Azure virtual networks, ExpressRoute, and peering.
  • Network automation and scripting with Python or Perl.
  • Monitoring and security tooling experience with Tenable, Splunk, or comparable enterprise platforms, including NOC/SOC integration and telemetry reporting.
  • Formal change management experience in ServiceNow or an equivalent platform, including RFC submission and Change Advisory Board participation.
  • Accredited classified network or enclave experience, including Risk Management Framework, NIST SP 800-53 controls, and authorization documentation.
  • Operational technology or industrial control system network experience, including segmentation and IT/OT boundary security.
  • Networking experience supporting physical security systems such as access control, surveillance, and alarm systems.
  • Industry certifications such as CCNP or CCIE, PCNSE, or CompTIA Security+.

Responsibilities

  • Administer, engineer, and sustain enterprise network infrastructure including routers, switches, firewalls, VPNs, wireless, and data center environments.
  • Design and implement complex routing and segmentation strategies using EIGRP, OSPF, and BGP, optimizing route redistribution, convergence, and path selection.
  • Implement and manage next-generation firewall platforms, including high availability configuration, SSL decryption, policy optimization, and IDS/IPS.
  • Configure and perform lifecycle management of network devices, including service packs, patches, hotfixes, firmware, and security configurations.
  • Develop lifecycle management plans covering upgrades, patching, maintenance windows, and rollback strategies.
  • Monitor network performance and integrity and ensure network stability, reliability, and security.
  • Troubleshoot and resolve complex network issues and restore service in accordance with established service levels.
  • Administer network access control solutions, network access devices, authentication policies, and identity groups.
  • Administer load balancers, DNS, DHCP, and IP address management systems.
  • Manage wireless network infrastructure and access point deployments.
  • Support voice and VoIP administration, including adds, moves, changes, and troubleshooting.
  • Implement and maintain security protections across networked devices, and stay current on IT vulnerabilities and countermeasures.
  • Support NOC/SOC integration and telemetry reporting.
  • Develop and deploy scalable, resilient network architectures supporting high availability, fault tolerance, and future growth.
  • Provide recommendations for network optimization, capacity planning, and infrastructure modernization.
  • Maintain network documentation including topology diagrams, configuration baselines, IP address management records, inventories, and change control records.
  • Support formal change management processes, including change request submission and Change Advisory Board activities, and participate in change windows and off-hours maintenance.
  • Collaborate with client IT, cybersecurity, operations, and vendor personnel, and present complex technical and operational information verbally and in writing.

Benefits

  • Fully covered Employee+Fam BCBS PPO health insurance
  • Fully covered Employee+Fam Dental & Vision Insurance
  • 2 weeks PTO
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service