Principal Network Engineer

HISTOSONICS INCPlymouth, MN
$150,000 - $185,000Hybrid

About The Position

The Principal Network Engineer is the senior-most individual contributor within the HistoSonics network engineering function and a member of a larger, multi-site IT team supporting HistoSonics as a whole. This is a hybrid position based out of the Plymouth, MN office. The role owns the design, operation, and reliability of the enterprise network across all sites, spanning office routing, switching, and wireless, site interconnectivity, data center networking, dedicated cloud connectivity, perimeter and segmentation controls, remote access, and physical security network infrastructure. It leads network design and execution for new and expanded facilities and provides the primary technical execution behind network engagement with the AI and R&D Infrastructure team, a partnership owned by the Senior Director, Information Systems and Security. The role is the highest level of technical escalation for network infrastructure and sets technical direction and standards for the function.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, or a related field.
  • 10+ years in network engineering, including experience above senior level.
  • Intermediate to expert experience with Cisco platforms, including Catalyst and Meraki cloud-managed switching, wireless, and security appliances, with advanced working knowledge of BGP, OSPF, VLANs, spanningtree, and link aggregation.
  • Intermediate to expert experience administering Palo Alto Networks and Meraki firewalls, covering policy design, segmentation, threat prevention, and rule lifecycle management.
  • Demonstrated experience designing networks for larger multi-building or multi-floor campus facilities, including wireless design and validation and structured cabling standards, and with data center design, including high-availability topologies, redundancy, and capacity planning.
  • Demonstrated experience designing corporate location interconnectivity, including wide area network and SD-WAN topologies, carrier and circuit management, failover design, and direct connectivity to cloud environments such as AWS Direct Connect or Azure ExpressRoute.
  • Demonstrated experience operating mission-critical or product production environments, including service level objectives, change control, and incident response.
  • Experience with network monitoring and observability tooling, network authentication and access control, and making changes within an environment compliant with ISO 27001 and SOC 2 standards.
  • Strong problem-solving and troubleshooting skills, with sound judgment when responding to incidents affecting production systems, and a bias toward automation, standardization, and durable documentation.
  • Excellent communication and interpersonal skills, with the ability to explain network decisions, risks, and trade-offs to technical and non-technical audiences, and to prioritize tasks and manage time effectively while working independently and as part of a team.
  • Ability to set technical direction and influence outcomes across teams and departments without direct reporting authority.

Nice To Haves

  • Experience in a regulated industry such as medical device, healthcare, or manufacturing.
  • Experience with DNS security platforms, network access control, zero trust network access, and network automation using vendor APIs, Python or PowerShell, Ansible, or Terraform.
  • Relevant industry certifications are a plus.

Responsibilities

  • Design, deploy, administer, and maintain the enterprise network across all sites, including routing, switching, wireless, network access control, and IP address management.
  • Own corporate site interconnectivity, including wide area network and SD-WAN topology, carrier and circuit selection, redundancy and failover design, and inter-site capacity planning.
  • Design and administer data center and server room networking, including core and top-of-rack switching, high-availability topologies, and out-of-band management, and maintain dedicated connectivity to cloud platforms, including private interconnects and virtual network routing, in coordination with the System Administration function.
  • Own the design, administration, and rule lifecycle of enterprise firewalls, including policy standards, change review, periodic rule base review, and segmentation between corporate, laboratory, manufacturing, guest, and product environments.
  • Design and administer DNS security, web and content filtering, intrusion prevention, and remote access, including site-to-site and client virtual private networking following zero trust principles.
  • Develop forward-looking network security plans and roadmaps supporting the organization’s security maturity objectives, in partnership with Information Security and under the direction of the Senior Director, Information Systems and Security.
  • Plan, design, and execute network buildouts for new and expanded facilities, including low-voltage design, wireless surveys and validation, equipment specification, vendor coordination, and cutover planning.
  • Own the network and supporting infrastructure for physical security systems, including access control and video surveillance, partnering with Facilities and Security on design and operational support.
  • Maintain accurate network documentation, including topology diagrams, addressing schemes, circuit and vendor records, and as-built documentation for each facility.
  • Define and implement network monitoring, alerting, flow analysis, and performance reporting, and contribute network telemetry and dashboards to centralized reporting.
  • Define service level objectives, alert thresholds, and escalation paths for network services supporting mission-critical systems.
  • Serve as a senior technical responder for major network incidents, conduct root cause analysis, drive corrective and preventive actions, and participate in an on-call rotation for after-hours support.
  • Author and maintain organizational network standards for architecture, addressing, configuration baselines, firmware lifecycle, and change control, and drive adoption across sites.
  • Identify and automate manual network operational processes, including configuration backup, compliance validation, and reporting, using Python, PowerShell, or comparable languages.
  • Serve as control owner for assigned IT controls, provide audit evidence, ensure network configurations and patching adhere to IT policies and applicable regulatory requirements, and support validation of network infrastructure under the HistoSonics Quality Management System.
  • Serve as the final internal escalation point for complex network issues and provide technical mentorship and design review to System Administrators and IT Support Specialists.
  • Serve as the primary Information Systems network resource to the AI and R&D Infrastructure team, providing architecture guidance, design review, and escalation support.
  • Represent network infrastructure in architecture reviews, threat modeling, and change control, and advise Security, Data Privacy, Quality, and Regulatory stakeholders.
  • Escalate cross-organizational governance conflicts, scope disputes, and resourcing trade-offs to the Senior Director, Information Systems and Security, and evaluate, recommend, and implement network hardware, circuits, and SaaS solutions to address business needs.

Benefits

  • health, dental, and vision insurance
  • life, short-term and long-term disability insurance
  • 401(k)
  • paid time off
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service