Research & Development Labs Network Admin

CelesticaRichardson, TX
Onsite

About The Position

We are seeking a proactive and detail-oriented RDL Network Administrator to manage the day-to-day operations and administration of our global Research and Development Lab (RDL) networks. Reporting directly to the Lead Network Architect, you will be responsible for the run-and-maintain aspects of our isolated, air-gapped networks across multiple HPS Design Center locations (including San Jose, Richardson, Thailand, Shanghai, SongShan Lake, Penang, Chennai, and future sites). The ideal candidate will handle routing, switching, and firewall adjustments, manage user access, configure local jump hosts, and execute secure file transfers across air gaps. Since this environment operates under strict security isolation without typical enterprise automated management tools (e.g., Active Directory, automated endpoint agents), this role requires a hands-on, highly disciplined administrator who excels at executing manual and semi-automated workflows securely and consistently.

Requirements

  • Practical experience configuring and troubleshooting Cisco switches (Catalyst/Nexus) and administering Checkpoint Firewalls (defining security rules, NAT, and logs).
  • Mid-to-senior level competency in Linux (Rocky, CentOS, Ubuntu)—specifically user management, bash scripting, basic routing, and running local web servers (Apache/Nginx).
  • Experience working with remote access tools such as Zscaler ZTNA / App Connectors and Privilege Access Management solutions (specifically CyberArk).
  • Solid experience administering VMs, clusters, and virtual switches within VMware vSphere or Microsoft Hyper-V environments.
  • Working knowledge of secure file transfer protocols (SFTP, SCP, rsync) and security scanning methodologies.
  • High Operational Discipline: Ability to strictly adhere to Standard Operating Procedures (SOPs) without cutting corners, even during urgent troubleshooting.
  • Excellent Communicator: Strong written and verbal communication skills, necessary for translating technical issues to designers and coordinating with corporate security teams.
  • Multi-Tasker: Capable of balancing ticket requests from multiple global labs concurrently while maintaining accurate records.
  • Bachelor’s degree in Network Administration, Information Technology, Computer Science, or equivalent hands-on experience.
  • 4+ years of experience in network administration or system administration, preferably managing secure, segmented, or laboratory networks.

Nice To Haves

  • CCNA (Cisco Certified Network Associate)
  • Check Point Certified Security Administrator (CCSA)
  • CompTIA Security+ or Linux+
  • CyberArk Certified Trustee or Defender

Responsibilities

  • Monitor the health, performance, and uptime of all RDL hardware, including Checkpoint 3980 Firewalls, SilverPeak SD-WAN appliances, Cisco Catalyst 9400/9200 switches, and Celestica DS2000/ES1500 switches.
  • Implement localized VLAN adjustments, IP address allocations, and switch port provisioning to isolate multi-tenant projects as directed by the Network Architect.
  • Execute hardware diagnostics, physical cabling checks, and firmware/OS updates across network and server appliances following strict maintenance window guidelines.
  • Provision local user accounts and role-based permissions directly on Linux-based jump hosts.
  • Manage access credentials in a strict, decentralized non-Active Directory environment.
  • Administer daily customer connections using CyberArk vPAM (Virtual Privileged Access Management) and internal user access using Zscaler ZTNA/Zscaler App Connectors.
  • Review, audit, and clean up inactive user sessions and local accounts weekly to maintain strict security posture.
  • Execute and monitor the secure transfer of "transfer bundles" containing OS packages (Rocky Linux, Ubuntu, CentOS, etc.), drivers, and software libraries across the air gap.
  • Ensure local web repositories (Apache/Nginx hosted at /var/www/html/repo/) are operational, indexed, and accessible to local lab systems.
  • Verify the cryptographic hashes (SHA-256 checksums) of all data packages moving from the Global Repository Server to the RDL Local Repository Server.
  • Act as the primary technical point of contact for HPS design engineers needing network troubleshooting, IP conflicts resolved, or new package requests.
  • Process, update, and resolve secure lab support tickets in accordance with established Service Level Agreements (SLAs).
  • Identify complex network issues or design deviation requests and escalate them directly to the Lead Network Architect.
  • Conduct regular logical audits of systems within the RDL to ensure strictly banned corporate agents (e.g., CrowdStrike, Threat Locker, Big Fix, ServiceNow Agents, ClearPass NAC) are not installed.
  • Maintain a flawless inventory of all HPS-owned assets inside the RDL physical rooms, including servers, switches, wireless access points (Aruba 755), and connected lab machines.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service