08 Aug
|
Happiest Minds Technologies
|
Bengaluru
08 Aug
Happiest Minds Technologies
Bengaluru
Position : Network Engineer L3
Location : Bangalore
Experience: 5yrs -8yrs
Position Summary
We are seeking a senior Network & Network Security Deployment Engineer to lead the technical execution of an enterprise-wide branch network refresh. The primary mission is to migrate the existing Palo Alto Prisma SD-WAN (ION) fabric to a Cisco Meraki MX SD-WAN architecture across the combined Synovus/Pinnacle branch footprint, while concurrently refreshing the branch LAN (Juniper EX2300 and Cisco Catalyst 9300 access switches) and integrating Cisco Meraki MR wireless. The role is build-focused: design validation, site cutover, documentation, and operational handover to the run team.
Core Technical Implementation
SD-WAN Migration (Primary Focus)
- Decommission Palo Alto Prisma SD-WAN ION appliances and replace with Cisco Meraki MX (MX85/MX95/MX105 class) at branch and regional sites.
- Translate Prisma path policies, application steering, QoS, and security zones into equivalent Meraki SD-WAN traffic-shaping, AutoVPN hub-and-spoke, and L3/L7 firewall constructs.
- Configure Meraki AutoVPN mesh/hub topologies, SD-WAN+ performance probes, dual-ISP failover, and energetic path selection.
- Coordinate WAN circuit transitions (MPLS / DIA / broadband / LTE failover)
with carriers during cutover windows.
- Validate routing convergence with upstream BGP/OSPF peers at the datacenter aggregation layer.
- Branch LAN Refresh & Wireless
- Provision and deploy Juniper EX2300 access switches (Junos config, Virtual Chassis, VLANs, 802.1X, LLDP-MED, PoE) at legacy Pinnacle sites.
- Provision and deploy Cisco Catalyst 9300 access switches (IOS-XE, StackWise, VLANs, 802.1X with Cisco ISE, QoS, MACsec where required) at Synovus sites and standardized branches.
- Deploy and tune Cisco Meraki MR wireless access points (SSID strategy, RF profiles, group policies, 802.1X/PSK, guest isolation).
- Implement consistent VLAN, IP addressing, and STP root standards aligned to the merger Re-IP strategy.
Network Security
- Deploy and configure Palo Alto NGFW (PAN-OS): security policies, NAT, IPsec/GlobalProtect VPN, Threat Prevention, URL filtering, decryption.
- Integrate branch enforcement with Cisco ISE (802.1X, MAB, posture) and align with the bank's NAC standards.
- Validate east-west and north-south traffic flows post-cutover against the security baseline.
Communication Skills,Switching and routing,Network Security,Load Balancing,meraki,Cisco Meraki,sdwan,Sdwan
📌 TECHNICAL LEAD - Switching and routing (Bengaluru)
🏢 Happiest Minds Technologies
📍 Bengaluru