Join a global enterprise team dedicated to shaping the future of international IT infrastructure. In this high-impact role, you will bridge the gap between high-level architectural design and robust security engineering across global LAN, WAN, SD-WAN, WLAN, and network security domains.
Rather than focusing on routine operational handling, you will take ownership of High-Level (HLD) and Low-Level Designs (LLD), drive continuous infrastructure optimization, and solve complex, high-tier technical challenges. You will act as a Subject Matter Expert (SME), partnering with our Managed Service Provider (MSP) and cross-functional international teams to deliver resilient, high-performing networks.
What will your tasks involve?
- Architecture & Design: Design, test, and develop enterprise-wide network and security infrastructure across LAN, WAN, WLAN, and supporting core services (DNS, IPAM, AAA).
- Business Partnering: Serve as a primary technical consultant translating complex business needs into scalable HLD and LLD solutions.
- Security Standards: Enforce network security policies, Next-Gen Firewall rulesets, Web Application Firewall (WAF) policies, and secure remote access protocols in coordination with global cybersecurity teams.
- MSP Oversight & SME Leadership: Act as an SME providing technical guidance to our external Managed Service Provider (MSP). Validate Low-Level Designs, steer critical escalations (P1/P2), and ensure operational consistency.
- Process & Automation Enhancement: Drive operational efficiency within an Agile team structure, streamlining IT processes and supporting Infrastructure-as-Code (IaC) initiatives
What we expect from you?
- Experience: Minimum 5+ years of hands-on experience in enterprise-scale network and security design, implementation, and troubleshooting.
- Core Networking Expertise: Deep proficiency in TCP/IP, BGP, OSPF, STP, and hands-on experience with Cisco enterprise products (Catalyst switches, Nexus switches, routers, and ISE).
- WAN / SD-WAN Mastery: Proven background in WAN and SD-WAN deployment, optimization, and advanced troubleshooting.
- Network Security & Firewalls: Strong proficiency with Next-Generation Firewalls—preferably Fortinet/FortiGate.
(Note: If you possess strong core network/SD-WAN background without prior Fortinet experience, we will fully sponsor and support your Fortinet NSE 4 certification within your first 6 months).
- Certification / Knowledge Level: Cisco CCNP or equivalent practical depth (current or expired certifications are accepted).
- Languages & Soft Skills: Excellent spoken and written English (B2+/C1 level) for daily collaboration with global teams. Strong analytical mindset, assertiveness, and team-player attitude in international environments.
Nice to Have
- Hands-on experience with Web Application Firewall (WAF) tuning, rule creation, and false-positive mitigation.
- Solid understanding of HTTP/HTTPS protocols, web application security (OWASP Top 10), and SSL Inspection.
- Experience with hybrid DNS environments (on-premises and cloud integration).
What you can expect from us?
- Contract: Long-term Employment Contract (Umowa o pracę).
- Bonuses: Annual performance bonus (up to 7%) + festive financial benefits paid twice a year (April & December).
- Health & Security: Comprehensive private medical care (Medicover, with options for family coverage) and group life insurance.
- Professional Growth: Full coverage of training courses and professional certification exams (e.g., Fortinet).
- Perks & Wellbeing: Sports card (Medicover Sport), language courses, flexible working hours, and regular team wellbeing activities.
Employment agency entry number 47
this job offer is intended for people over 18 years of age
...