Vacancy expired!
Department Summary:
DISH is transforming the future of connectivity. We're doing it by building the country's first virtualized, standalone 5G wireless network from scratch. The foundation of a connected world, it's a network free of the limitations of the past, and flexible enough to satisfy all the social, economic and transformative needs of the changing world. Job Duties and Responsibilities: We're looking for experienced network professionals to join DISH's Wireless 5G Network Engineering Team. The Network Security Engineer will join a team of other passionate engineers and bring a start-up spirit to evaluate, test, deploy, and optimize DISH's future standalone 5G network. The candidate should also be innovative, analytical, a planner, have solid execution skills, and have the ability to learn, teach, and work in a team environment. In this role, you will:- Participate in evaluation, testing, selection, and deployment of foundational network security elements for a nationwide greenfield network buildout
- Ensure that solutions adhere to defined standards and best practices and/or assist in the development of these standards and best practices
- Effectively communicate engineering solutions through detailed high and low level diagrams
- Routinely research, analyze, test, retest, and troubleshoot complex problems
- Able to work in a fast-paced environment, under pressure, with strict deadlines, both as an individual contributor and team player
- Participate in knowledge transfer, documentation and information sharing while staying abreast of new technology/technical area
- Design, plan, and implement network security systems at nationwide scale
- Supply advanced technical direction and leadership to the organization through the planning and implementation processe
- Establish requirements, provide analysis of network security risks and requirements, network design, network partitioning or segmentation, and network architecture definition
- Provide advanced expertise in the development of network test, validation, and integration plans on projects, and assurance of network integrity
- Work independently with vendors to understand, test, and drive new innovative features
- Architecture, design, and engineering of network security boundaries both internal and external
- Configuration hardening of network and peripheral devices, both physical and virtual
- Network firewall and IDS/IPS systems evaluation, design, implementation, and support
- Palo Alto physical and virtualized firewalls (VNF/CNF)
- Palo Alto Panorama
- Design and Implementation of internal and external VPN and IPSec connectivity
- Understanding of Public Key Infrastructure (PKI)
- X509 Digital Certificates
- CA and SubCA principles
- Symmetric and Asymmetric Keys
- Hardware Security Modules (HSM)
- TLS/SSL and IPSec
- Understanding of DNS, DHCP and IPAM configuration and management
- Creation of network security policies, processes, auditing, and enforcement
- IPv6 - SLAAC and DHCPv6
- Network Deployment and Operations Automation - Ansible, Secure Zero Touch Provisioning (SZTP)
- Server virtualization - VMWare, Openstack
- Solid Understanding of the OSI model, routing and switching protocols, network security, IPv4 and IPv6 networking, subnetting, and operational experience
- Experience with Mobile Carrier Network/Wireless network protocols ie; Diameter (DRA/DEA), SS7 and GTP
- Experience with Radio Access Networks and Radio components IE: SecGWs, RU and CU/DU.
- Bachelor's degree in Electrical/Computer Engineering preferred, or six plus years of professional experience in large enterprise or carrier space
- Professional networking certifications a plus - CompTIA Network +, Security + and CISSP
- Public cloud certifications a plus - AWS Practitioner, Solutions and/or Security Architect
Vacancy expired!