Samsung SDS America is a global information technology services organization that delivers innovative technology solutions supporting enterprise clients across logistics, digital transformation, cloud, mobility, and business operations.
As part of Samsung SDS, employees work alongside talented professionals on technologies that improve business performance, enhance operational efficiency, and accelerate digital transformation initiatives across global organizations.
The Network Engineer is responsible for designing, implementing, administering, optimizing, and troubleshooting enterprise network infrastructure supporting corporate campuses, branch offices, data centers, remote users, and wireless environments.
The engineer will operate in a 24x7 enterprise environment, supporting critical incidents, planned maintenance, infrastructure upgrades, and continuous improvements while maintaining network availability, performance, and security.
Switching & Routing
- Design, configure, maintain, and troubleshoot enterprise Cisco switching and routing environments.
- Support Cisco Catalyst and Nexus platforms, including Catalyst 9000-series and current-generation Nexus switches.
- Configure and troubleshoot Layer 2/Layer 3 networking, VLANs, 802.1Q trunking, EtherChannel/LACP, SVIs, inter-VLAN routing, and DHCP relay.
- Implement and troubleshoot STP, RSTP, MST, root-bridge optimization, loop prevention, and high-availability technologies including StackWise and StackWise Virtual.
- Configure and troubleshoot OSPF, BGP, EIGRP in legacy environments, static/floating static routes, route redistribution, route filtering, ECMP, VRF/VRF-Lite, and policy-based routing.
- Support WAN, Internet-edge, and data-center routing, including troubleshooting asymmetric routing and route propagation issues.
- Implement network security controls including port security, storm control, BPDU Guard/Root Guard, DHCP Snooping, Dynamic ARP Inspection, and IP Source Guard.
- Perform software upgrades, configuration management, hardware lifecycle planning, and network capacity planning.
Enterprise Wireless
- Design, deploy, administer, troubleshoot, and optimize enterprise Cisco wireless environments.
- Support Cisco wireless controllers, Catalyst wireless solutions, access points, corporate and guest SSIDs, and high-density wireless environments.
- Configure and troubleshoot 802.1X, WPA2/WPA3 Enterprise, wireless authentication, roaming, RF performance, and client connectivity.
- Conduct wireless performance and capacity analysis and participate in wireless surveys.
- Utilize wireless analysis tools such as Ekahau; experience is highly desirable.
Network Access Controls
- Implement, administer, and troubleshoot Cisco ISE for enterprise network access control.
- Configure 802.1X, MAB, EAP, PEAP, EAP-TLS, and certificate-based authentication.
- Integrate ISE with Active Directory, RADIUS, and TACACS+ environments.
- Configure authorization policies, guest portals, and BYOD onboarding.
- Apply NAC, segmentation, Zero Trust, and secure network-access principles across enterprise environments.
Firewall Administration
- Administer and secure Palo Alto Networks next-generation firewalls and Panorama in multi-site enterprise environments.
- Build, optimize, and audit security policies, NAT rules, and application-layer filtering.
- Manage Panorama templates, device groups, and centralized firewall policies.
- Administer GlobalProtect, site-to-site IPsec VPNs, and SSL decryption.
- Analyze traffic and threat logs and use CLI tools to troubleshoot connectivity and security issues.
- Perform PAN-OS upgrades, hotfixes, hardware health checks, and maintenance of high-availability firewall environments.
- Integrate firewall identity services with Active Directory, LDAP, RADIUS, and MFA solutions.
Network Security
- Implement network segmentation, VLAN segmentation, ACLs, NAC, 802.1X, VPN, and DMZ architectures.
- Apply Zero Trust principles and integrate network infrastructure with enterprise security controls.
- Secure network management using TACACS+, RADIUS, SNMP security, SSH, and device-hardening standards.
- Partner with security teams to investigate and resolve network security incidents.
Network Design & Architecture
- Design LAN/WAN, branch-office, data-center, and wireless network solutions.
- Develop IP addressing strategies, VLAN standards, network templates, and configuration standards.
- Design network redundancy and high-availability solutions using technologies such as HSRP, VRRP, GLBP, StackWise, and StackWise Virtual.
- Perform network capacity and performance analysis and identify opportunities for optimization.
- Evaluate emerging networking technologies and develop recommendations for enterprise adoption.
- Establish and maintain network standards, documentation, and operational best practices.
- Collaborate with security, systems, applications, and IT operations teams on enterprise infrastructure initiatives.