
Fanatics
3 days ago

The Role
We’re looking for a seasoned Senior Network Engineer with deep experience in both traditional networking and modern cloud architectures. You will architect, implement, and maintain secure, scalable networks across on-prem and cloud environments. You’ll also act as a subject matter expert in Palo Alto, Cisco routing and switching, and cloud networking (AWS, Azure, or GCP).
What Youll Do:
- Design, deploy, and support enterprise-grade network solutions including (LAN, WAN, SD-WAN, VPN, cloud networking, and SASE).
- Lead the implementation and ongoing management of Palo Alto Networks solutions, including Next-Generation Firewalls (NGFW), Panorama, GlobalProtect, threat prevention, and SSL decryption.
- Design secure and highly available hybrid cloud network architectures integrating with AWS, Azure, or GCP.
- Perform deep packet analysis, root cause investigations, and performance/security tuning.
- Leverage Infrastructure as Code (IaC) and scripting tools (e.g., Terraform, Ansible, Python) to automate network provisioning, monitoring, and compliance.
- Own network security posture: enforce segmentation, zero-trust principles, firewall policies, and cloud-native controls.
- Provide tier-3 support and mentorship to junior engineers and IT support staff.
- Evaluate and recommend new technologies and tools to align with future growth and security needs.
What Were Looking For:
- Minimum 7 years of progressive experience in network engineering within complex enterprise environments.
- At least 3 years of hands-on experience with Palo Alto Networks firewalls and Panorama.
- Strong expertise of cloud networking concepts, including VPCs, transit gateways, routing, security groups, peering, etc. in AWS and/or Azure.
- Solid understanding of core networking protocols such as BGP, OSPF, IPsec, DNS, DHCP, and NAT.
- Experience designing and troubleshooting hybrid connectivity (Direct Connect, ExpressRoute, VPN tunnels).
- Proficiency in network automation, scripting (Python, PowerShell), and infrastructure-as-code.
- Familiarity with NAC, load balancing (F5, Azure App Gateway), and SD-WAN solutions.
Preferred Qualifications:
- Palo Alto PCNSE certification.
- AWS Certified Advanced Networking or Azure Network Engineer Associate.
- Experience with SASE, ZTNA, or cloud-native security solutions (e.g., Prisma Access, Zscaler).
Achieving our goals requires strong collaboration and partnership between our teams and our internal stakeholders. To best support this, the person who accepts this role is expected to be on site, in office four days per week. To provide our employees with flexibility, we offer a unique benefit where employees at Fanatics corporate entity can work remotely for up to four weeks per year, which can be taken in daily or weekly increments.
In NYC, the salary range for this position is $155,000 to $195,000, which represents base pay only and does not include short-term or long-term incentive compensation. When determining base pay, as part of a final compensation package, we consider several factors such as location, experience, qualifications, and training.