The Operations Technology “O.T.” Network Engineer position directly supports all the AES Clean Energy networks, firewalls, switches, and related network equipment. The position is responsible for ensuring compliance with NERC Critical Infrastructure Protection (CIP) standards and AES Global Standards.
The O.T. Network Engineer serves as a key point of contact and technical expert supporting the AES Clean Energy Assets. They will manage project network documentation, and remediation activities and communicate compliance results to OT Management Team.
This position is a NERC-regulated position. As such, a background check in the form of a Transport Workers Identification Credential (TWIC) is required for this position.
The candidate must have a strong working knowledge of routers, firewalls, business-to-business tunnels, and switches. In addition, a strong working knowledge of secure networking concepts is required. An understanding of the NERC CIP Standards is a definite plus. This position requires excellent problem-solving and decision-making skills, the ability to work with minimal supervision, and the ability to perform duties effectively under emergency situations.
Primary duties and responsibilities:
•Assist in the design and development of network implementations.
•Implement standards and operating procedures.
•Maintain accurate change management documentation for all hardware and software modifications.
•Conduct routine hardware and software audits of all supported security devices to ensure compliance with established standards, policies, procedures, and requirements.
•Actively manage our ticketing system to update firewall rules, and troubleshoot connectivity and other networking issues.
•Perform all required operational maintenance and troubleshooting of supported network assets.
•Participate in disaster recovery, exercises, and events.
•Evaluate and test software updates supplied by vendors, before installation.
•Work with vendors, application developers, database administrators, corporate IT, and other technology groups to resolve any problems.
•Participate in budgeting and purchasing processes
Other duties as assigned
•Up to 25% travel may be required at times to learn and support on-site operations.
•On-call work will be required on a rotating basis to support 24/7 operations.
Qualifications and requirements:
•Must be located in the PST (Pacific Standard Time) timezone, or available to work within this timezone.
•Ability to pass a background check to acquire a TWIC card.
•Bachelor’s degree in Computer Science or related subject
•Ability to wear work-appropriate PPE when working at generation locations.
•Cisco certification preferred
Desired Experience / Training:
•Knowledge of Cisco: FTD, FMC w IPS, and IDS, Network switches, Network routers, Meraki, SD-WAN.
•Ability to assist in network design.
•Client and B2B VPN implementation.
•Performing network security assessments.
•LAN/WAN infrastructure knowledge and comprehension of technical manuals preferred.
•Excellent planning, organizational, verbal and written communication skills and must have the ability to express complex technical concepts effectively, both verbally and in writing.
•Ability to work well with people from varying disciplines with varying degrees of technical experience.