L4 Network Architect / Engineer Cisco SD Access & Enterprise Networking Job at Xoriant, Los Angeles, CA

STNQZXBJYTI0OUpLSldZOUJyMm5Ra0cr
  • Xoriant
  • Los Angeles, CA

Job Description

Overview

We are hiring for an L4 Network Architect/Engineer to lead design and delivery of multi site Cisco Software Defined Access (SD Access) solutions at scale. Contribute to and implement architecture direction, drive complex deployments across distributed campuses, and mentor engineers while partnering closely with security and operations. The ideal candidate holds an active CCIE and demonstrates deep, hands on expertise across Cisco routing/switching, Cisco Catalyst Center (formerly Cisco DNA Center), Cisco ISE, Cisco FTD firewalls, and Cisco SD WAN, with expert level command of BGP, EIGRP, OSPF, and related enterprise routing protocols.

Notes


  1. Must reside in the immediate Los Angles metro area and be able to work onsite at client site in Downtown LA. Candidate has to visit different onsite work locations in LA so locals are preferred.
  2. Off hours / change windows as needed for critical migrations.



Responsibilities

What you ll do (Key Responsibilities) is to be interpreted here as follows:

  • Own end to end SD Access architecture for large, multi site enterprises: fabric design (control/edge/border), transit options, segmentation (SGTs/TrustSec), identity policy, and integration with WAN and data center.
  • Lead Catalyst Center driven automation: design templates, SDA workflows, network assurance, SWIM, and closed loop operations aligned to reliability/SLOs.
  • Design identity centric security with ISE: policy sets, authorization profiles, posture, PxGrid integrations, wired/wireless 802.1X/MAB, guest/BYOD, and scalable group policies.
  • Engineer secure edge and campus perimeters: Cisco FTD/Firepower policy design, NAT, VPN, IDS/IPS, SSL decryption strategy, and high availability.
  • Architect SD WAN underlay/overlay: transport independence, application aware routing, DIA/Cloud on ramp, security integration, and multi region scale.
  • Expert routing at scale: BGP (policy, route reflectors, communities), OSPF, EIGRP, ECMP, redistribution strategies, route filtering, summarization, and IPv6 planning.
  • Drive modernization roadmaps: brownfield to SDA migration, hierarchical campus design, QoS, multicast, wireless controller (Catalyst 9800) alignment, and resiliency patterns.
  • Deliver hands on build and escalation leadership: lab validation, pilot, phased rollout, cutover plans, MOPs, change windows, and root cause analysis for P1/P2 incidents.
  • Mentor and uplift engineering teams: design reviews, standards, runbooks, and enablement sessions for operations and field engineers.
  • Stakeholder leadership: collaborate with security, EUC, cloud, and application teams; translate business outcomes into technical architectures and measurable milestones.
  • Documentation & governance: HLD/LLD, as builts, standards, security exceptions, and compliance artifacts; contribute to reference architectures and reusable templates.


Qualifications
  • Active CCIE (any track; Enterprise Infrastructure and/or Security strongly preferred).
  • 10 years enterprise networking experience, including 3 5 years leading SDA architecture and deployment across multiple sites.
  • Proven, exceptional hands on skills with Cisco routing/switching and Catalyst Center (formerly Cisco DNA Center) for SDA automation and assurance.
  • Deep expertise with Cisco ISE (policy, 802.1X, SGT/TrustSec) and Cisco FTD (Firepower) firewalls (threat, access control, NAT/VPN, high availability).
  • Strong experience with Cisco SD WAN (design, policy/templating, security integration, operationalization).
  • Expert level knowledge of BGP, EIGRP, OSPF, redistribution, and route policy design for large enterprises.
  • Demonstrated success leading complex, multi phase migrations and mentoring senior engineers.


Preferred Qualifications
  • CCDE or dual CCIE; Cisco Certified Specialist certifications in SDA, ISE, or SD WAN.
  • Automation fluency (Ansible, Python, Terraform), Git based workflows, and API integration with Catalyst Center/ISE/FTD/SD WAN.
  • Wireless (Catalyst 9800/Prime/Catalyst Center Assurance), QoS strategy, multicast, NAC posture, and Zero Trust segmentation.
  • Cloud networking (Azure/AWS), hybrid connectivity, and DNS/DHCP/IPAM integration.
  • Familiarity with data center and campus interconnect (e.g., ACI concepts beneficial but not required).



#J-18808-Ljbffr

Job Tags

Local area, Immediate start,

Similar Jobs

Ryder

Owner Operators - Furniture Delivery Job at Ryder

Owner Operators - Furniture Home DeliverySpokane, WA WarehouseRyder Last Mile is looking to add to our expansive final mile delivery carrier network. We are looking for carriers that are interested in contracting to deliver and install furniture.Pay & Details... 

Ogburnstation Meat Market

Butcher/ Meat Cutter Job at Ogburnstation Meat Market

 ...Energetic Environment ~ Ongoing training ~ Employee Discount ~401k option Job Summary We are seeking an experienced Meat Cutter to join the team at our successful store. As a Meat Cutter, you will be responsible for operating the meat department to the... 

SILVERBACK COFFEE OF RWANDA

Coffee Roaster Job at SILVERBACK COFFEE OF RWANDA

 ...Silverback Coffee of Rwanda is looking for a PART TIME coffee roaster to join our 2 person team. We are located in Los Angeles, CA. 90015 Our ideal candidate is attentive, self motivated, hard-working and clean - Must have some coffee roasting experience. Responsibilities... 

VytlOne

PRN Pharmacy Technician - St. John's Episcopal Hospital Outpatient Pharmacy (Rockaway) Job at VytlOne

 ...Applications are currently being accepted for Per Diem (PRN) customer service focused Pharmacy Technician to work within the St. John's Episcopal Hospital Outpatient Pharmacy. St. Johns Episcopal Hospital is the only hospital providing emergency and ambulatory care to the... 

Jobs via Dice

Network Support Specialist Job at Jobs via Dice

nLeague Services, a client of Dice, is seeking a Network Support Specialist for the State of Georgia - Georgia Gwinnett College.Location: Lawrenceville...  ...administrative tasks on network equipment, firewalls, or computer systems.Be required to adhere to the Gdress-code (...