Key Responsibilities :
- Design, implement, and maintain corporate network infrastructure prioritizing security, reliability, and scalability.
- Lead Cisco ISE deployments and architecture design expert in RADIUS / 802.1X authentication, EAP-TLS, TrustSec policies, TACACS, and AAA configuration on NADs.
- Oversee and tune guest / sponsor portals, BYOD onboarding, and custom portal solutions for secure and flexible network access.
- Plan, document, and execute Cisco ISE upgrades, patch management, gold star release evaluation, and regulatory compliance.
- Integrate network systems with Azure / Intune, Active Directory, and third-party ecosystems for device identity / posture, application access, and security controls.
- Manage end-to-end certificate lifecycle for network services, ISE portals, and device authentication (CSR generation, CA signing, binding, backups, expiry management).
- Administer TACACS for secure device management and policy-based access to network infrastructure.
- Automate network management with Python, Ansible, and REST APIs; create workflows with Cisco DNA Center (DNAC), automate inventory sync with CMDB (Freshworks, ServiceNow), and ensure API governance.
- Implement and support SD-Access solutions, including segmentation, policy deployment, and campus fabric operations.
- Troubleshoot complex wireless and wired network issues, conduct log analysis, resolve authentication failures, and optimize LAN / WAN performance.
- Collaborate in global network deployments, change management, and incident response—manage project documentation and coordinate across international teams and time zones.
- Engage with InfoSec and IT operations for policy compliance, risk mitigation, and collaborative integration projects.
Required Skills :
Advanced proficiency in Cisco ISE administration, DNA Center, SD-Access, LAN / WAN, wireless networks, and 802.1X protocols.Deep understanding of RADIUS, EAP-TLS, TrustSec, TACACS, AAA policies, and NAD configuration.Hands-on experience with ISE portals, certificate management, upgrade procedures, regulatory compliance, and security patching.Familiarity with ITSM tools (JIRA, Freshworks / Freshservice, ServiceNow) and cloud integration (Azure, AWS).Proven automation skills using Python, Ansible, REST APIs; experience integrating with ITSM tools (JIRA, Freshworks / Freshservice, ServiceNow) and cloud platforms (Azure, AWS).Strong troubleshooting, documentation, and time zone coordination abilities; effective communicator with cross-functional and global teams.Preferred Qualifications :
5+ years network / security engineering experience, 3+ years in secure Cisco environments.Certifications : CCNP Security, CCIE, or equivalent.Skills Required
AAA, certificate management , Wan, Radius, Ansible, Tacacs, Regulatory Compliance, Cisco Ise, Lan, Rest Apis, Python