NSX-T Systems Engineer
1-year contract
FULLY ONSITE Brooklyn, NY
Scope of Services:
- The NSX-T Systems Engineer will be responsible for providing implementation services for the VMware VCF Software suite of tools, including SDDC, vSphere, vSAN, NSX-T, and Aria.
- The role involves configuring L4/L7 Distributed Firewall rules and IDS/IPS functionality, as well as NSX-T Advanced Local and Global Loadbalancer.
- The engineer will implement software updates and security patches to the VCF environment and administer and support VMware NSX-T Datacenter 3.1.3/3.2.x.
Key Responsibilities:
- Provide implementation services for the VMware VCF Software suite (SDDC, vSphere, vSAN, NSX-T, Aria).
- Configure L4/L7 Distributed Firewall rules and IDS/IPS functionality.
- Configure NSX-T Advanced Local and Global Loadbalancer.
- Implement software updates and security patches to the VCF environment.
- Administer and support VMware NSX-T Datacenter 3.1.3/3.2.x.
Mandatory Skills/Experience:
- Minimum 8 years of hands-on experience in software design network technologies.
- Ability to work independently.
- Experience with BGP peering between NSX-T and Cisco ACI.
- Proficiency in NSX-T Distributed and Gateway Firewalls T1/SR with App ID based Layer7 Firewall rules.
- Expertise in Avi Global (DNS) and Local load balancing, including various load balancing methods and Layer7 monitoring of pools for SNAT VIPs.
- Understanding of VxLAN/Geneve based Federated stretch NSX-T segments.
- Knowledge of VMware ESXi vSphere/vCenter 7.x/8.x NSX-T VDS T1/T0 Segments.
- Experience with VCF Cloud foundation, supporting on-premises cloud solutions with NSX-T extensions into AWS and Azure.
- Ability to implement Workspace One/Horizon VDI solutions integrated with Azure AD and NSX-T identity-based Firewalling.
- Strong understanding of IP/IPv6 based networks, subnetting, and advanced routing protocols.
- Proficiency in configuring and administering VMware IT server, networking, and SAN storage solutions.
- Knowledge of hyper-converged infrastructure and vSAN technology.
- Experience with automation tools such as Python, Terraform, and Ansible pipelines.
- Proficiency in Microsoft Visio.
Detailed Understanding of Protocols and Compliance:
- BGP
- NSX-T Geneve
- DNS
- Certificate Authority Service
- Azure AD Services and IDP solutions
- Microsoft Active Directory
- IPv4 and IPv6 protocols
- Security Frameworks: NIST800-53 R4, PCI DSS 3.2.1, IRS Pub1075
Certification Requirements:
- VMware Certified Advanced Professional - Network Virtualization Design 2023 (Required)
Desirable Skills/Experience:
- Knowledge of Aria suite of products including vROPs, vCenters, VRA, and Log Insight.
- Knowledge of VMware Horizon.
- Cisco CCNP Enterprise (Preferred)
- VMware Certified Design Expert - Network Virtualization 2023 (Preferred)