IT Network and Security Engineer – Hedge Fund Service Provider recruitment

Key Tasks:

The role requires a flexible, highly skilled engineer who is capable of managing multiple work streams in a fast-paced service provider environment. Teamwork and ability to work on own initiative is imperative for the role which includes (but is not restricted to the following key areas):

New Client Solutions/Designs:

Involves design and implementation of new client network architecture ready for client on-boarding in to our private cloud (Options PIPE®. These designs range from (but are not limited to) redundant Gig-E connections to multiple OTL datacentres, site to site VPNs, data centre x-connects, secure web hosting services and layered firewall security, through to software VPN access, and home/office network connectivity using site-to-site Internet VPNs.

Network evolution of core PIPE services:

Example projects include data centre greenfield builds, data centre relocation projects, and global deployments of new network/application services. In doing so, you will use a  wide range of enterprise-level network and security technologies including Catalyst switches (65xx/45xx), Cisco routers (39xx/29xx) and Nokia Checkpoint firewalls.

3rd Party Network Connections:

Options provides broker/venue connectivity as part of its PIPE Core® offering, typically to Tier 1 Investment Banks, brokers or pools of liquidity. We deliver these either via direct fibre circuits, via x-connects, or therough the use of global MSP networks (e.g. BT Radianz, TNS).

Direct Exchange Connectivity:

Options provides connectivity to and market data services from the global catalogue of stock exchanges and venues/MTFs. We deliver ultra-low latency market data and on-exchange trading services. Currently connected exchanges include NYSE.Euronext, Liffe, LSE, Deutsche Boerse (Xetra/Eurex) as well as MTFs such as BATS Chi-X Europe and Direct Edge.


Technical Skills should include most of the following:

WAN Technologies:

IPSEC, GRE, E1/T1, ATM, PPP, HDLC, SONET, xDSL, WES/LES, SDSH, Dark fibre

LAN Technologies:

Gigabit Ethernet (GigE etc), TenGig Ethernet, Multicast (PIM/IGMP), Spanning-Tree (+extensions), switching, Vlan trunking EtherChannel (PAgP, LACP), SVI’s and inter-vlan routing, VOIP, QoS and DiffServ

WLAN Technologies:

Cisco Aironet deployment

Familiarity with 802.11a/b/g/n deployments

Familiarity with wireless security (WEP/WPA/WPA2)

Routing Protocols:

OSPF, BGP,RIP (v2), static routes, route re-distribution, policy-based routing

Security Platforms:

Checkpoint NGX R65/R70 and Management Suite (SmartCenter, SmartUpdate, SmartView Tracker)

Nokia IPxxx platforms - experience implementing/installing/troubleshooting on

NMS and Troubleshooting Tools:

CiscoWorks, tcpdump, fwmonitor, Ethereal, Wireshark

Hardware:

Experience with our common platforms would be useful

Cisco Catalyst switches - 6500, 4500, 3750, 3650

Cisco routers – 38xx, 28xx, 88x, 87x

Nokia Checkpoint firewalls – IP3xx, IP5xx

F5 (GTM)

IBM BladeCenter HS20/HS21

Wireless access points -  3560, 2950, Aironet 1242ag

Accreditation:

CCNP and above (essential)

Checkpoint accredited CCSA and above (preferred)