IT Network and Security Engineer – Hedge Fund Service Provider recruitment
Key Tasks:
The role requires a flexible, highly skilled engineer who is capable of managing multiple work streams in a fast-paced service provider environment. Teamwork and ability to work on own initiative is imperative for the role which includes (but is not restricted to the following key areas):
New Client Solutions/Designs:
Involves design and implementation of new client network architecture ready for client on-boarding in to our private cloud (Options PIPE®. These designs range from (but are not limited to) redundant Gig-E connections to multiple OTL datacentres, site to site VPNs, data centre x-connects, secure web hosting services and layered firewall security, through to software VPN access, and home/office network connectivity using site-to-site Internet VPNs.
Network evolution of core PIPE services:
Example projects include data centre greenfield builds, data centre relocation projects, and global deployments of new network/application services. In doing so, you will use a wide range of enterprise-level network and security technologies including Catalyst switches (65xx/45xx), Cisco routers (39xx/29xx) and Nokia Checkpoint firewalls.
3rd Party Network Connections:
Options provides broker/venue connectivity as part of its PIPE Core® offering, typically to Tier 1 Investment Banks, brokers or pools of liquidity. We deliver these either via direct fibre circuits, via x-connects, or therough the use of global MSP networks (e.g. BT Radianz, TNS).
Direct Exchange Connectivity:
Options provides connectivity to and market data services from the global catalogue of stock exchanges and venues/MTFs. We deliver ultra-low latency market data and on-exchange trading services. Currently connected exchanges include NYSE.Euronext, Liffe, LSE, Deutsche Boerse (Xetra/Eurex) as well as MTFs such as BATS Chi-X Europe and Direct Edge.
Technical Skills should include most of the following:
WAN Technologies:
IPSEC, GRE, E1/T1, ATM, PPP, HDLC, SONET, xDSL, WES/LES, SDSH, Dark fibre
LAN Technologies:
Gigabit Ethernet (GigE etc), TenGig Ethernet, Multicast (PIM/IGMP), Spanning-Tree (+extensions), switching, Vlan trunking EtherChannel (PAgP, LACP), SVI’s and inter-vlan routing, VOIP, QoS and DiffServ
WLAN Technologies:
Cisco Aironet deployment
Familiarity with 802.11a/b/g/n deployments
Familiarity with wireless security (WEP/WPA/WPA2)
Routing Protocols:
OSPF, BGP,RIP (v2), static routes, route re-distribution, policy-based routing
Security Platforms:
Checkpoint NGX R65/R70 and Management Suite (SmartCenter, SmartUpdate, SmartView Tracker)
Nokia IPxxx platforms - experience implementing/installing/troubleshooting on
NMS and Troubleshooting Tools:
CiscoWorks, tcpdump, fwmonitor, Ethereal, Wireshark
Hardware:
Experience with our common platforms would be useful
Cisco Catalyst switches - 6500, 4500, 3750, 3650
Cisco routers – 38xx, 28xx, 88x, 87x
Nokia Checkpoint firewalls – IP3xx, IP5xx
F5 (GTM)
IBM BladeCenter HS20/HS21
Wireless access points - 3560, 2950, Aironet 1242ag
Accreditation:
CCNP and above (essential)
Checkpoint accredited CCSA and above (preferred)