Network Engineer - Secure Network, Perimeter, and Connectivity Services
Betzdorf, LU

Network Engineer - Secure Network, Perimeter, and Connectivity Services
The job responsibilities outlined in this document are not exhaustive and may evolve over time and be reviewed according to business needs.
ROLE DESCRIPTION SUMMARY
The Network Engineer will be responsible for the design, implementation, administration, security, and operational support of SES Satellites’ enterprise and mission-support network infrastructure. This includes routers, switches, firewalls, VPNs, routing, switching, segmentation, remote connectivity, monitoring, network documentation, and coordination with infrastructure platforms hosted on Nutanix.
The role supports secure communications and infrastructure availability for satellite operations, corporate IT, and governmental or NATO-related projects. The Network Engineer will act as the team’s primary network and perimeter-security specialist while collaborating closely with the two Infrastructure Engineers to ensure end-to-end resilience across compute, storage, virtualization, and network layers.
PRIMARY RESPONSIBILITIES / KEY RESULT AREAS
- Design, configure, operate, and troubleshoot LAN, WAN, data center, and secure connectivity services across routers, switches, firewalls, and VPN platforms.
- Manage network segmentation, VLANs, routing protocols, access control policies, firewall rules, NAT, secure remote access, and network resilience.
- Monitor network availability, performance, capacity, and security events, performing root-cause analysis and implementing corrective actions.
- Support secure integration between Nutanix-hosted workloads, corporate systems, satellite operations environments, and external customer or governmental networks.
- Support Infrastructure as Code practices, preferably Terraform or similar tools, for repeatable deployment and version-controlled management of network-related infrastructure components where applicable.
- Use declarative configuration management approaches, including Ansible or comparable tools, to automate network configuration, enforce standards, and reduce manual configuration drift.
- Deploy, integrate, and support Kubernetes cluster networking requirements, including ingress, service networking, network policies, load balancing, DNS, connectivity, and firewall dependencies.
- Apply security hardening, patching, configuration backup, vulnerability remediation, change control, and compliance documentation for network devices.
- Develop and maintain network diagrams, configuration standards, operational procedures, firewall rule documentation, and recovery runbooks.
- Coordinate with vendors, security teams, infrastructure engineers, and project stakeholders during incidents, upgrades, audits, and new service deployments.
- Support on-call or planned maintenance activities for high-priority services and mission-critical connectivity.
COMPETENCIES
- Demonstrated capability to collaborate effectively, work as part of a team, share knowledge, and contribute constructively within a small multidisciplinary infrastructure function.
- Excellent analytical, documentation, stakeholder-management, and communication skills, with the ability to explain technical network matters to both technical and non-technical audiences.
QUALIFICATIONS & EXPERIENCE
- Bachelor's degree in computer engineering, Network Engineering, Telecommunications, Information Technology, or equivalent professional experience.
- Minimum 4–6 years of experience in network engineering, network operations, firewall administration, or secure enterprise connectivity.
- Strong hands-on experience with enterprise routers, switches, firewalls, routing and switching technologies, VPNs, monitoring tools, and network troubleshooting.
- Good understanding of virtualization and HCI network dependencies, including VLANs, virtual switching, storage/network traffic separation, and data center connectivity.
- Experience in security-sensitive, regulated, governmental, telecoms, defense, or satellite communications environments is strongly preferred.
- Relevant certifications are preferred, such as Cisco CCNA/CCNP, Fortinet NSE, Palo Alto, Check Point, CompTIA Security+, ITIL, or equivalent vendor certifications.
- Fluency in English, written and spoken, is mandatory for operational communication, documentation, vendor coordination, and work on international or governmental projects.
OTHER KEY REQUIREMENTS / COMMENTS
- Eligibility and willingness to obtain and maintain NATO, EU, national governmental, or other project-specific security clearance as required.
- Willing to work at least 60% onsite from office
SES and its Affiliated Companies are committed to hiring and retaining a diverse workforce. We are an Equal Opportunity/Affirmative Action employer and will consider all qualified applicants for employment without regard to race, color, religion, gender, pregnancy, sex, sexual orientation, gender identity, national origin, age, genetic information, protected veteran status, disability, or any other basis protected by local, state, or federal law.
SES and its Affiliated Companies are committed to providing fair and equal employment opportunities to all. We are an Equal Opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, gender, pregnancy, sex, sexual orientation, gender identity, national origin, age, genetic information, protected veteran status, disability, or any other basis protected by local, state, or federal law.
For more information on SES, click here.