Position Summary
Concordant LLC is seeking a hands-on Senior Network Infrastructure Engineer to support a phased infrastructure modernization engagement for a multi-site customer. This contractor will own the network-focused workstream: validating the current environment, developing a practical future-state design, evaluating and recommending replacement hardware, and leading the configuration, implementation, performance testing, and cutover of network infrastructure.
The environment includes multiple business locations, SonicWall and Sophos firewalls and site-to-site connectivity, switching and wireless infrastructure, VMware ESXi networking, on-premises Windows services, and Azure connectivity dependencies. The right candidate combines strong design judgment with disciplined implementation and troubleshooting skills. This is an execution-oriented role; the engineer must be comfortable working independently while coordinating closely with Concordant's Azure/Windows engineer and project manager.
Key Responsibilities
- Validate discovery findings and document the current network topology, traffic flows, dependencies, constraints, risks, and performance bottlenecks across customer locations.
- Develop a right-sized target-state network design covering VLANs, segmentation, IP addressing, routing, switching, firewall policy, wireless, site-to-site VPNs, remote access, and resiliency.
- Review and improve SonicWall and Sophos firewall and VPN configurations, including rules, objects, NAT, routing, logging, and secure inter-site connectivity.
- Assess and configure switching and UniFi components, including VLAN assignments, trunks, uplinks, access ports, wireless network mappings, and management connectivity.
- Assess existing network hardware, software, licensing, lifecycle status, capacity, supportability, and replacement needs; translate findings into clear technical and operational requirements.
- Evaluate, size, and recommend firewalls, switches, wireless equipment, and related infrastructure from Sophos, SonicWall, Cisco, Fortinet, UniFi, or any other appropriate major vendor. Prepare bills of materials, licensing, support, and cost options; then lead ground-up configuration, staging, installation, migration, testing, validation, and documentation.
- Prepare implementation plans, configuration standards, rollback procedures, validation checklists, and concise as-built documentation needed for safe execution and support.
- Stage, implement, validate, and troubleshoot network changes across multiple sites while minimizing operational disruption.
- Coordinate Azure network connectivity with Concordant's Azure/Windows engineer, including VPN, routing, DNS, network security, and hybrid connectivity dependencies.
- Support iterative file-services and storage performance testing; identify network-related throughput, latency, packet-loss, MTU, routing, or firewall constraints and tune where appropriate.
- Support VMware networking dependencies, including physical uplinks, NIC teaming, vSwitches, port groups, VLAN presentation, and connectivity validation.
- Provide focused cutover support, root-cause troubleshooting, knowledge transfer, and operational handoff to Concordant and the customer.
Required Qualifications
- 7+ years of hands-on network engineering experience, including responsibility for production design, implementation, and troubleshooting in small-to-midsize enterprise environments.
- Demonstrated expertise with SonicWall and Sophos firewalls, site-to-site VPNs, firewall policy, NAT, routing, logging, and troubleshooting.
- Demonstrated experience gathering requirements and independently selecting, sizing, designing, and deploying complete network environments across multiple major vendors, including building and configuring new infrastructure from the ground up.
- Strong practical knowledge of Layer 2 and Layer 3 networking, VLANs, trunking, spanning tree, subnetting, DHCP, DNS dependencies, static and dynamic routing, QoS, and network segmentation.
- Experience with managed switching and wireless platforms; direct UniFi experience is strongly preferred.
- Experience supporting VMware ESXi network connectivity, vSwitches, port groups, physical NICs, and VLAN integration.
- Working knowledge of Azure networking, including virtual networks, subnets, network security groups, VPN gateways, route tables, and hybrid connectivity.
- Proven ability to diagnose performance issues using packet captures, throughput and latency testing, firewall logs, interface statistics, and other network telemetry.
- Ability to produce clear diagrams, configuration records, implementation plans, and concise technical documentation.
- Strong customer-facing communication, sound change-control discipline, and availability for scheduled evening or weekend cutovers when required.
Preferred Qualifications
- Relevant certifications such as SonicWall SNSA/SNSP, Sophos Firewall certification, CCNA/CCNP, Azure Network Engineer Associate, or comparable experience.
- Experience modernizing multi-site environments with limited segmentation, aging network components, or performance-sensitive hybrid workloads.
- Experience working in professional services or managed services environments with time-bounded project scopes and multiple technical stakeholders.
- Familiarity with infrastructure-as-code or configuration automation is helpful but not required.
Engagement Expectations
This is a project-based contract role expected to average 13 hours per week, with heavier periods of up to 30–40 hours during staging, site implementations, performance testing, and cutovers. The initial engagement is planned for approximately 280 hours, with a potential extension of up to 80 additional hours based on project needs and performance. Schedule and duration may shift as discovery findings, customer availability, and implementation sequencing are confirmed.
The contractor should be available during normal Mountain Time business hours for collaboration and may need to support scheduled after-hours changes. Travel to customer locations may be required for selected discovery, installation, or cutover activities; exact requirements will be coordinated in advance.
Role Boundaries and Collaboration
The contractor will lead the network workstream and collaborate with Concordant's Azure/Windows engineer and part-time project manager. The role is not intended to own Windows Server administration, Active Directory, DFS/file-server engineering, general Azure resource deployment, end-user support, or project administration except where those areas directly depend on network design, configuration, testing, or troubleshooting.
Success in This Role
- Network risks and dependencies are identified early and communicated clearly.
- Hardware and platform recommendations are well sized, vendor-neutral, cost-conscious, supportable, and aligned with the customer's pace and operational needs.
- Changes are implemented safely with documented validation and rollback steps.
- Connectivity and performance gates are resolved so downstream Azure and file-services work can proceed.
- Documentation is accurate and sufficient for handoff without creating unnecessary project overhead.
About Concordant LLC
Concordant LLC helps organizations plan, modernize, secure, and operate technology environments. Our teams value practical engineering, thoughtful communication, efficient execution, and supportable solutions.
Equal Opportunity Statement
Concordant LLC is an equal opportunity employer and considers qualified applicants without regard to legally protected characteristics. Reasonable accommodations are available during the hiring process.
Pay: Up to $50.00 per hour
Benefits:
Application Question(s):
- Will you now or in the future require sponsorship for employment?
- What is your current physical mailing address? (SBA HUBZone check)
- do you have availability for evening/weekend cutovers (as needed)?
- Do you currently have SonicWall SNSA/SNSP, Sophos, CCNA/CCNP, or Azure certifications?
Experience:
- hands-on network engineering : 7 years (Required)
- SonicWall/Sophos firewalls, site to site: 1 year (Required)
- designing/deploying multi-vendor networks: 1 year (Required)
- L2/L3 networking: VLANS, routing DHCP, DNS: 1 year (Required)
- managing switching/wireless experience; UniFi preferred: 1 year (Required)
- VMware ESXi networking; vswitches, port groups, NICs: 1 year (Required)
- Working knowledge of Azure networking & VPN gateways: 1 year (Required)
- packet captures, throughput/latency testing: 1 year (Required)
- documentation & technical writing: 1 year (Required)
Ability to Commute:
- Laramie, WY 82070 (Required)
Work Location: Hybrid remote in Laramie, WY 82070