• Own network architecture across the portfolio: core and distribution switching, routing, out-of-band
management, addressing and DNS, firewalls, and remote access, plus the standards and reference designs
that make each new site a deployment rather than a redesign.
• Design the physical layer inside the facility: structured cabling, pathways and cable management, cabinet
and cross-connect standards, and fiber and copper plant throughout the building.
• Own network security at the sites: firewall policy and rule lifecycle, intrusion detection and prevention,
segmentation and access control between zones, secure remote access for staff and vendors, and network
logging into our monitoring stack.
• Build the colocation side of the network: customer handoffs, cross-connect provisioning, and a repeatable
process for turning up tenant connectivity without one-off engineering each time.
• Partner with the controls and security teams on OT networking: segmentation between IT and OT, network
zones for SCADA and BMS, and reliable device-to-server paths for controls traffic.
• Write the specifications, drawings, and bills of material we hand to contractors and low-voltage vendors,
and review their designs and submittals so we get what we specified. Own network commissioning at each site: point-to-point testing, fiber certification, labeling, as-built
drawings, and turnover documentation.
• Run the network in production: monitoring and alerting, capacity planning, change control, configuration
and firmware management, backups, and root cause analysis after events.
• Participate in an on-call rotation and act as the escalation point for network incidents at live sites.
• Write and maintain the standards, runbooks, and documentation that let the next site and the next
engineer repeat this work without starting over.