Infrastructure Integration Specialist (N/S) - Senior
Deliverable: Systems Deployment, Operations and Management.

The Resource will act as the Subject Matter Expert on enterprise F5 Application Delivery Controller hardware, software and functions to ensure all F5’s in (Application Hosting Services, On Premise and Public Cloud Services) are running at current code (N-1),  cleanup of all unused Virtual Clustered Multiprocessing ( VCMP’s), assess all F5 builds, report areas that may require improvement and options to reduce the F5 footprint in AHS environment as the Ministry transitions to cloud.

The Resource will need to have a Networking background where they will be well versed in routing and switching in an enterprise environment.

The Resource will act as a technical subject-matter expert on a variety of projects, as well as providing support for day-to-day operations. This includes change, problem and incident management.

Responsibilities:
  • Lead F5 application delivery initiatives for Application Hosting Services, On Premise OPS cloud and AHS environments, document processes and procedures.
  • Reviewing present F5 environment to find areas for optimization and will assist the team as required to:                                                        
  • Integrate and secure cloud services for applications.                        
  • Provide Operational Support for Networking/Security for GDC/Colo1/2/3 and /OPCS/Perimeter Fw for Azure and AWS.          
  • Daily operational changes, Incident/problem management.
  • Provide on call/standby support when required.
  • Closure of tickets in a timely manner, Keeping clients/management up to date on ticket status.
  • Must adhere to Service Level Agreement (SLA) metrics, device maintenance.
  • Providing technical MoP for all changes. ability to acquire network captures and articulate/document capture and point or root cause.  
  • Ability to work on Network/Security Project Initiatives along with running the business activities.

Experience and Skill Set Requirements:
Evaluation Breakdown:
 
Experience with F5 VIPRION in an enterprise environment - 20%
  • GTM and LTM? Physical, virt-GTM and LTM? Physical, virtual devices, VMware, Cloud (AWS, Azure, Google) integration experience.
  • Core Capabilities-F5 GIG IQ Central Management and deployment, Modern Authentication Using SAML, OAuth and OIDC.
  • Web-app proxy Centralizes authentication, authorization, and endpoint inspection via web app proxy.
  • Identity federation MFA and SSO Federated identity, drives adaptive multi-factor authentication (supporting FIDO U2F and RADIUS protocols), and enables single sign-on to all apps. Secure API Secures authentication for REST APIs, integrating OpenAPI (or Swagger) files. various projects being worked on.
  • Demonstration of leading projects and initiatives end to end (technical and non-technical devices, VMware, Cloud (AWS, Azure, Google) integration experience.
  • Secure API Secures authentication for REST APIs, integrating OpenAPI (or Swagger) files.
 
Specific Roles Experience in deploying, configuring and managing F5 Instances - 20%
  • Creating a tenant Name, AS3 declaration (High - Tenant/low - applications) levels grouping.
  • Distributed cloud services WAF, DDoS, Bot Defense, API Security, Client-side Defense
  • Fraud and Risk Aggregator Management Data intelligence.
  • Multi-Cloud Networking Network and App connect.
  • Performance and Reliability App Stack, DNS and DNS load balancer, CDN synthetic monitoring, VCMP, IRules, APM, Back end Servers, VIP, monitor for equal traffic distribution. Enterprise scale projects, problem resolution skills, identifying/communicating the issue .
  • Big-IP Security Access Policy Manager, Advanced Firewall Manager, Advanced WAF, Carrie-Grade NAT, DDoS Hybrid Defender, SSL orchestrator.

Experience with the technologies and tools of Networking, Security and Tools - 15%
  • Networking - Cisco Nexus, 9k, 7k, 5k, 3k, fex, vdc, vPC, nx-os, ACI, apic, fabric, spine, leaf, end point group, epg, contract, tenant, vxlan, F5, gtm, ltm, virtual server, pools, nodes, irules, profiles, health monitors, DNS, load balancing, apm access policy manager - sso, nac, app proxy, waf.
  • Security Check Point - policy, state, app control, id awareness, smart event (logging), smart console, security management server, ASA/ Firepower, firepower, h/a, snort, cpu profiles, vFW, fmc, IPS, logging, amp, Palo Alto, panorama, appID, userID, wildfire, threat prevention, url filter, autofocus, global protect VPN, vm series, vwire, routed mode, vsys
  • Tools -NNMI, HPNA, Nexus Insight, Netscout, Elastic, AlgoSec Ansible.

Experience in Daily Operational Activities and Communication with Stakeholders - 15%
  • Demonstrated knowledge and operational support, able to address tickets in a timely manner.
  • Prioritize tickets to meet SLA, update tickets weekly to avoid stale tickets. Reaching out to clients via email, IM, Phone.
  • CM assess tickets for missing details, address any issues during the assessment stage avoiding deals during the implementation window.
  • Review environment pre and post change.
  • IM prioritize tickets based on the severity. P1/P2 calls join bridge ASAP, request details from client, assess environment and provide finding. Attempt to first rule out networking/security devices then work with clients to determine root cause. Engage vendors, lead bridge with vendors, provide regular updates to management.
  • Review networking tools, take pack captures. Update the worklogs with finding.
  • PM assess the issue, recommends who needs to be on the call, works with the various teams and vendors to find the root cause, and reaches out the members on the team for input.