Senior Network & System Engineer (W/M)
Role details
Job location
Tech stack
Job description
As our Senior Network & System Engineer, you are the operational backbone of the Group's infrastructure.
You act as the Technical Lead for the Core Infrastructure Manager. You guarantee the global connectivity (WAN/SD-WAN), you manage the move to SASE (Security), but you also operate the "System" layer (Cloud VMs, Identity, Hosting) for critical group applications.
You maintain our legacy and hybrid environments, working closely with external hosting partners to ensure availability and performance.
Your key responsabilites will be :
Global Network Architecture
- WAN Management: Manage and evolve the global SD-WAN network (Fortinet) and legacy MPLS links (Orange). You ensure the stability of interconnections with partners (IPSec).
- SASE Transformation: Lead the technical migration from traditional VPNs to a modern SASE architecture (FortiClient, Checkpoint Harmony, Palo Alto Prisma Access) in close collaboration with the Cybersecurity team.
- Connectivity Support: Act as the Level 3 expert for network routing and switching issues across the 7 regions and 9 BUs.
System Operations & Cloud Hosting
- Multi-Cloud Management : Supervise the Run of group environments hosted in Azure, AWS, and OVH. You pilot external and internal partners to maintain specific applications and their underlying databases.
- Private Cloud & Legacy Hosting: Pilot the external Managed Service Providers responsible for the group's critical business applications.
- SAP Ecosystem Support: Collaborate with the SAP BC Administrator to manage the peripheral systems surrounding SAP, such as but not limited to interface tool (MFT) and labeling solution.
Identity & Modern Workplace
- Identity Management: Manage Microsoft Entra ID and DNS for group entities, ensuring secure authentication protocols in collaboration with the Cyber team and the Group O365 administrator.
- Device Management: Manage the Microsoft Intune tenant for the group, specifically for subsidiaries with no on-premises infrastructure.
Security, Compliance & Projects
- Security Governance: Participate in monthly governance meetings (DDT O365 Security, Cybersecurity, DDT Group) to align infrastructure operations with security policies.
- Audits: Active participation in annual SWIFT audits, ensuring network and system compliance.
- M&A & Integration: Participate in the technical integration of new acquisitions (Mergers & Acquisitions).
- Roadmap Contribution: Contribute to the DDT Roadmap by proposing technical evolutions and providing support to the Platform Engineering Team when they need infrastructure expertise.
Requirements
- Experience: 7+ years in a hybrid Network/System role in an international environment.
- Technical Mastery:
- Network: Strong expertise in SD-WAN (Fortinet), IPSec, Routing, LAN, WLAN and SASE concepts.
- System/Cloud: Good knowledge of Azure/AWS (IaaS), Windows Server, Linux, and SQL/MySQL basics.
- Identity: Strong knowledge in Entra ID (Azure AD) and Intune.
- Soft Skills:
- Vendor Management: Ability to challenge external providers (MSPs) on SLAs and technical root causes.
- Versatility: Ability to switch from configuring a firewall rule to debugging a SaaS application login issue.
- Service Oriented: You see yourself as a service provider to the BUs and Subsidiaries.