Job Title:
WAN / SD-WAN L3 Engineer
Job Band:
PRO
Reporting To:
SME – WAN / SD-WAN Program Manager / Operations Manager / Regional Manager / Head – RC
Experience:
6–8 Years
Education:
Any Graduation / Diploma
Domain:
Enterprise & Service Provider WAN / SD-WAN
Work Environment:
Customer-facing, SI / Managed Services
Role Overview
The WAN / SD-WAN L3 Engineer is responsible for
designing, deploying, operating, and optimizing large-scale enterprise WAN and SD-WAN networks
. This role involves
hands-on engineering
,
change leadership
, and
technical mentorship
while ensuring
high availability, performance, and SLA adherence
across multi-region networks.The engineer will act as a
technical escalation point (L3)
, lead planned maintenance activities, and collaborate with customers, ISPs, vendors, and internal operations teams.
Key Responsibilities
WAN / SD-WAN Engineering & Operations
- Deploy, configure, and manage Cisco WAN platforms including ISR, ASR, NCS routers running IOS, IOS-XE, and NX-OS.
- Design and implement enterprise WAN architectures across multiple regions using:
- MPLS, ILL, MPLS-VPN
- BGP peering, VRF-based designs
- Redundant and multi-homed WAN connectivity
- Implement and support Cisco SD-WAN solutions, including policy design, application-aware routing, and traffic steering.
Design, Documentation & Governance
- Create and maintain:
- High-Level Design (HLD) and Low-Level Design (LLD)
- Network architecture diagrams
- Method of Procedures (MoPs)
- Standard Operating Procedures (SOPs)
- Change and implementation documentation
- Validate Plans of Action (PoA) and ensure proper CAB approvals for all changes.
Change & Maintenance Leadership
- Lead and execute planned maintenance windows, migrations, and large-scale rollouts.
- Ensure risk assessment, rollback planning, and post-change validation.
- Maintain service continuity and minimize customer impact during changes.
Security & VPN Integration
- Implement and troubleshoot WAN security components including:
- IPSec VPN, Site-to-Site VPN, SSL VPN
- Integration with firewall platforms (Palo Alto, Check Point, Fortinet)
- Prepare MoPs/SOPs for security-related changes and guide L2 teams during execution.
Performance Optimization & Troubleshooting
- Perform WAN optimization using:
- QoS policy design
- Traffic engineering
- Bandwidth management
- Troubleshoot complex WAN/SD-WAN issues involving routing instability, latency, packet loss, and application performance.
- Handle escalated incidents and ensure effective ticket management to meet agreed SLAs.
Mentoring & Collaboration
- Mentor and guide L2 engineers during incident troubleshooting and change execution.
- Coordinate with ISPs, OEMs, vendors, and cross-functional internal teams.
- Act as a trusted technical advisor for customers.
Essential Technical Skills
WAN & Routing Technologies
- Strong expertise in:
- MPLS, MPLS-VPN
- BGP, OSPF, IS-IS, EIGRP
- VRF, multi-homing, peering
- Redundant WAN architectures
- Deep understanding of enterprise and service provider WAN designs.
Cisco Platforms & SD-WAN
- Hands-on experience with:
- Cisco ISR, ASR, NCS
- Catalyst & Nexus (integration level)
- IOS / IOS-XE / NX-OS
- Cisco SD-WAN deployment, policy design, and operations.
Security & VPN
- IPSec, L2L VPN, SSL VPN implementation within WAN architecture
- Integration with firewall platforms:
- Palo Alto
- Check Point
- Fortinet
Certifications (Preferred)
- Cisco CCNA / CCNP – Service Provider
- Cisco SD-WAN Certification
- Security certifications on:
- Palo Alto
- Check Point
- Fortinet (added advantage)
Soft Skills & Behavioral Competencies
- Strong communication and interpersonal skills
- Ability to work under pressure and in high-availability environments
- Customer-focused mindset with strong ownership
- Effective collaboration with vendors, ISPs, and cross-functional teams
- High attention to detail and process adherence
Experience Requirements
- 6–8 years of relevant experience in a customer-facing SI / Managed Services environment
- Proven experience in:
- Multi-site WAN design and deployments
- Large-scale migrations and rollouts
- SLA-driven operations and escalation handling
Skills: integration,sdwan,wan,security,ios,design,operations,enterprise,cisco