Job Description – L2 Network Engineer
Key Responsibilities
1. Network Monitoring & Operations
- Perform continuous monitoring of network infrastructure using approved monitoring tools.
- Monitor availability, latency, utilization, and health indicators across LAN, WAN, SD-WAN, and Data Center networks.
- Acknowledge alerts, perform initial diagnosis, and take corrective actions as per SOPs.
- Review system logs, audit trails, and operational alerts for anomalies.
- Maintain accurate network documentation, topology updates, and operational records.
2. Incident Management (L2)
- Act as the first point of contact for network-related incidents.
- Log, categorize, prioritize, and track incidents in ITSM tools.
- Perform initial troubleshooting for connectivity, performance, and access issues.
- Restore services using documented runbooks and standard fixes where applicable.
- Escalate incidents to L2/L3 teams with proper diagnostics, logs, and evidence.
- Participate in bridge calls and provide real-time updates during major incidents.
3. Network Security Operations (L2 Support)
- Monitor firewall logs, access violations, and security alerts.
- Execute approved firewall rule changes, access requests, and policy updates under supervision.
- Support Network Access Control (NAC) operations including authentication and posture validation alerts.
- Identify and report suspicious or anomalous traffic patterns for further analysis.
- Ensure adherence to security policies, hardening standards, and access controls.
4. Change & Configuration Support
- Support approved network changes as per change records and implementation plans.
- Execute low-risk, pre-approved changes under guidance (e.g., configuration updates, rule additions).
- Perform pre-change and post-change checks to validate service stability.
- Maintain configuration backups and assist in restoration activities when required.
- Update change documentation and evidence as per governance requirements.
5. Maintenance & Lifecycle Support
- Assist during scheduled maintenance windows including device reboot, shutdown, and startup activities.
- Provide on-site or remote standby support during infrastructure or facility maintenance.
- Track hardware support contracts, warranties, and end-of-support notifications.
- Proactively report capacity, performance, or lifecycle risks to senior engineers.
6. Reporting & Compliance
- Collect operational data for daily, weekly, and monthly service reports.
- Support reporting on incidents, changes, availability, and security posture.
- Ensure all activities are logged, auditable, and compliant with ITIL and security controls.
- Maintain evidence for patching, access, and configuration compliance.
Technologies – Exposure Required
Network Platforms
- Cisco Nexus (Data Center Switching – basic operations)
- Cisco ACI (monitoring, tenant/EPG visibility)
- Cisco SD-WAN (monitoring, alerts, basic checks)
- Cisco WAN Routers & Campus Switches
Security & Identity
- Firewalls (rule monitoring, basic administration)
- Cisco ISE / TACACS (access alerts, basic support)
- Network segmentation & access control concepts
Monitoring & ITSM
- Network Monitoring Tools (SNMP-based tools, dashboards)
- ITSM tools (Incident, Change, Problem workflows)
- Log analysis and alert handling
Skills & Competencies
Technical Skills
- Basic understanding of TCP/IP, routing, switching, and VLANs
- Familiarity with firewall rules, access controls, and network security concepts
- Ability to follow SOPs, runbooks, and escalation procedures
- Basic troubleshooting and log analysis skills
Process & Operational Skills
- Understanding of ITIL processes (Incident, Change, Problem)
- Strong documentation and evidence management discipline
- Ability to work in shifts and high-availability environments
Soft Skills
- Clear communication during incidents and escalations
- Attention to detail and operational discipline
- Ability to work under pressure and follow structured processes
- Team-oriented with strong coordination skills
Role Boundaries
- No network design or architecture responsibilities
- No major configuration changes without approval
- No independent implementation of high-risk changes
- All activities performed under defined SOPs and governance