Co-Managed Network & Security Engineer
Remote-East Coast
A well-established East Coast professional services firm has built a co-managed services team that is now pushing 60+ clients and growing fast. The team is expanding its networking practice and needs an engineer who can walk into a complex, unfamiliar customer environment and own the network layer.
Co-managed means every customer already has IT staff on site. You are not a help desk. You are the person they call when something complex breaks that nobody else can fix.
What lands on your desk
A BGP peering session with an upstream ISP misbehaving and nobody on site who knows where to start. An OSPF adjacency dropping across a shared WAN segment mid-topology change. A site-to-site IPsec VPN failing in a hub-and-spoke environment with no clear root cause. A firewall HA pair behaving unpredictably under failover.
You are the escalation layer and the project engineer. No two customer environments look the same. That variety is either what draws you to this or it is not.
What you will own
Routing and WAN: eBGP peering with upstream ISPs, prefix advertisement, route validation, OSPF design and troubleshooting across shared WAN segments, BGP path manipulation for failover.
Firewall Administration: Palo Alto, Fortinet, Juniper, and Cisco across HA deployments. You are not locked into one vendor. You know how the concepts translate.
VPN Architecture: Site-to-site IPsec in hub-and-spoke and mesh topologies, remote access VPN, and authentication integration with Microsoft 365 and Entra ID.
Network Design: Subnets, VLANs, inter-site connectivity, segmentation. Layer two and layer three fundamentals that hold up regardless of the manufacturer sitting in front of you.
ISP and Circuit Troubleshooting: Working independently to determine whether the problem lives at the provider, the edge device, or somewhere in between.
You will thrive here if you have:
Hands-on BGP, OSPF, and IPsec VPN across enterprise multi-site environments
Multi-vendor firewall depth in at least two of: Palo Alto, Fortinet, Juniper, Cisco
Experience integrating network authentication with Entra ID and M365
Strong VLAN, subnet, and segmentation fundamentals
MSP, professional services, or multi-customer environment experience preferred
East Coast availability
Certifications a plus: CCNP, NSE, JNCIS/JNCIP, PCNSE
What this does for your career
Working remotely with a team that trusts you to own your decisions means no micromanagement and no commute. Every customer environment is different, which means you are constantly building experience across vendors, topologies, and scenarios that a single internal role would never expose you to. Engineers who thrive here tend to build stronger resumes faster than their peers who stayed put.
What we talk about in interviews.
Real scenarios. Not certification questions, not surface-level descriptions of what a protocol does. We want to know which command you ran, which log you pulled, what broke first, and how you fixed it. Engineers who can go there tend to love it here. It’s the culture we’ve built.
Probably not a fit if:
Networking was one piece of a generalist role but never your primary domain
You have only worked in one static environment and want to keep it that way
You are not interested in customer-facing consulting work
July 13, 2026