Loading open roles
Loading open roles
Loading role

Connect Pro Management Consultants · posted 5 months ago
Network Architect – IT Infrastructure (186368)
Role Summary
Network Architect – IT Infrastructure Network LAN, Wireless, and Cisco ISE is
responsible for defining, designing, and governing secure, resilient, and
scalable
enterprise network infrastructure architectures, with a primary focus on
campus and
data center LAN, enterprise wireless, and Cisco Identity Services Engine
(ISE). This
role establishes the long‑term technology strategy and roadmap for these
platforms,
ensuring they align with business priorities, security objectives, and
evolving industry
trends.
The architect serves as a senior technical authority and trusted advisors
across Koch
companies, embedding Security First, Zero Trust, and Automation as
foundational
principles rather than afterthoughts. Through close partnership with
engineers,
domain architects, and business stakeholders, this role enables modern,
policy‑driven, and identity‑aware network designs that reduce risk, increase
agility,
and create durable long‑term value.
How This Role Creates Value
This role protects and enables the enterprise by modernizing foundational
network
services that nearly every application and user depends on. By evolving LAN,
wireless, and ISE architectures toward identity‑centric, software‑defined, and
automated models, the architect:
Reduces cyber and operational risk through consistent Zero Trust and
security‑by‑design architectures
Improves reliability and user experience for campus, manufacturing, and
office environments
Enables faster business outcomes by simplifying network consumption and
operations
Creates leverage by standardizing designs that scale across Koch
companies.
Key Responsibilities
Architecture & Technical Leadership
Own and evolve the enterprise LAN, Wireless, and Cisco ISE architecture
roadmap, aligning platform capabilities to business priorities, security
posture,
and long‑term technology strategy.
Define and govern architecture standards, reference designs, and
architectural guardrails for campus, Enterprise LAN, wireless infrastructure,
and identity‑based access control.
Serve as a senior technical authority for architecture reviews, design
approvals, and strategic technology decisions related to LAN, wireless, and
ISE.
Act as a trusted advisor to Infrastructure, Security, and Application teams
when network identity, access, or connectivity decisions have an architectural
impact.
Network LAN & Wireless Architecture
Architect scalable, resilient, and secure wired and wireless access network
solutions across corporate, industrial, and hybrid environments.
Define RF design principles, wireless capacity and resiliency models, and
onboarding patterns that support modern device diversity (corporate, OT,
BYOD, and IoT where applicable).
Guide platform lifecycle decisions, including hardware standards, software
versions, and feature adoption.
Cisco ISE & Identity‑Based Networking
Own the architectural strategy for Cisco Identity Services Engine (ISE),
including authentication, authorization, posture assessment, and policy
enforcement.
Design identity‑centric access models that integrate with enterprise
identity
providers, certificates, and security platforms.
Define scalable policy models that balance security, operational simplicity,
and
automation while supporting Zero Trust principles.
Governance, Standards & Automation
Translate architectural strategy into enforceable standards, patterns, and
reference architectures.
Promote automation‑first and policy‑as‑code approaches for network
access control, configuration consistency, and lifecycle management.
Influence tooling and processes to reduce manual effort, configuration
drift,
and operational risk.
Incident Escalation & Continuous Improvement
Serve as a T4 escalation point for complex LAN, wireless, and
identity‑related incidents with architectural impact.
Lead or guide root cause analysis for systemic issues and ensure learnings
are incorporated into improved standards and designs.
Required Qualifications
Demonstrated experience designing and governing enterprise‑scale LAN and
wireless network architectures.
Deep hands‑on architectural experience with Cisco switching, wireless
platforms, and Cisco ISE.
Strong understanding of network access control and identity‑based
networking concepts, including authentication, authorization, and policy
enforcement.
Advanced knowledge of TCP/IP networking fundamentals, including
switching, VLANs, spanning-tree, and access‑layer design principles.
Advanced knowledge of RF engineering, spectrum analysis, wireless surveys,
etc.
Experience integrating network designs with enterprise security and identity
strategies.
Proven ability to influence without direct operational ownership through
collaboration and architectural governance.
Preferred Qualifications
Experience with Zero Trust architectures, identity‑aware networking, and
least‑privilege access models.
Background in network automation, infrastructure‑as‑code, or API‑driven
networking platforms.
Familiarity with cloud‑adjacent identity and access patterns (e.g., hybrid
identity, certificate‑based authentication).
Scripting or automation experience (Python or similar), and exposure to
CI/CD
or Git‑based workflows.
Relevant industry certifications (preferred, not required).
Industry & Market Trends Incorporated
Shift from perimeter‑based security to identity‑centric and Zero Trust
networking
Growing importance of secure, scalable wireless to support mobility, OT, and
IoT use cases
Increased adoption of policy‑driven and intent‑based networking to reduce
manual operations
Emphasis on automation and standardization to enable scale across large,
federated enterprises
What Defines Success in This Role
LAN, wireless, and ISE architectures are guided by a clear, actionable
roadmap aligned to business and security strategy.
New and refreshed infrastructure consistently adheres to defined security,
automation, and Zero Trust standards.
Identity‑based access models are scalable, resilient, and operationally
sustainable.
Reduced operational friction and security risk through standardized designs
and automation.
Recognition as a technical leader and trusted advisor who challenges legacy
approaches and drives principled, value‑creating decisions.