Project Name: The Data Center Colocation and Migration Project
TASKS & DUTIES:
- DSS has distributed workforce working from numerous branch offices and remote workers generating data traffic routed to the main datacenter in Brooklyn. The datacenter migration involves, amongst other things, a highly complex VMware environment that demands a specialized resource. VMware consultants are essential for navigating complexities and ensuring success. They bring critical expertise in planning and executing the transitions while mitigating risk such as unplanned downtime, data loss, and compatibility issues. Furthermore, we plan to implement the Zero Trust model, by utilizing micro segmentation technologies, such as VMware NSX, where the network is broken into many compartments, which will implicitly not trust the adjacent compartments and all access has to be directly assigned using rule/role-based firewall policies. We will utilize micro segmentation as traditional perimeter defenses are insufficient to detect and prevent internal threats or compromised security credentials. We would need consultants who specialize in this technology and assist in:
- Identifying user IDs and applications accessed in performing assigned job functions.
- Identifying the source IP addresses, destination IP addresses and ports on servers in the VMware and physical environment that are communicating with each other to fetch and upload data.
- Creating firewall policies on VMware NSX ensuring that workloads, applications, and users are isolated and only allowed to communicate as strictly necessary, minimizing the risk of lateral movement during a breach.
- Utilizing micro segmentation to ensure that we meet the compliance audit readiness concerning HIPPA, FTI and FLPS data.
- Enhancing Cloud and Hybrid Security as we have compute resources on premises as well as in the AWS Cloud and Azure Cloud.
REQUIRED SKILLS
- 4 years’ experience in Lead end‑to‑end design of NSX‑T Data Center solutions, including logical switching, routing, micro‑segmentation, and distributed firewalling and develop high‑level and low‑level design documents, architecture diagrams, and implementation plans and conduct network assessments, gap analysis, and cloud readiness evaluations
- 4 years’ experience with Deploying and configure NSX‑T components: NSX Manager, Edge Nodes, Tier‑0/Tier‑1 gateways, transport zones, and overlay networks, execute migrations from NSX‑V to NSX‑T and from traditional physical networks to SDN
- 4 years’ experience Design and implement micro‑segmentation policies based on application dependency mapping utilizing tools such as Traceflow, Port Mirroring, and vRealize Network Insight (vRNI) for traffic analysis
- 4 years’ experience Develop zero‑trust security frameworks aligned with client compliance requirements and Provide expert‑level troubleshooting and root‑cause analysis for complex NSX‑T issues.
- Utilizing micro segmentation to ensure that we meet the compliance audit readiness concerning HIPPA, FTI and FLPS data and collaborate with project managers to define scope, timelines, and deliverables, Mentor junior engineers and contribute to internal best‑practice development
If you are interested in getting more information about this opportunity, please contact Irina Rozenberg Recruiting@arielpartners.com at your earliest convenience.
At Ariel Partners, we solve the most difficult problems that inhibit technology from enabling our customers to achieve their goals. Our vision is to be recognized by our stakeholders as an elite provider of IT solutions, so when they have their biggest challenges, we are on their short list. We are looking for team members who share our values of: Integrity to do the right thing even when it hurts; Commitment to the long-term success and happiness of our customers, our people, and our partners; Courage to take on difficult challenges, accept new ideas, and accept incremental failure; and the constant pursuit of Excellence. Ariel Partners is an Equal Opportunity Employer in accordance with federal, state, and local laws.