K

Sr. Network and Security Architect

Kessler Collection
Full-time
On-site
Orlando, Florida, United States







An inspiring career awaits you! 
 
The Kessler Collection is a portfolio of luxury boutique hotels, unique restaurants and experiences with a Bohemian twist. The collection's captivating hotels feature curated art, original music, unique architecture and stories around every corner, all located in destinations people want to be. Our mission of inspiring places, intuitive service, and exuberant guests means we are committed to our Grand Performers learning, development, and well-being. We believe people want to be inspired!

 

Grand Performers may enjoy a range of benefits, including:

  • Marriott Employee Discounts Worldwide
  • Competitive Wage & Discretionary Bonus Program
  • Medical, Dental, Vision Insurance
  • Company-Sponsored Life Insurance
  • Short & Long-Term Disability Insurance
  • Tuition Reimbursement Program
  • 401(K) with Discretionary Company Matching Contributions
  • Employee Assistance Program









Standards & Culture

Individuals must serve as a cultural ambassador by upholding and promoting our standards.

  • Image & Presence: Our team is sophisticated and purposeful in their communication and body language.
  • Service: Intuitive. Our team inspires the guest (and Grand Performer) experience with warmth and deliberate elegance.
  • Performance: Extraordinary. Our team rises to outperform and consistently be at our best for even better.

 

Areas of Responsibility (AOR)

Primary areas of responsibility include, but are not limited to the following:

 

Network Design and Modeling

  • Plan, design, and implement network solutions considering bandwidth, infrastructure, and security requirements.
  • Understand and cater to data communication needs, providing solutions to meet requirements.
  • Use predictive modeling and network reporting to estimate network growth for appropriate sizing of equipment, bandwidth, and Internet needs.
  • Develop strategies and technical direction for enterprise-wide networking and security services supporting business requirements.
  • Design, configure, and test network solutions for customer projects.
  • Support physical installation of network and security devices, in person or remotely.
  • Lead or participate in network assessment, discovery, and design workshops.
  •  

Network Maintenance and Troubleshooting

  • Manage and monitor networking systems, ensuring smooth operation with scheduled maintenance and repairs.
  • Provide escalation support for troubleshooting and resolution of network and security issues.
  • Perform troubleshooting and support activities for project delivery.
  • Ensure continuous monitoring of network security, resolving issues as they arise.
  • Conduct system tests, document findings, and provide regular updates to teams and stakeholders.
  • Follow up with clients to ensure their IT systems are fully functional after troubleshooting.
  • Prioritize and manage multiple open issues, ensuring all are properly logged.
  •  

Security and Compliance

  • Review and implement system security measures, including firewalls, safeguarding the network.
  • Implement and monitor network security systems to meet business goals.
  • Be prepared to design and implement security countermeasures for vulnerabilities.
  • Stay current with technological advancements and apply new security practices when necessary.
  • Participate in IT Risk Management initiatives in line with corporate Audit and Compliance strategies.
  • Understand and comply with standards for FDA/regulated IT environments.

 

Documentation and Communication

  • Maintain network documentation, including network drawings, equipment details, and lifecycle information.
  • Document technical knowledge in notes and manuals for team use.
  • Communicate progress and status of deliverables to customer and technical project teams.
  • Ensure clear communication of project timelines and feasibility to internal business and stakeholders.
  •  

Technical Leadership and Mentoring

  • Provide technical leadership for the development and execution of Architecture, Engineering, and Operational roadmaps.
  • Mentor Network Services team members on best practices in architecture and engineering.
  • Build relationships fostering collaboration to drive better strategies and processes.
  • Partner with business unit and development team SMEs to incorporate best practices into designs.
  • Evaluate and select toolsets to manage and report network performance.

 

Vendor and Budget Management

  • Develop and maintain partnerships with key vendors, ensuring alignment with technology and services roadmaps.
  • Assist with the development and management of the Network Services budget.
  • Ensure cost-effective solutions are deployed in alignment with business direction.









Knowledge / Skills / Abilities (KSA)

To perform this role successfully, an individual must have experience achieving desired result(s) in their areas of responsibility. The requirements listed below are representative of observable behaviors and essential knowledge, skill, and abilities required of a successful incumbent.

  • Strategic business leader - Works strategically to devise plans in alignment with organizational goals.
  • Cultivates engagement - Builds loyalty to the company and not to themselves. Proven ability to host/facilitate effective meetings, motivate teams to produce results with tight timeframes while simultaneously managing several projects.
  • Generates alignment - Ensures proper time and effort is spent to build high level performance and consistency throughout collection.
  • Leads with courage - Provides a culture of accountability.
  • Execution of plans - Utilizes our systems, tools and resources to accomplish results and achieve goals.
  • Ability to excel in complex routing, switching, and ISP environments
  • Demonstrated leadership experience, with a minimum of 8 years of technical writing and speaking skills
  • Team and business leadership experience with the ability to collaborate effectively with cross-functional teams
  • Strong time management skills and attention to detail with the ability to multi-task activities with shifting priorities
  • Strong understanding and experience with next generation firewall technology (Palo Alto, Fortinet, etc.) -preferred
  • Experience with cloud networking and security (AWS, Azure, GC) – preferred
  • Strong understanding of WAN architectures (“legacy” ex: MPLS and “trending” ex: SD-WAN & VPN methods)
  • Thorough understanding of enterprise IPv4 protocols and emerging IPv6 deployments
  • Strong familiarity with cloud networking (AWS: VPC, Transit Gateways, Direct Connect, ELB/ALB, Route 53)
  • Understanding of network configuration, automation tooling, telemetry, authentication technologies.
  • Familiarity with Network Troubleshooting Tool Suites (Extrahop, “Wire Data” visibility tool suites, Syslog Parsers, AKiPS, etc.)
  • Understanding of Various manufacture routers, i.e. Cisco Routers (ISRs and ASRs)
  • Proficiency in User Remote Access VPN Headends – Cisco ASA / Fortinet /  Meraki
  • In depth understanding of QoS principals and configuration (routers and switches)
  • Expertise in Routing protocols (BGP, OSPF, EIGRP)
  • Demonstrated experience with WAN and backbone network protocols (BGP, OSPF, MPLS, etc.)

 

Supervisory Responsibilities

Supervisory and leadership responsibilities include achieving results through providing direction and accountability of the following Grand Performers within the culture and policies established by the Kessler Collection.

  • IT Network Engineer

 

Key Partnerships:

To perform this role successfully, an individual must cultivate successful relationships with the following individuals to achieve alignment and support.

  • Corporate IT Teams
  • Property IT Teams

 

Minimum Qualifications

Education, License, Certifications, Experience

  • Minimum of 8 years of relevant job experience including analyzing, configuring, troubleshooting, designing complex enterprise networks
  • 7+ years of experience in developing network architectures
  • 8 + years of experience designing service provider network infrastructures, at scale, e.g., MPLS/BGP, routing, switching, SDN/NFV, EVPN, VXLAN
  • 10+ years of experience leading technology engineering, network engineering and security services in a large enterprise environment  
  • 4 + years of experience with python or similar programming language
  • CISSP: Certified Information Systems Security Professional
  • CISM: Certified Information Security Manager
  • CompTIA Security+
  • GSEC: SANS GIAC Security Essentials
  • Cisco CCIE Security
  • Fortinet Certified Network Security Engineer
  • Cisco Certified Network Associate (CCNA)

 

Work Environment / Conditions

The work environment/conditions described herein are representative of those that an incumbent may experience.

  • Must be comfortable working in a shared space, with constant noise, without the use of a private office.
  • Must be able to cope with frequently changing priorities and deadlines with a high degree of optimism, professionalism & collaboration.
  • Schedules may vary from week to week in a remote / on-site environment based on business demands in excess of 40 hours with or without notice.

 

 

Physical Demands

The physical demands described herein are representative of those that must be met by an incumbent to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions & physical demands of this role.

  • While performing the duties of this job, the incumbent is regularly required to move 20lbs on a daily basis.
  • Push, pull, and lift up to 50lbs on a weekly basis.
  • While performing the duties of this job, the incumbent is regularly required to travel by foot, car, bus, airplane or other means of transportation which require sitting, waiting and standing for long and short periods of time.