- Salary
- $105k – $125k/yr
- Location
- Minneapolis, MN
- Workplace
- Remote, Hybrid, Onsite
- Type
- Full-time
- Department
- IT
Description
Network Administrator II
Application Deadline: 4 September 2026
Department: Information Systems and Security
Employment Type: Full Time
Location: Minneapolis, MN
Reporting To: IT Manager
Compensation: $105,000 - $125,000 / year
Description
As an on-site IT resource for the Twin Cities office, this role also serves as the first point of contact for local end-user support, device provisioning, and day-to-day IT operations. The ideal candidate brings strong problem-solving skills, a customer-first mindset, and practical experience with Fortinet security platforms, Ubiquiti/UniFi wireless environments, and Microsoft 365/cloud-based services. The role also carries responsibility for WAN circuit management, ITSM ticket ownership, and supporting the organization’s compliance and audit posture.
This position will report to the IT Manager and will communicate directly with managed service and managed security service providers to facilitate support and monitoring actions. This role provides opportunities to hone existing skills and develop new ones through training and hands-on experience.
Key Responsibilities
- Configure, manage, and optimize Fortinet FortiGate firewalls, FortiSwitch, FortiAP, and FortiManager/FortiAnalyzer platforms.
- Deploy, maintain, and troubleshoot Ubiquiti/UniFi wireless access points and controllers. Conduct wireless site surveys, RF/channel planning, and interference analysis to optimize UniFi coverage and performance across office locations.
- Administer LAN/WAN environments including DHCP, DNS, VLANs, routing protocols (OSPF/BGP), and ACLs across single and multi-site deployments.
- Lead WAN circuit provisioning, ISP coordination, failover configuration, and performance monitoring.
- Manage SD-WAN, site-to-site VPN (IPSec), and remote access VPN solutions.
- Perform advanced network troubleshooting and root-cause diagnostics using packet capture and protocol analysis tools to resolve latency, throughput, and connectivity issues.
- Develop and maintain scripts/automation to streamline configuration management, reporting, and routine network operations.
- Maintain comprehensive network documentation including topology diagrams, IPAM records, and configuration baselines.
- Administer cloud-based network services in Azure and/or AWS, including virtual networking, security groups, and hybrid connectivity.
- Support Microsoft 365 tenants including Entra ID (Azure AD), Intune, Exchange Online, Teams, and SharePoint.
- Manage network segmentation and access controls in hybrid on-premises/cloud environments.
- Assist with cloud capacity planning, infrastructure migration projects, and disaster recovery testing.
- Maintain network security controls in accordance with NIST SP 800-171 and CMMC 2.0 Level 2, including firewall policy, NAC, IDS/IPS, and patch management.
- Identify, handle, and protect Controlled Unclassified Information (CUI) per the organizational SSP; contribute to SSP and POA&M documentation.
- Support vulnerability assessments and audit preparation; participate in security incident triage, containment, and post-incident review.
- Serve as an IT point of contact for the Twin Cities office; provide Tier 2 end-user support for network connectivity issues, hardware, and software, escalating to senior resources as needed. Share responsibility for Tier 1 helpdesk coverage - ticket queue monitoring, intake, and first-line triage for all end users.
- Manage user accounts, access permissions, and onboarding/offboarding workflows in M365 and Azure AD.
- Occasional maintenance and support of general office equipment, including video conferencing systems (Teams Rooms or equivalent); ensure AV readiness for meetings and events.
- Occasional provisioning and management of Windows and Dell workstation/laptop fleet, including imaging, MDM enrollment (Intune), configuration profiles, and asset inventory.
- Own tickets through the full lifecycle in the organization’s ITSM platform, including accurate categorization, SLA tracking, root-cause documentation, and formal closure.
- Operate within ITIL-aligned change management, problem management, and incident management processes.
- Participate in on-call rotation for after-hours network incidents and scheduled maintenance windows.
- Monitor network health proactively using tools such as PRTG, Auvik, or equivalent; deliver availability and utilization reports to IT Manager.
- Assist with vendor coordination, hardware procurement justification, warranty tracking, and asset inventory management.
- Coordinate with security personnel to maintain physical security equipment and associated access control systems.
- Create IT documentation including network runbooks, lessons learned, and after-action reports to support overall team success.
- Other duties as assigned.
Skills, Knowledge and Expertise
- 8-10+ years of hands-on network administration experience in an enterprise or multi-site environment.
- Demonstrated experience administering Fortinet security products (FortiGate, FortiSwitch, FortiAP; FortiManager/FortiAnalyzer a plus).
- Solid command of TCP/IP, DHCP, DNS, VLANs, IPSec/SSL VPN, STP/RSTP, OSPF and BGP.
- Working knowledge of Ubiquiti/UniFi wireless infrastructure.
- Experience with WAN technologies including fiber, SD-WAN, MPLS and ISP circuit management.
- Excellent verbal and written communication skills; demonstrated commitment to customer service.
- Hands-on cloud networking experience in Azure and/or AWS; Microsoft 365 administration experience required.
- Working familiarity with NIST SP 800-171, CMMC 2.0 requirements, and CUI handling obligations.
- Experience supporting end users and provisioning Dell workstations/laptops in a Windows/M365 environment.
- Disciplined use of an ITSM ticketing platform; strong documentation habits.
- Bachelor’s degree in Information Technology, Computer Science, Network Engineering, or related field; equivalent experience considered.
- CCNA, CCNP, or CompTIA Network+.
- Fortinet NSE 4 or higher; NSE 7 (FortiGate Infrastructure) strongly preferred.
- Self-starter with the ability to solve novel problems independently and learn new technologies quickly.
- Ability to prioritize and manage multiple competing requests based on urgency and business impact.
- Familiarity with Microsoft 365 GCC or GCC High tenant configurations.
- Network automation or scripting experience (PowerShell, Python, Ansible).
- CompTIA Security+ CE (DoD 8570.01-M / DoD 8140 IAT Level II compliant).
- ITIL 4 Foundation certification.
- Experience in a DoD-funded, federal grant-recipient, or cooperative agreement organization.
Benefits
- 100% Employer paid options for medical insurance for BioMADE employees. Low-cost buy-up options also available.
- Generous cost-sharing for medical insurance for spouse and child(ren).
- Health Savings Account option for medical insurance.
- 100% Employer paid Dental and Vision insurance for BioMADE employees.
- Low-cost Dental insurance for spouse/child(ren) and with child ortho coverage.
- 100% employer paid Vision for employee, and spouse/child(ren) coverage.
- Section 125 Flexible Spending Plan options for Medical, Dependent Care, and Commuter Pre-Tax benefits.
- 100% Employer paid Life insurance with a 1x Annual Salary for Exempt staff and a Flat $50,000 benefit for hourly staff.
- 100% Employer paid Short Term Disability insurance and low-cost Voluntary Long Term Disability insurance available.
- 401(k) retirement plan with up to 6% match on plan compensation (no vesting period!).
- Discretionary Incentive Plan based on organizational and individual performance.
- Paid Time Off (PTO) that begins to accrue from your hire date.
- 13 Paid holidays, including a winter break between Christmas Eve Day and New Year’s Day.
- Paid Parental Leave- Up to 8 weeks of paid leave for new parents.
- Full access to LinkedIn Learning’s Suite for professional development.
- Hybrid Work Policy for most positions; Stipend for Internet and personal cell phone use.
- Free Parking.
- Casual Dress Code.
- Free snacks and beverages at CA and MN office locations.
- Fun on and off-site employee activities sponsored by the Employee Engagement Committee
- On site gym access
- Pet Friendly office space