Research & Development Lab Network Admin

Apply now »

Date: Jun 16, 2026

Location: Penang, 07, MY

Company: Celestica International LP

​Technical Lead, IT Infrastructure
Req ID: 137478
Remote Position: Hybrid
Hiring Manager: Paul Stanners
Band: 10 
Region: Asia 
Country: Malaysia 
State/Province: Bayan Lepas
City:  Penang

General Overview

Functional Area:  Information Technology (ITM)
Career Stream:  IT Infrastructure (INFR)
Role:  Technical Lead (TEL)
Job Title:  Technical Lead, IT Infrastructure
Job Code:  TEL-ITM-INFR
Job Level:  Level 10
Direct/Indirect Indicator:  Indirect

Summary

We are seeking a proactive and detail-oriented RDL Network Administrator to manage the day-to-day operations and administration of our global Research and Development Lab (RDL) networks. Reporting directly to the Lead Network Architect, you will be responsible for the run-and-maintain aspects of our isolated, air-gapped networks across multiple HPS Design Center locations (including San Jose, Richardson, Thailand, Shanghai, SongShan Lake, Penang, Chennai, and future sites).

 

The ideal candidate will handle routing, switching, and firewall adjustments, manage user access, configure local jump hosts, and execute secure file transfers across air gaps. Since this environment operates under strict security isolation without typical enterprise automated management tools (e.g., Active Directory, automated endpoint agents), this role requires a hands-on, highly disciplined administrator who excels at executing manual and semi-automated workflows securely and consistently.

Core Responsibilities

1. Daily Network Operations & Maintenance

  • Infrastructure Monitoring: Monitor the health, performance, and uptime of all RDL hardware, including Checkpoint 3980 Firewalls, SilverPeak SD-WAN appliances, Cisco Catalyst 9400/9200 switches, and Celestica DS2000/ES1500 switches.
  • Configuration Management: Implement localized VLAN adjustments, IP address allocations, and switch port provisioning to isolate multi-tenant projects as directed by the Network Architect.
  • Routine Maintenance: Execute hardware diagnostics, physical cabling checks, and firmware/OS updates across network and server appliances following strict maintenance window guidelines.

 
2. Identity & Secure Access Administration

  • User Onboarding & Management: Provision local user accounts and role-based permissions directly on Linux-based jump hosts. Manage access credentials in a strict, decentralized non-Active Directory environment.
  • Remote Session Administration: Administer daily customer connections using CyberArk vPAM (Virtual Privileged Access Management) and internal user access using Zscaler ZTNA/Zscaler App Connectors.
  • Security Audits: Review, audit, and clean up inactive user sessions and local accounts weekly to maintain strict security posture.

 

3. Data Transfer & Repository Sync Operations

  • Multi-Tier Sync Execution: Execute and monitor the secure transfer of "transfer bundles" containing OS packages (Rocky Linux, Ubuntu, CentOS, etc.), drivers, and software libraries across the air gap.
  • Local Repo Hosting: Ensure local web repositories (Apache/Nginx hosted at /var/www/html/repo/) are operational, indexed, and accessible to local lab systems.
  • Integrity Validation: Verify the cryptographic hashes (SHA-256 checksums) of all data packages moving from the Global Repository Server to the RDL Local Repository Server.

 

4. Support Ticket Resolution & SLA Adherence

  • End-User Support: Act as the primary technical point of contact for HPS design engineers needing network troubleshooting, IP conflicts resolved, or new package requests.
  • Ticketing Operations: Process, update, and resolve secure lab support tickets in accordance with established Service Level Agreements (SLAs).
  • Escalation Point: Identify complex network issues or design deviation requests and escalate them directly to the Lead Network Architect.

 

5. Compliance & Clean Environment Enforcement

  • Software Auditing: Conduct regular logical audits of systems within the RDL to ensure strictly banned corporate agents (e.g., CrowdStrike, Threat Locker, Big Fix, ServiceNow Agents, ClearPass NAC) are not installed.
  • Asset Tracking: Maintain a flawless inventory of all HPS-owned assets inside the RDL physical rooms, including servers, switches, wireless access points (Aruba 755), and connected lab machines.

Knowledge/Skills/Competencies

Required Technical Skills:

  • Network & Security Hardware: Practical experience configuring and troubleshooting Cisco switches (Catalyst/Nexus) and administering Checkpoint Firewalls (defining security rules, NAT, and logs).
  • Linux System Administration: Mid-to-senior level competency in Linux (Rocky, CentOS, Ubuntu)—specifically user management, bash scripting, basic routing, and running local web servers (Apache/Nginx).
  • Access Tools: Experience working with remote access tools such as Zscaler ZTNA / App Connectors and Privilege Access Management solutions (specifically CyberArk).
  • Virtualization Basics: Solid experience administering VMs, clusters, and virtual switches within VMware vSphere or Microsoft Hyper-V environments.
  • Air-Gap Protocols: Working knowledge of secure file transfer protocols (SFTP, SCP, rsync) and security scanning methodologies.

 

Preferred Certifications:

  • CCNA (Cisco Certified Network Associate)
  • Check Point Certified Security Administrator (CCSA)
  • CompTIA Security+ or Linux+
  • CyberArk Certified Trustee or Defender

 

Soft Skills & Working Style:

  • High Operational Discipline: Ability to strictly adhere to Standard Operating Procedures (SOPs) without cutting corners, even during urgent troubleshooting.
  • Excellent Communicator: Strong written and verbal communication skills, necessary for translating technical issues to designers and coordinating with corporate security teams.
  • Multi-Tasker: Capable of balancing ticket requests from multiple global labs concurrently while maintaining accurate records.

Physical Demands

  • Duties of this position are performed in a normal office environment.
  • Duties may require extended periods of sitting and sustained visual concentration on a computer monitor or on numbers and other detailed data. Repetitive manual movements (e.g., data entry, using a computer mouse, using a calculator, etc.) are frequently required.

Education & Experience

  • Bachelor’s degree in Network Administration, Information Technology, Computer Science, or equivalent hands-on experience.
  • 4+ years of experience in network administration or system administration, preferably managing secure, segmented, or laboratory networks.

Notes

This job description is not intended to be an exhaustive list of all duties and responsibilities of the position. Employees are held accountable for all duties of the job. Job duties and the % of time identified for any function are subject to change at any time.

Celestica is an equal opportunity employer. All qualified applicants will receive consideration for employment and will not be discriminated against on any protected status (including race, religion, national origin, gender, sexual orientation, age, marital status, veteran or disability status or other characteristics protected by law).
At Celestica we are committed to fostering an inclusive, accessible environment, where all employees and customers feel valued, respected and supported. Special arrangements can be made for candidates who need it throughout the hiring process. Please indicate your needs and we will work with you to meet them.


Job Segment: Network Administrator, Linux, Cisco, Developer, Computer Science, Technology

Apply now »