BioMADE

Network Administrator II

BioMADE · Minneapolis, Minnesota, United States · $105K–$125K/yr

Biotechnology · 51-200 employees

2 d ago
Principal (10+ yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Network Administrator II is responsible for the design, implementation, and daily management of network and cloud infrastructure. This role also serves as the primary on-site IT contact for end-user support, device provisioning, and operational maintenance.

What they look for

Network administration Fortinet security Ubiquiti/UniFi Microsoft 365 Azure AWS WAN management ITSM NIST SP 800-171 CMMC 2.0 Troubleshooting TCP/IP Routing protocols Cloud infrastructure End-user support Documentation

Requirements

Candidates must have 8-10+ years of hands-on network administration experience in an enterprise environment. Proficiency in Fortinet security products, cloud networking, and compliance frameworks like NIST SP 800-171 is required.

Benefits

Medical insurance Dental insurance Vision insurance Health savings account Flexible spending plan Life insurance Short term disability insurance Long term disability insurance 401(k) retirement plan Discretionary incentive plan Paid time off Paid holidays Paid parental leave Professional development Internet and cell phone stipend Free parking Gym access

Full description

Network Administrator II

Application Deadline: 4 September 2026

Department: Information Systems and Security

Employment Type: Full Time

Location: Minneapolis, MN

Reporting To: IT Manager

Compensation: $105,000 - $125,000 / year

Description

The Network Administrator II is a hands-on technical role responsible for the design, implementation, and day-to-day management of the organization’s network and cloud infrastructure.

As an on-site IT resource for the Twin Cities office, this role also serves as the first point of contact for local end-user support, device provisioning, and day-to-day IT operations.  The ideal candidate brings strong problem-solving skills, a customer-first mindset, and practical experience with Fortinet security platforms, Ubiquiti/UniFi wireless environments, and Microsoft 365/cloud-based services. The role also carries responsibility for WAN circuit management, ITSM ticket ownership, and supporting the organization’s compliance and audit posture.

This position will report to the IT Manager and will communicate directly with managed service and managed security service providers to facilitate support and monitoring actions. This role provides opportunities to hone existing skills and develop new ones through training and hands-on experience.

Key Responsibilities

Network Infrastructure & Administration

  • Configure, manage, and optimize Fortinet FortiGate firewalls, FortiSwitch, FortiAP, and FortiManager/FortiAnalyzer platforms.
  • Deploy, maintain, and troubleshoot Ubiquiti/UniFi wireless access points and controllers.  Conduct wireless site surveys, RF/channel planning, and interference analysis to optimize UniFi coverage and performance across office locations.
  • Administer LAN/WAN environments including DHCP, DNS, VLANs, routing protocols (OSPF/BGP), and ACLs across single and multi-site deployments.
  • Lead WAN circuit provisioning, ISP coordination, failover configuration, and performance monitoring.
  • Manage SD-WAN, site-to-site VPN (IPSec), and remote access VPN solutions.
  • Perform advanced network troubleshooting and root-cause diagnostics using packet capture and protocol analysis tools to resolve latency, throughput, and connectivity issues.
  • Develop and maintain scripts/automation to streamline configuration management, reporting, and routine network operations.
  • Maintain comprehensive network documentation including topology diagrams, IPAM records, and configuration baselines.

Cloud Networking & Hybrid Infrastructure

  • Administer cloud-based network services in Azure and/or AWS, including virtual networking, security groups, and hybrid connectivity.
  • Support Microsoft 365 tenants including Entra ID (Azure AD), Intune, Exchange Online, Teams, and SharePoint.
  • Manage network segmentation and access controls in hybrid on-premises/cloud environments.
  • Assist with cloud capacity planning, infrastructure migration projects, and disaster recovery testing.

Security, Compliance & CUI / CMMC

  • Maintain network security controls in accordance with NIST SP 800-171 and CMMC 2.0 Level 2, including firewall policy, NAC, IDS/IPS, and patch management.
  • Identify, handle, and protect Controlled Unclassified Information (CUI) per the organizational SSP; contribute to SSP and POA&M documentation.
  • Support vulnerability assessments and audit preparation; participate in security incident triage, containment, and post-incident review.

On-Site IT Support — Minneapolis Office

  •  Serve as an IT point of contact for the Twin Cities office; provide Tier 2 end-user support for network connectivity issues, hardware, and software, escalating to senior resources as needed.  Share responsibility for Tier 1 helpdesk coverage - ticket queue monitoring, intake, and first-line triage for all end users.
  • Manage user accounts, access permissions, and onboarding/offboarding workflows in M365 and Azure AD.
  • Occasional maintenance and support of general office equipment, including video conferencing systems (Teams Rooms or equivalent); ensure AV readiness for meetings and events.
  • Occasional provisioning and management of Windows and Dell workstation/laptop fleet, including imaging, MDM enrollment (Intune), configuration profiles, and asset inventory.

ITIL / ITSM & Operations

  • Own tickets through the full lifecycle in the organization’s ITSM platform, including accurate categorization, SLA tracking, root-cause documentation, and formal closure.
  • Operate within ITIL-aligned change management, problem management, and incident management processes.
  • Participate in on-call rotation for after-hours network incidents and scheduled maintenance windows.
  • Monitor network health proactively using tools such as PRTG, Auvik, or equivalent; deliver availability and utilization reports to IT Manager.
  • Assist with vendor coordination, hardware procurement justification, warranty tracking, and asset inventory management. 

Other duties may include:

  • Coordinate with security personnel to maintain physical security equipment and associated access control systems.
  • Create IT documentation including network runbooks, lessons learned, and after-action reports to support overall team success.
  • Other duties as assigned.

Skills, Knowledge and Expertise

Qualifications / Requirements

  • 8-10+ years of hands-on network administration experience in an enterprise or multi-site environment.
  • Demonstrated experience administering Fortinet security products (FortiGate, FortiSwitch, FortiAP; FortiManager/FortiAnalyzer a plus).
  • Solid command of TCP/IP, DHCP, DNS, VLANs, IPSec/SSL VPN, STP/RSTP, OSPF and BGP.
  • Working knowledge of Ubiquiti/UniFi wireless infrastructure.
  • Experience with WAN technologies including fiber, SD-WAN, MPLS and ISP circuit management.
  • Excellent verbal and written communication skills; demonstrated commitment to customer service.
  • Hands-on cloud networking experience in Azure and/or AWS; Microsoft 365 administration experience required.
  • Working familiarity with NIST SP 800-171, CMMC 2.0 requirements, and CUI handling obligations.
  • Experience supporting end users and provisioning Dell workstations/laptops in a Windows/M365 environment.
  • Disciplined use of an ITSM ticketing platform; strong documentation habits.
  • Bachelor’s degree in Information Technology, Computer Science, Network Engineering, or related field; equivalent experience considered.

Desired Characteristics

  • CCNA, CCNP, or CompTIA Network+.
  • Fortinet NSE 4 or higher; NSE 7 (FortiGate Infrastructure) strongly preferred.
  • Self-starter with the ability to solve novel problems independently and learn new technologies quickly.
  • Ability to prioritize and manage multiple competing requests based on urgency and business impact.
  • Familiarity with Microsoft 365 GCC or GCC High tenant configurations.
  • Network automation or scripting experience (PowerShell, Python, Ansible).
  • CompTIA Security+ CE (DoD 8570.01-M / DoD 8140 IAT Level II compliant).
  • ITIL 4 Foundation certification.
  • Experience in a DoD-funded, federal grant-recipient, or cooperative agreement organization.

Benefits

BioMADE recognizes the importance of a happy and healthy staff that maintains a good work/life balance. BioMADE provides a comprehensive suite of health insurances, supplemental benefits, and paid time off to all regular full-time employees as outlined below. New employees become eligible for most benefits on the first day of the month following their hire date.

  • 100% Employer paid options for medical insurance for BioMADE employees. Low-cost buy-up options also available.
  • Generous cost-sharing for medical insurance for spouse and child(ren).
  • Health Savings Account option for medical insurance.
  • 100% Employer paid Dental and Vision insurance for BioMADE employees.
  • Low-cost Dental insurance for spouse/child(ren) and with child ortho coverage. 
  • 100% employer paid Vision for employee, and spouse/child(ren) coverage.
  • Section 125 Flexible Spending Plan options for Medical, Dependent Care, and Commuter Pre-Tax benefits.
  • 100% Employer paid Life insurance with a 1x Annual Salary for Exempt staff and a Flat $50,000 benefit for hourly staff.
  • 100% Employer paid Short Term Disability insurance and low-cost Voluntary Long Term Disability insurance available.
  • 401(k) retirement plan with up to 6% match on plan compensation (no vesting period!).
  • Discretionary Incentive Plan based on organizational and individual performance.
  • Paid Time Off (PTO) that begins to accrue from your hire date.
  • 13 Paid holidays, including a winter break between Christmas Eve Day and New Year’s Day.
  • Paid Parental Leave- Up to 8 weeks of paid leave for new parents.
  • Full access to LinkedIn Learning’s Suite for professional development.
  • Hybrid Work Policy for most positions; Stipend for Internet and personal cell phone use.
  • Free Parking.
  • Casual Dress Code.
  • Free snacks and beverages at CA and MN office locations.
  • Fun on and off-site employee activities sponsored by the Employee Engagement Committee
  • On site gym access
  • Pet Friendly office space