Network Infrastructure Engineer
**Please Not the this is a short term 2 week contract**
Our client is looking for a INetwork Infrastructure Engineer to design and deliver the migration of corporate Wi-Fi authentication from password-based 802.1X authentication to certificate-based authentication using EAP-TLS
.You will lead the authentication and identity workstream required to support a Windows 11 rollout across approximately 600 devices, addressing compatibility issues between Credential Guard, Kerberos-based authentication, and legacy PEAP-MSCHAPv2 wireless authentication. This role is focused on modernising authentication services, PKI integration, and RADIUS-based access control within a Microsoft-centric environment
.
Responsibiliti
- esAssess the current wireless authentication architecture, including RADIUS policies, Windows authentication methods, PKI services, and endpoint configuratio
- n.Design and document a target-state EAP-TLS authentication solution aligned with Windows 11, Credential Guard, and enterprise security requirement
- s.Define certificate authentication standards, including certificate templates, key usage requirements, enrolment methods, trust chains, and lifecycle managemen
- t.Lead the implementation and configuration of RADIUS authentication services, including policy design, certificate validation, authentication flows, logging, and auditin
- g.Analyse and resolve authentication dependencies involving Active Directory, Kerberos, Credential Guard, TLS, and certificate-based identit
- y.Design and implement certificate provisioning through Active Directory Certificate Services and/or Microsoft Intun
- e.Develop and deploy secure wireless authentication profiles through Group Policy and Intun
- e.Validate authentication behaviour across Windows 11 devices, ensuring seamless machine and user authentication during device startup and user logon processe
- s.Define certificate revocation, trust validation, and resilience requirements to support secure and reliable authenticatio