This role will work closely with Cloud Engineering, Cybersecurity, Infrastructure, SRE, and Application teams to build highly available, secure, scalable, and automated enterprise networking solutions.
-
Strong enterprise network engineering experience with Routing, Switching, BGP, OSPF, VXLAN/EVPN, and SDN.
-
5+ years of experience with hybrid cloud networking across on-premises, private cloud, AWS, and Azure.
-
Experience designing network isolation, secure enclaves, air-gapped environments, Isolated Recovery Environments (IRE), and cyber/disaster recovery networks.
-
Strong experience with micro-segmentation using VMware NSX, Illumio, Cisco Secure Workload, AWS Security Groups, Azure NSGs, or similar technologies.
-
Strong understanding of Zero Trust networking and least-privilege access models.
-
3+ years of hands-on experience with Terraform, including reusable modules and standardized Infrastructure as Code patterns.
-
Strong scripting and automation experience using Python, PowerShell, or Bash.
-
Experience automating network provisioning, configuration validation, compliance checks, drift detection, monitoring, and reporting.
-
Experience integrating infrastructure automation with Git-based CI/CD pipelines.
-
Design, implement, and support highly available enterprise network infrastructure across on-premises, private cloud, AWS, and Azure environments.
-
Engineer resilient Layer 2 and Layer 3 network architectures using BGP, OSPF, VXLAN/EVPN, routing, switching, and SDN technologies.
-
Build Infrastructure as Code solutions using Terraform and develop reusable network automation modules.
-
Automate network provisioning, configuration management, validation, compliance verification, drift detection, and operational reporting.
-
Integrate infrastructure automation into GitHub, GitLab, Azure DevOps, or similar CI/CD pipelines.
-
Develop automation using Python, PowerShell, Bash, REST APIs, and Terraform.
-
Design secure network isolation patterns for production, non-production, management, disaster recovery, and cyber recovery environments.
-
Architect air-gapped networks, secure enclaves, IRE environments, and isolated recovery networks.
-
Design and implement micro-segmentation using VMware NSX, Illumio, Cisco Secure Workload, AWS Security Groups, Azure NSGs, and Network ACLs.
-
Implement Zero Trust networking, least-privilege access, East-West traffic controls, and application-aware security policies.
-
Engineer AWS networking solutions using VPCs, Transit Gateway, Direct Connect, PrivateLink, Route Tables, and Network Firewall.
-
Engineer Azure networking solutions using VNets, ExpressRoute, Virtual WAN, Azure Firewall, NSGs, Application Gateway, and Load Balancer.
-
Partner with Cybersecurity teams on firewall architecture, IDS/IPS, DDoS protection, secure DNS, encryption, certificates, and network access controls.
-
Design network architectures supporting High Availability, Disaster Recovery, multi-region resiliency, and automated failover.
-
Implement enterprise network monitoring and observability using ThousandEyes, SolarWinds, Dynatrace, Splunk, Grafana, Prometheus, and cloud-native monitoring platforms.
-
Build dashboards, KPIs, health checks, and automated alerts to improve proactive network operations.
-
Troubleshoot complex network, connectivity, routing, performance, security, and cloud networking issues.
-
Drive automation-first engineering practices to reduce manual network administration and improve operational reliability.