Minimum years of experience: 5+ years
Job Description:
DDI Architecture & Technical Leadership
Lead enterprise-wide DNS, DHCP, and IPAM architecture design and lifecycle management Define and maintain DNS zone structures, delegations, split-horizon configurations, and dual-stack (IPv4/IPv6) models Design and implement DNSSEC policies, Response Policy Zones (RPZ), and DNS security controls Architect DHCP failover strategies, scope planning methodologies, reservation policies, and option-based assignments Establish IPAM governance frameworks, hierarchical CIDR planning, capacity forecasting, and documentation standards
Advanced DDI Engineering & Operations
Oversee complex DDI implementations including multi-datacenter configurations and disaster recovery architectures Design and validate DNS/DHCP changes for application migrations, new service deployments, and infrastructure transformations Implement advanced Infoblox features including Grid replication, DNS Traffic Control (DTC), and threat intelligence integration Lead troubleshooting efforts for complex DNS propagation issues, DHCP lease conflicts, and performance optimization Serve as senior escalation point for critical DDI outages affecting banking applications
Automation & Integration Leadership
Drive automation initiatives using Infoblox WAPI (RESTful API), Ansible, Terraform, and Python Develop and maintain automation frameworks for bulk DDI operations, migration workflows, and self-service capabilities Integrate DDI automation with CI/CD pipelines, ServiceNow workflows, and internal platform engineering tools Build declarative infrastructure-as-code templates and modules for repeatable DDI deployments Enable API-driven DDI provisioning to support application team self-service requirements
Cross-Platform Integration & Collaboration
Partner with F5 engineering teams on DNS/GSLB integration, VIP naming standards, SSL certificate automation, and traffic routing Collaborate with network teams on routing integration, BGP anycast implementations, and multi-site architectures Work with security teams on DNS filtering, threat feed integration, malware domain blocking, and compliance reporting Coordinate with application teams on DNS requirements, load balancing integration, and service discovery patterns
Standards Development & Compliance
Develop and enforce DDI engineering standards, operational runbooks, and security guardrails Ensure compliance with banking regulations, audit requirements, and change management processes Create and maintain comprehensive documentation including architecture diagrams, process flows, and troubleshooting guides Establish monitoring, alerting, and reporting frameworks for DDI service health and performance
Team Leadership & Mentorship
Provide technical leadership and mentorship to GCC DDI engineers on advanced skills and best practices Guide offshore team members on complex DDI projects, migrations, and troubleshooting scenarios Conduct knowledge transfer sessions and training programs for the offshore engineering team Foster operational excellence and engineering maturity across the offshore DDI organization Lead incident response coordination and post-incident review processes within the GCC Collaborate effectively with US leadership while maintaining offshore team autonomy
Strategic Initiative Leadership
Lead the Microsoft DNS/DHCP to Infoblox migration program with minimal business impact Drive IPAM modernization initiatives including data cleanup, standardization, and automation Support multi-datacenter consolidations and cloud integration projects Evaluate emerging DDI technologies and provide strategic recommendations
Required Qualifications
7+ years of hands-on experience with Infoblox NIOS/Grid platforms in large-scale enterprise environments Deep expertise in DNS protocols including authoritative/recursive flow, caching strategies, DNSSEC implementation, and RPZ configuration Advanced DHCP engineering experience including failover architectures, lease optimization, DHCP options, and policy-based reservations Expert-level proficiency with Infoblox WAPI for automation, integration, and bulk operations Strong scripting and automation skills using Python, Ansible, or Terraform Comprehensive understanding of IPv4/IPv6 addressing, subnetting, overlapping IP spaces, and migration planning Advanced troubleshooting capabilities for DNS/DHCP failures, recursion issues, propagation delays, and performance bottlenecks Experience with change management processes and production operations in critical infrastructure environments
Preferred Qualifications
Experience in financial services, banking, or highly regulated industries with compliance requirements Infoblox certifications (NIOS Professional, NIOS Expert, or equivalent) Knowledge of advanced DNS security controls including DNSSEC key management, RPZ implementation, DNS filtering, and threat feed integration Experience integrating Infoblox with ServiceNow, CI/CD platforms, or internal automation and orchestration tools Leadership or mentorship experience within offshore engineering teams in a GCC environment Background with F5 GTM/DNS integration for global server load balancing and traffic management Experience coordinating with US-based teams while leading offshore delivery organizations Familiarity with cloud DNS services (AWS Route 53, Azure DNS) for hybrid architectures Experience with network monitoring tools, SIEM integration, and security event correlation Knowledge of container networking and service mesh DNS integration patterns
Key Tools & Technologies
Infoblox Grid/NIOS | Infoblox WAPI (RESTful API) | Ansible / Terraform / Python | DNSSEC / RPZ | F5 GTM/DNS (GSLB Integration) | ServiceNow (change/incident/request) | Git / GitHub | Microsoft DNS/DHCP (migration source) | IPv4/IPv6 networking | DNS security tools | IPAM reporting and analytics