Location: Chicago, IL
Salary: $60.00 USD Hourly - $80.00 USD Hourly
Description: Senior Network Engineer - Hybrid Cloud, Automation & Network Security
Overview
We are seeking an experienced Senior Network Engineer to lead the design, automation, security, and modernization of enterprise networking across hybrid infrastructure environments. This role is critical to building highly resilient, scalable, and secure network architectures spanning on-premises data centers, private cloud platforms, and public cloud environments including AWS and Azure.
The ideal candidate combines deep expertise in enterprise networking, cloud networking, Infrastructure as Code (Terraform), automation, network segmentation, and Zero Trust architecture. You will partner closely with Cloud Engineering, Cybersecurity, Infrastructure, SRE, and Application teams to deliver next-generation networking solutions that support business growth, operational resilience, and cyber recovery objectives.
What You'll Do
Enterprise Network Architecture & Engineering
Design, implement, and support highly available network infrastructure across:
- Enterprise data centers
- Private cloud environments
- AWS
- Microsoft Azure
Architect and support advanced networking technologies including:
- Layer 2 and Layer 3 networking
- Routing and switching
- BGP
- OSPF
- VXLAN/EVPN
- Software Defined Networking (SDN)
Develop resilient network solutions that support:
- High availability
- Disaster recovery
- Active-active and active-passive architectures
- Multi-region deployments
- Business continuity and cyber recovery strategies
Infrastructure as Code & Network Automation
Drive an automation-first networking strategy through Infrastructure as Code.
Responsibilities include:
- Building and maintaining Terraform-based network infrastructure
- Developing reusable Terraform modules and deployment standards
- Automating network provisioning and configuration management
- Integrating network deployments into Git-based CI/CD pipelines
- Reducing manual operational activities through automation
Scripting & Platform Automation
Develop automation solutions using:
- Python
- PowerShell
- Bash
- REST APIs
Automate operational processes including:
- Network provisioning
- Configuration validation
- Compliance verification
- Drift detection
- Health monitoring
- Reporting and operational analytics
Network Segmentation & Isolation
Lead the design and implementation of secure network segmentation strategies that support enterprise security and recovery objectives.
Areas of focus include:
- Secure enclave architectures
- Air-gapped environments
- Isolated Recovery Environments (IRE)
- Cyber Recovery networks
- Management network separation
- Recovery infrastructure networking
Establish and enforce secure isolation between:
- Production environments
- Non-production environments
- Recovery platforms
- Cyber recovery solutions
- Administrative and management networks
Micro-Segmentation & Zero Trust Security
Design and implement enterprise-grade micro-segmentation solutions using technologies such as:
- VMware NSX
- Illumio
- Cisco Secure Workload (Tetration)
- AWS Security Groups
- Azure Network Security Groups (NSGs)
- Network ACLs
- Cloud-native segmentation controls
Key responsibilities include:
- East-West traffic control
- Least-privilege network design
- Dynamic security policy enforcement
- Application dependency mapping
- Zero Trust network architecture implementation
Cloud Networking
Design and support networking solutions across AWS and Microsoft Azure.
AWS
- VPC Architecture
- Transit Gateway
- Direct Connect
- Route Tables
- PrivateLink
- AWS Network Firewall
Microsoft Azure
- Virtual Networks (VNets)
- ExpressRoute
- Virtual WAN
- Azure Firewall
- Network Security Groups (NSGs)
- Application Gateway
- Azure Load Balancer
Network Security Engineering
Partner with Cybersecurity teams to implement enterprise security controls including:
- Zero Trust Networking
- Network Access Control (NAC)
- Firewall architecture
- IDS/IPS solutions
- DDoS protection
- Secure DNS services
- PKI and certificate management
- Encryption in transit
- Secure remote connectivity
Monitoring, Observability & Operations
Implement and enhance network observability platforms including:
- ThousandEyes
- SolarWinds
- Dynatrace
- Splunk
- Grafana
- Prometheus
- Cloud-native monitoring solutions
Develop:
- Operational dashboards
- KPI metrics
- Automated alerting
- Performance analytics
- Capacity and availability reporting
Required Qualifications
- Bachelor's degree in Computer Science, Information Technology, Engineering, or equivalent practical experience
- 8+ years of enterprise network engineering experience
- 5+ years supporting hybrid cloud networking environments
- 3+ years of Infrastructure as Code experience using Terraform
- Strong scripting and automation experience with Python, PowerShell, or Bash
- Deep expertise in enterprise routing and switching technologies
- Experience implementing Software Defined Networking (SDN)
- Hands-on experience designing secure segmented and isolated environments
- Experience implementing enterprise micro-segmentation solutions
- Strong understanding of Zero Trust networking principles
- Experience supporting mission-critical enterprise environments
Preferred Qualifications
- Experience within financial services or other highly regulated industries
- Experience supporting large-scale hybrid and multi-cloud environments
- Knowledge of Kubernetes and OpenShift networking
- Experience with VMware NSX, Cisco ACI, or similar SDN platforms
- Experience with GitHub, GitLab, Azure DevOps, or CI/CD pipelines
- Experience designing Disaster Recovery and Cyber Recovery networking solutions
- Familiarity with Policy as Code and Infrastructure Governance frameworks
- Experience building immutable infrastructure and resilient architectures
Preferred Certifications
- CCNP Enterprise or CCIE
- AWS Advanced Networking - Specialty
- Microsoft Azure Network Engineer Associate (AZ-700)
- HashiCorp Terraform Associate
- VMware VCP-NV (NSX)
- Palo Alto PCNSE
- CISSP (Preferred)
Core Competencies
- Enterprise Network Architecture
- Hybrid and Multi-Cloud Networking
- Infrastructure as Code (Terraform)
- Network Automation
- Python, PowerShell, and Bash
- Zero Trust Security
- Network Segmentation & Isolation
- Micro-Segmentation
- AWS & Azure Networking
- Software Defined Networking (SDN)
- Resiliency & Disaster Recovery
- Cyber Recovery Architecture
- Infrastructure Security
- CI/CD Enablement
- Cross-Functional Leadership & Stakeholder Management
By providing your phone number, you consent to: (1) receive automated text messages and calls from the Judge Group, Inc. and its affiliates (collectively "Judge") to such phone number regarding job opportunities, your job application, and for other related purposes. Message & data rates apply and message frequency may vary. Consistent with Judge's Privacy Policy, information obtained from your consent will not be shared with third parties for marketing/promotional purposes. Reply STOP to opt out of receiving telephone calls and text messages from Judge and HELP for help.
Contact: This job and many more are available through The Judge Group. Please apply with us today!