• Hybrid Cloud Architecture: Design and architect hybrid network solutions integrating on-premises data centers with AWS and Azure cloud environments.
• High Availability/Redundancy: Develop and implement high-availability and redundancy strategies, including failover, load balancing, and disaster recovery architectures in multi-region environments.
• AWS Services: Design and manage AWS networking and security services such as VPCs, Transit Gateway, Direct Connect, Site-to-Site and Client VPN, Route 53, Elastic Load Balancing, AWS Security Groups, AWS NACL’s, and AWS Network Firewall.
• Azure Services: Design and manage Azure networking and security services including Virtual Networks (VNet), ExpressRoute, Azure VPN Gateway, Azure Load Balancer, Azure NSG’s, and Azure Firewall.
• Legacy Infrastructure: Support and optimize on-premises infrastructure including Cisco NCS routers, Cisco Nexus switches using Cisco NX-OS and Cisco ACI, Forcepoint firewalls, and General Dynamics TACLANE devices
• Network Support: Monitor network performance, troubleshoot complex issues, and implement proactive improvements.
• Identity and Access: Collaborate with network, system and security teams to implement identity and access controls using RSA and Cisco ISE.
• Security Integration: Work closely with the Information Security Office to implement cloud security best practices, including AWS Security Groups, Azure Network Security Groups (NSGs), and Web Application Firewalls (WAF), ensuring solutions comply with Key Control Policies.
• Documentation: Develop and maintain architecture artifacts, Layer 1/2/3 detail designs, cloud network diagrams, sample configurations, and "how-to" documents for network administrators.
• Testing & Validation: Test/validate deployment of security patches, cloud firmware updates, and software upgrades in a lab environment before production rollout.
• Analysis: Conduct technical analyses of engineering documentation and installation plans pertinent to the design and checkout of complex communication systems.
• Support: Occasionally travel to remote CONUS; provide occasional support outside normal business hours for incident response and maintenance windows.
• Experience with Infrastructure as Code (IaC) using Terraform, Ansible, or CloudFormation to deploy network resources.
• Proficiency in Python or Bash for automating repetitive network tasks and API integration with Cisco ACI.
• Certifications: CCNA and/or CCNP certifications are highly preferred.
• Automation Tooling: Advanced experience with Infrastructure as Code (IaC) using Terraform, Ansible, or CloudFormation.
• Programmability: Proficiency in Python or Bash for API integration with Cisco ACI and automation of repetitive tasks.
• Workload Integration: Experience integrating networking to support unified server workloads, including Cisco UCS and VoIP communication solutions.