Cloud Network Security Architect

Fortinet Inc.
1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 280K

Job location

Tech stack

API
Proxy Servers
User Authentication
Border Gateway Protocol
C Sharp (Programming Language)
Software as a Service
Cloud Computing
Cloud Computing Security
Cloud Engineering
Computer Networks
Continuous Integration
Data Centers
DevOps
Network Topologies
Infrastructure as a Service (IaaS)
Virtual Private Networks (VPN)
JSON
Python
Network Security
Network Architecture
Routing
Network Segmentation
Node.js
Peering
Ansible
Systems Integration
Wide Area Networks
XML
YAML
Dynamic Routing
Scripting (Bash/Python/Go/Ruby)
Load Balancing
GIT
Cloudformation
Kubernetes
Information Technology
Fortinet
Terraform
Docker
Jenkins
Go
Dynamic Application Security Testing

Job description

Fortinet is seeking a Cloud Network Security Architect specializing in cloud networking, SD-WAN on-ramp design, and SASE convergence. As part of Fortinet's Cloud Architecture team, this role drives the design and deployment of secure, high-performance connectivity across public cloud, data center, and edge environments. The ideal candidate combines strong DevOps engineering skills with deep understanding of secure cloud networking architectures, including dynamic routing constructs, transitive routing models, and cloud-native route services. This role will work closely with Product Management, R&D, Field Engineering, and global customers to develop reference architectures, integrations, and automation for secure, adaptive cloud connectivity., * Design and implement secure cloud network architectures that leverage Fortinet SD-WAN, SASE, and cloud-native routing to deliver optimized multi-cloud connectivity.

  • Develop automation workflows and DevOps pipelines for network provisioning, telemetry, and policy enforcement, using services such as Terraform, Ansible, and cloud-native templates.
  • Architect solutions using transitive routing, route services, dynamic path selection, and zero trust segmentation to enable secure, scalable network topologies.
  • Partner with Product Management and Development teams to identify feature integrations that enhance secure cloud networking capabilities.
  • Lead proof of concept deployments and customer solution validations across public and hybrid cloud environments.
  • Develop and maintain reference architectures, scripts, and code repositories applying industry best practices.
  • Provide architectural guidance on secure traffic steering, network segmentation, and cloud interconnects.
  • Support Professional Services and Sales Engineering teams in customer design and migration projects.
  • Create organizational workflow enhancements to deliver public cloud-sourced services, such hands-on labs, customer POCs, tool integration, data enrichment and other uses
  • Provide technical guidance on Public Cloud matters to internal stakeholders
  • Document and maintain script and application libraries or repositories
  • Provide technical guidance on Public Cloud integration and development, ex. the use of CSP APIs and how they can be leveraged
  • Translate business requirements to programmatic logic
  • Develop customer-facing documentation
  • Create reference designs and code that applies CSP best practices
  • Advise Product and field Engineering on solution options, feature requirements, and reference designs.

Requirements

  • 5+ years of experience in cloud networking, network security, or secure SD-WAN/SASE design.
  • Strong development and scripting experience in one or more languages (Python, Node.js, C#, Go, or equivalent).
  • Familiarity with CI/CD tools (Git, Jenkins) and IaC orchestration (Terraform, Ansible, or CloudFormation).
  • Experience with IaaS and SaaS networking constructs such as VPCs/VNets, route tables, peering, VPNs, and load balancers.
  • Knowledge of BGP, transitive routing, network segmentation, and traffic engineering in cloud environments.
  • Hands-on experience with containerized environments (Docker, Kubernetes) and cloud-native network policies.
  • Proficiency with data formats such as YAML, JSON, or XML.
  • Familiarity with cloud security services (CNAPP, CASB, CWP, SCA, DAST).
  • Strong communication skills and ability to collaborate across engineering, product, and customer-facing teams.
  • Experience in network security highly desired, including VPN, Proxies, Authentication, etc.
  • Technical writing and network documentation skills highly desired
  • Kubernetes and Docker experience required

Education:

  • Bachelor's degree in Computer Science or similar and/or equivalent experience required
  • Master's preferred

Benefits & conditions

Fortinet offers employees a variety of benefits, including medical, dental, vision, life and disability insurance, 401(k), 11 paid holidays, vacation time, and sick time as well as a comprehensive leave program.

Wage ranges are based on various factors including the labor market, job type, and job level. On target earnings for this position is expected to be $170,000 - $280,000 per year. Exact salary offers will be determined by factors such as the candidate's subject knowledge, skill level, qualifications, experience, and geographic location.

Apply for this position