Platform Network Engineer

Insight Global
Radford, United States of America
1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 146K

Job location

Radford, United States of America

Tech stack

Kubernetes Security
Bash
Computer Networks
DNS
Network Topologies
Python
Key Management
Network Architecture
Network Planning and Design
Network Interface
Routing
Openshift
Red Hat Enterprise Linux - RHEL
Ansible
SAP Sales and Distribution
Service Discovery
Software Vulnerability Management
Scripting (Bash/Python/Go/Ruby)
Infrastructure as Code (IaC)
Kubernetes
Information Technology
Rancher
Terraform
Cisco networks

Job description

This position is for a Platform Network Engineer supporting the a customer of Insight Global. The solution is a containerized, Kubernetes-based, multitenant hosting environment for hosting Army enterprise and tactical applications. The client is utilizing Kubernetes and potentially Red Hat OpenShift to implement a cloud-native, software-defined infrastructure across multiple global sites. The client provides value-added common and managed services built on top of the Kubernetes foundation, which hosted applications will require., * Work with Government engineers to develop and maintain the Kubernetes-based architecture.

  • Develop, deploy, and maintain Infrastructure as Code (IaC) for the deployment and sustainment of the Kubernetes networking architecture.

  • As applications are hosted on the solution, utilize IaC for the provisioning of the network foundation for customer namespaces and enclaves.

  • Provide daily administration of the network, including patching and upgrading of all Kubernetes networking components (e.g., CNI plugins like Calico, Cilium, or OpenShift SDN) in coordination with the full Kubernetes ecosystem.

  • Monitor the health and utilization of the network resources and notify the Lead when critical issues arise, and additional resources will be required.

  • Harden the network per cloud-native best practices and the required government cybersecurity controls.

  • Troubleshoot and perform root cause analysis of any hosting platform network issues, including Kubernetes networking and containerized workloads.

  • Develop and maintain system, infrastructure, and process documentation (e.g., system diagrams, network topology, Kubernetes configurations, device configurations, standard operating procedures).

  • Provide on-call support for triage and resolution of after-hours production incidents.

  • Make recommendations for improvements to security, scalability, manageability, and performance across the Kubernetes network enclaves.

Requirements

  • Senior-level network engineering experience with at least five years of experience in implementing and troubleshooting IT infrastructure systems, specifically focusing on Kubernetes networking, containerized workloads, and configurations in enterprise environments.

  • Experience in underly/overlay technologies such as VXLAN, GENEVE, and SD-WAN. Experience in out-of-cluster switching and firewalling platforms such as Cisco NXOS or Palo Alto NGFW.

  • Experience with network automation tools (e.g., Ansible, Terraform), scripting languages (Python, Bash, etc.), packet captures, mTLS, service mesh, and routing protocols.

  • Strong knowledge of Kubernetes network design, deployment, and management concepts, including Container Network Interface (CNI) plugins (e.g., Calico, Cilium, OpenShift SDN), service discovery, ingress controllers, network policies, and DNS management within Kubernetes environments.

Required Certifications:

  • Security+ or equivalent DoD 8570.01-M IA Tech Level II certification.

  • Must have (or obtain within 6 months of hire) a Computing Environment certification in a related field:

  • Network relevant certification in Cisco(DCNX) or Palo Alto(PCNSE/PCCSE/NGFW)

  • Certified Kubernetes Administrator (CKA).

  • Red Hat Certified Specialist in OpenShift Administration.

  • Certified Kubernetes Security Specialist (CKS).

  • Other equivalent Kubernetes or container networking certifications.

Nice to Have Skills & Experience

  • Working knowledge of DoD Security Technical Implementation Guides (STIG) and the Information Assurance Vulnerability Management (IAVM) process, and/or industry hardening best practices and processes.

  • Familiarity with Kubernetes-based platforms, such as Red Hat OpenShift, Rancher, or vanilla Kubernetes.

  • Demonstrated expertise with automation and Infrastructure as code (IAC) concepts

Benefits & conditions

The target pay rate for this position is between $60-70/hr and is based on experience., Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Apply for this position