> Markdown version of [/jobs/ext/1182369-sr-network-engineer-connectivity-architect-in-norcross](https://www.wearedevelopers.com/jobs/ext/1182369-sr-network-engineer-connectivity-architect-in-norcross). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Network Engineer & Connectivity Architect in Norcross - **Company:** Energy Jobline - **Location:** Norcross, GA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Windows, Active Directory, Artificial Intelligence, Authentication Protocols, Microsoft Azure, Software as a Service, Continuous Integration, DevOps, Domain Name System (DNS), Multi-Factor Authentication, Github, Internetworking, Virtual Private Networks (VPN), Python (Programming Language), Kerberos (Protocol), Log Analysis, Name Server, Network Architecture, Network Planning and Design, Network Service, NT LAN Manager, OAuth, OpenID, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Microsoft SharePoint, Systems Integration, Wide Area Networks, Policy as Code, Network Routing, Scripting, Okta, System Availability, Grafana, Firewalls (Computer Science), Infrastructure as Code (IaC), Microsoft InTune, Kubernetes, Information Technology, Low Latency, Bicep, Enterprise Integration, Api Design, Terraform, Splunk, Dynatrace, Azure Resource Manager, Cisco - **Published:** July 4, 2026 - **Apply:** https://www.energyjobline.com/job/sr-network-engineer-connectivity-architect-norcross-31046831 ## About the Role & Access (PRIMARY) Deep expertise in Active Directory (architecture, GPOs, replication), Entra ID, Conditional Access, MFA, federation (SAML, OAuth, OIDC), hybrid Zero Trust Architecture Experience implementing -driven access integrating network, endpoint, and SaaS Azure Networking (PRIMARY) VNets, ExpressRoute, VPN Gateway, Azure Firewall, Private Link, DNS, Hub-Spoke design Meraki (PRIMARY) MX (SD-WAN), MS (switching), MR (wireless), Auto VPN, Meraki Dashboard Automation & IaC Terraform, Bicep, ARM templates, CI/CD pipelines M365 Integration and network dependency across Exchange, Teams, SharePoint Endpoint Integration Intune/device compliance integration with access policies Observability Azure Monitor, Log Analytics, Meraki Dashboard, Dynatrace, Splunk Scripting & DevOps PowerShell, Python, or similar scripting experience Education and Experience * Bachelor's degree in Computer Science, Information Technology, or a related technical field; Master's degree in Information Systems Management . * In lieu of a degree, 12+ years of enterprise-level infrastructure experience with a proven track record of delivering automation-first networking projects., * 8-10+ years of enterprise networking experience * 5+ years of Active Directory experience (enterprise scale) * 3+ years of Entra ID (Azure AD), Conditional Access, and MFA * 3+ years of Azure networking experience * 3+ years of Cisco Meraki experience (SD-WAN, switching, wireless) * Experience designing hybrid connectivity (ExpressRoute, VPN, SD-WAN) * Experience implementing IaC (Terraform, Bicep, ARM) * Experience integrating with network and Zero Trust frameworks * Proven experience leading a transition from legacy "box-by-box" management to a centralized, API-driven orchestration model. Experience * Microsoft 365 performance and connectivity optimization ## Description The Sr. Network Engineer & Connectivity Architect serves as the principal architect of the organization's enterprise connectivity platform ("The Backbone"), with a primary focus on Microsoft Azure networking, Cisco Meraki infrastructure, and -driven access (Active Directory & Entra ID). This role is responsible for designing and operating a secure, highly resilient, and cloud-aligned network architecture, where access decisions are governed by user , device posture, and real-time risk signals, rather than traditional network boundaries. Leveraging Infrastructure as Code (IaC), AIOps, and Zero Trust principles, this position ensures seamless, secure connectivity across Azure, on-prem environments, branch networks (Meraki), and SaaS platforms such as Microsoft 365, while enabling a scalable, automated, and self-healing infrastructure. Key Responsibilities -Driven Network Architecture (CORE) Design and implement a network architecture where is the primary control plane. Integrate Active Directory (on-prem), Entra ID, and providers (Okta) with network enforcement points to enable real-time, -based access decisions. Active Directory & Hybrid Ownership * Architect and support enterprise-scale hybrid environments, including: * Active Directory design (sites, replication, GPO strategy) * Entra Connect (Azure AD Connect) synchronization * Authentication protocols (Kerberos, NTLM, modern authentication) * Secure integration with cloud and network services Entra ID & Conditional Access Engineering * Design, implement, and optimize Conditional Access policies, including: * MFA enforcement strategies * Device compliance (Intune integration) * Risk-based and session-based access controls * Location-aware and Zero Trust access models Zero Trust & Enforcement * Lead the implementation of a Zero Trust architecture by aligning: * (Entra ID / Active Directory / Okta) * Network (Azure, Meraki) * Endpoint (Intune / device posture) * Ensure consistent enforcement of least privilege access across all environments Microsoft 365 & Access Optimization * Ensure secure, high-performance access to Microsoft 365 by: * Aligning policies with network routing and access controls * Supporting modern authentication flows and token-based access * Optimizing Teams, Exchange, and SharePoint connectivity Azure-Centric Network Architecture * Design and implement scalable Azure networking solutions, including: * Virtual Networks (VNet) and Hub-and-Spoke architectures * Private Endpoints and Private Link * Azure Firewall, NSGs, and routing strategies * DNS architecture and name resolution Meraki Network Design & Operations * Lead the design, deployment, and optimization of Cisco Meraki environments, including: * MX (SD-WAN & security appliances) * MS (switching) * MR (wireless) * Auto VPN and centralized cloud-based management Hybrid Connectivity & Interconnects * Architect and manage secure connectivity between environments using: * ExpressRoute * VPN Gateways * Meraki SD-WAN (Auto VPN) * Ensure low latency, high availability, and seamless failover. Infrastructure as Code (IaC) & Automation * Manage network and cloud configurations as code using: * Terraform, Bicep, or ARM templates * CI/CD pipelines (Azure DevOps, GitHub Actions) * Ensure all deployments are standardized, repeatable, and auditable. AI Ops & Observability * Implement monitoring and telemetry across Azure and Meraki using: * Azure Monitor & Log Analytics * Meraki Dashboard * Observability tools (Dynatrace, Splunk, etc.) * Enable proactive detection, anomaly identification, and automated remediation. Resiliency & Buiness Continuity Engineering (CRITICAL) * Design and maintain a highly resilient network architecture across Azure, Meraki, on-prem, and SaaS environments: * Eliminate single points of failure * Implement redundancy across WAN, LAN, wireless, and cloud * Design for automated failover and rapid recovery * Ensure -dependent services remain available during outages Governance & Policy Enforcement * Establish and enforce governance using: * Azure Policy and tagging standards * Policy-as-Code frameworks * governance (access reviews, RBAC, least privilege) * Ensure compliance with security, regulatory, and enterprise standards., * Microsoft Certified: and Access Administrator (SC-300) * Microsoft Certified: Azure Solutions Architect Expert * Cisco Meraki Solutions Specialist (CMSS) * Cisco Certified Internetwork Expert (CCIE) or CCNP Enterprise * Cisco Certified DevNet Professional * Hashi Corp Certified: Terraform Associate * Certified Kubernetes Administrator (CKA) At APCO, the way we work matters just as much as the results we deliver. Our values guide how we work, how we partner, and how we deliver results. We C.A.R.E.Committed - We build strong, high-trust relationships with our partners and each other.Accountable - We take ownership of outcomes and hold ourselves to the highest standards of performance and integrity.Results-Driven - We focus on delivering measurable outcomes that create value for our partners and our business.Excellent - We strive for excellence in everything we do while balancing short-term performance with long-term success. If you're excited about joining a team that values collaboration, accountability, and continuous improvement, we'd love to hear from you. By submitting your application, you acknowledge that you have read and understand our Privacy Policy and Terms & Conditions. APCO Holdings may collect personal information (such as name, contact details, and employment history) to evaluate your candidacy. We may share this data with our subsidiaries, affiliates, and service providers. We retain applicant data only as long as necessary for the hiring process or as required by law. ## Related Videos - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Your Infrastructure Is Not a Playground: AI Agents for Infra Done Right](https://www.wearedevelopers.com/videos/2084-your-infrastructure-is-not-a-playground-ai-agents-for-infra-done-right) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Graph and AI Trends 2026: Why Is AI Running but Not Yet Delivering?](https://www.wearedevelopers.com/magazine/680-graph-and-ai-trends-2026-why-is-ai-running-but-not-yet-delivering) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers)