Cloud Network Architect

DecisionPoint Corporation
Reston, VA, United States
13 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours

Tech stack

Access Network Application Programming Interfaces (APIs) Amazon Web Services Cloud Computing Cloud Computing Security Cloud Engineering Complex Networks CompTIA Security+ Computer Networks Domain Name System (DNS) Virtual Private Networks (VPN) Network Security
+21 more
Network Configuration and Change Management Network Architecture Network Diagrams Routing Network Segmentation Network Service Packet Analyzer Performance Tuning Zero Trust Network Access Cloud-native Network Functions (CNF) Load Balancing Cloud Platform System Istio HybridCloud Firewalls (Computer Science) Amazon Virtual Private Cloud (VPC) Information Technology Route53 Firewall Services Module Open Network Automation Platform Microservices

Job description

DecisionPoint seeks a Cloud Network Architect to design, secure, and optimize cloud network architectures within IL5 AWS GovCloud environments supporting a large federal and DoD-aligned mission environment. This role focuses on network segmentation, routing, DNS architecture, VPC/VNet design, east-west traffic control, firewall policies, and secure boundary design aligned with Zero Trust principles.

The Cloud Network Architect works closely with cloud platform engineers, cybersecurity teams, system administrators, and application architects to ensure resilient, compliant, and high-performing network infrastructure across enterprise cloud systems.

This position is fully remote., The Cloud Network Architect will: Design IL5-compliant cloud network architectures including VPCs, subnets, routing, and segmentation.

  • Implement network security controls aligned with Zero Trust, including east-west traffic filtering and micro-segmentation.

  • Develop and maintain DNS architecture, API routing flows, and secure naming conventions.

  • Architect secure cloud boundary protections including WAF, firewalls, and network access controls.

  • Lead configuration of VPN, Direct Connect, and cross-account networking for hybrid-cloud or multi-VPC connectivity.

  • Support traffic flow analysis, latency optimization, and performance tuning across cloud network layers.

  • Ensure network designs comply with RMF, STIGs, IL5 cloud security standards, and boundary defense requirements.

  • Troubleshoot complex network issues involving connectivity, DNS failures, load balancing, or segmentation errors.

  • Develop network diagrams, architecture documentation, and network policy standards.

  • Support monitoring and alerting implementations across network and connectivity components.

  • Participate in Change Control Board (CCB) processes for network modifications.

  • Provide guidance to engineering teams on cloud network patterns and operational impacts.

Requirements

Bachelor’s degree in Networking, Computer Science, Engineering, or a related technical field.

Experience (Required)

  • Minimum 7 years of experience in cloud or enterprise network engineering.

  • Experience designing secure cloud network architectures including VPC/VNet segmentation.

  • Experience with DNS, routing, firewalls, and secure boundary design.

  • Experience supporting IL5, federal, or DoD network environments.

Technical Knowledge (Required)

  • Strong knowledge of AWS GovCloud networking services (VPC, NACLs, SGs, Transit Gateway, Route 53).

  • Experience with VPN, Direct Connect, and hybrid-cloud connectivity patterns.

  • Knowledge of Zero Trust network principles and east-west segmentation.

  • Familiarity with load balancers, WAF, and boundary defense tools.

Technical Knowledge (Preferred)

  • Experience with network automation or IaC network configuration.

  • Experience with container networking, service mesh, or microservices connectivity.

  • Familiarity with cloud-native monitoring and packet analysis tools.

Certifications

Required:

  • CCNA or CCNP

  • CompTIA Security+

Preferred:

  • AWS Networking Specialty

  • ITIL v4 Foundation

  • Additional cloud network certifications

Skills

  • Strong problem-solving and diagnostic abilities for complex network issues.

  • Excellent communication and collaboration skills across technical teams.

  • High attention to detail and documentation accuracy.

  • Ability to architect secure, scalable network solutions at enterprise scale.

  • Ability to manage change in a fast-paced mission environment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

2:53 min

Configuring dynamic proxy updates with Istio Pilot

Jan Mensch Jan Mensch · WWC Europe 2026

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

1:51 min

Overview of the three Google Maps routing applications

Germán Álvarez · LIVE

7:15 min

Installing Istio programmatically with bash scripts

Thomas Südbröcker · LIVE

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

Videos

See all

Related articles

See all