Principal Network Engineer

IMMUNITY FEDERAL SERVICES, LLC
United States
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Border Gateway Protocol Cloud Computing Cyber Security Data Centers DDoS Mitigation Software Design Documents Multi-protocol Systems Network Security Network Segmentation Zero Trust Network Access
+4 more
Runbook Network Switches Google Cloud Oracle Cloud Infrastructure

Job description

Experteer Overview As Principal Network Architect, you are the technical authority for Phoenix’s multi-metro backbone and interconnection strategy. You shape the long-range roadmap, set architecture standards, and drive carrier hotels and peering initiatives. You translate complex topology and security design into concrete requirements for engineering and automation teams. You work closely with leadership to align architecture with business goals and competitive position. You will deliver tangible designs and reference architectures that enable scalable, reliable, and secure connectivity. Compensation / Benefits * Own end-to-end multi-metro SR/MPLS backbone architecture, including EVPN/VXLAN stitching, traffic engineering, TI-LFA, capacity planning, and resiliency. * Define carrier hotel entry strategy and peering architecture, collaborating with Optical Architect, and produce design docs, MOPs, and runbooks. * Develop peering and interconnection strategy (IXP, BGP policy, route servers) and cloud on-ramp design; define provisioning architecture and service tiers with SLAs. * Lead carrier-grade resiliency and security architecture; implement zero-trust, DDoS mitigation, macro/micro-segmentation, and publish reference architectures. * Shape the 3-5 year technology roadmap with Sr. Director; evaluate vendors, emerging technologies, and automation/observability requirements. * Serve as Tier-4 technical authority for complex production issues; mentor engineers and lead architecture reviews and knowledge sharing. Tasks * 15-20+ years of network engineering/architecture experience; 5-8+ years at Principal/Sr Principal level in service-provider, carrier-neutral data center, or hyperscale environments. * Expert-level MPLS mastery and EVPN/VXLAN fabric design at data-center scale; SR-MPLS, SRv6, TI-LFA, traffic engineering. * Deep BGP expertise (route reflectors, confederations, EVPN, Flowspec) and large-scale routing table management. * Experience designing multi-metro/service-provider backbones and EVPN-to-MPLS stitching; carrier hotel or IXP integration. * Direct experience with internet peering, BGP policy, public/private peering, and route server integration. * Cloud on-ramp design experience (AWS Direct Connect, Azure ExpressRoute, Google Cloud Interconnect, OCI FastConnect). * Working knowledge of network security architecture (BGP security, RPKI/ROA, DDoS mitigation, EVPN/VXLAN segmentation). * NetDevOps and automation exposure to define provisioning logic, SR policy management, EVPN state, and zero-touch provisioning goals. * Excellent written and verbal communication; ability to present ROI, risk, and trade-offs to C-level audiences. Key requirements *

Requirements

and cloud on-ramp design; define provisioning architecture and service tiers with SLAs. * Lead carrier-grade resiliency and security architecture; implement zero-trust, DDoS mitigation, macro/micro-segmentation, and publish reference architectures. * Shape the 3-5 year technology roadmap with Sr. Director; evaluate vendors, emerging technologies, and automation/observability requirements. * Serve as Tier-4 technical authority for complex production issues; mentor engineers and lead architecture reviews and knowledge sharing. Tasks * 15-20+ years of network engineering/architecture experience; 5-8+ years at Principal/Sr Principal level in service-provider, carrier-neutral data center, or hyperscale environments. * Expert-level MPLS mastery and EVPN/VXLAN fabric design at data-center scale; SR-MPLS, SRv6, TI-LFA, traffic engineering. * Deep BGP expertise (route reflectors, confederations, EVPN, Flowspec) and large-scale routing table management. * Experience designing aaaaaaaaaaaaaaaaaaaaaaaaa you backbones and EVPN-to-MPLS stitching; carrier hotel or IXP integration. * Direct experience with internet peering, BGP policy, public/private peering, and route server integration. * Cloud on-ramp design experience (AWS Direct Connect, Azure ExpressRoute, Google Cloud Interconnect, OCI FastConnect). * Working knowledge of network security architecture (BGP security, RPKI/ROA, DDoS mitigation, EVPN/VXLAN segmentation). * NetDevOps and automation exposure to define provisioning logic, SR policy management, EVPN state, and zero-touch provisioning goals. * Excellent written and verbal communication; ability to present ROI, risk, and trade-offs to C-level audiences. Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

51 sec

Repurposing hardware and operating underwater data centers

Chris Heilmann +1 · LIVE

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

4:42 min

Container hosting options available on Google Cloud Platform

Federico Fregosi · World Congress 2022

Videos

See all

Related articles

See all