Network Architect - Cloud (Remote)

The Bull
United States
2 months ago
Apply on indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Languages
Hindi
Job source

Tech stack

Agile Methodology Artificial Intelligence Audit Trail Microsoft Azure Cloud Computing Cloud Computing Security CompTIA Security+ Computer Networks Databases Continuous Integration Data Governance Domain Name System (DNS)
+24 more
Network Interface Controllers Subnetting Virtual Private Networks (VPN) Network Security Network Architecture Routing Package Development Process Peering Performance Tuning Scrum Methodology Systems Development Life Cycle Role-Based Access Control Zero Trust Network Access SAP (Applications) Software Engineering Systems Integration Data Logging Load Balancing Firewalls (Computer Science) Low Latency Machine Learning Operations Firewall Services Module Devsecops Microservices

Job description

Bull Bear Defense Solutions is seeking an experienced Network Architect with deep expertise in Microsoft Azure (including Azure Government), cloud networking, ports/protocols/services design, and secure enterprise integrations. This role will directly support Risk Management Framework (RMF) activities, ATO certification, secure systems design, and application modernization within a FedRAMP-authorized cloud environment.

This position will serve as a central technical authority responsible for designing, documenting, and delivering all network-related architectural artifacts, ensuring alignment with NIST SP 800-53 Rev. 5, FedRAMP Moderate, and federal cybersecurity and privacy standards.

Candidate will be part of a team for a high impact modernization effort supporting the U.S. Department of the Interior, Bureau of Indian Affairs (BIA). This program is building the next generation Electronic Probate System (EPS) within a secure Microsoft Azure Government (FedRAMP Moderate) cloud environment, improving services for American Indian and Alaska Native communities nationwide.

This position will work across architecture, engineering, AI/ML workflows, and DevSecOps to build, enforce, and validate privacy/security control implementations throughout the EPS lifecycle.

Key Responsibilities

Network Architecture & Design

· Design and optimize Azure network topologies, including VNETs, subnets, peering, firewalls, private endpoints, NSGs/ASGs, and routing tables.

· Define and manage ports, protocols, and services (PPS) requirements for all applications, integrations, and system components.

· Develop detailed network architecture drawings, engineering diagrams, data flow diagrams (DFDs), sequence diagrams, and interface control documents (ICDs).

· Ensure all architectures support Zero Trust principles, segmentation, least privilege, and secure communications.

RMF, Security Controls, and ATO Support

· Serve as the network SME for RMF Step 1-6 activities, ensuring all network components meet NIST SP 800-53, FISMA, and FedRAMP Moderate requirements referenced in both documents.

· Develop, validate, and maintain required security control evidence for SC, AC, IA, AU, IR, and CP control families.

· Provide architectural inputs for SSP, SAP, SAR, POA&M, and ATO package development.

· Collaborate with cybersecurity, data governance, and PM teams to ensure secure network operations throughout the system development lifecycle.

Azure Cloud Security & Integration

· Architect secure integrations between application tiers, databases, logging services, CI/CD pipelines, third-party services, and on-prem environments.

· Ensure all traffic flow complies with FedRAMP-authorized boundaries and no data egresses to non-approved networks.

· Support security engineering teams in implementing secure configurations, encryption, and identity controls.

Application Development & Deployment Support

· Provide network engineering support for application teams deploying services into Azure Government, ensuring connectivity, bandwidth, firewall rules, and endpoint configurations.

· Participate in Agile ceremonies (Scrum/SAFe), working closely with PM/Scrum leadership to ensure network tasks align with sprint objectives.

· Troubleshoot connectivity, latency, DNS, load balancing, and service integration issues.

Documentation, Engineering Analysis & Recommendations

· Deliver complete architectural documentation packages, including as-is/to-be network states, configuration baselines, and technical alternatives analyses.

· Provide expert recommendations regarding:

· Network modernization approaches

· Secure cloud migration patterns

· FedRAMP-aligned solutions

· Performance optimization

· Cost management

· Work collaboratively across engineering, cybersecurity, governance, and operations teams to evaluate and deploy solutions.

Requirements

Do you have experience in Zero trust architecture design?, o 7+ years’ experience in network engineering/architecture, with at least 3 years in Azure or Azure Government.

· Expert knowledge of:

o VNET architecture, firewalls, routing, private endpoints

o Ports, protocols, and service dependency mapping

o Zero Trust network segmentation

o DNS, load balancing, VPN/ExpressRoute

o Network telemetry and logging

· Strong experience supporting RMF, ATO, NIST SP 800-53 Rev. 5, FedRAMP Moderate, and cloud security controls.

· Ability to create highly detailed architectural diagrams and technical documentation.

· Experience with incident response support, audit logging, and compliance evidence generation.

Prefferred Qualifications

· Azure certifications: AZ-700, AZ-500, SC-100, or equivalent.

· CISSP, CCSP, CGRC (CAP), or similar federal cybersecurity certifications.

· Experience supporting large-scale federal or enterprise modernization programs.

· Familiarity with DevSecOps pipelines, CI/CD, and microservices networking.

About the company

Based out of the Wright-Patterson Air Force Base (WPAFB) community in Dayton, Ohio, Bull Bear Defense Solutions is a dedicated force in IT, cloud, and GRC modernization. Our commitment is clear: to deliver agile, efficient solutions tailored for legacy IT and cloud systems, catering to federal, defense, and commercial sectors. The cornerstone of our success lies in our team of industry-certified consultants, whose vast expertise in IT and cybersecurity ensures that we not only meet but surpass our clients’ expectations. At Bull Bear, we stand ready to address the unique challenges of each client, guiding them toward robust, future-ready solutions that elevate their security posture in an ever-evolving digital landscape.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

5:28 min

Bitcoin scaling and the transition to peer-to-peer transactions

Jad Wahab · LIVE

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

1:35 min

Powping protocol for direct peer-to-peer interactions

Glenn Wolfe · LIVE

Videos

See all

Related articles

See all