Cloud Network Engineer
Role details
Job location
Tech stack
Requirements
-
Requires 5+ years of relevant and recent experience.
-
Requires a TS/SCI clearance and poly (CI or FS) on day 1.
-
Hands-on experience with Cisco routing, switching, and firewall platforms (e.g., Cisco ASA/FTD, Catalyst 9K/8K, ISR/ASR).
-
Proficiency in BGP, EIGRP and static routing in hybrid and cloud-integrated environments.
-
Strong understanding of IP addressing, subnetting, NAT, VLANs, ACLs, QoS, and VPN/IPsec tunneling.
-
Familiarity with Azure-native tools: Azure Firewall, NSGs, UDRs, Azure Bastion, VNet Peering.
-
Experience implementing and troubleshooting Site-to-Site and Point-to-Site VPNs.
-
Design, implement, and manage Azure networking resources, including Virtual Networks (VNets), VPN Gateways, Application Gateways, Azure Firewall, Network Security Groups (NSGs), Private Endpoints, and ExpressRoute circuits.
-
Configure and maintain IPsec VPN tunnels and BGP peering between Azure and on-premises Cisco infrastructure (e.g., ASA, ISR/ASR, Catalyst, Nexus).
-
Support hybrid cloud networking strategies using hub-and-spoke topologies, service chaining, custom routing tables, and segmentation.
-
Manage DNS, DHCP, and IPAM in hybrid environments by leveraging Azure DNS & Cisco DDI tools.
-
Work closely with cloud security teams to implement Zero Trust architecture principles, micro- segmentation, and network encryption in accordance with FedRAMP/NIST 800-53 controls.
-
Monitor network performance and availability using tools such as Azure Network Watcher, Cisco DNA Center.
-
Provide Tier 2/3 operational support, incident response, and root cause analysis for both cloud and on-premises networking incidents.
-
Familiar supporting enterprise-scale networking environments
-
Demonstrated experience with Cisco ISR/ASR routers, Catalyst/Nexus switches, ASA and Firepower firewalls.
-
Experience in IP routing protocols (OSPF, EIGRP, BOP), VLAN design and spanning-tree protocols (STP/RSTP/MST), HSRPNRRP/GLBP, IP services (NAT, ACL, QoS), traffic monitoring. , GRAY WOLF SOLUTIONS, LLC
-
Demonstrated experience with SolarWinds, PRTG, Cisco Prime, and packet capture tools (Wireshark, tcpdump).
-
Strong understanding of DHCP, DNS, NTP, IP subnetting, and route summarization.
-
Understanding of IPsec, SSL, DMVPN, site-to-site, and remote access VPN technologies.
-
Experience with NIST and IC cybersecurity policies, standards, and best practices.
DESIRED SKILLS
- Demonstrated experience with network automation platforms and tools as Python or Ansible.
- Demonstrated experience with SD WAN technologies such as Cisco SD WAN/Viptela.