This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We’re looking for a hands-on Network Engineer/Architect to design, implement, and support hybrid network platforms spanning private cloud, VMware-based datacenters, and public cloud (AWS/Azure/GCP). You’ll lead architecture and deep-dive troubleshooting for virtual networking (NSX), SDN, overlays (VXLAN/GENEVE), micro-segmentation, and cloud-native networking—while ensuring scalable connectivity, strong security controls, and high availability.
Job Responsibility:
Design hybrid network architectures across datacenter, private cloud (VMware), and public cloud (AWS/Azure/GCP), including L2/L3 segmentation, routing domains/VRFs, overlays, and interconnect
Define and implement SDN architectures (e.g., VMware NSX-T) including micro-segmentation, DFW policies, T0/T1 routing, NAT, Load Balancing (L4–L7), and edge services
Architect multi-site solutions: EVPN/VXLAN fabrics, DC interconnect, cloud on-ramps, and zero-downtime migration patterns (e.g., HCX)
Design hybrid connectivity: Direct Connect / ExpressRoute, site-to-site VPN, SD-WAN (e.g., VMware VeloCloud), and BGP-based redundancy
Implement NSX-T components (Managers, Edges, Transport Zones, Segment profiles), overlay networks (VXLAN/GENEVE), Tier-0/Tier-1 routing, and micro-seg rules
Configure and maintain datacenter switching (Cisco NX-OS, ACI
Arista EOS
Juniper) including BGP/OSPF/IS-IS, EVPN, MLAG/vPC, QoS, SPT, MST
Integrate identity and access (e.g., Entra ID/Azure AD, Okta, AWS IAM) with network policies (zero trust, group-based policy, NAC/802.1X where applicable)
Support VMware vSphere (ESXi, vCenter), physical-to-virtual networking mapping, and L4–L7 services (Palo Alto / Check Point / F5 BIG‑IP / NGINX)
Build and maintain cloud networking: VPC/VNet design, subnetting, IGW/NATGW, peering, Transit Gateway/Hub-Spoke, NACLs/NSGs/Security Groups, private endpoints, and Kubernetes (CNI) networking
Automate with Terraform, Ansible, and scripts (Python, PowerShell)
manage configuration via Git and CI/CD
Troubleshoot complex packet flow issues using Traceflow, vRNI/Aria Ops for Networks, pcap/Wireshark, NetFlow/IPFIX, and cloud-native tools
Define and enforce micro-segmentation and zero-trust network access
partner with security for policy definition (app identity, tags, security posture)
Implement IAM RBAC, secrets management, and least-privilege access patterns for network change and automation pipelines
Contribute to audit readiness, documentation, and compliance with segmentation/traffic control standards
Engineer for HA/DR, capacity, performance, and failure-domain isolation
Establish monitoring/observability (SNMP/Telemetry, syslog, Prometheus/Grafana, vendor controllers) and SLOs for critical paths
Drive RCAs, corrective actions, and standardization
Requirements:
10+ years architecting and operating enterprise/hyperscale networks across datacenter and cloud
Strong hands-on expertise in SDN & Overlay Protocols: Deep knowledge of VxLAN, EVPN, STP, LACP, vPC/MLAG and OSF/BGP, ACLs for building the scalable fabric