Lead Network Engineer
Indexed description
Position Summary:
We are seeking a Lead Network Engineer with deep expertise in Azure and cloud-native networking, along with strong proficiency in traditional enterprise networking technologies including Palo Alto firewalls, F5 LTM, and Cisco-based infrastructure. This role will drive cloud network architecture, hybrid connectivity, and security best practices across our Azure environment, while also serving as a senior-level engineer for core datacenter and WAN infrastructure.
Key Responsibilities:
- Serve as the Subject Matter Expert (SME) for Azure networking, including VNet architecture, NSGs, Azure Firewall, Private Link, ExpressRoute, and VPN Gateways.
- Design and implement scalable hybrid cloud network solutions connecting Azure workloads to on-premises environments using BGP, ExpressRoute, DMVPN, and SD-WAN technologies.
- Ensure security and compliance through network segmentation, monitoring, and policy enforcement using Palo Alto Prisma Access, Panorama, and NGFWs.
- Manage and optimize F5 LTM appliances for traffic distribution, SSL offloading, and secure application delivery.
- Support core datacenter switching infrastructure based on Cisco NX-OS and layer 3 routing protocols including OSPF and BGP.
- Lead network design reviews, capacity planning, and architecture decisions for cloud-first and hybrid deployments.
- Collaborate with DevOps, security, and application teams to align network and security controls with modern cloud-native architectures.
- Develop Infrastructure as Code (IaC) solutions for repeatable Azure network deployments using Terraform, ARM templates, or Bicep.
- Provide Tier 3/4 escalation support for critical cloud and hybrid networking issues.
- Maintain comprehensive documentation of network architecture, configurations, and standard operating procedures.
- 8+ years in network engineering roles, with at least 3+ years focused on Azure or cloud networking.
- Advanced hands-on experience in:
- Azure VNet, NSG/UDR, Azure Firewall, VPN/ExpressRoute, Hub-Spoke Topologies
- Hybrid networking and site-to-site connectivity with BGP/DMVPN
- Palo Alto Firewalls, Prisma Access, and Panorama
- F5 LTM administration and iRule development
- Cisco routing/switching, especially NX-OS, BGP, and OSPF
- Strong knowledge of TCP/IP, load balancing, firewall security, and high availability design.
- Experience with IaC tools and automation (Terraform, Ansible, PowerShell).
- Cloud networking exposure in AWS or GCP is a bonus but not required.
- Bachelor’s degree in computer science, Information Technology, or a related field.
- Microsoft Certified: Azure Network Engineer Associate
- PCNSE – Palo Alto Networks Certified Network Security Engineer
- F5-CA – F5 Certified Administrator
- CCNP/CCIE (Enterprise or Security)
- Excellent analytical and troubleshooting capabilities.
- Clear communicator with the ability to translate technical concepts to non-technical teams.
- Strong organizational and project leadership skills.
- Comfortable in both strategic planning and hands-on engineering work.
- Stay Curious: Being hungry to learn and grow, always asking the big questions.
- Seek Clarity: Embracing complexity to create clarity and inspire action.
- Own the Outcome: Being accountable for decisions and taking ownership of our choices.
- Center on the Client: Relentlessly adding value for our customers.
- Be a Challenger: Never complacent, always striving for continuous improvement.
- Champion Inclusivity: Fostering trust in relationships engaging with empathy, respect, and integrity.
- Commit to each other: Contributing to making Circana a great place to work for everyone.
An offer of employment may be conditional upon successful completion of a background check in accordance with local legislation and our candidate privacy notice. Your current employer will not be contacted without your consent.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search