Sr. Principal Network Engineer
Job description
About the role
You will design, configure, and manage classified cloud-based networking environments on AWS and Azure, alongside physical network devices such as routers, switches, and firewalls. You own the implementation and maintenance of network infrastructure through Infrastructure as Code (IaC) using tools like Terraform and Ansible. You collaborate with development, security, and cloud engineering teams to tightly integrate networking into CI/CD pipelines and infrastructure automation workflows. You work directly with government stakeholders to architect scalable and secure network solutions that address evolving mission-critical requirements. You ensure all network designs and operations comply with federal government security protocols and regulatory standards. You troubleshoot complex network issues across classified environments, performing root-cause analysis and implementing corrective measures to ensure minimal downtime.
Key facts
What you'll do
- Architect and configure secure cloud networking environments on AWS and Azure for sensitive government workloads.
- Deploy and maintain physical network infrastructure including routers, switches, firewalls, and load balancers in classified settings.
- Implement and manage network configurations using Infrastructure as Code (IaC) methodologies with Terraform and Ansible.
- Partner with development, security, and cloud engineering teams to embed networking within CI/CD pipelines and automation frameworks.
- Collaborate with government stakeholders to design scalable, resilient, and secure network architectures aligned with mission-critical objectives.
- Enforce compliance with federal security protocols such as NIST, FISMA, and DISA STIGs through secure VPN, firewall, and network segmentation implementations.
- Conduct vulnerability assessments, harden network devices, and perform risk management activities to satisfy government compliance mandates.
- Diagnose and resolve complex network issues in classified environments, performing root-cause analysis and deploying timely corrective actions.
- Author and maintain detailed network architectures, configurations, and IaC scripts with strict adherence to classified data handling and security policies.
- Support network capacity planning and scaling initiatives for hybrid cloud environments, ensuring seamless integration between cloud and on-premises resources.
- Implement robust security controls including encryption, VPNs, and firewall rule management in alignment with industry best practices.
- Monitor emerging networking technologies and industry trends to continuously optimize and evolve the network architecture.
Requirements
- Hold an active U.S. Government Top Secret clearance, understanding that only U.S. Citizens are eligible for security clearances.
- Possess a Bachelor's degree in Computer Engineering, Information Technology, or a related technical discipline, or equivalent experience.
- Substitute a degree with four years of hands-on experience in a software engineer or similar full-time technical role.
- Demonstrate 3-5+ years of professional experience in network engineering, including configuration of cloud-based and hardware network devices.
- Show proficiency with Infrastructure as Code (IaC) tools such as Terraform, Ansible, and CloudFormation for network deployments.
- Exhibit strong knowledge of secure network protocols including TCP/IP, BGP, OSPF, and VLANs.
- Display hands-on experience with firewall management, VPN implementation, and secure cloud networking practices.
- Bring practical experience with cloud networking in AWS, Azure, or private cloud environments, including VPCs, security groups, and hybrid connectivity such as Direct Connect or ExpressRoute.
- Leverage automation and scripting languages like Python, Bash, and PowerShell for network management and troubleshooting.
- Maintain a deep understanding of security principles such as Zero Trust, network segmentation, and disciplined firewall rule management.
- Demonstrate comprehensive knowledge of government security frameworks including NIST, FISMA, FedRAMP, and DISA STIGs.
- Exhibit strong aptitude for troubleshooting intricate networking issues and delivering clear, effective solutions under pressure.
- Show strong communication and teamwork skills to collaborate effectively with cross-functional teams.
- Bring experience with CI/CD pipelines and tools such as Jenkins, GitLab, or similar platforms for deploying network changes.
Nice to have
- Current US SCI eligibility and CI polygraph clearance.
- Industry certifications such as CCNA, CCNP, AWS Certified Advanced Networking, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH) or equivalent.
- More than 5 years of industry experience as a network engineer within the Cyber Operation domain.
- Hands-on experience with Software-Defined Networking (SDN), SD-WAN, and network orchestration in classified environments.
- Familiarity with network monitoring and performance analysis tools such as Wireshark, SolarWinds, or Nagios.
- Demonstrated experience communicating directly with customers and end-users.
Practical notes
- On-site work at government facilities or classified secure locations 3+ days a week.
- Collaborative, high-stakes environment with government stakeholders, working with cutting-edge cloud and secure networking technologies.
- Salary Range: $120,000 - $315,000