Senior Network Platform Engineer, Cloud Infrastructure
GrabIndonesiaFull-time2w ago
Job description
About the role
This position is dedicated to the design, development, and ongoing maintenance of cloud networking systems that emphasize high reliability, robust security, and scalable architecture. You will be responsible for creating and managing self-service platforms and automating workflows to streamline network provisioning, configuration, and orchestration across our cloud environments. The role involves working closely with cross-functional teams to ensure seamless cloud connectivity, operational stability, and security compliance. You will play a key part in building infrastructure that supports Grab's expanding digital ecosystem, ensuring that network systems are resilient, efficient, and aligned with best practices.
Key facts
What you'll do
- Architect and oversee cloud network infrastructure components, including Virtual Private Clouds (VPCs), Transit Gateways, subnets, route tables, peering connections, NAT gateways, internet gateways, private endpoints, VPNs, Direct Connect links, DNS configurations, and firewalls, ensuring they meet performance and security standards.
- Develop automation solutions for network lifecycle management, including deployment, configuration, validation, and updates, utilizing Infrastructure as Code (IaC) methodologies to enable repeatability and reduce manual errors.
- Build and maintain internal APIs and orchestration systems that facilitate self-service network requests, automate provisioning workflows, and provide audit trails for compliance and troubleshooting.
- Establish and enforce standards for IP address management, CIDR block allocations, routing policies, network segmentation, resource tagging, and multi-region connectivity to ensure consistency and security across cloud environments.
- Troubleshoot and resolve complex networking issues involving protocols and technologies such as TCP/IP, DNS, TLS, BGP, IPsec, MTU, routing, NAT, firewalls, and load balancers, minimizing downtime and service disruptions.
- Create automated checks and monitoring tools to detect configuration drift, policy violations, and security boundary breaches, ensuring ongoing compliance and operational integrity.
- Enhance network observability by developing dashboards, alerts, flow logs, and diagnostic tools that provide real-time insights into network performance and security posture.
- Collaborate with security teams, platform engineers, and application developers to ensure reliable, secure, and scalable cloud connectivity that supports business needs.
- Maintain comprehensive documentation of network architectures, operational procedures, and troubleshooting guides to facilitate knowledge sharing and onboarding.
- Participate in incident response and post-mortem analyses related to network issues, contributing to continuous improvement of network resilience and security.
- Stay updated with the latest trends, tools, and best practices in cloud networking and infrastructure automation to recommend improvements and innovations.
Requirements
- A minimum of 7+ years of professional experience in network engineering or cloud infrastructure management, demonstrating a strong understanding of enterprise network architectures.
- At least 3+ years of hands-on experience designing, deploying, and operating cloud network infrastructure on AWS or other major cloud providers, with a proven track record of managing complex cloud environments.
- Deep knowledge of networking fundamentals including TCP/IP, DNS, routing protocols, NAT, VPN, BGP, IPsec, firewalls, and load balancing techniques.
- Practical experience working with AWS networking services such as VPC, Transit Gateway, Direct Connect, Site-to-Site VPN, Route 53, VPC endpoints, security groups, NACLs, and flow logs, with a focus on security and scalability.
- Proficiency in programming languages such as Go, Python, Java, or TypeScript, used for developing automation scripts, internal tools, and APIs.
- Demonstrated experience in building and maintaining infrastructure automation platforms using Infrastructure as Code tools like Terraform, CloudFormation, or Pulumi.
- Strong troubleshooting skills for distributed systems across hybrid, cloud, and on-premises environments, with the ability to analyze and resolve complex network issues efficiently.
- Excellent documentation skills to clearly record system architectures, operational procedures, and troubleshooting steps for team sharing and future reference.
- Ability to work collaboratively in a fast-paced environment, managing multiple priorities while maintaining attention to detail.
- Knowledge of security best practices and compliance standards relevant to cloud networking is a plus.
- Experience with container networking and orchestration platforms such as Kubernetes is advantageous but not mandatory.
Nice to have
- Experience working with cloud providers other than AWS, such as Azure or Google Cloud, to bring multi-cloud expertise.
- Familiarity with network security standards, encryption protocols, and compliance frameworks relevant to enterprise environments.
- Knowledge of network automation and SDN (Software Defined Networking) concepts to enhance operational efficiency.
- Experience in implementing network segmentation, micro-segmentation, and zero-trust security models.
- Exposure to network performance tuning and capacity planning for large-scale cloud deployments.
- Prior involvement in DevOps practices, CI/CD pipelines, and infrastructure testing frameworks.
Skills & tools
- AWS Networking (VPC, Transit Gateway, Direct Connect, Route 53)
- Infrastructure as Code (Terraform, CloudFormation, Pulumi)
- Programming languages (Go, Python, Java, TypeScript)
- Networking protocols and concepts (TCP/IP, BGP, IPsec, DNS, TLS)
- Network security tools and practices
- Monitoring and observability platforms (CloudWatch, Flow Logs, dashboards)
- Automation and orchestration tools
Practical notes
- Benefits include Term Life Insurance and comprehensive Medical Insurance coverage.
- GrabFlex allows employees to customize their benefits package to suit individual needs.
- Leave policies feature Parental leave, Birthday leave, and Love-all-Serve-all (LASA) volunteering leave, supporting work-life balance and community engagement.
- Employees have access to the Grabber Assistance Programme, offering confidential support for personal or professional challenges.
- Flexible work arrangements are available, including differentiated working hours to accommodate personal schedules and preferences.
- The role is based on-site in Jakarta, ID, requiring physical presence at the office to collaborate effectively with teams and stakeholders.