Senior Network Engineer
Job description
About the role
Teraswitch is engineering a network platform that is built to outperform under demanding conditions for critical workloads. The organization maintains a globally distributed footprint with over 25 datacenter locations linked by a low latency backbone. This role centers on owning the full lifecycle of the F5 fleet that powers the company's application delivery and security stack. You will act as the primary authority for the design, deployment, and reliability of the F5 infrastructure across the global points of presence. The position requires a balance of architectural foresight and hands-on operational rigor to ensure services remain performant and secure. You will report directly to the Principal Network Architect, and your title will reflect your specific depth and impact.
Key facts
What you'll do
Drive the global deployment of the F5 platform across 25+ points of presence, establishing standardized, repeatable designs for application delivery and security.
Collaborate with Network and Software Engineering teams to build and refine customer self-service experiences for F5 delivered services.
Architect and operate global server load balancing using BIG-IP DNS (GTM), implementing anycast, wide IPs, and topology or geolocation-based steering with health-driven failover across points of presence.
Design, deploy, and tune L4-L7 load balancing and SSL/TLS termination (LTM), managing traffic profiles, certificate lifecycle, and iRules for advanced traffic manipulation.
Build and operate WAF capabilities using F5 Advanced WAF / ASM and DDoS mitigation strategies with AFM and behavioral L3-L7 defenses for multi-tenant workloads.
Integrate the F5 infrastructure with the routing layer via BGP, managing route health injection and anycast VIP advertisement into the global backbone.
Onboard, provision, and manage the F5 fleet at scale using custom automation, control systems, and infrastructure tools such as iControl REST, Ansible, and Python.
Enhance reliability and operational transparency by implementing observability through F5 Telemetry Streaming, integrating metrics and logging, and leading incident response and postmortems.
Establish standardized change management and configuration control processes to ensure consistency and security across all F5 devices globally.
Optimize application delivery performance by fine-tuning protocol settings, connection pooling, and offloading configurations for diverse client environments.
Partner with security engineers to align F5 configurations with evolving threat models, compliance requirements, and zero trust principles.
Champion automation-first operations by treating infrastructure as code, validating configurations, and driving continuous improvement across the network stack.
Requirements
You must possess deep, hands-on experience designing and operating F5 BIG-IP in production environments, with proven work in LTM for L4-L7 load balancing and SSL/TLS termination using iRules.
You have a strong working knowledge of networking fundamentals across the entire stack from L2 to L7, including TCP/IP, DNS, HTTP/HTTPS, and TLS protocols.
You understand BGP and dynamic routing concepts deeply and know how they integrate with application delivery, including route health injection and anycast architectures.
You have direct experience with F5 automation using iControl REST APIs and at least one automation framework such as AS3 or Declarative Onboarding.
You are proficient in configuration management tools like Ansible and scripting languages such as Python or bash to manage infrastructure at scale.
You are comfortable operating in a fast-paced, results-oriented environment where priorities shift and uptime is critical.
You are committed to operational best practices and security by design, ensuring that configurations are repeatable, auditable, and resilient.
You maintain a balance between AI-assisted development and a solid understanding of the underlying technologies to avoid technical debt.
Nice to have
You have delivered F5 solutions in a service or hosting provider environment, managing multi-tenant designs with a strong focus on automation-first operations and scalable, secure delivery.
You have operated global server load balancing at scale using BIG-IP DNS or GTM, designing traffic policies based on geography, health, and performance.
You have built and tuned WAF policies, including bot defense and rule optimization, using F5 Advanced WAF or ASM in production.
You have implemented DDoS mitigation strategies across L3 to L7 using AFM, DDoS Hybrid Defender, or behavioral DoS features.
You have experience with multi-tenant isolation techniques such as vCMP, route domains, and partitions to ensure clean separation of customer workloads.
You have managed fleet operations for F5 systems, including centralized monitoring, logging, and standardized image builds.
You have implemented infrastructure-as-code and GitOps practices for network and ADC configuration, using tools like the Terraform F5 provider and CI/CD pipelines.
You have experience operating and upgrading large-scale F5 platforms, including TMOS lifecycle management and familiarity with rSeries, VELOS, or F5OS environments.
You have hands-on experience with NGINX or F5 Distributed Cloud (XC) and understand how these platforms complement or替代 BIG-IP services.
You hold an F5 certification, such as F5 Certified Technology Specialist or CTS, or a comparable professional credential.
You have a proven track record of designing and operating automation-first infrastructure at scale, with measurable improvements in reliability and deployment velocity.
Practical notes
On-Call responsibilities are required to support critical production systems in rotation.
Preference is given to full-time onsite candidates located in Pittsburgh, PA, with hybrid arrangements considered afterward.
Employment is full-time, and the compensation package includes a competitive pay scale along with benefits such as Health, Dental, and Vision Insurance, a 401(k) with company profit sharing, PTO, and 11 company paid holidays.