• aws-specific skills – must: (networking: vpc, virtual gateway, route53, direct connect gateway, transit vpc, transit gateway, lambda, endpoints, load balancers) and (security: acm, waf, config, cloudwatch, flow-logs, iam, es etc.)
• security architecture: build cloud network architecture to support encryption of data at rest and transit
• other services such as guardrail, guardduty, aws shield, cloudfront, aws control tower, inspector
• azure-specific skills (networking: vnet, vnet peering, udr, sdr, expressroute, nsg, load balancers, endpoints.)
• experience with automated configuration and deployment: terraform or other infrastructure as code (iac) frameworks
• experience with distributed version-control systems: git/github
• 8+ years of strong enterprise networking with routing/switching configuration/diagnostic experience in global network infrastructure design delivery of wan, lan, firewall, and f5.
• experience with cisco hardware and os : catalyst switches, isr/asr routers, asa
• strong practical experience with palo alto firewalls is a must (vm series, cn series and other dc models)
• strong understanding of the following network protocols: bgp, ipsec and ipsec vti vpn
• experience and in-depth understanding of tcp/ip packets with ability to analyze captured packets for deep troubleshooting.
• scripting (python, ansible, tower) experience is a plus
• work closely with the network architecture, security and application teams to rollout new designs and perform activities for supporting cloud application migration projects.
• leverage his/her prior experience with azure and aws to implement global connectivity secure solutions.
• implement an automated process for cloud network environment eliminating manual and repetitive tasks
• create and maintain infrastructure as code (iac) using industry standard platforms.
• implement industry standard cloud network security practices during build activities and maintain it throughout the lifecycle.