Job Description
Title: Network Architect
\n
Location: Berkeley Heights, NJ / Alpharetta, GA (5 days onsite)
\n
Job Type: Full-time
\n
\n
Role Summary
\n
We are seeking a Network Architect to lead network design and technical delivery for a new data center (primary/secondary). This role partners with security, computer, storage, backup/DR, and facilities teams to implement a production-grade network that supports critical workloads, tight security controls, and predictable operations. The architect owns the network target state, standards, configurations, testing, and migration/cutover governance.
\n
\n
Key Responsibilities
\n
- \n
- Network Architecture & Strategy: Define target-state DC network architecture including fabric design, routing strategy, segmentation model, and operational standards aligned to resiliency and security requirements.
- Data Center Fabric: Architect and guide implementation of leaf-spine with EVPN/VXLAN and/or Cisco ACI (or equivalent); define underlay/overlay, BGP, MTU/jumbo frames, and control-plane protections.
- Segmentation & Security Zones: Design VRF/VLAN strategy, micro-segmentation alignment (where applicable), east-west controls, firewall placement, and north-south security boundaries in coordination with InfoSec.
- DC Interconnect (DCI) & WAN Edge: Design DCI between DC1/DC2, connectivity to WAN/Internet/cloud, redundancy, QoS, and routing policy (BGP/OSPF as required).
- Core Network Services: Own integration patterns for DNS/DHCP/IPAM (Infoblox or equivalent), NTP, PKI/cert dependencies, TACACS/RADIUS, and network management.
- Load Balancing & Traffic Services: Partner on L4–L7 design (e.g., F5 or equivalent), VIP standards, failover, and integration with security zones.
- Observability & Operations: Define monitoring/telemetry (SNMP/streaming telemetry), syslog/SIEM integration, NetFlow/IPFIX, alerting standards, and operational runbooks.
- Implementation Governance: Validate BOMs and vendor designs, lead build MOPs, configuration standards, peer reviews, and testing/acceptance criteria.
- Migration & Cutover Support: Create cutover plans for network moves (routing changes, VLAN extensions, DCI cutovers), rollback procedures, and validation checklists; support window change.
- Documentation & Standards: Maintain network HLD/LLD, diagrams, IP plans, naming conventions, port maps, and “as-built” documentation.
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
Required Qualifications
\n
- \n
- 8–12+ years in enterprise network architecture with delivery leadership in new DC builds or major network transformations.
- Deep expertise in DC networking concepts: BGP, EVPN/VXLAN, leaf-spine, routing policy, redundancy, and high availability design.
- Strong experience with segmentation: VRFs/VLANs, security zoning, and firewall integration.
- Proven ability to produce HLD/LLD, standards, MOPs, and operational runbooks.
- Strong stakeholder leadership across security, compute, storage, and facilities with clear communication and decision-making.
\n
\n
\n
\n
\n
\n
Preferred
\n
- \n
- Experience with Cisco ACI, Nexus/Arista/Juniper fabrics, and multi-DC DCI patterns.
- Exposure to Palo Alto (or equivalent firewalls) and F5 (or equivalent load balancers).
- Familiarity with regulated environments (banking/healthcare) and audit-ready operational controls.
\n
\n
\n
