Senior Network Engineer/Architect; Cloud & Private Cloud
Listed on 2026-02-28
-
IT/Tech
Systems Engineer, Cybersecurity
Senior Network Engineer / Architect (Cloud & Private Cloud)
This role has been designed as ‘Hybrid’ with an expectation that you will work on average 2 days per week from an HPE office.
Who We Are:Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today’s complex world. Our culture thrives on finding new and better ways to accelerate what’s next.
We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.
We’re looking for a hands‑on Network Engineer/Architect to design, implement, and support hybrid network platforms spanning private cloud, VMware-based datacenters, and public cloud (AWS/Azure/GCP). You’ll lead architecture and deep‑dive troubleshooting for virtual networking (NSX), SDN, overlays (VXLAN/GENEVE), micro‑segmentation, and cloud‑native networking—while ensuring scalable connectivity, strong security controls, and high availability.
This role is ideal for an expert who’s equally comfortable whiteboarding target‑state architectures, writing Terraform/Ansible, and dropping into packet captures or control‑plane traces to resolve complex issues.
What You’ll Do (Key Responsibilities)- Architecture & Design
- Design hybrid network architectures across datacenter, private cloud (VMware), and public cloud (AWS/Azure/GCP), including L2/L3 segmentation, routing domains/VRFs, overlays, and interconnect.
- Define and implement SDN architectures (e.g.,
VMware NSX‑T) including micro‑segmentation
, DFW policies
, T0/T1 routing,
NAT
, Load Balancing (L4–L7), and edge services
. - Architect multi‑site solutions: EVPN/VXLAN fabrics, DC interconnect, cloud on‑ramps, and zero‑downtime migration patterns (e.g.,
HCX
). - Design hybrid connectivity
: Direct Connect / Express Route
, site‑to‑site VPN, SD‑WAN (e.g.,
VMware Velo Cloud
), and BGP‑based redundancy.
- Implementation & Operations
- Implement NSX‑T components (Managers, Edges, Transport Zones, Segment profiles), overlay networks (VXLAN/GENEVE), Tier‑0/Tier‑1 routing, and micro‑seg rules.
- Configure and maintain datacenter switching (Cisco NX‑OS, ACI; Arista EOS; Juniper) including BGP/OSPF/IS‑IS
, EVPN
, MLAG/vPC
, QoS
, SPT
, MST
. - Integrate identity and access (e.g.,
Entra /Azure AD
, Okta
, AWS IAM
) with network policies (zero trust, group‑based policy, NAC/802.1X where applicable). - Support VMware vSphere (ESXi, vCenter),
physical‑to‑virtual networking mapping, and L4–L7 services (Palo Alto / Check Point / F5 BIG‑IP / NGINX). - Build and maintain cloud networking
: VPC/VNet design,
subnetting
, IGW/NATGW
, peering
, Transit Gateway/Hub‑Spoke
, NACLs/NSGs/Security Groups
, private endpoints
, and Kubernetes (CNI) networking. - Automate with Terraform
, Ansible
, and scripts (
Python
, Power Shell
); manage configuration via Git and CI/CD. - Troubleshoot complex packet flow issues using Traceflow
, vRNI/Aria Ops for Networks
, pcap/Wireshark
, Net Flow/IPFIX
, and cloud‑native tools.
- Security & Compliance
- Define and enforce micro‑segmentation and zero‑trust network access; partner with security for policy definition (app identity, tags, security posture).
- Implement IAM RBAC
, secrets management, and least‑privilege access patterns for network change and automation pipelines. - Contribute to audit readiness, documentation, and compliance with segmentation/traffic control standards.
- Reliability & Performance
- Engineer for HA/DR
, capacity, performance, and failure‑domain isolation. - Establish monitoring/observability (SNMP/Telemetry, syslog,
Prometheus/Grafana
, vendor controllers) and SLOs for critical paths. - Drive RCAs, corrective actions, and standardization.
- Engineer for HA/DR
- 10+ years architecting and operating enterprise/hyperscale networks across datacenter and cloud.
- Deep VMware networking
:- NSX‑T (overlay…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).