Network Engineer

Armor Defense, Inc.

$90K — $120K *
Plano, TX 75025In-Person
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4+ years of experience in network engineering focusing on VMware NSX and virtualization.
  • Expertise in VMware NSX-T, including micro-segmentation and service-defined firewalling.
  • Strong background in F5 BIG-IP for traffic management and security.
  • Proficiency with open-source load balancers and WAF tools such as NGINX and HAProxy.
  • Hands-on experience with Infrastructure as Code tools like Terraform and CloudFormation.
  • Scripting skills in Python, Bash, or PowerShell for automation.
  • Excellent communication skills, both written and verbal.

Responsibilities

  • Design, deploy, and manage VMware NSX-T network virtualization solutions.
  • Implement networking for Oracle OCI, AWS, and Azure cloud environments.
  • Architect and maintain hybrid cloud connectivity solutions.
  • Configure, optimize, and evaluate F5 BIG-IP for availability and security.
  • Implement secure Layer 2 and Layer 3 VPN solutions.
  • Manage BGP routing for optimized traffic across multi-site environments.
  • Document network architectures and operational procedures.

Benefits

  • Flexible work environment with options for office or remote work.
  • Opportunities for professional development and certification support.
  • Participation in an innovative AI-first engineering culture.
  • Exposure to advanced networking technologies and hybrid cloud solutions.
Full Job Description
Job Title: Network Engineer
Location: Pune, MAHARASHTRA | Dallas, TX

Summary

Armor is seeking a highly skilled Network Engineer to design, implement, and manage networking solutions across on-premises, hybrid, and public cloud environments. The role sits on Armor's Platform team and supports Armor Enterprise Cloud (AEC), Armor's customer-facing private cloud hosting product. The ideal candidate brings deep expertise in VMware NSX-T, F5 BIG-IP, Layer 2 and Layer 3 VPN (L2L), BGP routing, VMware vCloud Director (vCD), vSphere, and Oracle Cloud Infrastructure (OCI) networking, with working experience in AWS and Azure cloud networking. The role exercises independent judgment in network architecture, incident response, and operational support, and operates as a hands-on technical contributor within Armor's AI-first engineering culture.

Essential Duties and Responsibilities (Additional duties may be assigned as required)
  • Design, deploy, and manage VMware NSX-T network virtualization solutions, including micro-segmentation, distributedfirewall, and network automation.
  • Design and implement networking in Oracle OCI, AWS, and Azure, including Compartments, VPCs,VNets, subnets, security groups, route tables, VPNs,FastConnect, Direct Connect, ExpressRoute, load balancing, DRG, Transit Gateway, Virtual WAN,PrivateLink, Private Endpoints, and cloud-native DNS.
  • Architect andmaintainhybrid cloud connectivity between on-premises virtualization environments and public cloud providers (OCI, AWS, Azure).
  • Configure andoptimizeF5 BIG-IP (LTM, GTM, APM, ASM) to ensure high availability, redundancy, and security, and evaluate and deploy open-source load balancing and WAF alternatives (NGINX,HAProxy, Envoy,ModSecurity, Coraza, or equivalent) whereappropriate.
  • Implement and manage Layer 2 and Layer 3 VPN (L2L) solutions for secure connectivity between data centers and cloud environments.
  • Configure and maintain BGP routing for dynamic network communication and optimized traffic flows across multi-site deployments.
  • Manage andoptimizeVMwarevCloudDirector (vCD) for multi-tenant cloud environments, including resource provisioning and networking.
  • Administer VMware vSphere and adjacent VMware products (vRealize,vSAN, Horizon) to ensure performance, scalability, and security for virtualized workloads.
  • Conduct VMware NSX V-to-T migrations and support SDDC and hardware refresh activities.
  • Configure and manage cloud-native network security services, including WAF, DDoS protection (AWS Shield, Azure DDoS Protection, OCI WAF),PrivateLinkand Private Endpoints, and Network Security Groups across cloud environments.
  • Build andmaintaininfrastructure-as-code (Terraform, Ansible, CloudFormation, ARM) for networkingconfigurations, andcontribute toGitOpsand pipeline automation workflows.
  • Collaborate with SRE, Platform Architecture, Security, and Product Engineering teams to enforce compliance, improve network security posture, and support customer-facing reliability.
  • Troubleshoot and resolve complex networking and virtualization issues across hybrid cloud and on-premenvironments, andprovide Level 2 and Level 3 support for networking incidents, escalations, and performance tuning.
  • Document network architectures, configurations, runbooks, and operational procedures so launched capabilities aresupport-ready.
  • Use AI-assisted tools (Claude Code, GitHub Copilot, or equivalent) as a daily part of design, scripting, documentation, and troubleshooting work, critically evaluating AI-generated outputs for accuracy, security, and operational fit.


REQUIRED SKILLS
  • 4+ years of experience in network engineering with a focus on VMware NSX networking and the VMware virtualization suite (vCloudDirector, vSphere).
  • Hands-onexpertisewith VMware NSX-T, including micro-segmentation, edge nodes, and service-defined firewalling.
  • Strong experience with F5 BIG-IP (LTM, GTM, APM, ASM) for traffic management and security.
  • Hands-on experience with open-source load balancing and WAF platforms (NGINX,HAProxy, Envoy,ModSecurity, Coraza, or equivalent).
  • Hands-on experience withProxmox, KVM, or other open-source virtualization platforms, ordemonstratedability toacquireproficiencyrapidly.
  • In-depth knowledge of BGP routing, VPN (L2L), and network segmentation strategies.
  • Experience managing VMwarevCloudDirector (vCD) for multi-tenant environments.
  • Expertisein Oracle OCI, AWS, and Azure networking, including VPCs, virtual networking, cloud security, and hybrid connectivity.
  • Understanding of cloud-native networking constructs such as Transit Gateways, Virtual WAN, VCN peering,PrivateLinkand Private Endpoints, and cloud DNS services (Route 53, Azure DNS, OCI DNS).
  • Hands-on experience with Infrastructure as Code (Terraform, CloudFormation, ARM, or equivalent).
  • Scripting skills in Python, Bash, or PowerShell for network automation.
  • Familiarity with change management and production release discipline.
  • Strong troubleshooting skills and ability to work in high-availability, customer-facing production environments.
  • Gitproficiencyincluding branching strategies, code review workflows, and CI/CD pipeline integration.
  • Proficiencywith AI-assisted development tools (Claude Code, GitHub Copilot, or equivalent) and the ability to evaluate the accuracy and appropriateness of AI-generated outputs.
  • Understanding ofAI/LLM security risks including prompt injection, data leakage, and model limitations.
  • Ability to critically evaluate AI-generated outputs for accuracy and security implications.
  • Excellent documentation and written and verbal communication skills.
  • Preferred: experience with Software-Defined Wide Area Network (SD-WAN) technologies.
  • Preferred: knowledge of Kubernetes networking and service mesh (Istio, Calico, Cilium, or equivalent) and containerized networking (Docker, Kubernetes).
  • Preferred: familiarity with Zero Trust security models in network architecture.
  • Preferred: exposure to multi-cloud networking solutions across AWS, Azure, OCI, and GCP, including network peering, Transit Gateway and Virtual WAN hub-and-spoke architectures, and cross-region or cross-account patterns.
  • Preferred: experience with network observability and monitoring tools (Datadog,vRealizeNetwork Insight, Grafana, Prometheus, ELK Stack).
  • Preferred:understanding ofDisaster Recovery (DR) and Business Continuity Planning (BCP) strategies for networking.
  • Preferred: experience withfirewallplatforms such as Palo Alto, Fortinet, or Check Point.
  • Preferred: experience with cloud-native WAF and DDoS protection services (AWS Shield, Azure DDoS Protection) and CDN integration (CloudFront, Azure Front Door, OCI CDN).
  • Preferred certification: VMware Certified Advanced Professional (VCAP) - NSX-T.
  • Preferred certification: VMware Certified Professional (VCP-DCV, VCP-NV, or VCP-Cloud).
  • Preferred certification: Oracle Cloud Infrastructure Certified Networking Professional.
  • Preferred certification: F5 Certified Technology Specialist (F5-CTS LTM, GTM, or APM).
  • Preferred certification: AWS Certified Advanced Networking - Specialty.
  • Preferred certification: Microsoft Certified Azure Network Engineer Associate.
  • Preferred certification:ProxmoxVE Certified Professional, or equivalent open-source virtualization certification.

Work Environment
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. The noise level in the work environment is usually low to moderate. The work environment can be either in an office setting or remotely from anywhere.

Similar Jobs

More Jobs at Armor Defense, Inc.

  • Site Reliability Engineer
    $90K — $120K *
    Plano, TX 75025 (Collin County)
    Information Technology
    In-Person
  • Network Engineer
    $90K — $120K *
    Plano, TX 75025 (Collin County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Network Engineer jobs: