Job Description: Network Engineer
Position Title: Network Engineer
Department:Network Engineering
About the Role
We are seeking a Senior Network Engineer who brings deep technicalexpertise, sound operational judgment, and the ability to deliver reliable, scalable network services across multi-region and global environments, includingregulated and compliant FedRAMP-authorized platforms. This role is primarily operationsfocused, encompassing ownership of daytoday network reliability, performance, and incident response, while also incorporating engineering and build responsibilities as requiredsuch as evolving routing architectures, developing and maintaining automation pipelines, troubleshooting complex network behaviors, and executing major initiatives across data centers and cloud platforms.
Beyond technical capability, we are looking for the right cultural fit: someone who embodies our core expectation to"be kind"a teammate who collaborates openly, communicates respectfully, supports others, and contributes to a positive, inclusive engineering culture.
You will work closely with Architecture, Product, Security, Compliance, and Operations teams to ensure our global backbone, data center networks, cloud connectivity, andFedRAMP environmentsremainsecure, resilient, automated, compliant, and well-documented. You will be empowered to own meaningful problems end-to-end, influence design patterns, and mentor engineers across the organization.
Key Responsibilities
Network Design & Implementation
- Engineer, build,operate, and deliver network solutions for global data centers, cloud platforms,FedRAMP-authorized environments, build environments, and product connectivity needs.
- Engineer andoptimizerouting for a global IP backbone, including multi-region route propagation, redundancy, and traffic-engineering strategies.
- Engineer, build, andoperatescalable,highly availableL3 topologies using BGP, OSPF, and robust routing policy (communities, AS-path manipulation, MED/local-preftuning, ECMP, route-reflector hierarchy).
- Design and implementsecure network segmentation, boundary controls, and traffic isolationrequiredfor FedRAMP Moderate/High environments.
- Implement hybrid and cloud-native routing across AWS/Azure/GCP using Direct Connect, ExpressRoute, VPN, Transit Gateway, Virtual WAN, and cloud router constructsensuring alignment with FedRAMP architectures and security control requirements.
- Develop andmaintainautomated provisioning, configuration, compliance, andvalidationpipelines using Python, Ansible/AWX, and Git-driven CI/CD workflows, includingFedRAMP configuration baselines.
Network Operations & Reliability
- Ensure connectivity, availability, and performance across multi-region data centers, backbone sites, cloud platforms, andregulated FedRAMP environmentsusing proactive monitoring, telemetry, and lifecycle management practices.
- Operate networksin accordance withFedRAMPcontinuous monitoring requirements, including configuration drift detection, vulnerability mitigation, and audit readiness.
- Troubleshoot complex routing, TCP, and connectivity issues using tools such asnetcat, ping/ICMP, logs, and packet captures.
- Lead or support major incident response when needed, includingFedRAMP-relevant incident handling, escalation, and reporting procedures.
- Execute changes, upgrades, and migrations safely using structured procedures (MOPs), documented approvals, automated workflows, and validated rollback mechanisms.
- Remediate vulnerabilities andmaintaincompliance across network OS versions, configurations, firmware, and security posture in coordination with Security and Compliance teams.
Engineering, Build & Automation
- Engineer enhancements, new capabilities, and service-driven connectivity features supporting product, platform evolution, andFedRAMP boundary services.
- Design automation that enforcesleast privilege, segmentation, encryption-in-transit, logging, and configuration compliancefor regulated environments.
- Replace manual operational steps with automated workflows incorporating pre/post-checks, compliance gates, evidence collection, and safe-rollback logic.
- Test new network OS versions, automation logic, routing changes, and security controls in controlled environments prior to production and FedRAMP deployment.
- Partner with Build, Engineering, Architecture, Product, Security, and Compliance teams to ensure reliability, scalability, and alignment with FedRAMP controlobjectives.
Execution, Planning & Vendor Management
- Translate product, regulatory, and platform requirements into network designs that meetFedRAMP architectural and security expectationswith clear timelines and dependencies.
- Conduct capacity planning across links, devices, cloud gateways, backbone segments, routing domains, and FedRAMP boundary components.
- Manage procurement cycles, RMA workflows, vendor escalations, and equipment lifecycle, ensuring vendors and solutions support FedRAMP use cases.
- Evaluate vendor technologies for performance, resiliency, automation compatibility,FedRAMP eligibility, and cost-effectiveness.
Documentation & Knowledge Management
- Create andmaintainhigh-quality runbooks, architectural diagrams, and troubleshooting guides, includingFedRAMP boundary diagrams and network control documentation.
- MaintainaccuratedocumentationrequiredforFedRAMP audits, assessments, and continuous monitoring activities.
- Define lifecycle standards for network roles, routing constructs, appliances, and platform components.
- Ensure monitoring, alerting, and operational procedures are documented, auditable, and continuously improved.
- Mentor engineers through structured troubleshooting, technical deep dives, FedRAMP design considerations, and post-incident learning sessions.
Qualifications
Education & Experience
- Bachelors degree in Computer Science, Information Technology, or related field (Masterspreferred).
- 7+ years in network engineering with experience in large-scale, multi-region, and global routing environments.
- Experience engineering,operating, or supporting FedRAMP Moderate and/or High environmentsis strongly preferred.
Technical Skills
- Deep hands-onexpertisewith BGP and OSPF in global IP backbone environments, including traffic engineering and multi-vendor interoperability.
- Strong operational and engineering experience withJunOS(MX, QFX, SRX preferred).
- Proficiencywithadditionalnetwork OS platforms (e.g., EOS, NX-OS, IOS-XE) is a plus.
- Strong troubleshooting across routing, switching, TCP/IP, asymmetric paths, latency, packet loss, MTU/fragmentation, and QoS behaviors.
- Experienced with hybrid cloud and cloud-native networking across AWS, Azure, and/or GCP.
- Hands-on automation skills using Python, Ansible/AWX, configuration templating, Git workflows, and automated testing/validation pipelines.
- Strong understanding ofnetwork security controls, boundary protection, encryption, logging, and segmentation conceptsrequiredfor FedRAMP.
- Familiarity with firewalls, VPNs, DDoS mitigation, IDS/IPS, andNIST 800-53-based security frameworks.
Soft Skills
- Strong incident leadership skills, able to coordinate cross-functional teams under pressure.
- Excellent written and verbal communication across Architecture, Product, Security, Compliance, Operations, and Build teams.
- Ability to mentor and elevate peers and junior engineers.
- Effective in fast-paced environments with competing priorities and regulatory constraints.
- Strong analytical thinking, structured problem-solving, and continuous-improvement mindset.
- Reinforces a positive culture anddemonstratesour expectation to"be kind."
The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.
The annual base pay for this position is: $111,200.00 - $166,800.00
F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5s differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change.
You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5s benefits can be found at the following link:. F5 reserves the right to change or terminate any benefit plan without notice.
Please note that F5 only contacts candidates through F5 email address (ending with [redacted].com) or auto email notification from Workday (ending with f5.com or@myworkday.com).