1755 - Azure Network Engineer at Sigma Defense | NY, US | Rezi

1755 - Azure Network Engineer at Sigma Defense

1755 - Azure Network Engineer

Sigma Defense · NY, US

1 weeks ago

1755 - Azure Network Engineer

Sigma Defense · NY, US

13 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this 1755 - Azure Network Engineer role.

Rezi rewrites your resume against Sigma Defense's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the 1755 - Azure Network Engineer posting at Sigma Defense — free, in seconds.

About the Role

Sigma Defense is seeking an Azure Network Engineer with deep Microsoft Azure expertise to own complex connectivity problems involving multiple networks, security boundaries, routing paths, firewalls, and cloud environments. The ideal candidate will design secure solutions that provide required connectivity without unnecessarily expanding the network attack surface.

Responsibilities

  • Design, implement, configure, and maintain network infrastructure within Microsoft Azure.
  • Serve as a technical subject-matter resource for Azure networking, routing, connectivity, and firewall technologies.
  • Design and manage Azure Virtual Networks (VNets), subnets, route tables, User Defined Routes (UDRs), Network Security Groups (NSGs), and Application Security Groups (ASGs).
  • Configure, maintain, and troubleshoot Azure Firewall, Palo Alto Firewall, and associated firewall policies and rule collections.
  • Develop and maintain firewall rules governing traffic between applications, networks, environments, and security boundaries.
  • Design secure network segmentation strategies to control east-west and north-south traffic.
  • Engineer secure connectivity between multiple Azure environments, subscriptions, VNets, and external networks.
  • Configure and support VNet peering, hub-and-spoke architectures, VPN connectivity, private endpoints, Private Link, and other Azure connectivity technologies.
  • Support hybrid connectivity using ExpressRoute and site-to-site VPNs.
  • Design routing solutions involving firewalls, network virtual appliances, shared services, and multiple security boundaries.
  • Troubleshoot network connectivity, routing, DNS, firewall, latency, and application communication issues.
  • Analyze network flows and firewall logs to identify connectivity problems and potential security issues.
  • Implement network controls supporting Zero Trust architectures and micro-segmentation.
  • Support automation of Azure network infrastructure using Infrastructure as Code technologies.
  • Collaborate with cloud architects, infrastructure developers, cybersecurity engineers, application teams, and system administrators.

Requirements

  • 5+ Years of relevant experience.
  • Professional experience designing, implementing, and supporting Microsoft Azure networking environments.
  • Strong understanding of TCP/IP, routing, subnetting, DNS, NAT, VPNs, firewalls, and network segmentation.
  • Hands-on experience configuring and troubleshooting Azure Firewall and Palo Alto Firewall.
  • Experience designing and managing Azure VNets, subnets, NSGs, route tables, and User Defined Routes.
  • Experience implementing connectivity between multiple Azure VNets and environments.
  • Experience troubleshooting complex network-routing and firewall issues.
  • Understanding of hub-and-spoke network architectures and centralized network-security models.
  • Experience with Azure Private Link and Private Endpoints.
  • Understanding of hybrid cloud connectivity and integration between Azure and external networks.
  • Ability to analyze network traffic, logs, and flow information to diagnose connectivity and security issues.
  • Experience designing or supporting Azure Government environments.
  • Experience supporting cloud infrastructure within a Department of Defense (DoD) or other highly regulated environment.
  • Advanced experience with Azure Firewall Premium and Azure Firewall Policy.
  • Experience with Azure Virtual WAN (vWAN), ExpressRoute, and Azure VPN Gateway.
  • Experience with third-party Network Virtual Appliances and next-generation firewall technologies within Azure.
  • Experience with Palo Alto Networks, Fortinet, Cisco, or similar enterprise firewall platforms.
  • Experience implementing Zero Trust network architectures and micro-segmentation.
  • Experience with Azure Network Watcher, Azure Monitor, Log Analytics, Azure DNS, and Private DNS Zones.
  • Experience automating Azure networking through Terraform, Bicep, PowerShell, Azure CLI, or other IaC technologies.
  • Familiarity with DoD cybersecurity requirements, RMF, NIST SP 800-53, and STIGs.
  • Must be a U.S. citizen.
  • Candidate must possess or have the ability to obtain an active TS/SCI security clearance.
  • Clearance may be sponsored for the right candidate.

Skills

  • Microsoft Azure
  • Azure Firewall
  • Palo Alto Firewall
  • TCP/IP
  • Routing
  • Subnetting
  • DNS
  • NAT
  • VPNs
  • Firewalls
  • Network Segmentation
  • Azure VNets
  • Azure NSGs
  • Azure Route Tables
  • Azure User Defined Routes
  • Azure Private Link
  • Azure Private Endpoints
  • Hub-and-spoke network architectures
  • Centralized network-security models
  • Hybrid cloud connectivity
  • Azure Government
  • Azure Firewall Premium
  • Azure Firewall Policy
  • Azure Virtual WAN (vWAN)
  • ExpressRoute
  • Azure VPN Gateway
  • Network Virtual Appliances
  • Next-generation firewall technologies
  • Palo Alto Networks
  • Fortinet
  • Cisco
  • Zero Trust network architectures
  • Micro-segmentation
  • Azure Network Watcher
  • Azure Monitor
  • Log Analytics
  • Azure DNS
  • Private DNS Zones
  • Terraform
  • Bicep
  • PowerShell
  • Azure CLI
  • Infrastructure as Code (IaC)
  • DoD cybersecurity requirements
  • RMF
  • NIST SP 800-53
  • STIGs

Location

  • Remote

Work Type

  • Full-time

Experience Level

  • 5+ Years of relevant experience

Education Level

  • Bachelor's degree from an accredited college or university in a Network Engineering or related field of study.

Salary/Compensations

  • $110,000 - $153,000 annually

Benefits

  • Dental and Vision Insurance
  • Medical Insurance to Include HSA, FSA, and DFSA Plans
  • Life and AD&D coverage
  • Employee Assistance Program (EAP)
  • 401(k) Plan with Company Matching Contributions
  • 160 Hours of Paid Time Off (PTO)
  • 12 (Floating) Holidays
  • Educational Assistance
  • Highly Competitive Salary

About the Company

  • Sigma Defense Systems is an Equal Opportunity Employer.

Equal Opportunity

  • Equal Opportunity Employer/Veterans/Disabled: Sigma Defense Systems is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.