What are the responsibilities and job description for the Network Architect position at Matlen Silver?
Network Architect β DMZ & Public Cloud
Profile
We are looking for a Senior Network Architect with strong experience designing and architecting enterprise DMZ/perimeter networks and hands-on knowledge of public cloud networking. The ideal candidate will have deep experience with DMZ architecture, network segmentation, firewalls, routing, and secure external connectivity, along with experience designing or supporting cloud network environments in AWS, Azure, or GCP.
This role will focus on designing secure, highly available network architectures across data center, Internet-facing, hybrid, and public cloud environments. The architect will work closely with network engineering, cybersecurity, cloud platform, infrastructure, and application teams to develop scalable connectivity and security patterns.
Project Details
- Design and evolve enterprise DMZ and perimeter network architecture supporting Internet-facing applications, external partners, and business-critical services.
- Develop secure connectivity patterns between on-premises data centers, DMZ environments, and public cloud platforms.
- Design network segmentation and traffic flows between Internet, DMZ, application, and internal network zones.
- Support cloud adoption and migration initiatives requiring secure public cloud connectivity.
- Develop architecture standards, reference designs, HLDs/LLDs, network diagrams, and implementation strategies.
- Partner with security teams on firewall, WAF, IDS/IPS, DDoS protection, and traffic inspection architectures.
- Evaluate existing network architectures and recommend improvements for scalability, resiliency, security, and performance.
Must-Haves
- 8 years of enterprise network engineering/architecture experience.
- Strong, hands-on DMZ / perimeter network architecture experience.
- Experience designing secure Internet-facing and externally accessible network environments.
- Strong understanding of network segmentation, routing, NAT, VPN, DNS, load balancing, and traffic flows.
- Strong experience with enterprise firewalls such as Palo Alto, Cisco Firepower/FTD, Fortinet, or equivalent.
- Experience designing hybrid network connectivity between data centers/on-premises environments and public cloud.
- Strong knowledge of at least one major public cloud platform: AWS, Azure, or GCP.
- Cloud networking experience including concepts such as VPC/VNet, subnets, routing, peering, private connectivity, security controls, and cloud-native firewalls.
- Experience developing High-Level Designs (HLDs), Low-Level Designs (LLDs), network diagrams, and architecture documentation.
- Strong understanding of high availability, resiliency, disaster recovery, and secure network design.
- Strong communication skills and ability to work with network, security, cloud, infrastructure, and application teams.
Nice-to-Haves
- Experience with AWS, Azure, and GCP.
- Multi-cloud network architecture.
- Experience with Arista EOS / CloudVision / EVPN-VXLAN.
- Cisco ACI / data center fabric experience.
- F5 BIG-IP / LTM / GTM experience.
- Palo Alto or other next-generation firewall architecture.
- Infrastructure as Code such as Terraform or Ansible.
- Python or network automation experience.
- Zero Trust architecture.
- Cloud landing zone architecture.
- Experience in highly regulated or financial-services environments.
- Experience with third-party and business-partner connectivity.
- Experience developing enterprise network standards and architecture roadmaps.
Salary : $160,000 - $180,000