Job Description
Job Description
Job Title: Network Engineer
Location: Pune, MAHARASHTRA | Dallas, TX
At Armor, we are committed to making a meaningful difference in securing cyberspace. Our vision is to be the trusted protector and de facto standard that cloud-centric customers entrust with their risk. We strive to continuously evolve to be the best partner of choice, breaking norms and tirelessly innovating to stay ahead of evolving cyber threats and reshaping how we deliver customer outcomes. We are passionate about making a positive impact in the world, and we’re looking for a highly skilled and experienced talent to join our dynamic team.
Armor has unique offerings to the market so customers can a) understand their risk b) leverage Armor to co-manage their risk or c) completely outsource their risk to Armor.
Learn more at: https://www.armor.com
Summary
Armor is seeking a highly skilled Network Engineer to design, implement, and manage networking solutions across on-premises, hybrid, and public cloud environments. The role sits on Armor’s Platform team and supports Armor Enterprise Cloud (AEC), Armor’s customer-facing private cloud hosting product. The ideal candidate brings deep expertise in VMware NSX-T, F5 BIG-IP, Layer 2 and Layer 3 VPN (L2L), BGP routing, VMware vCloud Director (vCD), vSphere, and Oracle Cloud Infrastructure (OCI) networking, with working experience in AWS and Azure cloud networking. The role exercises independent judgment in network architecture, incident response, and operational support, and operates as a hands-on technical contributor within Armor’s AI-first engineering culture.
Essential Duties and Responsibilities (Additional duties may be assigned as required)
- Design, deploy, and manage VMware NSX-T network virtualization solutions, including micro-segmentation, distributedfirewall, and network automation.
- Design and implement networking in Oracle OCI, AWS, and Azure, including Compartments, VPCs,VNets, subnets, security groups, route tables, VPNs,FastConnect, Direct Connect, ExpressRoute, load balancing, DRG, Transit Gateway, Virtual WAN,PrivateLink, Private Endpoints, and cloud-native DNS.
- Architect andmaintainhybrid cloud connectivity between on-premises virtualization environments and public cloud providers (OCI, AWS, Azure).
- Configure andoptimizeF5 BIG-IP (LTM, GTM, APM, ASM) to ensure high availability, redundancy, and security, and evaluate and deploy open-source load balancing and WAF alternatives (NGINX,HAProxy, Envoy,ModSecurity, Coraza, or equivalent) whereappropriate.
- Implement and manage Layer 2 and Layer 3 VPN (L2L) solutions for secure connectivity between data centers and cloud environments.
- Configure and maintain BGP routing for dynamic network communication and optimized traffic flows across multi-site deployments.
- Manage andoptimizeVMwarevCloudDirector (vCD) for multi-tenant cloud environments, including resource provisioning and networking.
- Administer VMware vSphere and adjacent VMware products (vRealize,vSAN, Horizon) to ensure performance, scalability, and security for virtualized workloads.
- Conduct VMware NSX V-to-T migrations and support SDDC and hardware refresh activities.
- Configure and manage cloud-native network security services, including WAF, DDoS protection (AWS Shield, Azure DDoS Protection, OCI WAF),PrivateLinkand Private Endpoints, and Network Security Groups across cloud environments.
- Build andmaintaininfrastructure-as-code (Terraform, Ansible, CloudFormation, ARM) for networkingconfigurations, andcontribute toGitOpsand pipeline automation workflows.
- Collaborate with SRE, Platform Architecture, Security, and Product Engineering teams to enforce compliance, improve network security posture, and support customer-facing reliability.
- Troubleshoot and resolve complex networking and virtualization issues across hybrid cloud and on-premenvironments, andprovide Level 2 and Level 3 support for networking incidents, escalations, and performance tuning.
- Document network architectures, configurations, runbooks, and operational procedures so launched capabilities aresupport-ready.
- Use AI-assisted tools (Claude Code, GitHub Copilot, or equivalent) as a daily part of design, scripting, documentation, and troubleshooting work, critically evaluating AI-generated outputs for accuracy, security, and operational fit.
REQUIRED SKILLS
- 4+ years of experience in network engineering with a focus on VMware NSX networking and the VMware virtualization suite (vCloudDirector, vSphere).
- Hands-onexpertisewith VMware NSX-T, including micro-segmentation, edge nodes, and service-defined firewalling.
- Strong experience with F5 BIG-IP (LTM, GTM, APM, ASM) for traffic management and security.
- Hands-on experience with open-source load balancing and WAF platforms (NGINX,HAProxy, Envoy,ModSecurity, Coraza, or equivalent).
- Hands-on experience withProxmox, KVM, or other open-source virtualization platforms, ordemonstratedability toacquireproficiencyrapidly.
- In-depth knowledge of BGP routing, VPN (L2L), and network segmentation strategies.
- Experience managing VMwarevCloudDirector (vCD) for multi-tenant environments.
- Expertisein Oracle OCI, AWS, and Azure networking, including VPCs, virtual networking, cloud security, and hybrid connectivity.
- Understanding of cloud-native networking constructs such as Transit Gateways, Virtual WAN, VCN peering,PrivateLinkand Private Endpoints, and cloud DNS services (Route 53, Azure DNS, OCI DNS).
- Hands-on experience with Infrastructure as Code (Terraform, CloudFormation, ARM, or equivalent).
- Scripting skills in Python, Bash, or PowerShell for network automation.
- Familiarity with change management and production release discipline.
- Strong troubleshooting skills and ability to work in high-availability, customer-facing production environments.
- Gitproficiencyincluding branching strategies, code review workflows, and CI/CD pipeline integration.
- Proficiencywith AI-assisted development tools (Claude Code, GitHub Copilot, or equivalent) and the ability to evaluate the accuracy and appropriateness of AI-generated outputs.
- Understanding ofAI/LLM security risks including prompt injection, data leakage, and model limitations.
- Ability to critically evaluate AI-generated outputs for accuracy and security implications.
- Excellent documentation and written and verbal communication skills.
- Preferred: experience with Software-Defined Wide Area Network (SD-WAN) technologies.
- Preferred: knowledge of Kubernetes networking and service mesh (Istio, Calico, Cilium, or equivalent) and containerized networking (Docker, Kubernetes).
- Preferred: familiarity with Zero Trust security models in network architecture.
- Preferred: exposure to multi-cloud networking solutions across AWS, Azure, OCI, and GCP, including network peering, Transit Gateway and Virtual WAN hub-and-spoke architectures, and cross-region or cross-account patterns.
- Preferred: experience with network observability and monitoring tools (Datadog,vRealizeNetwork Insight, Grafana, Prometheus, ELK Stack).
- Preferred:understanding ofDisaster Recovery (DR) and Business Continuity Planning (BCP) strategies for networking.
- Preferred: experience withfirewallplatforms such as Palo Alto, Fortinet, or Check Point.
- Preferred: experience with cloud-native WAF and DDoS protection services (AWS Shield, Azure DDoS Protection) and CDN integration (CloudFront, Azure Front Door, OCI CDN).
- Preferred certification: VMware Certified Advanced Professional (VCAP) - NSX-T.
- Preferred certification: VMware Certified Professional (VCP-DCV, VCP-NV, or VCP-Cloud).
- Preferred certification: Oracle Cloud Infrastructure Certified Networking Professional.
- Preferred certification: F5 Certified Technology Specialist (F5-CTS LTM, GTM, or APM).
- Preferred certification: AWS Certified Advanced Networking - Specialty.
- Preferred certification: Microsoft Certified Azure Network Engineer Associate.
- Preferred certification:ProxmoxVE Certified Professional, or equivalent open-source virtualization certification.
WHY ARMOR
Join Armor if you want to be part of a company that is redefining cybersecurity. Here, you will have the opportunity to shape the future, disrupt the status quo, and be a part of a team that celebrates energy, passion, and fresh thinking. We are not looking for someone who simply fills a role – we want talent who will help us write the next chapter of our growth story.
ARMOR CORE VALUES
- Commitment to Growth: A growth mindset that encourages continuous learning and improvement with adaptability in the face of challenges.
- Integrity Always: Sustain trust through transparency + honesty in all actions and interactions regardless of circumstances.
- Empathy In Action: Active understanding,compassionand support to the needs of others through genuine connection.
- Immediate Impact: Taking initiative with swift, informed actions to deliver positive outcomes.
- Follow-Through: Dedication to delivering finished results with attention to quality and detail to achieve the desired outcomes.
Work Environment
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. The noise level in the work environment is usually low to moderate. The work environment can be either in an office setting or remotely from anywhere.
Equal opportunity employer - it is the policy of the company to comply with all employment laws and to afford equal employment opportunity to individuals in all aspects of employment, including in selection for job opportunities, without regard to race, color, religion, sex, national origin, age, disability, genetic information, veteran status, or any other consideration protected by federal, state or local laws.