Senior Cloud Network Engineer (remote-only, worldwide remote)

1 month, 3 weeks ago
Full-time
Senior
DevOps and Infrastructure
CloudLinux

CloudLinux

CloudLinux is a leading provider of the CloudLinux OS, a platform for Linux web hosting that offers next-level performance and security. With a focus on optimizing web hosting environments, CloudLinux helps service providers improve density, stability,...

IT Services
51-250
Founded 2009

Description

  • Design and operate reliable cross-data-center and hybrid connectivity across IPsec, BGP, routing policy, firewalling, DNS, Cloudflare, provider networking, and cloud connectivity.
  • Build highly available network paths across data centers, public cloud providers, OpenNebula environments, Kubernetes/Talos clusters, and bare-metal infrastructure.
  • Own network changes end to end, including design, risk assessment, peer review, rollout, monitoring, validation, rollback, and post-change documentation.
  • Replace fragile manual network processes with documented, observable, repeatable workflows using Git review, automation, scripts, source-of-truth data, and monitoring.
  • Debug and resolve production incidents involving Linux networking, BIRD/FRR, strongSwan, Juniper JunOS, firewalls, Cloudflare, DNS, MTU/MSS, asymmetric routing, NAT/conntrack, packet loss, Kubernetes CNI behavior, and provider constraints.
  • Maintain architecture documents, topology diagrams, HLD/LLD specifications, runbooks, disaster recovery procedures, configuration snapshots, IPAM/source-of-truth data, and operational handoff materials.
  • Work closely with IaaS, SRE/Observability, Security, Automation/Data, Platform, Service Delivery, and product teams.
  • Improve network observability through alerting, synthetic checks, flow or telemetry data, and practical SLO thinking.
  • Support incidents and maintenance windows with calm execution, clear communication, and useful follow-up notes.

Requirements

  • Senior production networking experience in environments where availability matters.
  • Strong BGP and routing fundamentals, including prefix filtering, communities, route policy, failover, BFD or similar mechanisms, asymmetric routing, traffic steering, and debugging.
  • Strong IPsec, VPN, and site-to-site connectivity experience, ideally with strongSwan or similar tooling.
  • Deep Linux networking knowledge, including iproute2, tcpdump, nftables/iptables, conntrack, system networking, DNS behavior, NIC/offload basics, and MTU/MSS troubleshooting.
  • Datacenter networking fundamentals, including VLANs, LACP, switching, firewalls, optics/cabling awareness, maintenance windows, and backup/recovery practices.
  • Cloud and provider networking experience with VPC/VNet-style networks, CIDR planning, route tables, security groups/NACLs/firewalls, NAT/egress, VPN, load balancers, DNS, and provider limitations.
  • Kubernetes networking fundamentals, including CNI, Services, Ingress, NetworkPolicy, node/pod/service paths, egress control, DNS, load balancing, and packet-level troubleshooting.
  • Network observability and performance experience, including telemetry, flow logs, synthetic checks, bandwidth and latency analysis, packet loss, jitter, saturation, and provider or appliance limits.
  • Network security operations experience, including segmentation, firewall rule lifecycle, least privilege, AAA concepts, secrets handling, and safe maintenance-window discipline.
  • Comfort with infrastructure automation using scripting, APIs, Ansible, Terraform/OpenTofu, Git-based reviews, repeatable rollouts, and configuration validation.
  • Clear written communication in remote and asynchronous teams, including change plans, incident updates, runbooks, risk statements, rollback plans, and owner/date commitments.
  • Sound judgment under uncertainty, with the ability to make bounded decisions while verifying production impact and blast radius before acting.
  • Experience with Juniper JunOS, QFX/EX/SRX platforms, EVPN/VXLAN, MLAG/MC-LAG, ECMP, or leaf-spine topologies is preferred.
  • Experience with BIRD/FRR, anycast routing, RPKI/ROA/ROV validation, IRR, bogon filtering, route-leak mitigation, or public BGP operations is preferred.
  • Experience with NetBox/Nautobot, Oxidized, GitLab CI/CD, Batfish, containerlab, pyATS, NAPALM, or SuzieQ is preferred.
  • Experience with Hetzner, Cloudflare Zero Trust/DNS/LB/WAF, AWS Transit Gateway, Direct Connect concepts, PrivateLink/VPC endpoints, or Route 53 is preferred.
  • Experience with Cilium, Calico, MetalLB, Gateway API, service mesh concepts, OpenNebula networking, Ceph/storage networking, IPv6/dual-stack, DDoS-aware design, SLOs, postmortems, or safe firewall governance is preferred.

Benefits

  • Fully remote work with flexible working hours and the ability to work from any location worldwide.
  • Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leave.
  • Compensation for private medical insurance.
  • Co-working and gym/sports reimbursement.
  • Budget for education and professional development.
  • Interesting and challenging projects.
  • Opportunity to receive a reward for the most innovative idea the company can patent.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Journeyman-NOC Administrator (R-00165)

True Zero Technologies 11-50 Internet Software & Services

True Zero Technologies is hiring a Network Operations Center (NOC) professional to monitor and support network infrastructure, resolve incidents, and help maintain reliable operations in a fast-paced environment.

Cisco Juniper
3 days, 16 hours ago

Sr. Network Automation Engineer

Flexential 251-1K Internet Software & Services

Flexential is hiring a Sr. Network Automation Engineer to design and operate the in-house platform that automates customer-facing network service ordering, provisioning, and lifecycle management across its nationwide backbone.

Angular Ansible Bootstrap CI/CD Flask GitOps Grafana Helm JavaScript Kubernetes Linux OpenTelemetry Prometheus Python React REST API Secrets Management Terraform
3 days, 16 hours ago

Principal Network Automation Architect

Flexential 251-1K Internet Software & Services

Flexential is seeking a Principal Network Automation Architect to own the architecture and operation of its in-house network automation control plane for customer self-service provisioning across a nationwide multi-service backbone.

Angular Ansible Bootstrap CI/CD Cisco Flask Fortinet GitOps Grafana GraphQL HashiCorp Vault Helm JavaScript Kubernetes Linux Microservices OpenTelemetry Prometheus Python React REST API Terraform
3 days, 16 hours ago

Senior Network Administrator

AssureSoft 51-250 Internet Software & Services

AssureSoft is hiring a Network Administrator to manage and secure hybrid, multi-cloud network environments supporting on-premises datacenters, cloud platforms, and remote connectivity.

AWS Azure DNS GCP Network Security
4 days, 16 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers