Senior Cloud Network Engineer (remote-only, worldwide remote)

7 hours, 22 minutes ago
Full-time
Senior
DevOps and Infrastructure
CloudLinux

CloudLinux

CloudLinux is a leading provider of the CloudLinux OS, a platform for Linux web hosting that offers next-level performance and security. With a focus on optimizing web hosting environments, CloudLinux helps service providers improve density, stability,...

IT Services
51-250
Founded 2009

Description

  • Design and operate reliable cross-data-center and hybrid connectivity across IPsec, BGP, routing policy, firewalling, DNS, Cloudflare, provider networking, and cloud connectivity.
  • Build highly available network paths across data centers, public cloud providers, OpenNebula environments, Kubernetes/Talos clusters, and bare-metal infrastructure.
  • Own network changes end to end, including design, risk assessment, peer review, rollout, monitoring, validation, rollback, and post-change documentation.
  • Replace fragile manual network processes with documented, observable, repeatable workflows using Git review, automation, scripts, source-of-truth data, and monitoring.
  • Debug and resolve production incidents involving Linux networking, BIRD/FRR, strongSwan, Juniper JunOS, firewalls, Cloudflare, DNS, MTU/MSS, asymmetric routing, NAT/conntrack, packet loss, Kubernetes CNI behavior, and provider constraints.
  • Maintain architecture documents, topology diagrams, HLD/LLD specifications, runbooks, disaster recovery procedures, configuration snapshots, IPAM/source-of-truth data, and operational handoff materials.
  • Work closely with IaaS, SRE/Observability, Security, Automation/Data, Platform, Service Delivery, and product teams.
  • Improve network observability through alerting, synthetic checks, flow or telemetry data, and practical SLO thinking.
  • Support incidents and maintenance windows with calm execution, clear communication, and useful follow-up notes.

Requirements

  • Senior production networking experience in environments where availability matters.
  • Strong BGP and routing fundamentals, including prefix filtering, communities, route policy, failover, BFD or similar mechanisms, asymmetric routing, traffic steering, and debugging.
  • Strong IPsec, VPN, and site-to-site connectivity experience, ideally with strongSwan or similar tooling.
  • Deep Linux networking knowledge, including iproute2, tcpdump, nftables/iptables, conntrack, system networking, DNS behavior, NIC/offload basics, and MTU/MSS troubleshooting.
  • Datacenter networking fundamentals, including VLANs, LACP, switching, firewalls, optics/cabling awareness, maintenance windows, and backup/recovery practices.
  • Cloud and provider networking experience with VPC/VNet-style networks, CIDR planning, route tables, security groups/NACLs/firewalls, NAT/egress, VPN, load balancers, DNS, and provider limitations.
  • Kubernetes networking fundamentals, including CNI, Services, Ingress, NetworkPolicy, node/pod/service paths, egress control, DNS, load balancing, and packet-level troubleshooting.
  • Network observability and performance experience, including telemetry, flow logs, synthetic checks, bandwidth and latency analysis, packet loss, jitter, saturation, and provider or appliance limits.
  • Network security operations experience, including segmentation, firewall rule lifecycle, least privilege, AAA concepts, secrets handling, and safe maintenance-window discipline.
  • Comfort with infrastructure automation using scripting, APIs, Ansible, Terraform/OpenTofu, Git-based reviews, repeatable rollouts, and configuration validation.
  • Clear written communication in remote and asynchronous teams, including change plans, incident updates, runbooks, risk statements, rollback plans, and owner/date commitments.
  • Sound judgment under uncertainty, with the ability to make bounded decisions while verifying production impact and blast radius before acting.
  • Experience with Juniper JunOS, QFX/EX/SRX platforms, EVPN/VXLAN, MLAG/MC-LAG, ECMP, or leaf-spine topologies is preferred.
  • Experience with BIRD/FRR, anycast routing, RPKI/ROA/ROV validation, IRR, bogon filtering, route-leak mitigation, or public BGP operations is preferred.
  • Experience with NetBox/Nautobot, Oxidized, GitLab CI/CD, Batfish, containerlab, pyATS, NAPALM, or SuzieQ is preferred.
  • Experience with Hetzner, Cloudflare Zero Trust/DNS/LB/WAF, AWS Transit Gateway, Direct Connect concepts, PrivateLink/VPC endpoints, or Route 53 is preferred.
  • Experience with Cilium, Calico, MetalLB, Gateway API, service mesh concepts, OpenNebula networking, Ceph/storage networking, IPv6/dual-stack, DDoS-aware design, SLOs, postmortems, or safe firewall governance is preferred.

Benefits

  • Fully remote work with flexible working hours and the ability to work from any location worldwide.
  • Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leave.
  • Compensation for private medical insurance.
  • Co-working and gym/sports reimbursement.
  • Budget for education and professional development.
  • Interesting and challenging projects.
  • Opportunity to receive a reward for the most innovative idea the company can patent.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Computer Systems Engineer - I (Computer Network Architect)

Barbaricum 251-1K Professional Services

Barbaricum is hiring a Computer Systems Engineer I to support the design, implementation, and maintenance of DoD cyber range and computer test bed environments that enable cybersecurity training, testing, and mission operations.

Active Directory Ansible Bash Chef Cybersecurity DNS IoT Linux Python Windows Server
6 hours, 37 minutes ago

Senior NetOps Engineer

Vecten Internet Software & Services

Senior NetOps Engineer for an AI-native data and technology partner in Warsaw, responsible for building and standardizing cloud networking for a global alternative asset management client in a remote EU/Poland setting.

Argo CD AWS CI/CD GitOps Sentinel Terraform
1 day, 7 hours ago

Senior Network Site Reliability Engineer

Miro 1K-5K Internet Software & Services

Miro is hiring a Senior Network Site Reliability Engineer to strengthen the reliability, availability, and scalability of its AWS-based production infrastructure.

Agile AWS Azure Bash CI/CD DNS EC2 GCP GitHub GitLab Kubernetes Linux Python TCP/IP Terraform
3 days, 6 hours ago

OSP Engineer II

Pearce Services 1K-5K Construction & Engineering

Pearce is hiring an OSP Engineer II/III to design and support outside plant telecommunications infrastructure for fiber and copper network projects across North America.

Fiber
5 days, 6 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers