Skip to content

Lead Cloud Network Engineer

  1. Heredia
  2. Information Technology & Systems
  3. Permanent
  4. Hybrid
  5. Full Time

Role Overview

As a Lead Cloud Network Engineer reporting to the Manager of Cloud Network Engineering. You will architect and engineer cloud-native and hybrid networking solutions across AWS, Azure, and other public cloud platforms. You will design VPC/VNet architectures, connectivity patterns, and shared network services using Infrastructure as Code and automation-first principles.

You will work with cloud platform engineers, network engineers, security teams, and application teams to ensure that network services are available, resilient, secure, and consumable through self-service interfaces. Your work will directly improve our ability to deliver reliable connectivity, enforce network governance, and support large-scale cloud adoption.

Responsibilities:

Cloud & Hybrid Network Architecture

  • Design and maintain cloud networking architectures, including
  • AWS VPCs, Azure VNets, subnets, routing tables, NAT, IGW, and firewalls.
  • Hub-and-spoke, transit VPC/VNet, and multi-account/multi-subscription models.
  • Architect and operate hybrid connectivity solutions:
  • AWS Direct Connect, Azure ExpressRoute.
  • Site-to-Site VPN, Client VPN, and backup connectivity patterns.
  • Design and support routing strategies using BGP, static routing, and route propagation across hybrid and multi-cloud environments.
  • Implement shared network services, such as:
  • Transit gateways / virtual WAN.
  • Centralized ingress/egress.
  • DNS, NTP, IPAM, and firewall services.

Infrastructure as Code & Automation.

  • Architect and maintain network infrastructure as code using:
  • Terraform and CloudFormation.
  • Modular, reusable network components and blueprints.
  • Automate provisioning, configuration, and lifecycle management of cloud networking resources.
  • Build reusable network service modules that can be consumed by application and platform teams through self-service workflows.
  • Integrate network automation into CI/CD pipelines and GitOps workflows.

Security, Governance & Observability

  • Embed network security and governance controls into IaC for segmentation, routing controls, firewall policies, and traffic inspection.
  • Partner with security teams on Zero Trust and least-privilege network access models and secure hybrid and third-party connectivity.
  • Implement network observability, logging, and monitoring for performance, availability, and troubleshooting.
  • Support compliance requirements through standardized, auditable network designs.

Platform Collaboration & Enablement

  • Collaborate with cloud platform, application, and SRE teams to:
  • Define network patterns aligned with cloud-native best practices.
  • Allow scalable onboarding of new workloads and environments.
  • Provide guidance and technical leadership on cloud networking best practices.
  • Contribute to internal documentation, reference architectures, and design standards.
  • Improve developer experience by simplifying network usage through APIs, templates, and automation.

Experience and Skills

  • Over 8 years of Cloud Engineering experience.
  • 3+ years of experience designing and operating cloud or hybrid network infrastructure at scale.
  • Hands-on experience with cloud networking in AWS or Azure, including:
  • VPC/VNet design, routing, security groups/NSGs, load balancing.
  • Direct Connect / ExpressRoute architectures and operations.
  • Understanding of hybrid networking concepts like BGP, routing domains, MTU, latency, redundancy, and failover.
  • Solid knowledge of core networking protocols like TCP/IP, DNS, HTTP/S, routing, and distributed network design.

Automation & Engineering

  • Hands-on experience with Infrastructure as Code using Terraform or CloudFormation for network resources.
  • Proficiency in automation and scripting with Python, Ansible, or cloud SDKs/CLIs.
  • Experience integrating network provisioning into CI/CD pipelines.
  • Linux/Unix background; Windows networking experience is beneficial.

Security & Identity

  • Understanding of cloud IAM concepts and their interaction with network security.
  • Familiarity with cybersecurity practices, including: Network segmentation, traffic inspection, and incident response. Secure connectivity to on-premises and third-party environments.

Beneficial skills:

  • Experience with API-driven platforms and service interfaces.
  • Exposure to internal developer platforms or self-service portals.
  • Basic understanding of frontend technologies (HTML, CSS, JavaScript) to support platform integration.
  • Experience supporting multi-cloud network architectures (AWS, Azure, GCP, OCI).
  • Advanced Cloud Certifications in AWS or Azure.

About Experian

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more. Experian invests in people and new advanced technologies to unlock the power of data. We have an amazing team of 25,200 people in 32 countries.  

Our uniqueness is that we celebrate yours. Experian's people first, inclusive and purpose driven culture is multi award-winning; World's Best Workplaces™ 2025 (Fortune Global Top 25), Great Place To Work™ in 26 countries to name a few. Check out Experian Life on social or explore our Careers Site to understand why.

Experian is proud to be an Equal Opportunity Employer for all groups protected under applicable federal, state and local law, including protected veterans and individuals with disabilities. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

Our benefits include: Medical, life and dental insurance, Asociacion Solidarista, International Share Save Plan, Flex Work/Work from home, Paid time off, Annual Performance Bonus, Education Reimbursement, Family Bonding, Bereavement Leave, Referral Program, and more. 

 

#LI-Remote

This is a remote position.