Senior Network Engineer

๐Ÿข Vamonos IT LLC ยท all Vamonos IT LLC jobs
๐Ÿ“ United States
๐Ÿ’ฐ USD 130,000 - 150,000 / annual
๐Ÿ“… Posted 2026-08-23 ยท via Himalayas
๐Ÿท Senior-Network-Engineer,Network-Engineer,Network-Security,Network-Automation,Systems-Engineering,Senior-Network-Engineering,Senior-Network-Infrastructure-Engineer,Senior-Network-Systems-Engineer,Senior-IP-Network-Engineer,Senior-Enterprise-Network-Engineer,Senior-Network-Architect,Sr.-Staff-Network-Engineer
Apply on original site โ†—

Description

Vamonos IT is seeking an experienced Senior Network Engineer to design, deploy, secure, and operate highly available network infrastructure for government and commercial customers. This hands-on senior individual contributor will own routing and switching architecture, network security, carrier/peering relationships, automation, monitoring, troubleshooting, and incident response.

The ideal candidate combines deep networking and protocol knowledge with strong automation skills and the ability to communicate effectively with both technical teams and customers.
Key Responsibilities

- Design, implement, and maintain enterprise and service-provider networks across on-premises, colocation, and cloud environments.

- Configure and operate BGP, OSPF, and other dynamic routing protocols, including route policy, redistribution, filtering, and traffic engineering.

- Manage upstream transit, peering, internet exchange, and routing relationships.

- Plan and manage IPv4/IPv6 addressing, subnetting, dual-stack deployments, ARIN/RIR resources, IRR, and RPKI.

- Implement network security through segmentation, firewalls, ACLs, VPNs, tunneling, access controls, and DDoS mitigation.

- Deploy and maintain monitoring, alerting, flow analysis, and network observability systems.

- Automate network configuration, validation, and deployment using Python, Bash, Go, Ansible, Terraform, or similar tools.

- Lead troubleshooting and incident response for complex network issues, including packet-level analysis and root-cause investigations.

- Perform capacity planning, lifecycle management, maintenance windows, and network cutovers with minimal customer impact.

- Maintain network diagrams, IP/asset records, runbooks, configurations, and change documentation.

- Support compliance and audits by providing configuration evidence, remediating findings, and enforcing security baselines.

- Serve as a technical escalation point and mentor junior engineers while working directly with customer technical contacts.

Required Qualifications

- 6+ years of professional network engineering experience in production environments; exceptional senior candidates may qualify through demonstrated technical ownership and portfolio work.

- Expert TCP/IP knowledge and hands-on production experience with BGP plus at least one IGP (OSPF, IS-IS, or EIGRP).

- Strong routing and switching fundamentals, including VLANs, trunking, spanning tree, link aggregation, QoS, MTU, and fragmentation.

- Experience with enterprise or carrier-grade platforms such as Cisco IOS/NX-OS, Juniper Junos, Arista EOS, MikroTik RouterOS, or equivalent.

- Practical experience with firewalls, IPsec/WireGuard/SSL VPNs, tunneling, and network access control.

- Working knowledge of DNS, DHCP, NTP, TLS/PKI, and load balancing.

- Strong IPv4/IPv6 addressing, subnetting, and dual-stack experience.

- Strong Linux administration and command-line skills.

- Proven troubleshooting skills using tcpdump, Wireshark, packet captures, and flow data.

- Scripting/automation experience with Python, Bash, Go, or similar languages.

- Experience with Git and configuration-as-code practices.

- Ability to work independently in a remote environment, manage priorities, and communicate clearly in writing.

- Legally authorized to work in the United States without sponsorship.

- Ability to pass a background investigation.

- Willingness to participate in an on-call rotation and scheduled after-hours maintenance.

Preferred Qualifications

- Federal government or federal contracting experience, particularly DHS, DoD, or civilian agencies.

- Active, prior, or eligible U.S. security clearance.

- Certifications such as CCNP/CCIE, JNCIP/JNCIE, Arista ACE, Network+, or Security+.

- Service-provider/ISP experience, including internet peering, transit, IXP operations, or RIR resource management.

- Experience with RPKI, IRR, BGP origin validation, and route-security practices.

- Cloud networking experienc

โ† All remote jobs