Cloud Engineer - Networking
Listed on 2026-01-22
-
IT/Tech
Systems Engineer, Cybersecurity, Network Engineer, Cloud Computing
Innovate with purpose
At BILL, we believe in empowering the businesses that drive our economy. By replacing outdated financial processes with innovative tools, we help businesses—from startups to established brands—make smarter decisions and gain control of their operations. And we don’t stop there: we’re creating the future of financial automation so businesses can spend more time on what matters.
Make Your Impact Within a Rapidly Growing Fintech CompanyThe Core Infrastructure Engineering Team is responsible for managing all of the infrastructure and databases utilize Data Dog (for Logging, Metrics, and APM), Splunk, and Cloud Watch (through Datadog integration) for real‑time alerts via Slack and Pager Duty. We're big supporters of automating our workflows with Infrastructure as Code, and we love using Terraform to make it happen.
We are seeking a Staff Cloud Network Engineer to lead the design and evolution of our AWS network platform. This role is for a hands‑on technical leader with deep expertise in AWS networking and infrastructure as code who will set standards, influence architecture, and drive scalable, secure networking solutions across the BILL application ecosystem. You will act as the go‑to expert for cloud networking, partnering closely with infrastructure, security, and product engineering teams to ensure our network enables performance, reliability, and growth.
Qualifications- Minimum of 7 years of relevant experience in network engineering, with a significant portion specifically focused on designing, implementing, and managing network infrastructure in AWS or similar cloud environments.
- Proven experience architecting and operating large‑scale AWS network environments, including the design and implementation of hub‑and‑spoke and multi‑region topologies using AWS Transit Gateways and AWS Cloud WAN.
- Hands‑on experience designing inter‑VPC and inter‑account connectivity patterns (e.g., VPC peering, Transit Gateway attachments, Cloud WAN core networks, routing domains) and segmentation strategies for production, staging, and non‑production workloads.
- Proficiency in Terraform or similar Infrastructure as Code (IaC) tools for automating network configuration, including reusable modules for VPCs, Transit Gateways, Cloud WAN segments, route tables, and security policies.
- In‑depth knowledge of networking protocols, including TCP/IP, BGP, OSPF, VLANs, VPNs, and DNS, with specialized experience managing Amazon Route 53 hosted zones and Cloudflare DNS/CDN configurations.
- Strong understanding of network security principles and best practices, including firewalls, IDS/IPS, encryption, access control, and application of these controls at the VPC, Transit Gateway, and Cloud WAN layers to enforce least‑privilege and zero‑trust patterns.
- Experience with network monitoring and performance optimization tools such as Cloud Watch, VPC Flow Logs, and AWS Direct Connect, including baselining, capacity planning, and proactive detection of routing and latency issues in large‑scale topologies.
- Ability to collaborate effectively with cross‑functional teams, including Systems Engineers, Developers, Security, and Architects, to translate application and business requirements into resilient AWS network architectures.
- Excellent troubleshooting and problem‑solving skills, with a focus on identifying and resolving complex network issues across on‑premises, Direct Connect, VPN, Transit Gateway, Cloud WAN, and VPC boundaries.
- AWS certification(s) such as AWS Certified Solutions Architect – Associate or AWS Certified Advanced Networking – Specialty is preferred.
- Proven track record of designing and implementing scalable and resilient network solutions in a production environment, including multi‑region failover, disaster recovery connectivity patterns, and change‑managed rollouts using IaC.
- Strong communication skills and the ability to articulate network architecture and design decisions to both technical and non‑technical stakeholders, including clear documentation of routing policies, segmentation models, and connectivity patterns.
San Jose pay range
: $159,800—$191,700 USD
Draper, UT pay range
:…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).