Azure Network Cloud Engineer
Listed on 2026-03-01
-
IT/Tech
Cybersecurity, Network Engineer, Systems Engineer
No sponsorship will be provided for this role.
Location: Onsite in Memphis, TN;
Maryville, TN;
Birmingham, AL;
Lafayette, LA;
New Orleans, LA;
Dallas, TX;
Charlotte, NC; or Raleigh, NC
Weekly
Schedule:
Monday-Friday, 8am-5pm
We are seeking an experienced Azure Networking Engineer to design, implement, optimize, and maintain enterprise‑grade networking solutions within Microsoft Azure. This role focuses heavily on advanced routing, hybrid connectivity, security, private access, and traffic management using Azure's core networking services. The ideal candidate will ensure high performance, scalability, resiliency, low latency, and strong security posture for cloud workloads, hybrid environments, and mission‑critical applications.
You will collaborate closely with cloud architects, security teams, Dev Ops engineers, and application teams to deliver robust, production‑ready network infrastructures aligned with best practices and organizational requirements.
Key Responsibilities- Design and implement complex Azure virtual network architectures, including hub‑and‑spoke models, virtual network peering, and user‑defined routes (UDRs) for custom routing scenarios
- Configure and manage routing solutions, including route tables, BGP propagation, route servers (where applicable), and effective route troubleshooting
- Design, deploy, and maintain Azure Express Route circuits — including private and Microsoft peering, Express Route Direct, circuit SKUs/tiers, gateway configurations, and connectivity troubleshooting
- Implement and administer Virtual Network Gateways (VPN Gateways) for site‑to‑site, point‑to‑site, and VNet‑to‑VNet connectivity, including high‑availability configurations and policy‑based vs. route‑based VPNs
- Deploy and manage Azure Virtual WAN (vWAN) deployments, including hub creation, virtual hub routing, secured hubs with Azure Firewall integration, and branch connectivity (VPN/Express Route)
- Configure Azure Firewall (including Firewall Manager, policy rules, DNAT, application rules, network rules, threat intelligence, and IDPS) for centralized network security
- Implement Private Endpoints and Azure Private Link to enable secure, private access to PaaS services without public internet exposure
- Design and manage Azure Private DNS Resolver (inbound/outbound endpoints) for hybrid and multi‑VNet DNS resolution scenarios, including conditional forwarding and custom DNS forwarding rules
- Configure and optimize load balancing solutions:
Azure Load Balancer (Basic/Standard, internal/external, high‑availability ports, backend pools, health probes) - Deploy and manage NAT Gateways for scalable outbound internet connectivity with static public IPs, zone redundancy, and subnet associations
- Implement and maintain other key Azure networking components, including Network Security Groups (NSGs), Azure DDoS Protection, Azure Front Door (where relevant), Traffic Manager, and Network Watcher for monitoring and diagnostics
- Perform network performance tuning, latency optimization, cost analysis, and capacity planning for networking resources
- Troubleshoot complex connectivity, routing, and security issues using tools such as Azure Network Watcher, NSG flow logs, packet capture, IP flow verify, VPN diagnostics, and Express Route monitoring
- Ensure compliance with security standards, least‑privilege access, and zero‑trust principles in all network designs
- Document network designs, configurations, runbooks, and incident response procedures
- 4+ years of hands‑on experience designing and managing enterprise Azure networking environments
- Deep expertise in the following Azure networking services:
Virtual Networks, Subnetting, Peering, UDRs;
Express Route (circuits, gateways, private/Microsoft peering);
Virtual Network Gateways (VPN, high‑availability);
Azure Firewall & Firewall Manager;
Private Endpoints & Private Link;
Application Gateway (v2 preferred, with WAF); NAT Gateway - Strong understanding of networking fundamentals: TCP/IP, BGP, OSPF, subnetting, routing protocols, DNS, firewalls, NAT, load balancing (L3/L4 vs L7)
- Experience with hybrid connectivity scenarios (on‑premises to Azure integration)
- Proficiency…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: