Cloud and Core Networking Engineer
Livermore, Alameda County, California, 94551, USA
Listed on 2026-04-23
-
IT/Tech
Systems Engineer, Cloud Computing, Network Engineer, Cybersecurity
Job Description
We have an opening for a Cloud and Core Networking Engineer. You will play a critical role in helping the laboratory seamlessly adopt and operate multi‑cloud architectures across AWS, Azure, and GCP, with responsibility for cloud governance, management, and security. You will join the Enterprise Network Services team, which designs, deploys, and operates carrier‑grade networks and cloud networking infrastructure at scale, leveraging Terraform automation in environments with more than 100 AWS accounts and thousands of VPCs to ensure all network components are fully built, deployed, and decommissioned against a Nautobot source of truth.
This position is in the Enterprise Infrastructure Services (EIS) Division with the Computing Directorate, in support of LivIT.
This position offers a hybrid schedule, blending in‑person and virtual presence. You will have the flexibility to work from home one or more days per week.
This position will be filled at either the SES.
3 or SES.
4 level based on knowledge and related experience as assessed by the hiring team. Additional job responsibilities (outlined below) will be assigned if hired at the higher level.
- Collaborate with service owners, network engineers, developers, stakeholders, and leadership to develop consensus‑based outcomes around cloud infrastructure provisioning, monitoring, management, and troubleshooting.
- Collaborate on the design and architecture of a hybrid, multi‑cloud environment, including providing a secure and robust network backbone.
- Design and deliver advanced automation and infrastructure‑as‑code solutions to streamline provisioning and management of deployed green‑ and brown‑field resources.
- Engage with laboratory scientists, researchers, and developers to understand their workloads and help drive solutions toward cloud‑native technologies.
- Draft and maintain architectural documentation and artifacts, including as‑builds, runbooks, and demonstration code.
- Stay up to date with the latest industry hybrid network architectures and best practices.
- Present and communicate solutions to technical and non‑technical stakeholders.
- Perform other duties as assigned.
4 Level)
- Independently define, prioritize, and execute the technical roadmap for multi‑cloud + data‑center networking, translating loosely defined objectives into deliverable architectures, implementation plans, and milestone outcomes.
- Provide expert‑level routed network design across AWS/Azure/GCP and on‑prem data centers, including routing domain boundaries, segmentation strategy, and failure‑domain design to meet long‑range reliability, security (PAN), and performance targets.
- Apply expertise in BGP‑based connectivity and routing policy (path selection, summarization, route filtering/leak prevention, deterministic failover), validating convergence behavior and preventing asymmetric routing impacts across stateful enforcement points.
- Ability to obtain and maintain a US DOE Q‑level security clearance which requires U.S. Citizenship.
- Bachelor’s degree in Computer Science, Engineering, or related field or the equivalent combination of education and related experience.
- Significant experience with network system design, configuration, implementation, documentation, and operations.
- Advanced knowledge of network engineering principles, such as routing, switching, and VPN or overlay technologies, such as BGP EVPN, IGPs such as OSPF or IS‑IS, IPSec, or other WAN/DCI technologies.
- Advanced experience with AWS networking services including AWS Direct Connect, Transit Gateway, Route
53, and VPC. - Significant experience working with Ansible and Python automation and related libraries focused on networking.
- Advanced experience with three or more of the following:
Cisco 9000/6000 series routers;
Aruba Air Wave, Central, and Clear Pass;
Palo Alto firewalls;
Nautobot SOT (Network‑to‑Code);
Zabbix monitoring with Prometheus, Datadog, and Grafana integrations;
Claude Code for well‑documented automation; and intermediate to advanced Confluence and Jira; AWS Lambda, ECS or EKS, API Gateway, or equivalent Azure services. - Advanced interpersonal,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).