Network Architect-Ent
Listed on 2026-06-01
-
IT/Tech
Cybersecurity, Systems Engineer
Network Architect-ENT (T235875)
The University of Alabama at Birmingham (UAB) seeks a Network Architect-ENT to manage high-level network planning, design, and optimization. The position will develop strategies and direction for network systems solutions using current and emerging technologies, translate business requirements into network or process designs, plan and recommend hardware and software, configure and maintain routers, switches, hubs for wired, wireless, and VOIP, evaluate and recommend new products, monitor network performance, ensure capacity planning, and troubleshoot.
The role will foster security by following IT Security Policies and participating in annual training on HIPAA and FERPA. The Network Architect will design and support secure, segmented network architectures for regulated and controlled workloads, including CMMC environments, and will contribute to the design and configuration of firewalls and web application firewalls (WAFs). The role works closely with information security, research compliance engineering, and other teams to support secure architecture.
Annual Salary: $109,250 - $177,530
Responsibilities- Design secure, segmented network architectures supporting regulated and controlled workloads, including enclave topologies, trust boundaries, routing domains, and isolation mechanisms to protect in-scope systems.
- Design, configure, and maintain enterprise firewalls in support of approved network architectures, implementing segmentation rules, controlled access paths, and traffic enforcement consistent with documented security requirements.
- Design, deploy, and maintain Web Application Firewall (WAF) solutions to protect applications hosted within regulated or externally exposed environments, ensuring traffic inspection and rule enforcement align with approved architectures.
- Translate documented technical requirements into practical network, firewall, and WAF configurations, without responsibility for policy definition, control ownership, or audit determinations.
- Engineer and maintain controlled connectivity between regulated enclave networks and approved enterprise, research, or external systems, minimizing attack surface while supporting operational needs.
- Develop and maintain architecture documentation, including network diagrams, firewall and WAF design artifacts, and data flow representations, used to support operational clarity and compliance evidence collection.
- Perform other duties as assigned.
- Associate's degree in Information Systems or a related field and ten (10) years of related experience required. Work experience may substitute for education requirement.
- Five (5+) years of progressively responsible experience in enterprise network engineering or network architecture roles; experience designing, integrating, or supporting cloud-based networking constructs (e.g., virtual networking, VNet/VPC design, hybrid connectivity); demonstrated experience designing and supporting segmented or security-sensitive network environments.
- Experience supporting environments subject to regulatory frameworks such as CMMC, NIST SP 800-171, or similar.
- Experience designing or supporting isolated or enclave-based network architectures.
- Experience in higher education, research computing, healthcare, or government adjacent environments.
- Experience working within or supporting regulated cloud environments such as Microsoft Azure Government (GCC/GCC High) or AWS Gov Cloud (or equivalent).
- Familiarity with network monitoring, logging, and visibility tools used in regulated environments.
- Experience with secure remote access, VPNs, or controlled inter-network connectivity.
- Exposure to hybrid networking models integrating on-premises infrastructure with cloud environments (e.g., Azure VNets, AWS VPCs, private connectivity).
- Familiarity with cloud-native networking controls, segmentation, and security constructs in regulated environments.
- Strong expertise in enterprise routing and switching, including core, distribution, and access layer design.
- Hands‑on experience designing and configuring enterprise firewalls…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).