Senior Network and Cloud Engineer – AWS Hybrid Infrastructure
Listed on 2026-09-28
-
IT/Tech
Cybersecurity, AWS, Network Engineer, Network Security
Description
Concept Solutions is seeking a Senior Network and Cloud Engineer to support the Federal Aviation Administration Command Control and Communications office. The C3 office helps FAA leaders maintain situational awareness and continuity of communications during national emergencies, natural disasters, and major technology disruptions. When service is interrupted, the team supports rapid recovery of essential communications.
This position is a senior hands-on engineering role focused on the network infrastructure that connects FAA data centers, field locations, and AWS environments. The engineer will lead assigned network and hybrid-cloud work streams, provide tier-three troubleshooting, and advise program leadership on secure, available, and supportable solutions. The role works closely with cloud platform, cybersecurity, systems, application, and telecommunications teams.
Enterprise Network Engineering- Design, implement, maintain, and improve enterprise LAN, WAN, and metropolitan network services supporting mission-critical operations.
- Configure and troubleshoot routers, switches, firewalls, load balancers, network segmentation, routing protocols, and high-availability designs in multi-vendor environments.
- Assess capacity, performance, resiliency, carrier diversity, and technical lifecycle risks, and recommend practical improvements.
- Coordinate with systems administrators and application teams to verify server-to-network integration and reliable access for local and remote users.
- Design, build, and support secure connectivity between FAA on-premises environments and AWS using services such as Direct Connect, Transit Gateway, Site-to-Site VPN, VPC routing, and Route 53.
- Lead the network portions of cloud migration and modernization efforts, including connectivity planning, routing, segmentation, firewall policy, cutover, testing, and rollback preparation.
- Configure and maintain VPC network components, including subnets, route tables, security groups, network access control lists, endpoints, and shared connectivity across AWS accounts.
- Support networking within established multi-account landing zones and coordinate changes with the cloud platform and security teams.
- Implement redundant connectivity and disaster recovery network designs that support established recovery time and recovery point objectives.
- Identify network-related opportunities to improve AWS utilization and cost efficiency and support the program's broader cloud cost-governance process.
- Implement and validate network security controls across on-premises and AWS environments in support of NIST SP 800-53, FISMA, FedRAMP, OMB Circular A-130, applicable STIGs, and the program's Authorization to Operate.
- Apply Zero Trust principles through segmentation, least-privilege access, secure remote connectivity, identity-aware controls, and continuous monitoring.
- Configure and support firewalls, IPsec tunnels, client VPN services, 802.1X, AWS security groups, AWS Network Firewall or WAF where applicable, and related logging and alerting.
- Partner with cybersecurity staff on security assessments, evidence collection, vulnerability remediation, configuration reviews, and continuous monitoring.
- Provide tier-three troubleshooting for complex outages and performance issues involving routing, packet loss, latency, asymmetric paths, firewall policy, DNS, or carrier services.
- Use packet analysis, flow data, logs, and monitoring platforms to determine root cause and restore service within operational priorities.
- Automate repeatable network and AWS configuration tasks using infrastructure-as-code, configuration management, scripting, version control, and controlled…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).