Senior Network Engineer
Remote in Belarus
Networks & Telecommunication& 3 others
Looking for something else?
Find a vacancy that works for you. Send us your CV to receive a personalized offer.
Find me a jobWe are seeking a Senior Network Engineer to join our engagement on the delivery of a Unified Automation Platform — an Internal Developer Platform (IDP) that standardizes new-project delivery, centralizes access to development resources, and enables software creation through templates and golden paths.
In this role, you will contribute to the Network/Firewalls automation stream, building modules on a modern toolchain (Terraform/OpenTofu for IaC and Ansible for CaC) with AI-assisted development using GitHub Copilot as a standard practice.
Responsibilities
- Implement and maintain firewall automation modules across PaloAlto, F5, and Cloudflare (security rules, address/service objects, NAT, VIP/pool configuration, WAF policy, certificate binding), following designs defined by the Network Architect
- Build and maintain DNS and NetBox IPAM automation (zone/record management, prefix/role/tenant data entry, reconciliation jobs)
- Deliver Azure core connectivity modules (VNets/subnets, Application Gateway, WAF, Azure Firewall, NSGs) via Terraform/OpenTofu
- Support VMware NSX-T segment and distributed firewall (DFW) rule implementation in coordination with the VMware team
- Execute commit/lock handling procedures for concurrent firewall pipeline changes (PaloAlto/Panorama candidate-config workflows)
- Troubleshoot and remediate production network/firewall issues during Implementation and Adoption, working within change-control processes given the high blast-radius of network changes
Requirements
- 3+ years of hands-on experience in network engineering with a focus on automation
- Background in automating firewall platforms via Infrastructure as Code, including PaloAlto, F5, and Cloudflare
- Expertise in implementing Azure networking constructs (VNets, Application Gateway, WAF) and security components (Azure Firewall, NSGs) via Terraform/OpenTofu
- Knowledge of DNS and IPAM (NetBox) data models and automation
- Familiarity with VMware NSX-T network segmentation and distributed firewall concepts
- Proficiency in Ansible for network/firewall configuration tasks, combined with Terraform/OpenTofu-based provisioning
- Capability to operate within change-control processes for high-blast-radius network/security modifications
- Flexibility to use AI-assisted development with GitHub Copilot (provided project-wide)
- Excellent command of written and spoken English (B2+ level)
Nice to have
- Skills in certificate distribution (Venafi) tied to network/load-balancer endpoints
- Exposure to global traffic management and multi-region failover patterns
