Senior Network Engineer
Anywhere in the World·Posted today
terraform
<p> <strong>Headquarters:</strong> Belarus <br /><strong>URL:</strong> <a href="http://epam.com">http://epam.com</a> </p> <div><p>We are seeking a <strong>Senior Network Engineer</strong> to join our engagement on the delivery of a Unified Automation Platform — an Internal Developer Platform (IDP) that standardizes new-project delivery, centralizes access to development resources, and enables software creation through templates and golden paths.</p><p>In this role, you will contribute to the Network/Firewalls automation stream, building modules on a modern toolchain (Terraform/OpenTofu for IaC and Ansible for CaC) with AI-assisted development using GitHub Copilot as a standard practice.</p><h3>Responsibilities</h3><ul><li>Implement and maintain firewall automation modules across PaloAlto, F5, and Cloudflare (security rules, address/service objects, NAT, VIP/pool configuration, WAF policy, certificate binding), following designs defined by the Network Architect</li><li>Build and maintain DNS and NetBox IPAM automation (zone/record management, prefix/role/tenant data entry, reconciliation jobs)</li><li>Deliver Azure core connectivity modules (VNets/subnets, Application Gateway, WAF, Azure Firewall, NSGs) via Terraform/OpenTofu</li><li>Support VMware NSX-T segment and distributed firewall (DFW) rule implementation in coordination with the VMware team</li><li>Execute commit/lock handling procedures for concurrent firewall pipeline changes (PaloAlto/Panorama candidate-config workflows)</li><li>Troubleshoot and remediate production network/firewall issues during Implementation and Adoption, working within change-control processes given the high blast-radius of network changes</li></ul><h3>Requirements</h3><ul><li>3+ years of hands-on experience in network engineering with a focus on automation</li><li>Background in automating firewall platforms via Infrastructure as Code, including PaloAlto, F5, and Cloudflare</li><li>Expertise in implementing Azure networking constructs (VNets, Application Gateway, WAF) and security components (Azure Firewall, NSGs) via Terraform/OpenTofu</li><li>Knowledge of DNS and IPAM (NetBox) data models and automation</li><li>Familiarity with VMware NSX-T network segmentation and distributed firewall concepts</li><li>Proficiency in Ansible for network/firewall configuration tasks, combined with Terraform/OpenTofu-based provisioning</li><li>Capability to operate within change-control processes for high-blast-radius network/security modifications</li><li>Flexibility to use AI-assisted development with GitHub Copilot (provided project-wide)</li><li>Excellent command of written and spoken English (B2+ level)</li></ul><h3>Nice to have</h3><ul><li>Skills in certificate distribution (Venafi) tied to network/load-balancer endpoints</li><li>Exposure to global traffic management and multi-region failover patterns</li></ul></div> <p><strong>To apply:</strong> <a href="https://weworkremotely.com/remote-jobs/epam-systems-senior-network-engineer">https://weworkremotely.com/remote-jobs/epam-systems-senior-network-engineer</a></p>