Serve as the senior technical authority for complex network designs, escalations, performance issues, and resiliency improvements.
Lead and actively participate in first-of-kind, complex, or high-risk deployments, migrations, cutovers, validation testing, incident response, and advanced troubleshooting.
Translate architecture into implementation plans, reusable configurations, operational standards, and clear handoffs for Network Engineering and Network Security teams.
Advance network automation and infrastructure-as-code practices using Terraform, Ansible, Python, APIs, and configuration-management platforms.
Produce and maintain architecture diagrams, design documents, decision records, implementation standards, and operational documentation.
10+ years of progressive experience in enterprise network engineering and architecture across complex, multi-site environments.
Demonstrated experience leading network architecture from requirements and design through implementation, validation, and operational handoff.
Deep expertise in enterprise routing, switching, wireless, WAN, internet edge, VPN, network segmentation, and high-availability design.
Advanced knowledge of BGP, OSPF, VLANs, VRFs, QoS, IPsec, DNS, DHCP, NAT, route redistribution, and resilient traffic-engineering patterns.
Experience architecting networks across offices, engineering facilities, manufacturing environments, data centers, colocation facilities, and public cloud environments.
Strong experience with firewall architecture, zero-trust principles, network access control, secure remote access, and layered segmentation.
Experience with AWS and Azure networking, including transit architectures, private connectivity, cloud routing, and network security controls.
Ability to create clear architecture diagrams, reference designs, technical standards, implementation guidance, and decision documentation.
Experience evaluating network technologies, vendors, carrier services, and professional-services designs.
Demonstrated ability to lead complex technical initiatives, mentor engineers, and influence outcomes across teams without direct authority.
Strong written and verbal communication skills, including the ability to explain architecture decisions, alternatives, and risks to technical and non-technical audiences.
Bachelor's degree in Computer Science, Engineering, Information Systems, or a related discipline, or equivalent practical experience.
Ability to travel periodically and support planned after-hours implementations or critical incidents.
Demonstrated experience designing secure IoT, Industrial IoT, operational technology, or manufacturing networks, including segmentation of production equipment, sensors, robotics, test systems, building systems, and other connected devices.
Experience applying manufacturing or OT security architecture practices such as zone-and-conduit segmentation, the Purdue model, or ISA/IEC 62443 principles.
Hands-on experience with Palo Alto Networks, Panorama, Prisma Access, Juniper, Mist, Aruba, ClearPass, or comparable enterprise platforms.
Experience designing high-density or industrial wireless networks for manufacturing, warehouse, lab, or engineering environments.
Experience supporting aerospace, defense, advanced manufacturing, government contracting, or another regulated environment.
Knowledge of CMMC, NIST 800-171, ITAR, controlled unclassified information, and network designs supporting regulated or isolated environments.
Experience integrating acquisitions, legacy environments, or international locations into global enterprise standards.
Experience with network automation, source-controlled configuration, validation testing, and infrastructure-as-code.
Relevant advanced certifications such as CCNP, CCIE, JNCIP, JNCIE, PCNSE, AWS Advanced Networking, or equivalent experience.
#LI-KE1
#LE
Full-time regular employee offer package:
Pay within range listed + Bonus + Benefits + Equity
Temporary employee offer package:
Pay within range listed above + temporary benefits package (applicable after 60 days of employment)
Salary compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, licenses and certifications, and specific work location. All offers are contingent on a cleared background and possible reference check. Military fellows and part-time employees are not eligible for benefits. Please speak to your talent acquisition representative for more information.
###
Shield AI is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, marital status, disability, gender identity or Veteran status. If you have a disability or special need that requires accommodation, please let us know.