Select how often (in days) to receive an alert:
Architect II - SDA
Gurugram Gurgaon HR, IN
Requisition Number: 106165
Networking Architect - Cisco Software-Defined Access (SDA) Specialization
Location: This is a hybrid opportunity in Delhi NCR, Bangalore, Hyderabad, Gurugram area.
Insight at a Glance
- 14,000+ engaged teammates globally with operations in 25 countries across the globe.
- Received 35+ industry and partner awards in the past year
- $9.2 billion in revenue
- #14 on Forbes World's Best Employers in IT - 2023
- #23 on Forbes Best Employers for Women in IT - 2023
- $1.4M+ total charitable contributions in 2023 by Insight globally
Now is the time to bring your expertise to Insight. We are not just a tech company; we are a people-first company. We believe that by unlocking the power of people and technology, we can accelerate transformation and achieve extraordinary results. As a Fortune 500 Solutions Integrator with deep expertise in cloud, data, AI, cybersecurity, and intelligent edge, we guide organisations through complex digital decisions.
About the role
We are seeking an accomplishedNetworking Architectwith extensive expertise in Cisco Software-Defined Access (SDA) to design, architect, and lead the implementation of modern, intent-based access network solutions across enterprise environments. This strategic role is critical for transforming our campus and branch network infrastructure, enabling zero-trust security, network segmentation, and operational simplicity. The successful candidate will develop enterprise-wide SDA strategies, architect complex multi-site deployments, drive technical innovation, mentor senior engineers, and serve as the principal subject matter expert in SDA technologies and architectural best practices.
Key Responsibilities:
- Strategic Architecture & Design
- Develop comprehensive enterprise SDA architecture strategies aligned with business objectives, security requirements, and organizational growth
- Design end-to-end Software-Defined Access solutions spanning campus, branch, and remote access environments
- Architect multi-site SDA fabrics incorporating fabric edge, fabric core, and border nodes
- Design network segmentation and microsegmentation strategies using SDA's policy-based approach
- Create detailed architectural documentation, design specifications, and reference architectures
- Conduct feasibility studies and provide recommendations for network modernization initiatives
- Develop network migration strategies and roadmaps for legacy infrastructure to SDA
- Design solutions supporting diverse environments (wired, wireless, branch, IoT, guest)
- Lead the design and implementation of enterprise-scale SDA deployments across multiple sites
- Architect Catalyst Center integration with SDA fabric management and provisioning
- Design fabric topology including fabric edge, fabric core, border nodes, and control plane nodes
- Architect IP address management (IPAM) and DHCP strategies for SDA environments
- Design and implement SDA policy frameworks and scalable group tags (SGTs)
- Lead integration of wireless networks (Catalyst 9000 series) with SDA fabric
- Architect branch connectivity using SD-WAN integration with SDADesign and implement SDA for IoT, guest, and BYOD access scenarios
- Zero-Trust Security Architecture
- Architect comprehensive zero-trust security frameworks leveraging SDA capabilities
- Design identity-based and device-based access policies using Cisco ISE integration
- Architect microsegmentation strategies using Scalable Group Tags (SGTs) and Security Group ACLs (SGACLs)
- Design threat-centric access control policies based on user, device, and application context
- Architect integration with Cisco Secure Network Analytics (Stealthwatch) for threat detection
- Design encryption and authentication strategies for SDA environments
- Develop compliance frameworks aligned with industry standards (PCI-DSS, HIPAA, SOC 2, etc.)
- Design audit and logging architectures for compliance and forensic analysis
- Architect Security Group ACLs (SGACLs) for granular access control
- Design policy-based access control frameworks translating business requirements into network policies
- Architect VN (Virtual Network) designs for multi-tenancy and organizational separation
- Design and implement advanced policy features including contract-based policies
- Architect policy analytics and visibility for compliance and security monitoring
- Design policy governance and change management processes
- Architect Catalyst Center integration with SDA fabric management and provisioning
- Design network automation and orchestration strategies leveraging Catalyst Center APIs
- Develop Infrastructure-as-Code (IaC) strategies for SDA configuration management
- Design REST API integration strategies with third-party applications and orchestration platforms
- Architect monitoring, assurance, and analytics policies using Catalyst Center capabilities
- Design and implement advanced automation workflows for SDA operations
- Architect integration with ITSM and IPAM platforms
- Wireless & Access Architecture
- Design enterprise wireless architectures integrated with SDA fabric
- Architect Catalyst 9000 series access points and controllers for SDA environments
- Design wireless segmentation and policy enforcement strategies
- Architect guest access, BYOD, and IoT connectivity within SDA framework
- Design roaming and mobility strategies for wireless devices
- Architect wireless security policies and encryption strategies
- Design wireless assurance and performance monitoring
- Branch & Remote Access Architecture
- Design SD-WAN integration with SDA for branch connectivity
- Architect branch fabric edge nodes and connectivity strategies
- Design secure remote access solutions (VPN, zero-trust remote