Role & responsibilities
- Must-know core networking services deeply used across in BMW project.
- VPC: subnets, route tables, CIDR, ENIs, vpc flow logs
- TGW: attachments, route tables, route propagation/association, blackhole routes
- Direct Connect: Connections, Private/Transit/Public VIFs, Direct Connect Gateway (DXGW), LOA-CFA, MACsec
- Network Firewall: Suricata rule syntax, stateful/stateless rule groups, TLS SNI inspection, managed rule groups
- NAT/IGW: (public & private connectivity type), Internet Gateway, Egress-Only IGW
- VPC Endpoints: Interface (PrivateLink) vs Gateway, endpoint services, resource policies, endpoint connection acceptance
- Route 53: Private Hosted Zones, cross-VPC hosted zone association, Resolver Rules & Resolver Rule sharing
- IPAM, RAM, CDK, SSM, Lambda, IAM, API Gateway, S3 Access Points, ACM
- Loadbalancer: NLB, ALB, Target group.
- Should-know supporting capabilities (Athena/Glue analytics, CloudWatch/Flow Logs, SNS/EventBridge, Secrets Manager, ECS, AWS Organizations, AWS CI/CD)
- Good-to-have BGP fundamentals, cost optimization, AWS CDK IaC, Python
AWS Network Engineer (ideally certified)
Strong understanding of AWS Core networking services (VPC, Transit Gateway, API Gateway, AWS Direct Connect ( AWS custom resource) , Route53/DNS, CloudFront etc.), subnetting.
Basic understanding of classical on-premises networking and hybrid cloud setup.
General / Responsibilities
- Ability to work independently on technical solutions in collaboration with the customer and 3rd party service providers
- Strong problem solving capabilities: Proactive approach towards problems and challenges with an open communication
- Ability to discuss technical and functional requirements with customer stakeholders, analytical skills