Network Engineering - Lead

Cloud88Inc

Sunnyvale (CA)

On-site

USD 180,000 - 260,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Cloud88Inc is seeking a highly experienced Tech Lead – Network Engineering to own global network and security infrastructure. You will design and operate enterprise routing, switching, and wireless, and drive SASE/ZTNA migrations with Zscaler.

The role demands hands-on leadership, strong vendor relationships, and the ability to deliver secure, scalable access across office locations worldwide.

Qualifications

  • 7+ years of experience in Network Engineering or related roles.
  • Hands-on experience in network design, routing, and switching.
  • Strong understanding of VLANs, SD-WAN, DNS/DHCP, NAT, and segmentation.
  • Hands-on experience with NAC / 802.1X and enterprise device-access controls.
  • Strong enterprise wireless networking experience.
  • Experience managing Palo Alto firewalls, Panorama, and threat prevention.

Responsibilities

  • Own network architecture and operations across global offices.
  • Design and maintain standards for wired LAN, wireless LAN, WAN, routing, switching, and site connectivity.
  • Manage dual-ISP redundancy, failover, and resilient connectivity across locations.
  • Administer Palo Alto firewalls, including policies, segmentation, NAT, and Panorama.
  • Manage Cisco Meraki MX/MS/MR across multiple sites.
  • Design scalable network architecture to support growth and new offices.
  • Lead VPN migrations to Zscaler and implement ZIA/ZPA.

Skills

Network design
Routing & switching
NAC 802.1X
Wireless networking
VPN migrations
Zscaler ZIA/ZPA

Tools

Palo Alto firewall
Cisco Meraki
Infoblox DDI
Panorama
Zscaler ZIA/ZPA

Job description

Seeking a highly experienced and hands-on Tech Lead – Network Engineering to take end-to-end ownership of its global corporate network and network security infrastructure.

The ideal candidate will have strong expertise in Network Design, Routing & Switching, NAC, Wireless Networking, and VPN/SASE migrations, with particular emphasis on Zscaler ZIA/ZPA.

Key Responsibilities :
  • Own network architecture and operations across global office locations.
  • Design and maintain standards for wired LAN, wireless LAN, WAN, routing, switching, and site connectivity.
  • Manage dual-ISP redundancy, failover, and resilient connectivity across office locations.
  • Administer and optimize Palo Alto firewalls, including policies, segmentation, NAT, threat prevention, and Panorama.
  • Manage Cisco Meraki MX/MS/MR switching and wireless environments across multiple sites.
  • Administer and enhance Infoblox DDI, including DNS, DHCP, and IPAM.
  • Design scalable network architecture to support new offices and organizational growth.
  • Lead the migration from Tailscale/VPN-based remote access to Zscaler.
  • Implement and manage Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA).
  • Design Zero Trust access architecture incorporating user identity, device posture, application segmentation, and least-privilege access.
  • Develop and execute VPN migration and cutover strategies with minimal business disruption.
  • Decommission legacy VPN infrastructure following successful migration.
  • Implement secure access policies for internal applications and corporate resources.
Routing, Switching, NAC & Wireless
  • Design, configure, troubleshoot, and optimize enterprise routing and switching environments.
  • Manage VLANs, routing protocols, SD-WAN, NAT, and network segmentation.
  • Design and maintain enterprise wireless infrastructure.
  • Implement and manage 802.1X/NAC solutions for corporate, BYOD, and mobile devices.
  • Integrate NAC controls with endpoint-management and identity solutions.
  • Troubleshoot complex wired, wireless, routing, VPN, and network-security issues.
Site & Inter-Office Connectivity
  • Design secure and highly available connectivity between offices, data centers, cloud environments, and third-party networks.
  • Develop standardized network architectures and deployment playbooks for new office locations.
  • Establish repeatable processes for rapidly deploying secure networking infrastructure at new sites.
  • Ensure consistent network-security and connectivity standards across all locations.
Technical Leadership & Strategy
  • Serve as the technical authority and escalation point for network and network-security issues.
  • Work as a hands-on technical lead while providing architectural direction and mentorship.
  • Partner with Security and IT leadership to establish a multi-year network and security roadmap.
  • Own relationships with key technology vendors, including Palo Alto Networks, Cisco Meraki, Zscaler, and Infoblox.
  • Establish network monitoring, alerting, documentation, and operational standards.
  • Identify opportunities for network automation, standardization, scalability, and improved observability.
Required Qualifications :
  • 7+ years of experience in Network Engineering, Network Architecture, or related infrastructure roles.
  • Strong hands-on experience with Network Design, Routing, and Switching.
  • Strong understanding of VLANs, SD-WAN, DNS/DHCP, NAT, VPN, and network segmentation.
  • Hands-on experience with NAC / 802.1X and enterprise device-access controls.
  • Strong enterprise Wireless Networking experience.
  • Hands-on experience managing Palo Alto Networks firewalls, including policy, Panorama, segmentation, NAT, and threat prevention.
  • Strong experience with Cisco Meraki MX/MS/MR in multi-site production environments.
  • Experience with Infoblox or comparable DNS/DHCP/IPAM platforms.
  • Experience designing, implementing, or migrating SASE / Zero Trust / ZTNA environments.
  • Experience supporting network infrastructure across multiple corporate locations.
  • Ability to troubleshoot complex network and security issues independently.
  • Strong documentation, architecture, communication, and technical leadership skills.
Highly Preferred Skills :
  • Direct hands-on experience with Zscaler ZIA and ZPA.
  • Experience leading VPN-to-Zscaler or SASE migrations.
  • Experience migrating from Tailscale, WireGuard, or traditional VPN solutions to Zscaler.
  • Experience with alternative SASE platforms such as Cloudflare, Netskope, or Palo Alto Prisma Access.
  • Experience with network automation, monitoring, and observability.
  • Experience with high-growth technology organizations and rapidly expanding multi-site environments.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Specialist Network Security
Senior Specialist Network Security

Linde • Houston (TX)

On-site
USD 120,000 - 180,000
Senior Manager, Zscaler
Senior Manager, Zscaler

Vanguard • Wayne (PA)

On-site
USD 100,000 - 130,000
Senior Manager, Zscaler
Senior Manager, Zscaler

Vanguard • Scottsdale (AZ)

On-site
USD 140,000 - 190,000
Consultant - Network Security
Consultant - Network Security

EPAM Systems Inc • United States

Remote
USD 140,000 - 200,000
Network Engineer-5
Network Engineer-5

Realign Llc • Chicago (IL)

On-site
USD 90,000 - 130,000
Network Security Engineer
Network Security Engineer

Legato Security • Salt Lake City (UT)

Hybrid
USD 110,000 - 150,000
Medical and dental benefits
Office in downtown Salt Lake City
Professional development
Principal Engineer & Lead - Zscaler
Principal Engineer & Lead - Zscaler

Coforge • Dallas (TX)

On-site
USD 180,000 - 240,000
Senior Network Engineer
Senior Network Engineer

Teal Drones • Salt Lake City (UT)

On-site
USD 120,000 - 180,000
Network Engineer 2
Network Engineer 2

Condé Nast • New York (NY)

On-site
USD 120,000 - 180,000
Hybrid work schedule
Lead Sr. Network Operations Engineer (Network Security - Palo Alto/Zscaler) Engineer
Lead Sr. Network Operations Engineer (Network Security - Palo Alto/Zscaler) Engineer

Vanguard • Wayne (PA)

On-site
USD 100,000 - 150,000