Job detail for Senior Network Engineer
Use AI to assess how you fit
Headquarters: Belarus URL: http://epam.com We are seeking a Senior Network Engineer to join our engagement on the delivery of a Unified Automation Platform — an Internal Developer Platform (IDP) that standardizes new-project delivery, centralizes access to development resources, and enables software creation through templates and golden paths. In this role, you will contribute to the Network/Firewalls automation stream, building modules on a modern toolchain (Terraform/OpenTofu for IaC and Ansible for CaC) with AI-assisted development using GitHub Copilot as a standard practice. Responsibilities Implement and maintain firewall automation modules across PaloAlto, F5, and Cloudflare (security rules, address/service objects, NAT, VIP/pool configuration, WAF policy, certificate binding), following designs defined by the Network Architect Build and maintain DNS and NetBox IPAM automation (zone/record management, prefix/role/tenant data entry, reconciliation jobs) Deliver Azure core connectivity modules (VNets/subnets, Application Gateway, WAF, Azure Firewall, NSGs) via Terraform/OpenTofu Support VMware NSX-T segment and distributed firewall (DFW) rule implementation in coordination with the VMware team Execute commit/lock handling procedures for concurrent firewall pipeline changes (PaloAlto/Panorama candidate-config workflows) Troubleshoot and remediate production network/firewall issues during Implementation and Adoption, working within change-control processes given the high blast-radius of network changes Requirements 3+ years of hands-on experience in network engineering with a focus on automation Background in automating firewall platforms via Infrastructure as Code, including PaloAlto, F5, and Cloudflare Expertise in implementing Azure networking constructs (VNets, Application Gateway, WAF) and security components (Azure Firewall, NSGs) via Terraform/OpenTofu Knowledge of DNS and IPAM (NetBox) data models and automation Familiarity with VMware NSX-T network segmentation and distributed firewall concepts Proficiency in Ansible for network/firewall configuration tasks, combined with Terraform/OpenTofu-based provisioning Capability to operate within change-control processes for high-blast-radius network/security modifications Flexibility to use AI-assisted development with GitHub Copilot (provided project-wide) Excellent command of written and spoken English (B2+ level) Nice to have Skills in certificate distribution (Venafi) tied to network/load-balancer endpoints Exposure to global traffic management and multi-region failover patterns To apply: https://weworkremotely.com/remote-jobs/epam-systems-senior-network-engineer