Job Title: Network Architect (Security)Location: Richmond, VA (Hybrid - onsite at least once per week)
Duration: 6 Months (Contract-to-Hire)
Openings: 2 Positions
Job OverviewA leading organization is seeking experienced Network Architects (Security-focused) to design, implement, and manage enterprise and cloud networking solutions. This role requires deep expertise in routing, firewall security, SD-WAN, and hybrid cloud networking environments.
Key ResponsibilitiesArchitecture & Design- Lead the design and implementation of enterprise and cloud networking architectures (Azure, AWS, hybrid)
- Develop network consolidation strategies across multiple environments and business units
- Architect secure and scalable connectivity solutions including VPNs, hub-and-spoke, and transit networks
- Define standards for routing, segmentation, and high availability
Cloud & Enterprise Networking- Design and manage cloud networking environments (Azure, AWS, GCP familiarity)
- Implement and maintain:
- Virtual networks (VNets/VPCs)
- Peering and private connectivity (ExpressRoute, Direct Connect)
- Network security controls (NSGs, firewalls, routing tables)
- Integrate on-premises and cloud infrastructure
Routing & Core Networking- Design and troubleshoot complex routing environments using BGP, OSPF, and EIGRP
- Optimize routing policies for performance, failover, and traffic engineering
- Resolve issues related to latency, packet loss, and asymmetric routing
Security & Firewalls- Manage next-generation firewalls, primarily Palo Alto Networks (PAN-OS, Panorama)
- Define and enforce security policies, NAT, and segmentation strategies
- Collaborate with security teams on threat mitigation and compliance
SD-WAN & Branch Networking- Design and support SD-WAN solutions using Cisco SD-WAN (Viptela)
- Manage branch networking using Cisco Meraki (MX, MS, MR full stack)
- Ensure consistent performance, policy enforcement, and visibility across sites
Carrier & Vendor Management- Act as the primary technical liaison with telecom carriers and ISPs
- Troubleshoot circuit issues (latency, outages, routing anomalies)
- Design and validate circuit deployments (DIA, MPLS, broadband, LTE/5G)
- Coordinate with vendors during deployments and escalations
Operations & Leadership- Serve as Tier 3 escalation point for network-related issues
- Mentor junior engineers and provide technical leadership
- Develop documentation, standards, and operational runbooks
- Participate in on-call rotation as needed
Required Qualifications- 15+ years of experience in enterprise networking (Architect level)
- Deep expertise in BGP routing and network design
- Strong hands-on experience with:
- Palo Alto Networks firewalls
- Cisco SD-WAN (Viptela)
- Cisco Meraki (full stack)
- Proven experience designing and implementing cloud networking architectures
- Strong troubleshooting skills across routing, firewall, and connectivity domains
- Experience working with telecom carriers and ISPs
- Excellent communication skills
Preferred Qualifications- Experience with multi-environment or multi-tenant network consolidation
- Relevant certifications (preferred, not required):
- CCNP / CCIE
- PCNSE (Palo Alto)
- Azure Network Engineer Associate (AZ-700)
- AWS Advanced Networking Specialty
Additional Notes- Candidates must be available for hybrid work (onsite weekly in Richmond, VA)
- Strong leadership and mentoring capabilities are highly valued
For more details reach atย shubham.sharma@navitassols.com.