Network – SD WAN Devops || Onsite – Plano, TX (Only locals) || Rate Upto $60/hr on C2C
Network – SD WAN Devops
Onsite – Plano, TX (Only locals)
Rate Upto $60/hr on C2C
Role Overview
We are seeking a highly experienced SD-WAN Engineer to lead the design, deployment, and lifecycle management of software-defined WAN (SD-WAN) solutions across a BFSI-grade hybrid enterprise environment. This role requires deep technical knowledge of routing, traffic engineering, cloud integration, and zero-touch provisioning, with strong emphasis on resiliency, security, compliance, and application performance.
Primary Technical Skills
SD-WAN Platforms: Cisco Viptela, Fortinet Secure SD-WAN, VMware VeloCloud, Silver Peak Unity EdgeConnect.
Routing Protocols: Expert in BGP, OSPF, EIGRP, route redistribution across underlay and overlay.
Application-Aware Routing: Dynamic path control, DSCP-based prioritisation, SLA-driven traffic steering.
WAN Optimisation: Deduplication, compression, TCP optimisation, FEC.
Orchestration & Provisioning: Zero-touch provisioning (ZTP), template-based deployments, multi-tenant segmentation.
Cloud Integration: Direct cloud on-ramp (AWS, Azure, Google Cloud Platform), ExpressRoute, Transit Gateway, cloud-native firewalls.
Overlay Security: IPSec, IKEv2, certificate-based auth, RBAC.
High Availability: Active-active/standby architectures, dual CPE, path resilience.
QoS & Traffic Engineering: End-to-end QoS, shaping, policing, per-app SLA.
Multicast & Voice: Multicast over SD-WAN, VoIP optimisation, MOS-based routing.
Secondary Technical Skills
Transport Diversity: MPLS, broadband, 5G/LTE, satellite link integration with path modelling.
Monitoring & Telemetry: SolarWinds, NetFlow, SNMP, SD-WAN analytics dashboards.
Firewall & VPN Integration: Coordination with NGFWs (Fortinet, Palo Alto), site-to-site VPN, ZTNA.
Automation & Scripting: Python, Ansible, REST APIs for provisioning and config compliance.
Network Segmentation: VRF-based design, zone policies, microsegmentation.
DNS/DHCP: Centralised relay, DNS forwarding, split-horizon DNS.
SIEM Integration: Syslog forwarding to Splunk, QRadar for event risk management.
Cloud-Native Networking: Transit Gateway Connect, Azure Virtual WAN, Google Cloud Platform Cloud Router.
Policy-Based Forwarding (PBF): Match-action-based path steering.
Overlay Underlay Correlation: Real-time tunnel-to-path mapping and remediation.
Required Experience
8 12 years in network engineering with minimum 3 years hands-on SD-WAN design, deployment and operations.
Proven ability to scale SD-WAN architectures across multi-branch BFSI environments.
Strong documentation experience: HLD/LLD, runbooks, change control, as-built diagrams.
Industry background in regulated sectors (BFSI, healthcare, telecom) with compliance focus.
Demonstrated leadership in cross-functional teams (security, cloud, infrastructure).
Preferred Qualifications:
Knowledge of SASE/SSE models ZTNA, SWG, CASB integration with SD-WAN.
Exposure to cloud-native networking and hybrid network service chaining.
Understanding of ITIL v4 processes incident, change, problem management.
Experience with DevNet, NetDevOps, CI/CD for network automation.
Awareness of compliance frameworks: ISO 27001, NIST 800-53, RBI, PCI-DSS.
Thanks
Navya