Principal Network Engineer
On-siteWestlake, Texas, United States
Job Summary
Design and implement network segmentation and micro-segmentation strategies across on-premises data centers and multi-cloud environments. Deploy Zero Trust architectures and configure segmentation platforms to enforce least-privilege communication for east-west traffic. Analyze application dependencies to build allow/deny rules and integrate tooling with firewalls, SIEM, and asset inventories. Monitor policy effectiveness and troubleshoot connectivity issues while collaborating with security and infrastructure teams to drive adoption. This role leads the strategic shift from traditional flat networks to highly secure micro-segmented environments within Fidelity's data center operations.
Required Qualifications
- 7 – 10 plus years of experience in: Network engineering
- Data center networking
- Prior experience in large-scale segmentation or migration projects
- Hands-on experience with Segmentation platforms (Illumio, Guardicore (Akamai), Cisco Secure Workload/Tetration)
- Networking: Cisco, HP, Arista, Palo Alto, Check Point, Juniper
- TCP/IP, routing, switching
- Firewalls and ACLs
- Network security principles
- Application dependency mapping
- East-west traffic inspection
- Enterprise Security: Strong understanding of Zero-Trust Network Access (ZTNA), Secure Access Service Edge (SASE) architectures, and stateful firewalling
- Cloud platforms (AWS, Azure, GCP)
- Kubernetes / container networking
- Scripting/automation skills: Python, PowerShell, or APIs
- CMDB Tools and Technologies (ServiceNow)
- Familiarity with Linux and Windows server environments
- Experience working in financial services or highly regulated environments
- 100% onsite presence
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.