Senior Cloud Infrastructure Automation Engineer (Terraform/Ansible)
AiGeniusGov
Full-time
Herndon, VA
Job description
Job Summary:
We are seeking an experienced Fortinet SD-WAN Engineer to design, implement, and manage Fortinet Secure SD-WAN solutions across enterprise environments. The ideal candidate will have strong hands-on experience with FortiGate firewalls, FortiManager, FortiAnalyzer, and other Fortinet security products. You will work closely with cross-functional teams to ensure secure, reliable, and high-performance WAN connectivity for our distributed network infrastructure.
Key Responsibilities:
- Design, deploy, and manage Fortinet Secure SD-WAN solutions across branch and corporate sites.
- Configure and optimize FortiGate NGFWs for SD-WAN traffic steering, VPNs (IPSec), and failover policies.
- Utilize FortiManager and FortiAnalyzer for centralized configuration management, logging, and analytics.
- Monitor SD-WAN performance and proactively troubleshoot connectivity or performance issues.
- Collaborate with security and network teams to enforce security policies and ensure regulatory compliance.
- Plan and execute network migrations from traditional WAN to SD-WAN environments.
- Conduct capacity planning, risk assessments, and performance tuning of WAN environments.
- Document network designs, configurations, and procedures according to industry best practices.
- Provide tier-3 support for SD-WAN-related incidents and problems.
- Stay up to date with Fortinet product updates, emerging technologies, and industry trends.
Required Qualifications:
- Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent experience.
- 5+ years of hands-on experience with Fortinet products, especially FortiGate and SD-WAN.
- Strong understanding of networking protocols (BGP, OSPF, IPsec, NAT, VLANs, QoS).
- Experience in deploying and managing FortiManager, FortiAnalyzer, and FortiEMS.
- Proficiency with IPSec VPN, SSL VPN, WAN optimization, and high availability setups.
- Ability to perform packet capture analysis and troubleshoot WAN routing issues.
Preferred Qualifications:
- Fortinet NSE 4 Certification (required); NSE 5 or higher is a plus.
- Experience in multi-cloud environments (Azure, AWS, GCP) integrating SD-WAN.
- Familiarity with Zero Trust Network Access (ZTNA) and SASE frameworks.
- Previous experience in SD-WAN migrations from legacy MPLS environments.
- Knowledge of automation and scripting (e.g., Python, REST API) is a plus.
Soft Skills:
- Strong analytical and problem-solving skills.
- Excellent written and verbal communication.
- Ability to work independently or as part of a team.
- Detail-oriented with a focus on documentation and process improvement.
Experience
- Bachelor’s degree in Computer Science or a related field.
- Proven experience in network engineering with hands-on knowledge of computer networking principles.
- Familiarity with operating systems such as Linux (Debian, CentOS, Ubuntu), Windows, macOS, Solaris, and openSUSE.
- Experience with virtualization technologies including VMware and Citrix.
- Knowledge of load balancing techniques and high availability configurations.
- Proficiency in scripting languages for automation tasks (e.g., Ansible).
- Understanding of authentication methods including LDAP, Active Directory, SSO, and encryption protocols (SSL).
- Experience with telecommunication systems and VoIP technologies is a plus. Join us as we innovate and enhance our IT infrastructure. If you are passionate about technology and eager to make an impact through your engineering skills, we encourage you to apply.
Job Type: Full-time
Pay: $150,000.00 - $180,000.00 per year
Application Question(s):
- Do you need H1B Sponsorship or are currently on OPT/H1B ?
- Do you have design and architecture experience with SD-WAN?
Education:
- Bachelor's (Required)
Experience:
- SD WAN : 5 years (Required)
- Networking: 8 years (Required)
Work Location: In person