Senior Data Center & Cloud Network Engineer
Job Summary
The Senior Data Center & Cloud Network Engineer is responsible for designing, implementing, operating, securing, and modernizing the Bank's network infrastructure across enterprise data centers, corporate offices, branch locations, and the Microsoft Azure cloud environment. This senior-level, hands-on engineering role serves as a critical bridge between the Bank's traditional on-premises infrastructure and its evolving hybrid-cloud architecture.
The position combines deep expertise in enterprise networking, data center technologies, cloud networking, cybersecurity, resiliency, and network automation to deliver secure, scalable, and universally available solutions that support business operations and strategic initiatives.
The Senior Data Center & Cloud Network Engineer partners closely with Cloud Engineering, Infrastructure Services, Information Security, Enterprise Architecture, Risk Management, Internal Audit, telecommunications providers, and other technology teams to develop, implement, and maintain network solutions that align with business objectives, regulatory requirements, and industry best practices.
Key Responsibilities
- Design, implement, maintain, and troubleshoot enterprise data center, core network, and cloud network infrastructure.
- Engineer universally available and resilient routing, switching, network segmentation, and redundancy solutions to support business continuity objectives.
- Configure, monitor, and troubleshoot networking technologies including BGP, OSPF, TCP/IP, VLANs, routing, switching, NAT, DNS, DHCP, and VPN services.
- Support connectivity and operational readiness across primary and disaster recovery data centers, corporate offices, branch locations, and colocation facilities.
- Design, deploy, and manage Microsoft Azure networking services, including Virtual Networks (VNets), subnets, peering, User Defined Routes (UDRs), Network Security Groups (NSGs), Private Link, Private Endpoints, and Private DNS.
- Architect and support hybrid cloud networking solutions utilizing Azure ExpressRoute, VPN Gateway, Hub-and-Spoke, and Azure Virtual WAN architectures.
- Implement and support Azure networking and security services, including Azure Firewall, Application Gateway/WAF, Azure Load Balancer, Azure Kubernetes Service (AKS), and Azure Platform-as-a-Service (PaaS) networking requirements.
- Manage and optimize enterprise WAN environments, including MPLS, Internet, VPN, and carrier-based connectivity solutions, while evaluating and implementing SD-WAN and SASE technologies.
- Configure, maintain, and support next-generation firewall platforms to enable secure network segmentation, Zero Trust architectures, and secure remote access.
- Partner with Information Security teams to implement network security standards, firewall policies, threat prevention controls, vulnerability remediation, and regulatory compliance requirements.
- Administer and support enterprise DNS, DHCP, IPAM, load balancing, and application delivery technologies.
- Develop and maintain network automation solutions using Terraform, Python, PowerShell, Ansible, APIs, Git, and Infrastructure-as-Code (IaC) methodologies.
- Implement proactive monitoring, telemetry, alerting, performance analysis, and capacity planning to ensure network reliability and availability.
- Participate in incident response, root cause analysis, problem management, disaster recovery testing, and 24x7 production support activities as required.
- Create and maintain network architecture diagrams, standards, policies, procedures, configurations, and technical documentation.
- Lead network modernization initiatives, technology evaluations, and strategic infrastructure projects to improve scalability, performance, and security.
- Collaborate with infrastructure, cloud, security, and application teams to support enterprise technology initiatives and business objectives.
- Provide technical leadership, mentoring, and knowledge transfer to junior engineers and operational support teams.
Compliance Responsibilities
Complies with all applicable state and federal banking laws, regulations, and internal policies related but not limited to lending, operations, and deposit requirements, including Bank Secrecy Act (BSA), Anti-Money Laundering (AML) requirements, Office of Foreign Assets Control (OFAC) regulations, Customer Identification Program (CIP) requirements, Financial Elder Abuse reporting laws, Sexual Harassment prevention policies, information security and privacy requirements.
Required Knowledge
- Extensive hands-on experience designing, implementing, and supporting enterprise data center and core network infrastructure.
- Advanced knowledge of networking protocols and technologies, including TCP/IP, BGP, OSPF, VLANs, routing, switching, NAT, DNS, DHCP, VPN, network segmentation, and high-availability architectures.
- Demonstrated experience designing resilient, scalable, and universally available network infrastructures that support mission-critical business operations.
- Strong knowledge of enterprise network security principles and hands-on experience administering next-generation firewall platforms, network segmentation, and secure remote-access solutions.
- Experience supporting enterprise WAN technologies, including MPLS, Internet, VPN, SD-WAN, and carrier-provided connectivity services.
- Advanced Microsoft Azure networking expertise, including:
- Virtual Networks (VNets)
- Subnets and VNet Peering
- Network Security Groups (NSGs)
- User Defined Routes (UDRs)
- Private Link and Private Endpoints
- Private DNS
- Azure ExpressRoute
- Azure VPN Gateway
- Azure Firewall
- Azure Application Gateway/WAF
- Azure Load Balancer
- Strong understanding of hybrid-cloud networking architectures, including hub-and-spoke, Virtual WAN, and cloud-to-datacenter connectivity solutions.
- Proven troubleshooting skills across routing, switching, firewalls, DNS, application connectivity, WAN services, and hybrid-cloud environments.
- Experience supporting universally available business-critical production environments with a focus on performance, reliability, disaster recovery, and operational excellence.
- Knowledge of network monitoring, telemetry, alerting, capacity planning, and performance management tools and methodologies.
- Experience with network automation, scripting, and Infrastructure-as-Code (IaC) technologies, including Terraform, Python, PowerShell, Ansible, APIs, and Git.
- Understanding of Zero Trust networking principles, cybersecurity best practices, threat prevention technologies, and regulatory compliance requirements.
- Strong technical documentation skills, including development of network diagrams, standards, configuration documentation, policies, and operational procedures.
- Excellent verbal and written communication skills with the ability to effectively collaborate across Infrastructure, Cloud, Information Security, Application Development, and business teams.
- Ability to manage multiple priorities, lead complex technical initiatives, and effectively support enterprise-wide infrastructure modernization efforts.
Knowledge, Skills and Abilities
- Advanced hands-on experience with Fortinet and/or Palo Alto Networks Next-Generation Firewalls (NGFWs), including firewall policy administration, network segmentation, site-to-site and remote-access VPNs, threat prevention, and high-availability configurations.
- Strong expertise with Cisco and/or Arista enterprise, campus, and data center networking technologies, including routing, switching, network fabric, and infrastructure modernization initiatives.
- Experience designing, implementing, and supporting SD-WAN, SASE/SSE, and Azure Virtual WAN solutions to improve network performance, resiliency, security, and user connectivity.
- Demonstrated experience with Infrastructure as Code (IaC), network automation, and orchestration using Terraform, Python, PowerShell, Ansible, APIs, Git, or similar technologies.
- Experience administering and supporting enterprise load balancing, application delivery, DNS, DHCP, and IPAM platforms, including Infoblox, F5, or comparable solutions.
- Strong understanding of data center, colocation, carrier, and cloud connectivity services, including coordination with telecommunications providers, managed service vendors, and cloud partners.
- Experience supporting complex, universally available environments within banking, financial services, insurance, healthcare, or other regulated industries.
- Working knowledge of cybersecurity frameworks, regulatory requirements, and industry standards, including NIST, CIS Controls, FFIEC, PCI DSS, SOC 2, or equivalent governance frameworks.
- Exceptional problem-solving, analytical, and troubleshooting skills with the ability to diagnose and resolve complex network and cloud infrastructure issues.
- Ability to lead technical projects, manage competing priorities, and deliver solutions in a fast-paced, mission-critical environment.
- Strong interpersonal, collaboration, and relationship-building skills, with the ability to effectively partner with Information Security, Infrastructure, Cloud Engineering, Application Development, and business stakeholders.
- Excellent verbal, written, and presentation communication skills, including the ability to develop technical documentation, architecture diagrams, standards, and executive-level communications.
- Strong organizational skills with the ability to manage multiple initiatives, meet deadlines, and maintain a high level of accuracy and attention to detail.
- Ability to work independently while serving as a technical leader, mentor, and subject matter expert for network engineering and cloud networking technologies.
- Commitment to continuous learning and staying current with emerging networking, cloud, automation, and cybersecurity technologies and best practices.
Equipment Operated
- Operates standard electronic computers and customary office equipment required to perform essential job functions.
- Use of equipment is required, with or without reasonable accommodation, in accordance with the Americans with Disabilities Act (ADA) and the California Fair Employment and Housing Act (FEHA).
Physical Requirements & Work Environment
The physical demands and work environment characteristics described below are representative of those that must be met by an employee to successfully perform the essential functions of this position. Nothing in this description is intended to limit the availability of reasonable accommodation under applicable law.
- Ability to perform repetitive movements associated with office and computer-based work.
- Ability to sit and or stand for extended periods of time to perform essential job functions.
- Ability to lift, carry, or move objects weighing up to 25 pounds, with or without reasonable accommodation.
- Ability to use hands and fingers to manage, manipulate, or feel objects and operate standard office equipment.
- Work is primarily performed in an office environment with a controlled temperature and standard office conditions.
Education and Experience
- Bachelor's degree in Information Technology, Computer Science, Engineering, or related field, or equivalent work experience.
- 7+ years of progressively responsible experience in enterprise network engineering and administration.
- Excellent analytical, troubleshooting, communication, and documentation skills.
- Relevant certifications preferred (CCNP, CCIE, Azure Network Engineer Associate, Azure Solutions Architect, or equivalent).
Minimum Absence Requirement
Some positions within the Bank have been designated as sensitive positions due to access to critical systems, records, or processes. In accordance with Bank policy and sound internal‑control practices, employees in sensitive positions are required to complete a mandatory consecutive absence from essential duties each calendar year to support segregation of duties and independent review.
The required absence will be scheduled in coordination with management to ensure continuity of operations. Administration of absence, including paid or unpaid status, will comply with all applicable federal, state, and local wage and hour and leave laws, including California requirements.
Required Minimum Absence for This Position: Two (2) Consecutive Weeks
Officer Title Eligibility
For qualified positions, the Bank may designate an Officer Title based on the role’s job level, scope of responsibility, and alignment with established competency frameworks. Eligibility for an Officer Title designation is contingent upon the employee meeting defined competency, performance, and experience requirements and is governed by applicable Bank policies, governance standards, and required approval processes.
- This position is eligible for the following Officer Title(s): Vice President
Compensation
The listed range represents the full compensation range for this position. Placement within the range will be determined based on factors including skills, relevant experience, job‑related qualifications, geographic location, and internal equity, in accordance with Bank compensation policies.
- Exempt Salary Range: $123,760.00 – $211,120.00 per year
Disclaimer
This job description is intended to describe the general nature and level of work being performed and is not intended to be an exhaustive list of all duties, responsibilities, or qualifications. Employees may be required to perform other duties as assigned, consistent with business needs and applicable law.
Farmers and Merchants Bank of Long Beach reserve the right to modify, amend, or discontinue job duties or requirements at any time. Nothing in this job description creates a contract of employment, either express or implied, or alters the at‑will nature of employment.
09.03.26
Recommended Jobs
Posted 1 hour ago
Posted 1 hour ago
Posted 1 hour ago
Posted 1 hour ago
Posted 2 hours ago

