Director, Network Architect
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
Responsibilities
- Architecture and Strategy
- Technology Selection: Evaluate, pilot, and select enterprise-grade segmentation technologies, including Software-Defined Access (SD-Access), Software-Defined WAN (SD-WAN), Zero Trust Network Access (ZTNA), Next-Generation Firewalls, and workload micro-segmentation
- Standardization: Develop and maintain network and security standards, reference architectures, blueprint designs and Fact Sheets, and design templates.
- Engineering and Implementation
- Micro-Segmentation Deployment: Architect and oversee the deployment of host-based and fabric-based micro-segmentation solutions to protect critical workloads and applications.
- Identity and Access Integration: Integrate network segmentation policies with enterprise identity providers (IdP) and Network Access Control (NAC) systems to enforce dynamic, identity-aware access controls.
- Cloud and Hybrid Connectivity: Design secure, seamless, yet segmented connectivity between on-premise and cloud environments.
- Collaboration and Governance
- Cross-Functional Alignment: Partner closely with partners in Enterprise Cybersecurity and Network Engineering teams to translate architectural visions, strategies, and blueprints into deployment plans.
- Risk and Compliance Support: Ensure network architectures comply with all relevant policies, standards and guidelines.
- Mentorship: Provide technical leadership and mentorship to network engineering and operations teams, ensuring smooth operational handoffs.
- Qualifications and Skills
- Required Experience: Network engineering and architecture. Focus on network security and segmentation initiatives. Core networking protocol knowledge: BGP, OSPF, EVPN-VXLAN, MPLS, VRF-Lite, and VLAN design.
- Segmentation Expertise: Hands-on experience and architectural design using technologies such as Cisco TrustSec/ISE, Cisco Tetration/Secure Workload, Akamai Guardicore, Illumio, and/or Palo Alto Networks NGFW/App-ID.
- Strong understanding of encryption methods and technologies at all layers: network, link, file/block, table column/row/field, associated ciphers, and key management practices for both certificate private/public asymmetric keys as well as symmetric keys
- Fidelity's Onsite Working Model
- Certifications:
- Category:
Benefits
Additional Information
Job Description: Role Summary Role is for a visionary and highly technical Network Architect to protect critical assets, and enforce zero-trust principles. This architect will specialize in Network Segmentation technologies to design, implement, and evolve our next-generation enterprise network security architecture. In this role, you will be the primary blueprint contributor to define how our global network separates networks, isolates endpoint threats, and segments workloads. You will lead the strategic shift from traditional flat networks to highly secure, micro-segmented environments across on-premises data centers, global offices, and multi-cloud infrastructure.
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at Fidelity? Share your experience