Haystack
← Back to Jobs
Technology
BI

Full-Time (No C2C) :: Princeton, NJ (Hybrid, 1 day/week) :: Senior AWS Cloud and Network Engineer ; G.C / U.S.C

Bitsoft International, Inc.Princeton, NJ🇺🇸United StatesPosted Oct 5, 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Princeton, NJ, United States
Posted
23 hours ago
AWSELKEncryptionLoad BalancingSplunkTCP/IPActive DirectoryBashCloudFormationDNSDatadogGitPowerShellPythonTerraformVMwareWAF

Job Description

Senior AWS Cloud and Network Engineer ; G.C / U.S.C

Full-Time

Princeton, NJ (Hybrid, 1 day/week)

Eligibility: Open to s, s (No C2C / No Third Parties / Full-Time Permanent)

Role overview:
Seeking a hands-on engineer to lead migration of critical on-prem workloads to AWS and operate a secure, scalable, high-performing hybrid infrastructure. You will architect and run cloud networking, strengthen security, and support global systems in partnership with the EU Information Systems Manager.

Key responsibilities:
- Cloud architecture and migration
  - Design and build AWS landing zones and core services using Infrastructure as Code (Terraform or CloudFormation)
  - Plan and execute workload migrations (re-host, re-platform, re-architect) with automation and repeatable runbooks
  - Implement reliable, cost-efficient designs leveraging EC2, EBS, S3, RDS, Autoscaling, and backup/restore strategies
- Networking and connectivity
  - Engineer and administer VPCs, subnets, routing, NAT, Transit Gateway, Route 53, ALB/NLB, and Global Accelerator as applicable
  - Establish and maintain hybrid connectivity (site-to-site VPN, Direct Connect or SDWAN) to on-prem data centers
  - Manage firewalls, VPNs, and network services for US operations (servers, workstations, telecom)
- Security and compliance
  - Enforce least-privilege IAM, SCPs, KMS encryption, and secrets management
  - Deploy and tune security controls including security groups, NACLs, WAF, IDS/IPS, GuardDuty, Inspector, and patch management
  - Own logging, monitoring, and alerting (CloudWatch/CloudTrail and third-party tools) with incident response playbooks
- Operations and reliability
  - Monitor performance and capacity; troubleshoot endtoend issues across cloud and onprem
  - Maintain thorough documentation, diagrams, standards, and SOPs
  - Drive DR/BCP planning, backups, and recovery testing; manage domain services and server infrastructure
  - Participate in a 24x7 oncall rotation (every third week) and perform planned maintenance during off-hours
- Governance, procurement, and vendor management
  - Administer user access, licensing, and compliance across cloud and network systems
  - Evaluate new technologies aligned to business goals and maintain a multiyear network architecture roadmap
  - Oversee hardware/software procurement, vendor selection, and contract negotiations
  - Provide regular updates to management on risks, roadmap, and KPIs

Required qualifications:
- Bachelor’s degree in Computer Science or related field, or equivalent experience with relevant certifications
- 5+ years of hands-on experience administering production cloud and network environments, including AWS
- AWS Certified Cloud Practitioner
- Strong networking fundamentals (TCP/IP, routing, VPN/IPsec, BGP/OSPF), load balancing, and DNS

Preferred qualifications:
- AWS Certified Advanced Networking; additional AWS certifications (Solutions Architect, SysOps) a plus
- Experience with Terraform or AWS CloudFormation, scripting in Python/PowerShell/Bash, and Git-based CI/CD
- Familiarity with Windows and Linux server administration, Active Directory, DNS/DHCP, and virtualization (VMware)
- Experience with security tooling and controls: WAF, IDS/IPS, EDR/antivirus, vulnerability management, email/security gateways
- Exposure to observability platforms (e.g., CloudWatch, Datadog, Splunk, ELK), ITSM/change management, and audit readiness
- Strong documentation, stakeholder communication, and vendor management skills; ability to work across time zones

Work conditions:
- Hybrid role with on-site presence in Princeton, NJ as needed
- Willingness to work outside standard business hours for changes/incidents and to support the oncall rotation

Success indicators in first 6–12 months:
- Successful migration of priority workloads with minimal downtime and documented runbooks
- Measurable improvement in network performance, reliability, and security posture
- Established monitoring/alerting with actionable SLIs/SLOs and reduced mean time to resolution
- Current, accurate infrastructure documentation and an approved roadmap for continued modernization and cost optimization

Similar jobs