Network/Infrastructure Engineer (Remote)

Oxley Enterprises®, Inc.Stafford, VA
$79,574 - $100,317Remote

About The Position

The Network/Infrastructure Engineer supports network architecture, Virtual Private Cloud (VPC) design, subnet configuration, Identity and Access Management (IAM) policies, security groups, routing, Public Key Infrastructure (PKI) operations, and Transport Layer Security (TLS) certificate lifecycle management. This role is for a future need and is actively interviewing. The position is remote within any United States jurisdiction not excluded from this job advertisement. The primary responsibility is to safeguard the connectivity backbone of a mission-critical VA cloud platform.

Requirements

  • 3 years of experience in cloud network engineering and infrastructure
  • Excellent experience designing and managing Amazon Web Services (AWS) VPC networking including subnets, route tables, security groups, NACLs, VPC peering, Transit Gateway, PrivateLink, and VPN configurations
  • Excellent knowledge of PKI operations including TLS certificate issuance, renewal, rotation, and integrity management
  • Excellent experience implementing and managing AWS IAM including policies, roles, permission boundaries, SCPs, and least-privilege access enforcement aligned with Zero Trust Architecture
  • Excellent ability to provision and manage 100% of network infrastructure through Infrastructure as Code (IaC) (e.g., Terraform)
  • Excellent experience maintaining cross-VPC connectivity availability
  • Excellent experience designing Multiple Availability Zones Active/Active network architectures with automated failover
  • Excellent knowledge of network security controls including Zero Trust segmentation, micro-segmentation, and Istio service mesh mTLS
  • Above average experience with multi-region AWS GovCloud networking including DNS-based routing and health-check-driven failover
  • Working knowledge of FICAM, IPv6 requirements, and Trusted Internet Connection (TIC) standards
  • Experience supporting a federal agency
  • Excellent verbal and written communication skills
  • Active Federal Civilian Public Trust clearance
  • U.S. Citizenship or Permanent Resident that has lived in the United States for at least 3 years

Responsibilities

  • Owns all VPC networking including subnet design, route tables, security groups, NACLs, VPC peering, and Transit Gateway configurations
  • Implements and maintains all PKI operations including TLS certificate issuance, renewal, rotation, and integrity for all platform capabilities and applications
  • Maintains a complete and accurate certificate inventory including ownership, usage, expiration dates, and renewal mechanisms
  • Ensures 100% of network and infrastructure configuration is provisioned exclusively through approved IaC tooling (Terraform)
  • Detects and remediates configuration drift weekly
  • Implements and enforces Zero Trust Architecture and least-privilege principles across all IAM policies, roles, and service accounts
  • Supports development of the Multi-Region Enablement Plan including network failover strategies and DNS-based routing
  • Participates in daily Change Control Board (CCB) meetings for all network-related changes
  • Ensures all production changes have documented backout plans and post-implementation validation within 2 hours
  • Contributes network performance metrics, certificate compliance status, and VPC connectivity availability data to the Monthly Maintenance Report

Benefits

  • Medical, dental, vision and prescription drug coverage for you and your family.
  • Life Insurance, short-term disability and long-term disability paid for by the Company.
  • Supplemental coverages including Accident, Critical Illness, and Hospital.
  • Additional Life insurance coverage for you and your dependents.
  • 401k plan with various options to select based on your retirement goals.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service