Location: Englewood, CO
Job Type: contract
Company: The Select Group
We are seeking a Principal Public Cloud Network Engineer to design, build, and optimize mission-critical cloud network infrastructure. This role partners with DevOps, platform, and security teams to deliver scalable, automated, and secure network connectivity across AWS and—eventually—GCP environments. Candidates must have proven cloud networking implementation experience (not just traditional on-prem networking) and the ability to explain how networking concepts translate into public cloud architectures.
Work Model: 4 days per week onsite (per company policy). Local strongly preferred. Contractor-only engagement. No visa sponsorship or layered subcontracting.
Locations:
Engineer, deploy, and maintain public cloud networking services (VPC, Transit Gateway, PrivateLink, NLB/ALB).
Design and operate hybrid connectivity (Direct Connect, VPN, SD-WAN).
Implement segmentation, routing, DNS, and traffic-management for high-availability workloads.
Build automation for network provisioning using Terraform/CloudFormation.
Monitor and troubleshoot performance, latency, and packet flow.
Implement network logging, inspection, and observability.
Partner with security teams to deliver zero-trust and identity-aware network designs.
Support Kubernetes networking (EKS, CNI, service mesh).
Learn and apply GCP networking architectures to support multi-cloud expansion.
Mentor junior engineers and set network best practices.
Lead cloud networking initiatives and CI/CD automation.
Provide senior-level troubleshooting and escalation support.
Support development and production environments in AWS.
Communicate performance metrics, risk areas, and network readiness across teams.
7–8+ years of public cloud experience with visible career progression to principal level.
10–12+ years total networking and cloud engineering experience.
4+ years AWS cloud networking (VPC, TGW, routing, VPN/IPSec, DNS, load balancing).
3+ years automation-driven infrastructure (Terraform/CloudFormation).
3+ years Linux networking.
Strong scripting (Python preferred).
Git-based network-as-code experience (GitHub, GitLab, CodeCommit).
AWS Advanced Networking Specialty or equivalent depth.
GCP networking experience or ramp-readiness.
Experience designing SD-WAN or hybrid WAN architectures.
Familiarity with service meshes (Istio/Linkerd) and container networking.
Experience with network security tooling (IDS/IPS, packet capture, flow analysis).
TSG is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
#LI-BF1
74278