Networks - Lead Architect IRES - SSFB/HSV

Amentum
Huntsville, AL
**Position Title: Networks - Lead Architect** **Location:** Schriever Space Force Base, Colorado Springs, CO or Redstone Arsenal, Huntsville, AL **Relocation Assistance:** None available at this time **Remote/Telework:** NO - Not available for this position **Clearance Type:** DoD Secret **Shift:** Day shift **Travel Required:** Up to 10% of the time **Description of Duties:** The **Networks - Lead Architect** supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The candidate will: - Be the senior technical authority for enterprise network architecture, modernization, and security across DoD mission environments (IL4/5/6). - Set standards and roadmaps - Lead end to end design for data center, campus/branch, WAN/SD WAN, and cloud connectivity - Drive Zero Trust-aligned segmentation and automation to deliver resilient, scalable, and compliant networks. **Key Responsibilities:** **Strategy & Architecture Governance** - Own the Enterprise Network Reference Architecture, standards, and design patterns aligned to agency objectives and DoD guidance. - Lead/participate in Architecture Review Boards (ARB) and Change/Configuration Control Boards, maintaining traceability with HLD/LLD, ADRs, ICDs, and security overlays. - Evaluate emerging capabilities (e.g., EVPN VXLAN fabrics, SD WAN/SASE, advanced telemetry) with adoption criteria, risk posture, and migration approaches- Develop and maintain network architecture roadmaps, standards, and best practices aligned with DoD and Agency requirements. **Core Network Architecture & Design** - Design underlay/overlay topologies for data centers and campuses (spine leaf, EVPN VXLAN, MPLS L2/L3VPN) and for WAN/backbone (BGP/OSPF/IS IS, traffic engineering, route policy, communities). - Engineer HA and fast convergence (ECMP, FHRP, FRR, ISSU/GSU) and plan for capacity, growth, and performance (QoS, queuing, shaping, policing). - Define IPv4/IPv6 addressing strategy, NAT policies, multicast/RP design where required, and DNS/DHCP/IPAM governance. Security Architecture & Zero Trust - Architect segmentation and micro segmentation (identity /policy based), secure access (802.1X, certificate based auth), and crypto/crypto boundary designs (IPsec, MACsec) using FIPS validated algorithms. - Align to DoD RMF, NIST SP 800 53/37, and DISA STIGs; map control inheritance and produce artifacts needed for ATO/cATO. - Integrate network security controls (firewall policy frameworks, IDS/IPS, SWG, DLP) and validate with tabletop/blue team exercises. **Cloud, Edge & Cross Domain Connectivity** - Design hybrid and multi cloud connectivity (IL cloud constructs, private connectivity, transit/segmentation, inspection service insertion, east west control). - Engineer remote access/telework, edge footprints, and mission partner/coalition interconnects with explicit security demarcation and monitoring. **Campus & Branch** - Define campus access, distribution, and core designs with 802.1X, posture assessment, guest/IoT segmentation. - Establish branch patterns (SD WAN, DIA/MPLS mix, local breakout controls) with consistent policy and centralized governance. Automation, Reliability & Observability - Drive intent based and policy driven operations: configuration standards, golden baselines, compliance drift detection, and repeatable change. - Establish observability requirements (model driven/streaming telemetry, logs/metrics/flows) and SLOs; ensure runbooks and test plans cover failure scenarios. **Delivery Leadership** - Lead discovery, HLD/LLD, PoCs, pilots, migrations/cutovers, and operational handoffs with minimal mission impact. - Mentor engineers; conduct design reviews and knowledge transfers; brief senior leadership on tradeoffs and risk mitigations **Documentation & Deliverables** - Produce and maintain: Enterprise Network Standards, High/Low Level Designs (HLD/LLD), Architecture Decision Records (ADRs), Interface Control Documents (ICDs), test/validation plans, cutover plans, security overlays, addressing/IP plans, and runbooks. **Resumes, in month and year format, must be submitted with application in order to be considered for the position.** **The selected candidate may be assigned as an employee for one of our teammate companies.** **Basic Requirements:** - Must have 14, or more, years of general (full-time) work experience o May be reduced with completion of advanced education - Must have 7, or more, years of directly related experience designing and leading large-scale enterprise or DoD networks across data center, WAN/backbone, campus/branch domains - Must have 1, or more, years of experience working in a management or leadership role - Must have expert level knowledge of routing and switching (BGP, OSPF, IS IS), EVPN VXLAN and/or MPLS, QoS, IPv6, multicast, and network resiliency patterns. - Must have demonstrated success implementing Zero Trust segmentation, 802.1X/NAC, identity aware firewall policy, and FIPS validated cryptography. - Must be familiar with hybrid/multi cloud networking patterns and IL4/5/6 operational constraints; strong grasp of RMF/STIG compliance. - Must have a current DoD 8570 IAT Level III or IAM Level II certification (examples: CISSP, CASP+ CE, CISM). - Must have a current Cisco Certified Network Professional (CCNP) - Enterprise certification - Must have an active DoD Secret Security Clearance **Desired Requirements:** - Have an active DoD Top Secret Security Clearance with SCI eligibility - Have a Bachelor's degree (or higher) in computer science, Information Technology, or equivalent - ITIL, TOGAF, or other architecture frameworks. - Have experience supporting the Missile Defense Agency (MDA) or other DoD organizations. - Have experience with software-defined networking (SDN), automation, and cross-domain solutions. - Have a current CCIE (Enterprise Infrastructure, Security, or Data Center) certification - Have an ITIL® 4 Foundation (service alignment) and an architecture framework credential (TOGAF/DoDAF familiarity). - Have excellent communication skills with the ability to brief senior leaders and translate technical concepts into mission impact. This position is expected to pay **$** **180** **,000 - $** **240** **,000** annually; depending on experience, education, and any certifications that are directly related to the position. This position will be posted for a minimum of 3 days. If a candidate has not been selected at that time, it will continue to be posted until a suitable candidate is selected or the position is closed. Our health and welfare benefits are designed to invest in you, and in the things that you care about. Your health. Your well-being. Your security. Your future. Typical benefits offered include flexible work schedules, educational reimbursement, retirement benefits (401K match), employee stock purchase plan, health benefits, tax saving options, disability benefits, life and accident insurance, voluntary benefits, paid time off and paid holidays, and parental leave.
Posted 2025-11-26

Recommended Jobs

I&C Commissioning Engineer

Dynamics ATS
Mobile, AL

I&C Commissioning Engineer   JOB-10045110   Anticipated Start Date 10/27/2025   Location Kennedy Space Center, FL   Type of Employment Contract-to-Hire   Employer Info Cl…

View Details
Posted 2025-09-29

Account Executive ( Food Broker)

Affinity Group
Montgomery, AL

Account Executive  Affinity Group is seeking an Account Executive to make their mark in our Birmingham, AL   market. This position is responsible to spearhead market growth and showcase our client…

View Details
Posted 2025-09-16

Principal Security Engineer

Oracle
Montgomery, AL

**Job Description** Locations: (NO EXCEPTION) 1. Nashville, TN 2. Austin, TX 3. Ireland 4. United Kingdom Security Architecture is comprised of security experts who are focused and specialized in secu…

View Details
Posted 2025-11-01

Field Service Technician - Installation and Commissioning

Premier Tech
Montgomery, AL

Are you looking for a company to enhance your career? A place where a vibrant Culture means empowerment, teamwork, and a passion for what you do? We have what you need! Why join Premier Tech ~ Who…

View Details
Posted 2025-10-30

Outpatient Registered Nurse - RN

Fresenius Medical Care North America
Talladega, AL

PURPOSE AND SCOPE: The professional registered nurse Outpatient RN CAP 1 is an entry level designation into the Clinical Advancement Program (CAP). This position is accountable and responsible for the…

View Details
Posted 2025-11-06

Surveillance Investigator

Allied Universal
Mobile, AL

Company Overview: Advance Your Career in Insurance Claims with Allied Universal® Compliance and Investigation Services. Allied Universal® Compliance and Investigation Services is the premier destinat…

View Details
Posted 2025-11-07

Regulatory Analyst Sr - Remote

Prime Therapeutics
Montgomery, AL

At Prime Therapeutics (Prime), we are a different kind of PBM, with a purpose beyond profits and a unique ability to connect care for those we serve. Looking for a purpose-driven career? Come build th…

View Details
Posted 2025-11-19

Test Equipment Design Engineer

DESE Research
Huntsville, AL

DESE Research Inc. is seeking qualified candidates to fill a Test Equipment Design Engineer position. If you feel like you have the skills and qualifications for this job please apply now! Job Deta…

View Details
Posted 2025-11-27

3-bed (Male) Program Coordinator

Carastar Health
Montgomery, AL

This is responsible work in the field of rehabilitation of persons with mental illness and the daily program administration and facility management of the 3-bed (Male) program. DESCRIPTION OF DUTIES: …

View Details
Posted 2025-09-05

Tax Services Senior Manager - FSO - State & Local Income Tax, EDGE

EY
Montgomery, AL

Location: Anywhere in Country At EY, we’re all in to shape your future with confidence.  We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career where…

View Details
Posted 2025-11-07