1755 - Azure Network Engineer
Sigma Defense · Rome, New York, United States · On-site
Pay: USD 110,000 – 153,000 a year
Posted Sep 10, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Sigma Defense is seeking an Azure Network Engineer with deep Microsoft Azure expertise, rather than a general cloud administrator who has occasionally configured networking.
This individual should be comfortable taking ownership of complex connectivity problems involving multiple networks, security boundaries, routing paths, firewalls, and cloud environments. The ideal candidate understands how traffic should move through an Azure architecture and can design secure solutions that provide required connectivity without unnecessarily expanding the network attack surface.
Equal Opportunity Employer/Veterans/Disabled: Sigma Defense Systems is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Requirements
5+ Years of relevant experience.
Professional experience designing, implementing, and supporting Microsoft Azure networking environments.
Strong understanding of TCP/IP, routing, subnetting, DNS, NAT, VPNs, firewalls, and network segmentation.
Hands-on experience configuring and troubleshooting Azure Firewall and Palo Alto Firewall.
Experience designing and managing Azure VNets, subnets, NSGs, route tables, and User Defined Routes.
Experience implementing connectivity between multiple Azure VNets and environments.
Experience troubleshooting complex network-routing and firewall issues.
Understanding of hub-and-spoke network architectures and centralized network-security models.
Experience with Azure Private Link and Private Endpoints.
Understanding of hybrid cloud connectivity and integration between Azure and external networks.
Ability to analyze network traffic, logs, and flow information to diagnose connectivity and security issues.
Experience designing or supporting Azure Government environments.
Experience supporting cloud infrastructure within a Department of Defense (DoD) or other highly regulated environment.
Advanced experience with Azure Firewall Premium and Azure Firewall Policy.
Experience with Azure Virtual WAN (vWAN), ExpressRoute, and Azure VPN Gateway.
Experience with third-party Network Virtual Appliances and next-generation firewall technologies within Azure.
Experience with Palo Alto Networks, Fortinet, Cisco, or similar enterprise firewall platforms.
Experience implementing Zero Trust network architectures and micro-segmentation.
Experience with Azure Network Watcher, Azure Monitor, Log Analytics, Azure DNS, and Private DNS Zones.
Experience automating Azure networking through Terraform, Bicep, PowerShell, Azure CLI, or other IaC technologies.
Familiarity with DoD cybersecurity requirements, RMF, NIST SP 800-53, and STIGs.
Must be a U.S. citizen.
Mandatory Certifications:
CompTIA Security+
Microsoft AZ104
Computer Programs/Software:
Palo Alto Firewall
Azure…