Role - Senior Technology Architect Network Architect
Location Germany UK and Netherlands (Any location)
Unit CIS (Cloud and Infrastructure)
Job Description
Role Overview
The Senior Technology Architect (STA) Network owns the endtoend network architecture across data center campus WAN/SDWAN cloud and edge environments. The role defines strategy blueprints and guardrails; leads complex transformations; and ensures the network platform delivers resilience security (Zero Trust) performance and cost efficiency. The STA partners with product security platform engineering and operations to architect vendoragnostic automationfirst designs that scale across global enterprises.
Key Responsibilities
1) Architecture & Strategy- Define the network target state (DC Campus WAN/SDWAN Cloud Networking Edge) with reference architectures patterns and standards.
- Create highlevel and lowlevel designs (HLD/LLD) including L2/L3 routing segmentation DNS IPAM firewalling service insertion and observability.
- Establish multicloud network architectures (AWS/GCP/Azure) covering VPC/VNet design Transit Gateways Private Service Connect/Endpoint Direct Connect/Interconnect crosscloud connectivity and service mesh integration.
- Lead modernization from legacy to EVPN/VXLAN fabrics intentbased networking Zero Trust segmentation and SASE/SSE.
2) Network Security & Zero Trust- Apply Zero Trust principles across identity-aware segmentation micro/macro segmentation (e.g. SDN NSXT ACI TGW/Cloud WAN firewalls) secure eastwest and northsouth flows.
- Define security guardrails (FWaaS NGFW WAF IDS/IPS DDoS DNS security) key management and policy-as-code; integrate with SIEM/SOAR.
- Partner with the CISO and platform teams to align with NIST CIS ISO 27001 and regulatory standards (e.g. telco/public sector as applicable).
3) Performance Resilience & Availability- Engineer for high availability (multiAZ/region fast reroute ECMP anycast graceful restart) and deterministic performance for latencysensitive workloads (including telco and realtime apps).
- Define traffic engineering strategies (QoS/CoS policybased routing segment routing MPLS/EVPN/VXLAN SRMPLS/SRv6).
- Design DR and failover topologies; conduct chaos/resilience testing and capacity planning.
4) Automation IaC & Observability- Drive automationfirst delivery using Terraform/Ansible/Python and network controllers/SDKs; embed policyascode and compliance checks into CI/CD.
- Implement observability: streaming telemetry NetFlow/IPFIX SNMP syslog synthetic testing path analytics digital experience monitoring (DEM).
- Govern SRE practices: SLO/SLI/error budgets for network services; automate pre/postchange validation and rollbacks.
5) Cloud & Edge Networking- Architect cloud networking at scale: VPC/VNet design routing domains NAT ingress/egress hybrid connectivity (DX/Interconnect/VPN) service discovery PrivateLink/PSC.
- Integrate Kubernetes networking (CNI Ingress/Egress service mesh like Istio/Cilium) and secure servicetoservice communication.
- Support edge/IoT networking patterns SDBranch and local breakout with unified policy.
6) SDWAN / SASE & WAN Transformation- Lead SDWAN strategy and migration from MPLS to internet/5G underlay with applicationaware routing and performance SLAs.
- Define SASE/SSE reference patterns (ZTNA SWG CASB DNS security FWaaS) aligned with identity and device posture.
7) Stakeholder Leadership & Delivery Governance- Advise executives on network strategy roadmap TCO/ROI and risk.
- Chair Design Authority; review HLD/LLD test plans and change windows; ensure design compliance and nonfunctional requirements (NFRs) are met.
- Mentor architects/engineers; cultivate reusable patterns and accelerators.
Required Skills & Experience
Core Networking- Expert in routing & switching (OSPF BGP ISIS) EVPN/VXLAN MPLS QoS/CoS multicast NAT DNS/DHCP/IPAM.
- Proven experience designing leafspine data center fabrics campus architectures and global WANs.
Security & Zero Trust- Deep knowledge of segmentation (macro/micro) NGFWs IDS/IPS DDoS WAF PKI identitydriven policy and SASE/SSE platforms.
- Handson with policy design across onprem and cloud; integration with SIEM/SOAR.
Cloud & Container Networking- Strong with AWS/GCP/Azure networking (VPC/VNet TGW/Cloud WAN PrivateLink/PSC Route 53/Cloud DNS load balancers).
- Familiar with Kubernetes networking (CNIs like Calico/Cilium NetworkPolicies Ingress/Egress service mesh).
Automation & Tooling- Proficient in Terraform Ansible Python Gitbased workflows CI/CD for network changes compliance checks (e.g. CIS Benchmarks).
- Observability with Prometheus/Grafana App/Net Performance Monitoring NetFlow/IPFIX streaming telemetry.
Telco / HighPerformance (Nice to Have but Highly Valued)- Understanding of SRIOV DPDK SCTP 5G core networking concepts UPF placement and deterministic lowlatency patterns.
- Experience with NEF/SEPP security considerations MEC/edge and interconnect with public cloud.
Qualifications- 12 years in networking with 5 years in architecture leadership roles.
- Certifications (mix of vendor and cloud beneficial): CCNP/CCIE AWS/Azure/GCP networkingfocused certs.
About Infosys
Infosys is a global leader in next-generation digital services and consulting. We enable clients in 50 countries to navigate their digital transformation. With over three decades of experience in managing the systems and workings of global enterprises we expertly steer our clients through the many next of their digital journey. We do it by enabling the enterprise with an AI-powered core that helps prioritize the execution of change. We also empower the business with agile digital at scale to deliver unprecedented levels of performance and customer delight. Our always-on learning agenda drives their continuous improvement through building and transferring digital skills expertise and ideas from our innovation ecosystem.
Visit to see how Infosys can help your enterprise navigate your next.
All aspects of employment at Infosys are based on merit competence and performance. We are committed to embracing diversity and creating an inclusive environment for all employees. Infosys is proud to be an equal opportunity employer
Required Experience:
Senior IC
Role - Senior Technology Architect Network ArchitectLocation Germany UK and Netherlands (Any location)Unit CIS (Cloud and Infrastructure)Job DescriptionRole OverviewThe Senior Technology Architect (STA) Network owns the endtoend network architecture across data center campus WAN/SDWAN cloud and ...
Role - Senior Technology Architect Network Architect
Location Germany UK and Netherlands (Any location)
Unit CIS (Cloud and Infrastructure)
Job Description
Role Overview
The Senior Technology Architect (STA) Network owns the endtoend network architecture across data center campus WAN/SDWAN cloud and edge environments. The role defines strategy blueprints and guardrails; leads complex transformations; and ensures the network platform delivers resilience security (Zero Trust) performance and cost efficiency. The STA partners with product security platform engineering and operations to architect vendoragnostic automationfirst designs that scale across global enterprises.
Key Responsibilities
1) Architecture & Strategy- Define the network target state (DC Campus WAN/SDWAN Cloud Networking Edge) with reference architectures patterns and standards.
- Create highlevel and lowlevel designs (HLD/LLD) including L2/L3 routing segmentation DNS IPAM firewalling service insertion and observability.
- Establish multicloud network architectures (AWS/GCP/Azure) covering VPC/VNet design Transit Gateways Private Service Connect/Endpoint Direct Connect/Interconnect crosscloud connectivity and service mesh integration.
- Lead modernization from legacy to EVPN/VXLAN fabrics intentbased networking Zero Trust segmentation and SASE/SSE.
2) Network Security & Zero Trust- Apply Zero Trust principles across identity-aware segmentation micro/macro segmentation (e.g. SDN NSXT ACI TGW/Cloud WAN firewalls) secure eastwest and northsouth flows.
- Define security guardrails (FWaaS NGFW WAF IDS/IPS DDoS DNS security) key management and policy-as-code; integrate with SIEM/SOAR.
- Partner with the CISO and platform teams to align with NIST CIS ISO 27001 and regulatory standards (e.g. telco/public sector as applicable).
3) Performance Resilience & Availability- Engineer for high availability (multiAZ/region fast reroute ECMP anycast graceful restart) and deterministic performance for latencysensitive workloads (including telco and realtime apps).
- Define traffic engineering strategies (QoS/CoS policybased routing segment routing MPLS/EVPN/VXLAN SRMPLS/SRv6).
- Design DR and failover topologies; conduct chaos/resilience testing and capacity planning.
4) Automation IaC & Observability- Drive automationfirst delivery using Terraform/Ansible/Python and network controllers/SDKs; embed policyascode and compliance checks into CI/CD.
- Implement observability: streaming telemetry NetFlow/IPFIX SNMP syslog synthetic testing path analytics digital experience monitoring (DEM).
- Govern SRE practices: SLO/SLI/error budgets for network services; automate pre/postchange validation and rollbacks.
5) Cloud & Edge Networking- Architect cloud networking at scale: VPC/VNet design routing domains NAT ingress/egress hybrid connectivity (DX/Interconnect/VPN) service discovery PrivateLink/PSC.
- Integrate Kubernetes networking (CNI Ingress/Egress service mesh like Istio/Cilium) and secure servicetoservice communication.
- Support edge/IoT networking patterns SDBranch and local breakout with unified policy.
6) SDWAN / SASE & WAN Transformation- Lead SDWAN strategy and migration from MPLS to internet/5G underlay with applicationaware routing and performance SLAs.
- Define SASE/SSE reference patterns (ZTNA SWG CASB DNS security FWaaS) aligned with identity and device posture.
7) Stakeholder Leadership & Delivery Governance- Advise executives on network strategy roadmap TCO/ROI and risk.
- Chair Design Authority; review HLD/LLD test plans and change windows; ensure design compliance and nonfunctional requirements (NFRs) are met.
- Mentor architects/engineers; cultivate reusable patterns and accelerators.
Required Skills & Experience
Core Networking- Expert in routing & switching (OSPF BGP ISIS) EVPN/VXLAN MPLS QoS/CoS multicast NAT DNS/DHCP/IPAM.
- Proven experience designing leafspine data center fabrics campus architectures and global WANs.
Security & Zero Trust- Deep knowledge of segmentation (macro/micro) NGFWs IDS/IPS DDoS WAF PKI identitydriven policy and SASE/SSE platforms.
- Handson with policy design across onprem and cloud; integration with SIEM/SOAR.
Cloud & Container Networking- Strong with AWS/GCP/Azure networking (VPC/VNet TGW/Cloud WAN PrivateLink/PSC Route 53/Cloud DNS load balancers).
- Familiar with Kubernetes networking (CNIs like Calico/Cilium NetworkPolicies Ingress/Egress service mesh).
Automation & Tooling- Proficient in Terraform Ansible Python Gitbased workflows CI/CD for network changes compliance checks (e.g. CIS Benchmarks).
- Observability with Prometheus/Grafana App/Net Performance Monitoring NetFlow/IPFIX streaming telemetry.
Telco / HighPerformance (Nice to Have but Highly Valued)- Understanding of SRIOV DPDK SCTP 5G core networking concepts UPF placement and deterministic lowlatency patterns.
- Experience with NEF/SEPP security considerations MEC/edge and interconnect with public cloud.
Qualifications- 12 years in networking with 5 years in architecture leadership roles.
- Certifications (mix of vendor and cloud beneficial): CCNP/CCIE AWS/Azure/GCP networkingfocused certs.
About Infosys
Infosys is a global leader in next-generation digital services and consulting. We enable clients in 50 countries to navigate their digital transformation. With over three decades of experience in managing the systems and workings of global enterprises we expertly steer our clients through the many next of their digital journey. We do it by enabling the enterprise with an AI-powered core that helps prioritize the execution of change. We also empower the business with agile digital at scale to deliver unprecedented levels of performance and customer delight. Our always-on learning agenda drives their continuous improvement through building and transferring digital skills expertise and ideas from our innovation ecosystem.
Visit to see how Infosys can help your enterprise navigate your next.
All aspects of employment at Infosys are based on merit competence and performance. We are committed to embracing diversity and creating an inclusive environment for all employees. Infosys is proud to be an equal opportunity employer
Required Experience:
Senior IC
View more
View less