Principal Network Architect - Federal
Remote, US
About Lumen
Lumen connects the world. We are igniting business growth by connecting people, data and applications – quickly, securely, and effortlessly. Together, we are building a culture and company from the people up – committed to teamwork, trust and transparency. People power progress.
We’re looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future.
The Role
We are seeking a highly skilled and visionary Principal Network Architect to lead and drive the network architecture strategy in support of the Department of the Interior (DOI). This role is pivotal in defining technical platforms, system specifications, and ensuring seamless hardware/software integration to support mission-critical operations. The successful candidate will be responsible for designing and optimizing complex systems, developing business application prototypes, and addressing system design challenges with a strategic and forward-thinking approach.
As a key technical leader, you will shape the future framework of network infrastructure, playing a crucial role in the DOI’s network transformation and optimization efforts. This position requires multi-layered technical expertise in designing and managing high-performance, scalable architectures with a strong emphasis on BGP, Autonomous Systems, ROIP, IPv6, and SDN-WAN. Additionally, you will oversee configuration management, capacity planning, and the full lifecycle of edge devices, ensuring a resilient and adaptive network environment.
A core responsibility of this role is to support Managed Network Services by proactively identifying and mitigating risks associated with end-of-life (EOL), end-of-support (EOS), and security vulnerabilities across multiple vendors and platforms. You will work closely with Day 0, Day 1, and Day 2 teams, driving innovation in network design, optimization, and security. As a recognized expert in enterprise security architecture, you will bring deep technical acumen in Fortinet FortiGate and Cisco firewall appliances and security solutions.
The Main Responsibilities
- Defines processes for technical platforms, system specifications, input/output, and working parameters for hardware and/or software compatibility.
- Conceives system interfaces and business application prototypes.
- Identifies, analyzes, and resolves system design weaknesses.
- Reviews and analyzes utilization and capacity reports and makes recommendations.
- Influences the shaping of future products by contributing to the framework (architecture) used across multiple products or systems.
- Designs a complete and complex framework, system, or product in support of the DOI network optimization and transformation effort.
- Provides multi-layered technical expertise for next-generation initiatives.
- Responsible for the complete design of a company product or system from technical roadmap to architectural designs.
- Defines appropriate platforms and system specifications.
- Determines core server infrastructure, capacity planning, storage requirements, and networking protocols.
- Develops technical, tactical, and strategic plans, systems.
- Designs and develops IT architecture (integrated process, applications, data, and technology) solutions to business problems in alignment with the enterprise architecture direction and standards.
- Performs technical planning, architecture development, and modification of specifications.
- Develops specifications for new products/services.
- Creates detailed drawings and network topology maps.
- Configuration management, capacity planning inputs, network optimization efforts, and lifecycle management of the edge devices.
- Expertise in BGP and Autonomous Systems (AS) to support network design, optimization, and lifecycle management, including configuring and troubleshooting BGP, managing AS routing policies, and ensuring network stability and performance.
- Ideal candidates have experience with network infrastructure, routing protocols, and traffic engineering.
- Experience in ROIP (Radio over IP).
- Knowledge with IPv6 and SDN-WAN enterprise implementation and configuration.
- Assist Managed Network Services, identify EOL, EOS, and security vulnerabilities across multiple vendors and platforms.
What We Look For in a Candidate
- Advanced expertise in Fortinet FortiGate, including FortiOS, high availability (HA) clustering, next-generation firewall (NGFW) features, IPS/IDS, SD-WAN, SSL/TLS inspection, deep packet inspection (DPI), and FortiManager/FortiAnalyzer integration.
- Comprehensive proficiency in Cisco security technologies, including ASA, Firepower NGFW, Firepower Management Center (FMC), advanced threat detection, intrusion prevention (IPS), AnyConnect VPN, and zero-trust security architectures.
- Strong expertise in BGP, Autonomous Systems, ROIP, IPv6, and SD-WAN, with a track record of managing network design, optimization, and lifecycle management.
- Ability to conceive system interfaces and business application prototypes, identify and resolve system design weaknesses, and make strategic recommendations based on utilization and capacity reports.
- Experience designing complex systems and frameworks to support network optimization and transformation efforts, providing multi-layered technical expertise for next-generation initiatives.
- Excellent technical planning, architecture development, and specification modification skills, with the ability to develop IT architecture solutions aligned with enterprise standards.
- Extensive network design, development engineering and support experience on highly complex network systems,
- Strong analytical and problem-solving skills. Good interpersonal and communications skills along with the ability to handle an interrupt-driven, fast-paced environment,
- Highly independent, self-motivated; Strong verbal and written communication skills; Ability to acquire knowledge independently
- Must be able to effectively work with and influence internal and external parties to achieve results.
- Willingness to travel quarterly to Washington, DC for customer business reviews.
- Must possess a public trust suitability clearance.
Compensation
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.Location Based Pay Ranges
$103,711.00 - $138,281.00 in these states: AL AR AZ FL GA IA ID IN KS KY LA ME MO MS MT ND NE NM OH OK PA SC SD TN UT VT WI WV WY
$108,896.00 - $145,195.00 in these states: CO HI MI MN NC NH NV OR RI
$114,082.00 - $152,109.00 in these states: AK CA CT DC DE IL MA MD NJ NY TX VA WA
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process. Learn more about Lumen's: Benefits #LI-EL1
Requisition #: 337324
Background Screening
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page. Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Equal Employment Opportunities
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
Disclaimer
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
ApplyJob Profile
Location based pay
Benefits/PerksBonus structure Comprehensive package Flexibility Health Impact Incentives Life Lifestyle benefits Long-term incentives Other perks Short-term incentives Teamwork Training Transparency Trust Voluntary lifestyle benefits
Tasks- Capacity Planning
- Design and optimize systems
- Develop business application prototypes
- Identify and mitigate risks
- Lead network architecture strategy
- Support managed network services
- Training
Analytical Autonomous Systems BGP Capacity planning CISCO Cisco firewall appliances Communication Communications Configuration Management Data Design Development Edge devices Engineering Enterprise Architecture Enterprise security architecture Firewall Fortigate Fortinet Fortinet Fortigate Hardware IDS Implementation Infrastructure Innovation Integration Interpersonal IP IPS IPv6 Management Network architecture Network Design Network Infrastructure Networking Network optimization Operations Planning Problem-solving Recruitment ROIP Routing Routing Protocols Sales SDN SDN-WAN SD-WAN Security Security Architecture Security solutions Security Technologies Storage Strategy System design Teams Teamwork Technical Expertise Technology Technology solutions Threat Detection Training Troubleshooting VPN
Experience5 years
EducationBusiness Engineering IT Technology
Certifications TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9