Lead Platform Engineer
DTCC
Software Engineering
Jersey City, NJ, USA
Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.
The Global Operations, Client Services & Administration group delivers world-class safety and soundness for the global financial services industry. The team provides DTCC’s portfolio of core securities and superior transaction processing and client services support in an environment that minimizes risk and cost while maximizing efficiency.
Pay and Benefits:
- Competitive compensation, including base pay and annual incentive
- Comprehensive health and life insurance and well-being benefits, based on location
- Pension / Retirement benefits
- Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
- DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
The Cloud Network Engineer will join a high performing Cloud Network Engineering team responsible for designing, deploying, and operating large scale, multi account AWS and Azure network environments. This role supports mission critical workloads, hybrid connectivity, global DNS services, and security aligned network patterns that serve both internal customers and enterprise applications. The ideal candidate is hands-on, architecture-minded, and comfortable working in complex distributed environments with thousands of network devices.
Your Primary Responsibilities:
- Implement scalable AWS and Azure network patterns including VPC and VNet architectures, Transit Gateway, Cloud WAN, Direct Connect, ExpressRoute, NAT gateways, IGWs, and multi account network segmentation.
- Build and maintain DNS architectures including Route 53 Resolver, Resolver endpoints, profiles, and integration with enterprise DNS such as InfoBlox and F5 DNS for GSLB.
- Deploy and support NLB based architectures for DNS appliances, load balancers, and hybrid applications.
- Implement network security controls using cloud native and third-party platforms such as Palo Alto Cloud NGFW, Guardicore segmentation, WAFs, and PrivateLink.
- Engineer connectivity solutions between premises data centers and cloud using Direct Connect, VPN, SD WAN, and partner connectivity.
- Support IPAM workflows and CIDR allocation strategies across large multi-region environments.
- Troubleshoot routing, BGP, path selection, firewalls, and connectivity issues across hybrid estates.
- Develop Terraform modules for repeatable network patterns including TGW attachments, Route 53 rules, Resolver endpoints, VPC builds, and account onboarding.
- Build automation workflows using CI/CD pipelines, Git, Bitbucket, and policy guardrails to ensure version-controlled network deployments.
- Participate in building a Cloud Network Engineering Center of Excellence focused on governance, documentation, reference architectures, and pattern reuse.
- Familiarity with NetBrain , SolarWinds and NetScout.
- Provide Day 2 operational expertise for DNS appliances, cloud firewalls, GSLB, network proxies, monitoring, and hybrid connectivity.
- Act as escalation for enterprise networking teams managing over five thousand network devices across routers, switches, load balancers, monitoring systems, and cloud endpoints.
- Review risk assessments, change requests, and network designs for compliance and reliability.
Qualifications:
- Minimum of 6 years of related experience
- Bachelor's degree preferred or equivalent experience
Talents Needed for Success:
- Five or more years in network engineering with strong experience in AWS or Azure networking.
- Expertise with routing and switching protocols including BGP.
- Experience with VPC design, subnetting, network segmentation, NACLs, and security groups.
- Practical experience with Terraform for infrastructure deployment.
- Strong troubleshooting skills across hybrid environments.
- Familiarity with DNS concepts including recursion, forwarding, authoritative zones, and GSLB.
- AWS Certified Advanced Networking Specialty or equivalent.
- Experience with InfoBlox, F5 GTM DNS, Palo Alto Cloud NGFW, and Guardicore segmentation.
- Experience operating large scale environments with centralized IPAM and routing patterns.
- Experience building CI/CD pipelines for network automation.
- Strong documentation and communication skills for working with architecture and risk stakeholders.
- Systems thinking and pattern-oriented mindset.
- Comfortable driving clarity in ambiguous multi team environments.
- Customer obsessed approach to reliability and service ownership.
- Strong sense of operational excellence and continuous improvement.
DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork. When you join our team, you’ll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It’s the chance to make a difference at a company that’s truly one of a kind.
Learn more about Clearance and Settlement by clicking here.
Serves as a dedicated technology resource for advancing DTCC’s business opportunities and providing industry thought leadership for leveraging new technology. The goal of this new department is to partner internally with IT, our business and regulatory divisions and externally with clients, regulators, and fintech vendors, to help build new platforms and business models to advance DTCC’s mission to support the financial markets.
The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.