Network Architect
The C.A.S.E. Engineering Group is a Service-Disabled Veteran-Owned Small Business (SDVOSB) specializing in IT engineering, network and infrastructure architecture, cybersecurity, and modernization support for federal clients. We provide hands-on technical expertise across complex enterprise environments, with a focus on mission-critical systems, operational visibility, and secure, scalable modernization.
Role SummaryThis is not a policy-focused or documentation-only architecture role. We are seeking a hands-on Network Architect to lead enterprise-wide network discovery and modernization efforts for a large federal environment. The primary objective of this role is to identify, validate, and document what actually exists on the network today, how it operates, what depends on it, and where risks and modernization opportunities exist.
The Network Architect (Enterprise Network Discovery & Modernization) will perform deep current-state discovery across enterprise networking infrastructure, including routing, switching, firewalls, segmentation, load balancing, and hybrid cloud connectivity. This role requires direct interaction with engineers and operators, hands-on analysis of configurations and authorized scan data, and the ability to translate technical findings into authoritative architecture views. While the role has enterprise scope, it is network-centric first, with enterprise architecture responsibilities applied through the lens of real network behavior rather than abstract frameworks.
Key Responsibilities- Lead hands-on discovery of the current-state enterprise network environment, including routers, switches, firewalls, load balancers, DNS, network services, and on-prem, cloud, and hybrid connectivity
- Run, interpret, and validate authorized network discovery and scanning activities to identify active devices, undocumented systems, shadow IT, and unexpected connectivity paths
- Review and analyze network configurations, routing tables, Firewall rules, topology diagrams, CMDB records, and monitoring data to reconcile documented versus actual state
- Conduct interviews with network engineers, system owners, security teams, and operations personnel to validate findings and uncover undocumented dependencies
- Map network-to-service and network-to-application relationships, identifying critical services, outage pathways, single points of failure, and Legacy or high-risk configurations
- Assess how cybersecurity controls, identity services, segmentation, and boundary protections impact network behavior and enterprise dependencies
- Identify risks related to Legacy network designs, insecure pathways, undocumented access, or insufficient segmentation
- Identify opportunities for network consolidation, modernization, and cloud integration, including hybrid and multi-cloud architectures
- Develop future-state network architecture recommendations that support resiliency, scalability, Zero Trust principles, and modernization objectives
- Produce authoritative network diagrams, dependency maps, technical reports, and executive-ready briefings
- Recommend tools, methodologies, and automation approaches for ongoing network discovery and enterprise network visibility
- Deep expertise in enterprise networking, including routing, switching, firewalls, load balancing, DNS, and segmentation
- Demonstrated experience performing hands-on network discovery in large-scale enterprise or federal environments
- Ability to interpret scan results, configuration data, and monitoring outputs to identify undocumented systems and operational risks
- Strong understanding of hybrid and cloud networking, including connectivity between on-prem environments and cloud platforms such as AWS or Azure
- Working knowledge of cybersecurity concepts as they apply to networks, including boundary protections, segmentation, identity integration, and traffic inspection
- Experience working with CMDB platforms (ServiceNow preferred), network monitoring tools, and discovery technologies
- Strong analytical skills with the ability to translate low-level technical data into enterprise-level views
- Ability to communicate effectively with engineers, security teams, and leadership
- Experience producing clear, authoritative diagrams and documentation that reflect actual network behavior, not theoretical designs
- CCIE (Routing and Switching, Enterprise Infrastructure, or Security)
- Cloud certifications such as AWS or Azure (preferred but not required)
- Ten or more years of experience in network architecture, network engineering, or infrastructure engineering roles
- Prior experience supporting federal or large enterprise environments is strongly preferred
- Bachelor of Science degree in Computer Science, Information Technology, Engineering, or a related technical discipline is preferred, or equivalent professional experience