Sr. Network Engineer & Connectivity Architect
APCO Holdings
Job Description
Job Description
APCO Holdings partners with dealerships across North America to deliver innovative vehicle protection products and services that enhance the ownership experience for customers and drive growth for our partners. Through our family of brands, we bring together industry expertise, technology, and data-driven insights to help dealers strengthen their finance and insurance performance and build lasting relationships with their customers.
Our teams work collaboratively across operations, technology, risk, finance, marketing, and sales to deliver solutions that create measurable value and support the continued growth of APCO and the partners we serve.
The Sr. Network Engineer & Connectivity Architect serves as the principal architect of the organization’s enterprise connectivity platform (“The Backbone”), with a primary focus on Microsoft Azure networking, Cisco Meraki infrastructure, and identity-driven access (Active Directory & Entra ID).
This role is responsible for designing and operating a secure, highly resilient, and cloud-aligned network architecture, where access decisions are governed by user identity, device posture, and real-time risk signals, rather than traditional network boundaries.
Leveraging Infrastructure as Code (IaC), AIOps, and Zero Trust principles, this position ensures seamless, secure connectivity across Azure, on-prem environments, branch networks (Meraki), and SaaS platforms such as Microsoft 365, while enabling a scalable, automated, and self-healing infrastructure.
Key ResponsibilitiesIdentity-Driven Network Architecture (CORE)
Design and implement a network architecture where identity is the primary control plane. Integrate Active Directory (on-prem), Entra ID, and identity providers (Okta) with network enforcement points to enable real-time, identity-based access decisions.
Active Directory & Hybrid Identity Ownership
- Architect and support enterprise-scale hybrid identity environments, including:
- Active Directory design (sites, replication, GPO strategy)
- Entra Connect (Azure AD Connect) synchronization
- Authentication protocols (Kerberos, NTLM, modern authentication)
- Secure integration with cloud and network services
Entra ID & Conditional Access Engineering
- Design, implement, and optimize Conditional Access policies, including:
- MFA enforcement strategies
- Device compliance (Intune integration)
- Risk-based and session-based access controls
- Location-aware and Zero Trust access models
Zero Trust & Identity Enforcement
- Lead the implementation of a Zero Trust architecture by aligning:
- Identity (Entra ID / Active Directory / Okta)
- Network (Azure, Meraki)
- Endpoint (Intune / device posture)
- Ensure consistent enforcement of least privilege access across all environments
Microsoft 365 Identity & Access Optimization
- Ensure secure, high-performance access to Microsoft 365 by:
- Aligning identity policies with network routing and access controls
- Supporting modern authentication flows and token-based access
- Optimizing Teams, Exchange, and SharePoint connectivity
Azure-Centric Network Architecture
- Design and implement scalable Azure networking solutions, including:
- Virtual Networks (VNet) and Hub-and-Spoke architectures
- Private Endpoints and Private Link
- Azure Firewall, NSGs, and routing strategies
- DNS architecture and name resolution
Meraki Network Design & Operations
- Lead the design, deployment, and optimization of Cisco Meraki environments, including:
- MX (SD-WAN & security appliances)
- MS (switching)
- MR (wireless)
- Auto VPN and centralized cloud-based management
Hybrid Connectivity & Interconnects
- Architect and manage secure connectivity between environments using:
- ExpressRoute
- VPN Gateways
- Meraki SD-WAN (Auto VPN)
- Ensure low latency, high availability, and seamless failover.
Infrastructure as Code (IaC) & Automation
- Manage network and cloud configurations as code using:
- Terraform, Bicep, or ARM templates
- CI/CD pipelines (Azure DevOps, GitHub Actions)
- Ensure all deployments are standardized, repeatable, and auditable.
AI Ops & Observability
- Implement monitoring and telemetry across Azure and Meraki using:
- Azure Monitor & Log Analytics
- Meraki Dashboard
- Observability tools (Dynatrace, Splunk, etc.)
- Enable proactive detection, anomaly identification, and automated remediation.
Resiliency & Buiness Continuity Engineering (CRITICAL)
- Design and maintain a highly resilient network architecture across Azure, Meraki, on-prem, and SaaS environments:
- Eliminate single points of failure
- Implement redundancy across WAN, LAN, wireless, and cloud
- Design for automated failover and rapid recovery
- Ensure identity-dependent services remain available during outages
Governance & Policy Enforcement
- Establish and enforce governance using:
- Azure Policy and tagging standards
- Policy-as-Code frameworks
- Identity governance (access reviews, RBAC, least privilege)
- Ensure compliance with security, regulatory, and enterprise standards.
Technical Expertise
Category
Requirements
Identity & Access (PRIMARY)
Deep expertise in Active Directory (architecture, GPOs, replication), Entra ID, Conditional Access, MFA, federation (SAML, OAuth, OIDC), hybrid identity
Zero Trust Architecture
Experience implementing identity-driven access integrating network, endpoint, and SaaS
Azure Networking (PRIMARY)
VNets, ExpressRoute, VPN Gateway, Azure Firewall, Private Link, DNS, Hub-Spoke design
Meraki (PRIMARY)
MX (SD-WAN), MS (switching), MR (wireless), Auto VPN, Meraki Dashboard
Automation & IaC
Terraform, Bicep, ARM templates, CI/CD pipelines
M365 Integration
Identity and network dependency across Exchange, Teams, SharePoint
Endpoint Integration
Intune/device compliance integration with access policies
Observability
Azure Monitor, Log Analytics, Meraki Dashboard, Dynatrace, Splunk
Scripting & DevOps
PowerShell, Python, or similar scripting experience
Education and Experience- Bachelor’s degree in Computer Science, Information Technology, or a related technical field; Master’s degree in Information Systems Management preferred.
- In lieu of a degree, 12+ years of enterprise-level infrastructure experience with a proven track record of delivering automation-first networking projects.
Required Experience
- 8–10+ years of enterprise networking experience
- 5+ years of Active Directory experience (enterprise scale)
- 3+ years of Entra ID (Azure AD), Conditional Access, and MFA
- 3+ years of Azure networking experience
- 3+ years of Cisco Meraki experience (SD-WAN, switching, wireless)
- Experience designing hybrid connectivity (ExpressRoute, VPN, SD-WAN)
- Experience implementing IaC (Terraform, Bicep, ARM)
- Experience integrating identity with network and Zero Trust frameworks
- Proven experience leading a transition from legacy "box-by-box" management to a centralized, API-driven orchestration model.
Preferred Experience
- Microsoft 365 performance and connectivity optimization
- Microsoft Certified: Azure Network Engineer Associate (AZ-700)
- Microsoft Certified: Identity and Access Administrator (SC-300)
- Microsoft Certified: Azure Solutions Architect Expert
- Cisco Meraki Solutions Specialist (CMSS)
- Cisco Certified Internetwork Expert (CCIE) or CCNP Enterprise
- Cisco Certified DevNet Professional
- Hashi Corp Certified: Terraform Associate
- Certified Kubernetes Administrator (CKA)
At APCO, the way we work matters just as much as the results we deliver. Our values guide how we work, how we partner, and how we deliver results.
We C.A.R.E.
C ommitted – We build strong, high-trust relationships with our partners and each other.
A ccountable – We take ownership of outcomes and hold ourselves to the highest standards of performance and integrity.
R esults-Driven – We focus on delivering measurable outcomes that create value for our partners and our business.
E xcellent – We strive for excellence in everything we do while balancing short-term performance with long-term success.
If you're excited about joining a team that values collaboration, accountability, and continuous improvement, we'd love to hear from you.
By submitting your application, you acknowledge that you have read and understand our Privacy Policy and Terms & Conditions. APCO Holdings may collect personal information (such as name, contact details, and employment history) to evaluate your candidacy. We may share this data with our subsidiaries, affiliates, and service providers. We retain applicant data only as long as necessary for the hiring process or as required by law.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
$150k - $225k
...Job Description Job Description Hiring: Network Engineer with Juniper and EVPN or VXLAN experience (Atlanta metro area) Compensation: up to $150K-225K base (depending on expertise) Location: Norcross, GA -- (hybrid role; relocation assistance available) If...SeniorPermanent employmentRelocation package- ...Network Sme Engineer Senior Location: Alpharetta, GA or New York City, NY hybrid onsite - Need to come to office 3 days a week also we... ...routing protocols Troubleshoot overall networking and network connectivity to IoT devices/sensors Knowledge on Cisco Client, TACACS...SeniorWork at officeLocal area3 days per week
$148.5k - $247.5k
...The Senior Lead M&A Infrastructure Architect leads complex, multi-threaded M&A infrastructure... ...and Operations platform teams (Cloud, Network, Incident and Data Center), and... ...a technical authority bridging platform engineering and delivery teams, reviewing designs and...Senior- ...Development Connectivity Design Architect II It's exhilarating to find yourself at a pivotal moment in history and even more so to be leading... ...including extensive experience in all aspects of Cloud and Network Services. OSP and ISP auditing and project management experience...SuggestedWork at officeImmediate startWorldwideFlexible hours
$164k - $278k
...breaking down barriers to innovation for a more connected, compassionate world. About the Role The Senior Principal Integration Architect will focus on Enterprise Integration, ETL... ...: webMethods (Integration Server, Trading Networks, B2B/EDI, API Gateway) Kafka (event...SeniorFull timeStart working todayLive inWork at officeLocal areaFlexible hours- ...Role Title: Sr Network Cloud Testing Engineer Location: Hybrid Onsite - Alpharetta, GA (3-4 days onsite expected) Responsibilities... ...IPv6 addressing, Internet Gateway, Transit Gateway, Direct Connect, Route 53 ~ Azure: VNet IPv6, Load Balancer,...Senior
- ...JOB PURPOSE: The Senior Cloud Engineer designs and implements complex cloud... ...driving cloud cost optimization, architecting CI/CD pipelines for large-scale... .... Design and implement networking solutions for complex connectivity requirements. Lead capacity planning...SeniorFull timeWork at officeLocal areaWorldwideFlexible hours
- ...currently looking for a Principal Architect to join our VALUES based... ..., integration, and data engineering efforts. The Principal Architect... ...Collaborate with Security, Networking, Data, and Engineering... ...funds in a bank account in connection with the interview or hiring...Full timeLocal area
$146.4k - $219.6k
...About The Role The Senior Principal Integration Architect will focus on Enterprise Integration, ETL & Event Streaming | B2B & B2C... ...Architectural authority for webMethods (Integration Server, Trading Networks, B2B/EDI, API Gateway) Kafka (event streaming, real‐time...SeniorTemporary workWork at officeRemote workFlexible hours- ...Job Description Job Description Infrastructure Network Engineer ???? Location: Duluth, GA (On-site) ???? Job Type: Full-Time... ...Troubleshooting & Performance Optimization – Identify and resolve connectivity, security, and performance issues. ✅ Security &...Full timeVisa sponsorshipRelocation package
- ...Senior Network Engineer Position As a Senior Network Engineer, you will play a critical role in designing, implementing, and managing... ...concepts including switching, routing, and VLANs Troubleshoot connectivity and security-related issues across the enterprise network...SeniorLocal area
- ...Senior Network Engineer Position is open to both Atlanta, GA and Markham, Canada Offices Geek+ is a global leader in robotic solutions... ...VPN, SASE, and SD-WAN, ensuring secure and efficient connectivity for large-scale users worldwide. Lastly, they will design and...SeniorWork at officeRemote workWorldwideFlexible hours
$134.2k - $258.3k
...A leading global professional services firm in Alpharetta, Georgia is seeking a Senior Engineer to lead the delivery of complex solutions. Candidates should have over 10 years of experience, a Bachelor's degree in relevant fields, and advanced skills in languages like...Senior- ...Atlanta‑based company with nationwide operations, is seeking a Network Engineer to join our Operations team. This role is responsible for... ...network infrastructure. The Network Engineer will troubleshoot connectivity issues across routers, switches, firewalls, Internet...Casual workWork at office
$171.6k - $392.1k
...help you succeed in a globally connected powerhouse of diverse teams... ...ServiceNow – ServiceNow AI Architect Senior Manager In the... ...and expand your professional network. Key responsibilities... ...solutions Skill in prompt engineering and Retrieval-Augmented Generation...SeniorSummer holidayWorldwideFlexible hours- ...Network Engineer Lead Neptune Technology Group Inc. is a technology company serving water utilities across North America. Since 1892,... ...disruption to business operations Test and monitor network connectivity, capacity, and functionality across all locations...Local areaNight shift
- ...School Summary Georgia Connections Academy is a tuition-free, full-time virtual school for students in grades K-12 throughout Georgia. The school is authorized by the Georgia Charter Schools Commission and governed by an independent Board of Directors, with a mission...Full timeContract workWork at office
- ...School Summary Georgia Connections Academy is a tuition-free, full-time virtual school for students in grades K-12 throughout Georgia. The school is authorized by the Georgia Charter Schools Commission and governed by an independent Board of Directors, with a mission...Full timeContract workWork at officeLocal areaNight shift
- ...solutions provider in Norcross, GA is seeking a Systems Engineer to lead projects and mentor an engineering team. The... ...solutions, collaborating closely with Solution Architects. An emphasis on advanced networking, leadership skills, and relevant certifications is required...SeniorFull time
- ...technical leadership and mentorship to engineers; conduct design and code reviews. Drive... ...Linux/RTOS components. Drive IoT, connectivity, and communication protocol integration... ...such as Bluetooth, Wi-Fi, and cellular networks. ~ Work experience in IOT based...SeniorPermanent employmentTemporary workWork experience placementRelocation packageFlexible hours
$105k - $160k
...solutions and industrial products that are vital for living. We connect farmers with markets so they can prosper. We connect customers... ...Job Purpose and Impact The Senior Professional, Platform Engineering job designs, develops and maintains digital technology...SeniorWork experience placement- A staffing and consulting firm seeks an experienced QA Team Leader to spearhead test automation efforts. The successful candidate will have over 7 years of quality assurance experience, including leadership roles, along with 5 or more years focused on Test Automation. Familiarity...Senior
$101.5k - $169.1k
...of the Cox family of companies. RapidScale is seeking a Network Cloud Engineer who will be a key member of the Architecture organization,... ...~ Execute network changes to improve security posture, connectivity, and overall platform performance ~ Support multi-tenant...Senior$100k - $150k
...grow, we’re looking for a skilled Cloud Networking Engineer to join our dynamic team and... ...role covers VPC/VNet design, hybrid connectivity, transit topologies, edge networking,... ...ExpressRoute, Cloud Interconnect, and VPN. Architect edge networking including CDN, global...Full timeH1bLocal areaImmediate startRemote workVisa sponsorshipWork visa$163.4k - $272.3k
...is a customer-facing delivery role. As a Sr. Lead Solutions Architect (Azure Delivery), you will: Assess... ...Intermediate to expert level experience with IP networking, ExpressRoute, VPN technologies, and related connectivity solutions Minimum Qualifications...SeniorShift work- ...The Clorox Company is seeking an Anaplan COE Lead & Strategic Architect (Contractor), responsible for owning the vision and governance of the Anaplan Technical ecosystem. This remote position involves collaborating with stakeholders, managing the Anaplan platform strategy...SeniorFor contractorsRemote work
- ...team. If you're excited to be part of a winning team, CirrusLabs () is a great place to grow your career. Title: Senior Network Engineer Cisco Location: Hybrid - Atlanta, GA Job Summary: Supports activities related to ensuring the overall health...SeniorShift work
- ...The Network Engineer III - DevOps primary focuses on utilizing and building code to enable automation, visibility, and reliability maturity... ...global digital infrastructure leader. We are committed to connecting the globe for good. Driven by purpose and a spirit of...Work at officeImmediate startWorldwide
- ...Network Engineer III It's exhilarating to find yourself at a pivotal moment in history— and even more so to be leading the way. At QTS... ...the global digital infrastructure leader. We are committed to connecting the globe for good. Driven by purpose and a spirit of...Immediate startWorldwideFlexible hours
- ...clients' businesses-and to our own. The Network Operations Team is responsible for... ...(NetOps) coordinates with development, engineering, and other Technical Operations (TechOps... ...including config scripting for new access connectivity through WANs, LANs, and firewalls....Work experience placementWorldwideMonday to FridayFlexible hoursNight shiftWeekend workDay shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. Network Engineer & Connectivity Architect. Be the first to apply!
- network consulting engineer Norcross, GA
- network developer Norcross, GA
- data center network engineer Norcross, GA
- cisco network engineer Norcross, GA
- network engineer - transport Norcross, GA
- network engineer Norcross, GA
- senior network engineer remote Norcross, GA
- senior strategic account manager Norcross, GA
- senior account executive Norcross, GA
- senior performance engineer Norcross, GA


