Staff Infrastructure Architect

at GE Healthcare · Healthcare · Budapest, Budapest, Hungary · Digital Technology / IT

GE HealthCare is seeking a Network Architect to own, design, and evolve their global remote connectivity platform. This role focuses on the architecture, reliability, and continuous improvement of secure remote access services, aligning with SASE and Zero Trust principles. Responsibilities include designing and implementing secure remote access solutions, serving as a technical authority, driving standardization, and collaborating with various security and network teams.

What you'd actually do

  1. Own the end-to-end architecture of GE HealthCare’s global Remote Access platform
  2. Design, implement, and continuously improve secure remote access solutions for employees, partners, and vendors
  3. Serve as the technical authority for remote access architecture, including policy design, traffic routing, authentication, and high availability
  4. Drive standardization, automation, scalability, and reliability across the remote access environment
  5. Troubleshoot and resolve complex network and security issues across global environments

Skills

Required

  • enterprise network or infrastructure engineering
  • remote access or SASE solutions
  • networking fundamentals (routing, VPN, TCP/IP, DNS, BGP)
  • Zero Trust and identity-aware network access concepts
  • secure, scalable, and highly available network architectures
  • global enterprise environments
  • troubleshooting and problem-solving
  • independent work and initiative

Nice to have

  • leading SASE or secure remote access platforms (Palo Alto Prisma Access, Zscaler, Netskope, Cisco)
  • Beyond Trust Privileged Remote Access (PRA)
  • networking or security architecture certifications
  • cloud networking (AWS, Azure, GCP)
  • Identity and Access Management integrations (AD, Azure AD, LDAP)
  • automation, scripting, or Infrastructure as Code (Terraform, Ansible)
  • regulatory, compliance, or security-driven enterprise environments
  • architecture standards, documentation, and technical governance
Read full job description

Job Description Summary

This position will be working on multiple projects as a technical expert or internal consultant. You will work on projects for components of the domain. You will work on multiple technical or functional domains.

Location: This role is preferably based in Hungary. Applicants must have valid authorization to work in one of these countries. Visa sponsorship may not be available for this position.

Job Description

Role Overview

GE HealthCare is seeking a Network Architect – Remote Access to own, design, and evolve our global remote connectivity platform. This role is responsible for the architecture, reliability, and continuous improvement of secure remote access services supporting thousands of users worldwide.

This is a hands-on architecture role with real ownership. You will work in a fast-paced, global enterprise environment and collaborate closely with Cyber Security, Network Operations, Identity, and Cloud teams to deliver secure, scalable, and resilient remote access solutions aligned with modern SASE and Zero Trust principles.

Key Responsibilities

  • Own the end-to-end architecture of GE HealthCare’s global Remote Access platform

  • Design, implement, and continuously improve secure remote access solutions for employees, partners, and vendors

  • Serve as the technical authority for remote access architecture, including policy design, traffic routing, authentication, and high availability

  • Drive standardization, automation, scalability, and reliability across the remote access environment

  • Troubleshoot and resolve complex network and security issues across global environments

  • Collaborate closely with Cyber Security, Network Operations, Identity, and Cloud teams to deliver integrated solutions

  • Ensure solutions meet security, compliance, and availability requirements

  • Provide architectural-level support for incidents and problem management (no routine operations)

  • Document architectures, standards, and design decisions to support long-term service delivery

Qualifications:

  • Bachelor's degree in computer science or a STEM-related field (Science, Technology, Engineering, Math), or equivalent practical experience

  • Extensive experience in enterprise network or infrastructure engineering roles

  • Strong background in designing or supporting remote access or SASE solutions in a large-scale environment

  • Strong experience with enterprise remote access platforms (e.g., Palo Alto Prisma Access, or equivalent SASE / VPN solutions)

  • Solid networking fundamentals, including routing, VPN technologies, TCP/IP, DNS, and BGP

  • Experience with Zero Trust and identity-aware network access concepts

  • Proven ability to design secure, scalable, and highly available network architectures

  • Experience operating in global enterprise environments with complex stakeholder models

  • Strong troubleshooting and problem-solving skills across network and security domains

  • Ability to work independently, take ownership, and drive complex initiatives to completion

  • Clear written and verbal communication skills for technical and non-technical audiences

Preferred Qualifications

  • Experience with leading SASE or secure remote access platforms (e.g., Palo Alto Prisma Access, Zscaler, Netskope, Cisco, or similar)

  • Proven experience with Beyond Trust Privileged Remote Access (PRA), including architecture, access models, and policy design

  • Industry certifications related to networking or security architecture (e.g., vendor certifications, CCNP/CCIE, or equivalent) and/or solid level of understanding TCP/IP networking.

  • Experience with cloud networking in AWS, Azure, and/or GCP environments

  • Familiarity with Identity and Access Management integrations (e.g., Active Directory, Azure AD, LDAP, IGA/IdM solutions)

  • Experience with automation, scripting, or Infrastructure as Code (e.g., Terraform, Ansible, COTS solutions)

  • Understanding of regulatory, compliance, or security-driven enterprise environments

  • Experience contributing to architecture standards, documentation, and technical governance

#LI-BJ1

#LI-HYBRID

Additional Information

**Relocation Assistance Provided: **No