Staff Network Engineer

GEICO GEICO · Insurance · Palo Alto, CA +3

This Staff Network Engineer role at GEICO focuses on designing, implementing, and maintaining network infrastructure, including data center fabrics, firewalls, and cloud networking (Azure). The role involves ensuring network security, implementing observability, optimizing routing, and developing automation using Python and Ansible. It is part of a broader company transformation from a traditional IT model to a tech organization with engineering excellence as its mission.

What you'd actually do

  1. Design, implement, and maintain network infrastructure, including five-stage Clos data center fabrics, routers, switches, Palo Alto next-generation firewalls, VPN, hybrid connectivity to Azure, AWS and supporting services such as enterprise DNS
  2. Implement network policies and security measures to protect against cyber threats and ensure compliance with industry standards
  3. Design, deploy, and support Azure network infrastructure (for example, VNets, hybrid connectivity, routing, network security, and private access patterns), ensuring performance, security, and reliability
  4. Implement and maintain observability for the network platform, including metrics, alerts, and dashboards, and use that visibility to drive proactive detection and faster incident response
  5. Configure and optimize routing and switching behavior across WAN, and data center environments, including traffic engineering, resiliency, and operational guardrails

Skills

Required

  • Designing, implementing, and troubleshooting large-scale IP fabrics, including Clos/spine-leaf designs
  • Strong understanding of WAN and data center interconnect technologies, including MPLS, VPN, BGP-based designs, and diverse carrier circuits
  • Knowledge of network security principles and best practices, including firewalls, VPN, and intrusion detection/prevention concepts
  • Expertise in configuring and troubleshooting VPN technologies
  • Strong understanding of L2/L3 switching, routing, and high availability patterns in enterprise and data center networks
  • Expertise in network routing protocols, such as BGP and OSPF
  • Strong experience with Core, Distribution, Access, VPN, Firewalls, and data center fabric architectures
  • Hands-on experience with Palo Alto NGFW platforms
  • Hands-on experience with Microsoft Azure networking
  • Experience supporting enterprise DNS
  • Develop and maintain automation using Python and Ansible

Nice to have

  • five-stage Clos experience preferred
  • EVPN where applicable

What the JD emphasized

  • zero-downtime platforms
  • network infrastructure
  • cyber threats
  • network performance
  • network security
  • network standards
  • network platforms
  • network services
  • network infrastructure
  • network security
  • network routing
  • network routing
  • network standards
  • network platforms