Staff Software Engineer - Cloud Network Engineering

Toast Toast · Enterprise · United States · Remote · R & D : Cloud Service Infra : Platform Infrastructure

Staff Software Engineer focused on Cloud Network Engineering at Toast. This role involves designing, building, and operating the traffic infrastructure for the company, including edge, CDN, DNS, cloud networking, and service mesh. While AI tools are used to enhance development workflows and operational processes, the core of the role is in traditional network engineering and infrastructure.

What you'd actually do

  1. Design, build, deploy, and operate the traffic infrastructure that carries every request across Toast — from the public edge through cloud networking down to service-to-service traffic
  2. Lead complex, multi-team projects that improve how Toast services discover, route to, secure, and observe one another
  3. Own the reliability of critical traffic infrastructure end-to-end, from design through on-call response, post-incident learning, and long-term hardening
  4. Design solutions that anticipate future scale and product needs (multi-region, new protocols, evolving service-mesh patterns) while making explicit tradeoffs
  5. Partner with the team on cloud networking, edge routing (Cloudflare), DNS, and IaC-driven automation

Skills

Required

  • Kotlin or another JVM language (Java, Scala)
  • Service mesh (Envoy, Istio, Linkerd, Consul Connect, or similar)
  • Infrastructure as Code (Terraform or similar)
  • DNS and edge routing (Cloudflare, Cloudfront, Akamai, or Fastly)
  • TLS (termination, mTLS, certificate lifecycle management)
  • Networking stack knowledge

Nice to have

  • Experience shipping and operating mission-critical production services
  • Led complex projects that span multiple teams and have presented technical plans to both engineering and non-engineering audiences
  • Growth mindset

What the JD emphasized

  • mission-critical production services
  • Built or operated a service mesh in production
  • Hands-on experience with DNS and edge routing through a CDN such as Cloudflare, Cloudfront, Akamai, or Fastly
  • Working knowledge of TLS — termination, mTLS, and certificate lifecycle management at scale