System Network Engineer (AWS)

JOB DESCRIPTION

Network Design: Design and implement AWS network architectures, including VPCs in multi-account architecture, NAT gateways, VPN, Direct Connect and Transit Gateway to meet business needs.
Security: Configure and manage network security features, including security groups, NACLs, VPN tunnels, DNS Firewall, Network Firewalls, Firewall manager to ensure secure access and data protection.
Connectivity: Establish and maintain reliable connectivity between on-premises environment and AWS using Direct Connection solutions, VPC Private Link, VPN Site-to-Site, and hybrid cloud solutions.
Monitoring & Optimization: Monitor network performance and security using AWS CloudWatch, VPC Flow Logs, etc.. and optimize network configuration for performance, cost, and reliability.
Troubleshooting: Diagnose and resolve network issues, including network latency, connectivity problems and security vulnerabilities, ensuring minimal downtime and optimal performance.
Automation: Develop and implement automation scripts (Python / Bash, etc..) to streamline network management tasks and configuration.
Collaboration: Work closely with Cloud Platform / DevOps, Security to design and implement integrated solutions that meet business objectives and enhance overall cloud networking infrastructure.
Compliance: Ensure network configuration comply with industry standards, regulator requirements, and organizational policies, including data privacy and security regulations.

JOB REQUIREMENT

Must have skills
Bachelor's or Master's degree in Computer Science, Information Technology, or a related field.
Proven work experience in system network engineering with a focus on AWS Cloud technologies.
Knowledge of network transmission principles, IP networks, wireless, routing, and quality of service fundamentals
Strong understanding of TCP/IP, OSI Model, DNS, Routing protocol, VPN, Firewall, Load Balancing.
In-depth knowledge of AWS networking services, including VPC Peering, VPC Private Link, Direct Connect, VPN, Route53, Transit Gateway, NACL, Firewall Manager, DNS Firewall, Network firewall, etc..
Experience with IaC tools such as AWS CloudFormation, Terraform or Ansible.
Familiarity with scripting and automation using the AWS CLI, Python, or other relevant languages.
Excellent problem-solving skills and the ability to diagnose and resolve complex database issues.
Strong communication and collaboration skills to work effectively with cross-functional teams.
Knowledge of network security best practices, including encryption, access controls and threat management.
Experience in SDLC and Agile methodologies.
Ability to work independently and as part of a team.
Nice to have skills
Experience in the banking or finance industry is a plus.
AWS certification (s) related to Advanced Networking

WHAT'S ON OFFER

Meal and parking allowances are covered by the company.
Full benefits and salary rank during probation.
Insurances such as Vietnamese labor law and premium health care for you and your family.
SMART goals and clear career opportunities (technical seminar, conference, and career talk) - we focus on your development.
Values-driven, international working environment, and agile culture.
Overseas travel opportunities for training and work-related.
Internal Hackathons and company events (team building, coffee run, etc.).
Pro-Rate and performance bonus.
15-day annual + 3-day sick leave per year from the company.
Work-life balance 40-hr per week from Mon to Fri.

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Product

Technical Skills:

System, Network

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Salary:

Negotiation

Job ID:

J01585

Status:

Close

Related Job:

Partner Implementation Engineer (Security & Digital Trust)

Ha Noi - Viet Nam


Outsource

Đóng vai trò là người thực hiện triển khai chủ chốt, chịu trách nhiệm triển khai, cấu hình và tích hợp các giải pháp Security & Digital Trust (PKI, Chữ ký số, Mã hóa, MFA) vào hệ thống thực tế của khách hàng, đảm bảo hệ thống vận hành ổn định, bảo mật và đúng thiết kế. Triển khai hệ thống (Implementation) Chuẩn bị môi trường: kiểm tra hạ tầng (Server, Hệ điều hành, Cơ sở dữ liệu, Mạng) Cài đặt & cấu hình giải pháp: PKI / CA / Chữ ký số / MFA / Mã hóa Thiết lập chính sách bảo mật, quy trình nghiệp vụ Kết nối với thiết bị bảo mật (HSM, Quản lý Khóa) Triển khai trên nền tảng Cloud / Container (nếu có) Triển khai hệ thống trên Kubernetes / OpenShift Cấu hình tài nguyên (YAML: Pod, Dịch vụ, Ingress, Bản đồ Cấu hình, Bí mật) Thiết lập lưu trữ (Khối Lưu trữ Không gian); mạng nội bộ Áp dụng các chính sách bảo mật cho container Tích hợp hệ thống (Integration) Hỗ trợ tích hợp với: Trang web/ Ứng dụng/ Giao diện lập trình ứng dụng và IAM / SSO / AD / LDAP Hướng dẫn sử dụng API/SDK Kiểm tra luồng dữ liệu & bảo mật giao tiếp Phối hợp với nhóm khách hàng (Phát triển / Cơ sở hạ tầng / Bảo mật) Kiểm thử & nghiệm thu (QA/UAT) Thực hiện kiểm thử kỹ thuật & kịch bản vận hành Hỗ trợ UAT với khách hàng Kiểm tra tính đúng đắn của: Chữ ký số; Chứng thư và Luồng xác thực Vận hành & hỗ trợ Giám sát hệ thống, phân tích log, xử lý sự cố Hỗ trợ sau triển khai (L2/L3) Đảm bảo hệ thống hoạt động ổn định & HA Tài liệu & chuyển giao Xây dựng tài liệu triển khai (cấu trúc, cấu hình) Hướng dẫn vận hành cho khách hàng Đào tạo kỹ thuật cơ bản

Negotiation

View details

DevOps Engineer

Others - Viet Nam


Product

  • Devops
  • Kubernetes
  • Network

Managing and developing our Kubernetes platform across multiple clusters and environments including production, development, on-premises and public cloud. Designing and overseeing hybrid cloud infrastructure across on-premises and public clouds (such as GCP, AWS), including workload placement, cross-cloud networking, and unified resource management. Taking responsibility for the end-to-end CI/CD and GitOps process, including container build pipelines, image optimization, and progressive delivery using tools like ArgoCD/FluxCD. Taking charge of the observability stack to provide a comprehensive view across all clusters using tools like Grafana, Mimir, Tempo, Loki, Pyroscope, OnCall, Prometheus, and supporting agent-assisted SRE workflows. Managing and enhancing our inference platform, including vLLM serving and AIBrix for multi-model orchestration and autoscaling with a fleet of NVIDIA GPUs. Operating platform services such as Kafka, Redis, PostgreSQL, OpenSearch. Managing identity and access management with Keycloak integrated with Google Workspace, strengthening SSO, RBAC, and secrets management across the platform. Strengthening network security across private load balancers, firewalls, and VPC segmentation and designing and maintaining hub-and-spoke/multi-AZ topologies. Supporting training infrastructure with self-service VM provisioning, RunPod burst capacity, and Weights and Biases integration. Driving infrastructure reliability, cost efficiency, and capacity planning as the platform scales.

Negotiation

View details

Platform Engineer

Ho Chi Minh - Viet Nam


Product

  • Backend
  • Devops
  • Data Engineering

Create and maintain distributed infrastructure responsible for handling telemetry, sensory, and control data in cloud and edge environments Develop and operate data ingestion and streaming pipelines connecting robot fleets to the cloud in real-time, including video, joint states, audio, and LiDAR Build and manage backend services and APIs for the developer-facing platform, prioritizing reliability and excellent developer experience Oversee and improve cloud-native infrastructure utilizing Kubernetes, Docker, and infrastructure as code tooling Ensure platform reliability through monitoring, alerting, autoscaling, failover, and incident response Provide support to ML and robotics teams with data infrastructure for training pipelines, policy rollout, and hardware-in-the-loop simulation Implement secure APIs with access control, rate limiting, and usage metering to accommodate scaling efforts

Negotiation

View details