AWS Site-to-Site VPN Network Engineer

Job ID: 39097760

Budget: $8 – $15 USD

Job Description: AWS Site-to-Site VPN Engineer

Role Summary:
We are seeking a skilled Network Engineer to establish a Site-to-Site VPN connection using IPSec between our AWS environment and one of our key clients. The candidate will be responsible for the end-to-end setup, validation, and troubleshooting of the connection while ensuring seamless communication with the client’s technical team. This role requires both technical expertise and strong communication skills, as the candidate will represent our team in client-facing discussions.

Key Responsibilities:
• Design and configure AWS Site-to-Site VPN using IPSec with the client’s network.
• Set up Customer Gateway (CGW) and Virtual Private Gateway (VGW) or Transit Gateway (TGW) in AWS.
• Define and manage routing, security groups, and firewall rules for secure connectivity.
• Conduct end-to-end testing and validation of the VPN connection with the client.
• Troubleshoot and resolve any connectivity or security issues in coordination with both internal and client teams.
• Document network configurations, best practices, and troubleshooting steps.
• Represent the team in client meetings, ensuring a professional and clear communication of technical matters.
• Ensure compliance with AWS security best practices and company policies.

Required Skills & Experience:
• Proven experience in setting up AWS Site-to-Site VPN with IPSec.
• Strong understanding of IPSec, IKEv1/IKEv2, NAT, and firewall configurations.
• Hands-on experience with AWS networking services (VPC, VPN, Transit Gateway, Route Tables, Security Groups).
• Experience with firewall and VPN appliances (Cisco ASA, Fortinet, Palo Alto, pfSense, etc.).
• Strong communication and presentation skills, with the ability to lead technical discussions with clients.
• Ability to document network setups and provide clear reports to stakeholders.