Azure/AWS Site-to-Site VPN Setup
Budget: $30 – $250 USD
We're seeking a hands-on network/cloud security engineer to design and deploy a production-grade site-to-site VPN solution that bridges our Azure or AWS environments with a partner’s network. This project is greenfield: you will architect and build everything required for secure, resilient, and maintainable connectivity—with special attention to cost optimization.
A VM hosting a Payment API must be included in your solution, and you’ll take responsibility for its secure, networked deployment.
Collaboration is critical: You'll join calls (Zoom/Meet/Teams) with our team and our partner’s network engineers to coordinate, validate, and troubleshoot in real time.
Your scope includes deploying a hardened VM for a Payment API, reachable across the VPN
Objectives and Deliverables:
1. Redundant, production-ready tunnels
2. High-level and detailed architecture diagrams (with tunnel, route, and fail-over logic)
3. Configure all required cloud and network resources with optimal costs.
4. VPN gateways, route tables, NSGs/firewalls, and a secure Payment API VM instance
5.Intelligent choices for instance sizes/types and other resources to control spend/budget
6. Implement robust IPsec/IKEv2 parameters and negotiate security with partner engineering team
7. Establish routing (preferring BGP with failover, static if compelling reason given)
8. Test/validate—demonstrate successful ping, HTTPS/API flow, and simulated failover with automated recovery
9. Document all steps in a run-book (Markdown or Word)—including rebuilds, key rotation, and troubleshooting for easy handoff
10. Lead a knowledge-transfer call with our ops team + join at least one call with our partner’s engineers for live troubleshooting and handover
Acceptance Criteria:
End-to-end communication across all stated subnets (ping + HTTPS to Payment API VM)
Redundant tunnels auto-recover after simulated gateway failover
Documentation and KT enable our team to redeploy or manage independently
Our ideal candidate:
Proven experience with Azure Route-based VPN Gateways and/or AWS Virtual Private Gateways
Hands-on setups for payment, banking, or enterprise clients
Cost-conscious and security-obsessed
Willing and able to join real-time calls with us and our partner
Strong documentation skills and professional English communication
Timeline: Expected completion and handoff within 24 hours –2 days
If you have recent hands-on experience with Azure Route-based VPN Gateways and AWS Virtual Private Gateways—and can prove it through successful, documented builds—let’s get this tunnel live.
A VM hosting a Payment API must be included in your solution, and you’ll take responsibility for its secure, networked deployment.
Collaboration is critical: You'll join calls (Zoom/Meet/Teams) with our team and our partner’s network engineers to coordinate, validate, and troubleshoot in real time.
Your scope includes deploying a hardened VM for a Payment API, reachable across the VPN
Objectives and Deliverables:
1. Redundant, production-ready tunnels
2. High-level and detailed architecture diagrams (with tunnel, route, and fail-over logic)
3. Configure all required cloud and network resources with optimal costs.
4. VPN gateways, route tables, NSGs/firewalls, and a secure Payment API VM instance
5.Intelligent choices for instance sizes/types and other resources to control spend/budget
6. Implement robust IPsec/IKEv2 parameters and negotiate security with partner engineering team
7. Establish routing (preferring BGP with failover, static if compelling reason given)
8. Test/validate—demonstrate successful ping, HTTPS/API flow, and simulated failover with automated recovery
9. Document all steps in a run-book (Markdown or Word)—including rebuilds, key rotation, and troubleshooting for easy handoff
10. Lead a knowledge-transfer call with our ops team + join at least one call with our partner’s engineers for live troubleshooting and handover
Acceptance Criteria:
End-to-end communication across all stated subnets (ping + HTTPS to Payment API VM)
Redundant tunnels auto-recover after simulated gateway failover
Documentation and KT enable our team to redeploy or manage independently
Our ideal candidate:
Proven experience with Azure Route-based VPN Gateways and/or AWS Virtual Private Gateways
Hands-on setups for payment, banking, or enterprise clients
Cost-conscious and security-obsessed
Willing and able to join real-time calls with us and our partner
Strong documentation skills and professional English communication
Timeline: Expected completion and handoff within 24 hours –2 days
If you have recent hands-on experience with Azure Route-based VPN Gateways and AWS Virtual Private Gateways—and can prove it through successful, documented builds—let’s get this tunnel live.