Skip to content

Principal Network Architect

265k – 310kSan Francisco, CASunnyvale, CASeattle, WAOnsite12+ YOE
Summary

Principal-level individual contributor defining and owning network architecture strategy across Crusoe's AI infrastructure stack, from data center fabrics and RDMA to SDN, Kubernetes networking, and automation. Requires 12+ years experience with expert-level routing, SDN, and large-scale data center design.

About the role

What You'll Be Working On

  • Hyperscale Data Center Architecture: Own end-to-end network architecture for Crusoe's AI data centers, including spine-leaf fabrics, out-of-band management, RDMA (RoCEv2/InfiniBand), and inter-campus WAN design.
  • SDN Control Plane Design: Design and evolve SDN control plane architectures for programmable underlay and overlay networking across multi-vendor hardware environments.
  • Kubernetes Networking: Define CNI selection, network policies, multi-cluster service mesh, and BGP peering architecture across Crusoe's Managed Kubernetes platform.
  • Intent-Based Networking: Architect IBN frameworks that translate high-level business and operational goals into validated, auto-generated device configurations.
  • Declarative Networking and GitOps: Establish infrastructure-as-code practices, GitOps-driven network provisioning, and continuous validation pipelines for network state.
  • Network Source of Truth: Build and own Crusoe's SoT strategy, defining authoritative data models (IPAM, DCIM, CMDB) and ensuring all devices, links, and policies are version-controlled and consistently sourced.
  • Automation Workflows: Design day-0/1/2 automation using tools like Ansible, Nornir, or Terraform, driven by the network source of truth.
  • Observability and Telemetry: Define streaming telemetry architecture (gNMI/gRPC), intent verification, and closed-loop remediation pipelines.
  • Standards and Cross-Functional Leadership: Establish engineering standards and reference architectures, lead architecture reviews, author design documents, and present proposals to senior leadership.
  • Team Mentorship: Mentor senior and staff network engineers, growing the technical depth and breadth of the broader network engineering team.

What You'll Bring to the Team

  • 12+ years of progressive network engineering and architecture experience, with at least 5 years in leadership role.
  • Large-scale data center expertise with a proven track record designing networks at 500+ switches across multi-campus environments.
  • Expert-level routing knowledge including deep proficiency in BGP, EVPN/VXLAN, OSPF, ECMP, BFD, and modern data center routing design.
  • SDN and programmability experience with production-level work using an SDN controller (OpenDaylight, ONOS, Apstra, Contrail, or equivalent) and network programmability via NETCONF/YANG, RESTCONF, or gNMI.
  • Kubernetes networking proficiency with hands-on experience in CNI selection (Calico, Cilium, Flannel, Multus), network policies, and BGP integration.
  • RDMA and HPC networking understanding including familiarity with RoCEv2, InfiniBand, PFC, ECN, and lossless fabric design for AI/ML workloads.
  • Software engineering fundamentals including strong command of Git, CI/CD, code review, and infrastructure-as-code tooling (Terraform, Ansible, Nornir).
  • Communication and influence with exceptional written and verbal skills and the ability to write crisp design documents and drive alignment across engineering and product leadership.

Bonus Points

  • Experience at a hyperscaler, AI cloud provider, HPC center, or large-scale co-location operator.
  • Hands-on experience with SONiC OS, P4 programmable data planes, SRv6, or silicon-level knowledge of Broadcom Tomahawk/Trident.
  • Open source contributions to networking projects such as SONiC, NetBox, FRR, or Cilium.
  • Familiarity with formal network verification tools like Batfish or Minesweeper, or eBPF-based networking and observability.
  • Relevant certifications including CCIE (DC/SP), JNCIE, or vendor-specific SDN/cloud certifications.

Benefits

  • Competitive compensation and equity packages
  • Restricted Stock Units
  • Paid time off, paid holidays & leave of absence programs
  • Comprehensive health, dental & vision insurance
  • Employer contributions to HSA account
  • Paid parental leave
  • Paid life insurance, short-term and long-term disability
  • Professional development & tuition reimbursement
  • Mental health & wellness support
  • Commuter benefits (parking & transit)
  • Cell phone stipend
  • 401(k) Retirement plan with company match up to 4% of salary
  • Volunteer time off
  • Global travel insurance & emergency assistance
  • Daily meals allowance
  • Additional perks & programs specific to location
Skills
BGPEVPN/VXLANOSPFECMPBFDSDNNETCONF/YANGgNMIKubernetesCNICalicoCiliumTerraformAnsibleNornir
Similar roles at this salary range
All Security Engineering jobs →
Runway

Member of Technical Staff, Trust & Safety Engineer

Trust & Safety Engineer building red teaming systems, content moderation infrastructure, and safety tooling for generative AI models. Requires 3+ years software engineering experience with Python/TypeScript and comfort across the stack from model evals to AWS/GCP infrastructure.

240k – 290kUnited StatesSecurity EngineeringRemoteS3AWS
Notion

Security Engineer, Corporate Security

Hands-on Corporate Security Engineer to own and improve technical controls across identity, endpoints, SaaS, and workforce infrastructure. Build scalable automation and partner with IT, Infrastructure, GRC, and Detection & Response.

220k – 260kSan Francisco, CA +1Security EngineeringHybridMFASSO
OpenAI

Software Engineer, Scaled Abuse

Build and operate backend and data systems for real-time fraud/abuse detection, investigation, and enforcement at OpenAI. Requires 5+ years backend engineering and 2+ years fraud/abuse experience.

230k – 385kSan Francisco, CASecurity EngineeringOn-siteAzureKafka
Huntress

Director, Detection Engineering & Threat Hunting

Strategic leader to own Detection Engineering & Threat Hunting function, managing managers and aligning defensive strategy with company goals. Requires 5+ years cybersecurity experience with manager-of-managers background.

220k – 240kUnited StatesSecurity EngineeringRemoteROI AnalysisCybersecurity
Huntress

Vice President, Threat Detection & Response

Lead the Threat Detection & Response organization including SOC, detection engineering, and threat hunting teams. Drive strategy for an agentic SOC model, build leadership bench, and own security outcomes tied to business metrics.

250k – 320kUnited StatesSecurity EngineeringRemoteThreat HuntingSOC Management