Workday

Sr. Network Engineer

IND.Pune Full Time

Your work days are brighter here.

We’re obsessed with making hard work pay off, for our people, our customers, and the world around us. As a Fortune 500 company and a leading AI platform for managing people, money, and agents, we’re shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join, you’ll feel it. Not just in the products we build, but in how we show up for each other. Our culture is rooted in integrity, empathy, and shared enthusiasm. We’re in this together, tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether you're building smarter solutions, supporting customers, or creating a space where everyone belongs, you’ll do meaningful work with Workmates who’ve got your back. In return, we’ll give you the trust to take risks, the tools to grow, the skills to develop and the support of a company invested in you for the long haul. So, if you want to inspire a brighter work day for everyone, including yourself, you’ve found a match in Workday, and we hope to be a match for you too.

About the Team

Do you want to wake up each morning and look forward to going to work? You've found the right career opportunity! Workday's BT Cloud Engineering team is looking for a highly motivated technical lead to join our fun, innovative, and hardworking team. Working with an outstanding group of highly qualified IT professionals, you will be part of a special team that is building the cloud first approach for workmates. We are seeking a skilled and motivated hands on lead who can help BT continue to deliver secure services at scale.. This position is located in Pune, India

About the Role

Our organization is seeking a highly motivated, experienced, and communicative Senior Network Engineer to join our dynamic IT team.

  • The ideal candidate will possess deep expertise in designing, implementing, managing, and troubleshooting complex network infrastructures.

  • This role requires a strong background in enterprise-grade routing and switching (including extensive experience with Cisco IOS/IOS-XE/NX-OS operating systems), the comprehensive Juniper Mist AI-driven wireless platform, Palo Alto Networks firewalls, SD-WAN, advanced AWS cloud networking (including Gateway Load Balancer, Transit Gateway, VPC Peering, and sophisticated traffic management techniques), and in-depth Zscaler Secure Access Service Edge (SASE) solutions (including Zscaler Internet Access - ZIA and Zscaler Private Access - ZPA).

  • You will play a critical role in ensuring the stability, security, and scalability of our enterprise network, including the physical infrastructure of our network distribution frames, and effectively communicating network strategies and issues across the organization.

  • This role requires participation in an on-call rotation to provide 24x7 support.

About You

Basic Qualifications:

  • 8+ years' total experience

  • Design, configure, implement, and maintain enterprise-level network infrastructure, including routers, switches (campus and data center), firewalls, wireless access points, and related services.

  • Design, implement, and manage complex BGP routing solutions, including iBGP/eBGP peering, route reflectors, policy-based routing, traffic engineering using communities and other attributes, and troubleshooting complex BGP convergence and stability issues.

  • Lead the design, build-out, and ongoing management of Main Distribution Frames (MDFs) and Intermediate Distribution Frames (IDFs), ensuring adherence to structured cabling standards, optimal cable management, power distribution, cooling, and physical security.

  • Design, deploy, and manage the Juniper Mist AI-driven platform (including Mist Access Points, Mist Edge, and the Mist Cloud dashboard for AI-driven operations, Marvis Virtual Network Assistant, Wi-Fi Assurance, Wired Assurance, and WAN Assurance).

  • Deploy, manage, and optimize Palo Alto Networks' SD-WAN, firewalls, including policy creation, threat prevention, VPN configuration, and performance tuning.

  • Architect, build, and manage secure and scalable network solutions within AWS cloud environments, including:

  • Designing and implementing AWS Transit Gateway architectures for large-scale network connectivity (VPC attachments, Direct Connect Gateway, route propagation, network segmentation, and policy enforcement).

  • Setting up and managing AWS Gateway Load Balancer (GWLB) for deploying and scaling third-party virtual appliances.

  • Establishing and managing VPC Peering connections (intra-region and inter-region) ensuring secure and optimized communication paths.

  • Implementing comprehensive AWS traffic management solutions using services like Route 53 (DNS, health checks, routing policies), Elastic Load Balancing (ALB/NLB), and AWS Direct Connect for hybrid connectivity.

  • Configuring and managing Security Groups, Network ACLs, and other AWS native security features.

  • Implement, configure, and manage Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) solutions, including:

  • Setting up and managing identity provider (IdP) integrations (e.g., SAML, SCIM) for robust user authentication and the creation/management of identity-based security policies and access groups.

  • Deploying, managing, and troubleshooting Zscaler Private Service Edges (PSEs) for optimized and secure access to internal applications via ZPA.

  • Developing and contributing to Business Continuity Plans (BCP) for Zscaler services, ensuring resilient and continuous secure access for users.

  • Configuring traffic forwarding, security policies, and application segments.

  • Lead network infrastructure projects from conception to completion, including requirements gathering, design, planning, execution, and post-implementation support, ensuring clear communication with all stakeholders throughout the project lifecycle.

  • Monitor network performance and integrity using tools like Marvis for proactive insights, identify and resolve complex network issues (leveraging deep troubleshooting skills for routing, switching, firewalling, cloud networking, and SASE solutions), and implement proactive measures to prevent outages and performance degradation.

  • Develop and maintain comprehensive network documentation, including diagrams, configurations, IDF/MDF layouts, Zscaler policy and architecture details, operational procedures, and present technical information clearly to diverse audiences.

  • Effectively collaborate and communicate with cross-functional teams (Security, Systems, Applications, DevOps, Facilities) to ensure network infrastructure supports business requirements and strategic initiatives.

  • Perform network capacity planning and recommend upgrades and enhancements to meet evolving business needs, articulating justifications and benefits clearly.

  • Participate in an on-call rotation for after-hours support and respond to critical network incidents, providing 24x7 operational support as needed, communicating status and resolution effectively.

Other Qualifications:

  • Stay current with emerging network technologies, security threats, and industry best practices.

  • Mentor junior network engineers and provide technical guidance and support, fostering their communication and technical skills.

  • Relevant industry certifications such as CCNP (Enterprise/Data Center/Security), CCIE (Enterprise Infrastructure/Security), JNCIP-ENT, Juniper Networks Certified Mist AI Specialist (JNCIS-MistAI) or Professional (JNCIP-MistAI), PCNSE, AWS Certified Advanced Networking – Specialty, Zscaler Certified Cloud Professional (ZCCP-PA, ZCCP-IA) or Zscaler Certified Cloud Administrator (ZCCA-PA, ZCCA-IA).

  • Experience with scripting and automation (e.g., Python, Ansible) for network tasks, including AWS CloudFormation or Terraform for infrastructure as code.

  • Knowledge of SD-WAN technologies.

  • Familiarity with other cloud platforms (Azure, GCP).

  • Experience with network segmentation and micro-segmentation strategies.



Our Approach to Flexible Work
 

With Flex Work, we’re combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. We know that flexibility can take shape in many ways, so rather than a number of required days in-office each week, we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers, prospects, and partners (depending on role). This means you'll have the freedom to create a flexible schedule that caters to your business, team, and personal needs, while being intentional to make the most of time spent together. Those in our remote "home office" roles also have the opportunity to come together in our offices for important moments that matter.

Are you being referred to one of our roles? If so, ask your connection at Workday about our Employee Referral process!

At Workday, we value our candidates’ privacy and data security.  Workday will never ask candidates to apply to jobs through websites that are not Workday Careers. 

  

Please be aware of sites that may ask for you to input your data in connection with a job posting that appears to be from Workday but is not.

  

In addition, Workday will never ask candidates to pay a recruiting fee, or pay for consulting or coaching services, in order to apply for a job at Workday.