Apply now »

Architect II

Gurugram Gurgaon HR, IN

Requisition Number: 106165 

Networking Architect - Cisco Software-Defined Access (SDA) Specialization

 

 

Location: This is a hybrid opportunity in Delhi NCR, Bangalore, Hyderabad, Gurugram area.

 

Insight at a Glance

  • 14,000+ engaged teammates globally with operations in 25 countries across the globe.
  • Received 35+ industry and partner awards in the past year
  • $9.2 billion in revenue
  • #20 on Fortune’s World's Best Workplaces™ list
  • #14 on Forbes World's Best Employers in IT – 2023
  • #23 on Forbes Best Employers for Women in IT- 2023
  • $1.4M+ total charitable contributions in 2023 by Insight globally

 

Now is the time to bring your expertise to Insight. We are not just a tech company; we are a people-first company. We believe that by unlocking the power of people and technology, we can accelerate transformation and achieve extraordinary results. As a Fortune 500 Solutions Integrator with deep expertise in cloud, data, AI, cybersecurity, and intelligent edge, we guide organisations through complex digital decisions.

 

About the role

 

We are seeking an accomplished Networking Architect with extensive expertise in Cisco Software-Defined Access (SDA) to design, architect, and lead the implementation of modern, intent-based access network solutions across enterprise environments. This strategic role is critical for transforming our campus and branch network infrastructure, enabling zero-trust security, network segmentation, and operational simplicity. The successful candidate will develop enterprise-wide SDA strategies, architect complex multi-site deployments, drive technical innovation, mentor senior engineers, and serve as the principal subject matter expert in SDA technologies and architectural best practices

 

Key Responsibilities:

  • Strategic Architecture & Design 
    • Develop comprehensive enterprise SDA architecture strategies aligned with business objectives, security requirements, and organizational growth 
    • Design end-to-end Software-Defined Access solutions spanning campus, branch, and remote access environments 
    • Architect multi-site SDA fabrics incorporating fabric edge, fabric core, and border nodes 
    • Design network segmentation and microsegmentation strategies using SDA's policy-based approach 
    • Create detailed architectural documentation, design specifications, and reference architectures 
    • Conduct feasibility studies and provide recommendations for network modernization initiatives 
    • Develop network migration strategies and roadmaps for legacy infrastructure to SDA 
    • Design solutions supporting diverse environments (wired, wireless, branch, IoT, guest) 
  • SDA Implementation Leadership 
    • Lead the design and implementation of enterprise-scale SDA deployments across multiple sites 
    • Architect Catalyst Center integration with SDA fabric management and provisioning 
    • Design fabric topology including fabric edge, fabric core, border nodes, and control plane nodes 
    • Architect IP address management (IPAM) and DHCP strategies for SDA environments 
    • Design and implement SDA policy frameworks and scalable group tags (SGTs) 
    • Lead integration of wireless networks (Catalyst 9000 series) with SDA fabric 
    • Architect branch connectivity using SD-WAN integration with SDA 
    • Design and implement SDA for IoT, guest, and BYOD access scenarios 
  • Zero-Trust Security Architecture 
    • Architect comprehensive zero-trust security frameworks leveraging SDA capabilities 
    • Design identity-based and device-based access policies using Cisco ISE integration 
    • Architect microsegmentation strategies using Scalable Group Tags (SGTs) and Security Group ACLs (SGACLs) 
    • Design threat-centric access control policies based on user, device, and application context 
    • Architect integration with Cisco Secure Network Analytics (Stealthwatch) for threat detection 
    • Design encryption and authentication strategies for SDA environments 
    • Develop compliance frameworks aligned with industry standards (PCI-DSS, HIPAA, SOC 2, etc.) 
    • Design audit and logging architectures for compliance and forensic analysis 
  • Network Segmentation & Policy Architecture 
    • Design scalable network segmentation using Scalable Group Tags (SGTs) 
    • Architect Security Group ACLs (SGACLs) for granular access control 
    • Design policy-based access control frameworks translating business requirements into network policies 
    • Architect VN (Virtual Network) designs for multi-tenancy and organizational separation 
    • Design and implement advanced policy features including contract-based policies 
    • Architect policy analytics and visibility for compliance and security monitoring 
    • Design policy governance and change management processes
  • Catalyst Center & Automation Architecture 
    • Architect Catalyst Center integration with SDA fabric management and provisioning 
    • Design network automation and orchestration strategies leveraging Catalyst Center APIs 
    • Develop Infrastructure-as-Code (IaC) strategies for SDA configuration management 
    • Design REST API integration strategies with third-party applications and orchestration platforms 
    • Architect monitoring, assurance, and analytics policies using Catalyst Center capabilities 
    • Design and implement advanced automation workflows for SDA operations 
    • Architect integration with ITSM and IPAM platforms 
  • Wireless & Access Architecture 
    • Design enterprise wireless architectures integrated with SDA fabric 
    • Architect Catalyst 9000 series access points and controllers for SDA environments 
    • Design wireless segmentation and policy enforcement strategies 
    • Architect guest access, BYOD, and IoT connectivity within SDA framework 
    • Design roaming and mobility strategies for wireless devices 
    • Architect wireless security policies and encryption strategies 
    • Design wireless assurance and performance monitoring 
  • Branch & Remote Access Architecture 
    • Design SD-WAN integration with SDA for branch connectivity 
    • Architect branch fabric edge nodes and connectivity strategies 
    • Design secure remote access solutions (VPN, zero-trust remote access) 
    • Architect branch segmentation and policy enforcement 
    • Design failover and redundancy strategies for branch connectivity 
    • Architect branch assurance and performance monitoring 
    • Design solutions for remote workers and distributed workforces 
  • Data Center & Cloud Integration 
    • Design SDA solutions for data center and cloud integration scenarios 
    • Architect connectivity between SDA fabric and data center networks (ACI, traditional) 
    • Design hybrid cloud networking strategies leveraging SDA 
    • Architect cloud-based identity and access management integration 
    • Design solutions supporting containerized environments and Kubernetes 
    • Architect multi-cloud connectivity and policy enforcement 
  • Leadership & Strategic Influence 
    • Mentor senior network engineers and architects on SDA best practices and advanced concepts 
    • Lead architectural review boards and design governance processes 
    • Contribute to industry thought leadership through presentations, whitepapers, and technical publications 
    • Evaluate emerging technologies and recommend adoption strategies 
    • Establish network architecture standards and best practices across the organization 
    • Participate in vendor relationships and influence product roadmap discussions 
    • Drive continuous improvement and innovation in network architecture practices 
    • Build and maintain relationships with Cisco technical teams and partners 
  • Stakeholder Management & Communication 
    • Present architectural recommendations and technical findings to executive leadership 
    • Translate business requirements and security mandates into technical architecture 
    • Collaborate with security, infrastructure, application, and cloud teams 
    • Manage architectural reviews and provide technical guidance on design decisions 
    • Communicate complex technical concepts to diverse audiences 
    • Participate in strategic planning and IT governance processes 
    • Conduct training and knowledge transfer sessions on SDA technologies 
  • Be AmbITious: This opportunity is not just about what you do today but also about where you can go tomorrow. When you bring your hunger, heart, and harmony to Insight, your potential will be met with continuous opportunities to upskill, earn promotions, and elevate your career.

 

 

What we’re looking for

  • Education: Bachelor's degree in Computer Science, Information Technology, Engineering, or related field (or equivalent professional experience)
  • Experience:
    • Minimum 12+ years of enterprise network architecture and engineering experience
    • Minimum 7+ years of hands-on Cisco SDA design, implementation, and administration
    • Minimum 5+ years of experience with Cisco Catalyst Center (DNA Center) and intent-based networking
    • Demonstrated experience architecting and deploying large-scale, multi-site SDA fabrics
    • Proven track record of leading complex network transformation and modernization projects
    • Experience designing enterprise campus and branch network architectures
    • Demonstrated expertise in network security architecture and microsegmentation
    • Experience with zero-trust security architecture design
  • Certifications:
    • Cisco Certified Internetwork Expert (CCIE) Routing & Switching or Enterprise Infrastructure
    • Cisco Certified Specialist - Enterprise Network Core (CCNP Enterprise) or equivalent
    • Cisco Certified Specialist - SDA (CCNA Security or CCNP Security with SDA focus)
  • Technical Skills:
    • Expert-level knowledge of Cisco SDA architecture, components, and deployment models
    • Deep understanding of Software-Defined Access principles and implementation
    • Advanced knowledge of Catalyst Center integration with SDA fabric management
    • Proficiency in designing fabric topology (fabric edge, fabric core, border nodes)
    • Strong expertise in Scalable Group Tags (SGTs) and Security Group ACLs (SGACLs)
    • Advanced knowledge of network segmentation and microsegmentation strategies
    • Proficiency in Cisco ISE integration with SDA for identity and access management
    • Strong understanding of VXLAN overlay networking and encapsulation
    • Knowledge of SD-WAN integration with SDA for branch connectivity
    • Proficiency in SDA REST APIs and programmatic configuration
    • Experience with Infrastructure-as-Code tools (Terraform, Ansible) for SDA
    • Strong understanding of network protocols (BGP, OSPF, EIGRP, IS-IS)
    • Advanced knowledge of wireless networking (802.11, WPA3, EAP protocols)
    • Experience with Catalyst 9000 series access points and controllers
    • Knowledge of DHCP, DNS, and IP address management in SDA environments
    • Experience with network monitoring, analytics, and troubleshooting tools
    • Proficiency in scripting/programming languages (Python, JavaScript, Bash)
    • Understanding of cloud networking and hybrid cloud architectures

 

What you can expect

We’re legendary for taking care of you, your family and to help you engage with your local community. We want you to enjoy a full, meaningful life and own your career at Insight. Some of our benefits include:

  • Freedom to work from another location—even an international destination—for up to 30 consecutive calendar days per year.
  • Medical Insurance
  • Health Benefits
  • Professional Development: Learning Platform and Certificate Reimbursement
  • Shift Allowance

 

But what really sets us apart are our core values of Hunger, Heart, and Harmony, which guide everything we do, from building relationships with teammates, partners, and clients to making a positive impact in our communities.

 

Join us today, your ambITious journey starts here.

 

When you apply, please tell us the pronouns you use and any reasonable adjustments you may need during the interview process.

At Insight, we celebrate diversity of skills and experience so even if you don’t feel like your skills are a perfect match - we still want to hear from you!

Today's talent leads tomorrow's success. Learn more about Insight: 
https://www.linkedin.com/company/insight/

 

Insight does not accept unsolicited resumes from recruiters or employment agencies. Unsolicited resumes will be treated as direct applications from the candidate, and recruiters or agencies who submit candidates for this position without a prior, written vendor agreement will not be eligible for any form of compensation, even if the candidate is hired.

Insight is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, sexual orientation or any other characteristic protected by law.

 

Insight India Location:Level 16, Tower B, Building No 14, Dlf Cyber City In It/Ites Sez, Sector 24 &25 A Gurugram Gurgaon Hr 122002 India


Job Segment: Cloud, Network, Developer, Cisco, Telecom, Technology

Apply now »