Teraswitch
Senior Network Engineer - Application Delivery & Security
- Location
- Pittsburgh, PA
- Arrangement
- Hybrid
- Employment type
- Full-time
- Level
- Senior
- Posted
- 13 August 2026 (about a month ago)
Checked about a month agoApplications go to the employer, never to RoleSprint
About this role
Engineered to outperform, Teraswitch is on a mission to provide high-performance infrastructure services for critical workloads. With 25+ datacenter locations around the world interconnected by our low latency global backbone network, we are the class leader in performance bare metal hosting and rapidly expanding into additional infrastructure services.
THE JOB
The Network Engineering team at Teraswitch designs and operates our low-latency global backbone and the network services layered on top of it.
This role leads the rollout and ongoing operation of our F5 application delivery and security platform across 25+ points of presence — global server load balancing, L4–L7 application delivery and SSL/TLS termination, WAF, and DDoS mitigation — for a multi-tenant, service-provider environment. You'll own the F5 fleet end to end: architecture and standardization, device onboarding and provisioning at scale, day-to-day operations, and automation.
This role reports to the Principal Network Architect. Title and level will be calibrated to your experience, technical depth, and demonstrated scope of ownership.
WHAT YOU'LL DO
- Drive the global deployment of our F5 platform across 25+ points of presence, establishing standardized, repeatable designs for application delivery and security
- Work with the broader Network and Software Engineering teams to build and improve customer self-service experiences for F5 delivered services
- Architect and operate global server load balancing with BIG-IP DNS (GTM) — anycast, wide IPs, and topology / geolocation-based steering with health-driven failover across POPs
- Design, deploy, and tune L4–L7 load balancing and SSL/TLS termination (LTM), including traffic profiles, certificate management, and iRules for advanced traffic handling
- Build and operate WAF (F5 Advanced WAF / ASM) and DDoS mitigation (AFM and behavioral L3–L7 defenses) to protect multi-tenant customer workloads
- Integrate F5 with the routing layer via BGP — route health injection and anycast VIP advertisement into our global backbone
- Onboard, provision, and manage the F5 fleet at scale using custom provisioning, control, and automation (iControl REST, Ansible, Python)
- Improve reliability through observability (F5 Telemetry Streaming into our metrics and logging stack), alerting, incident response, and postmortems
BASIC QUALIFICATIONS
- Deep, hands-on experience designing and operating F5 BIG-IP in production, including LTM (L4–L7 load balancing and SSL/TLS termination) and iRules
- Strong applied networking fundamentals across the L2–L7 path — TCP/IP, DNS, HTTP/HTTPS, and TLS
- Working knowledge of BGP and dynamic routing, and how they integrate with application delivery (e.g., route health injection, anycast)
- F5 automation experience (iControl REST and/or declarative config via AS3 and Declarative Onboarding)
- Configuration management (Ansible) and/or scripting experience (Python, bash)
- Comfortable working in a fast-paced, results-oriented environment
- Committed to operational best practices and security by design
- A balance of AI-assisted development and actual understanding of the technologies in use.
PREFERRED SKILLS / EXPERIENCE
You do not need all of these — depth in a few areas plus strong fundamentals is sufficient:
- F5 experience in a service or hosting provider environment specifically — multi-tenant design, automation-first operations, and scalable, secure delivery (as distinct from single-tenant enterprise)
- Global server load balancing at scale with BIG-IP DNS / GTM
- WAF policy design and tuning, including bot defense, with F5 Advanced WAF / ASM
- DDoS mitigation across L3–L7 (AFM, DDoS Hybrid Defender, behavioral DoS)
- Multi-tenant isolation using vCMP, route domains, and partitions
- Fleet management and centralized operations of F5 Systems
- Infrastructure-as-code and GitOps for network / ADC configuration (Terraform F5 provider, CI/CD pipelines for config)
- Operating and upgrading F5 platforms at scale (TMOS lifecycle; rSeries / VELOS / F5OS or BIG-IP Next a plus)
- NGINX and/or F5 Distributed Cloud (XC) experience
- F5 certification (e.g., F5 Certified Technology Specialist / CTS, or higher)
- Demonstrated ability to design and operate automation-first infrastructure at scale
ON-CALL / OPERATIONS
Participate in an on-call system supporting critical production systems.
LOCATION
Preference given to full-time onsite candidates in Pittsburgh, PA, followed by hybrid candidates.
COMPENSATION AND BENEFITS
Along with a competitive pay scale, full-time Teraswitch employees are eligible for the following benefits:
- Health, Dental, and Vision Insurance
- 401(k) with company profit sharing
- PTO and 11 Company Paid Holidays
Work location
- Pittsburgh, PA
Related jobs
Ready to make a decision?
This role is either worth your time or it isn’t.
Analyze the posting against your experience, see the gaps clearly, and build the right materials only if the opportunity makes sense.
Nothing is submitted automatically. You choose what happens next.
About this listing
Published on Ashby under the board identifier Teraswitch, which is the name the employer’s own job board carries. RoleSprint has not verified the company’s registered or trading name, so it is shown exactly as published rather than tidied up.
RoleSprint is not the employer and not a recruiter. Applications are made on the employer’s own site and never reach us; what RoleSprint does is help you decide whether a role is worth your time and prepare for it if it is.
Published 13 August 2026, last checked about a month ago. A posting stops being advertised here 90 days after the employer published it, and one the employer takes down is marked closed rather than quietly removed.