Job Description
The DRR Cyber Vault redesign is defined by Charter as a principal‑architect‑level problem, not a staff‑augmentation or PM‑led exercise. Exhibit A requires tightly coupled decisions across zoning, backbone connectivity, air‑gap preservation, data diode usage, and recovery validation. This role provides single‑threaded architectural ownership across those domains. This role provides a single accountable architect responsible for delivering a HLD and LLD that satisfy all Exhibit A requirements and are approvable by Charter’s designated signatories, reducing re-work and approval delays.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
15+ years in enterprise network architecture, with at least 8 years in security-focused network design.
Demonstrated experience designing air-gapped or isolated network environments, including hardware data diode integration (Owl Cyber Defense, EverFox, or equivalent vendors).
Deep working knowledge of NIST SP 800-53 Rev. 5 (specifically SC-7, SC-13, CP-6, CP-9, AC-2, AU-2 control families), SP 800-184 (isolated recovery environments), and SP 800-209 (storage segmentation).
Hands-on design experience with Palo Alto Networks PA-Series firewalls including Virtual Systems (VSYS) for both physical separation and software-defined segmentation models.
Hands-on design experience with Cisco Nexus switching architectures, including independent switching domains and consolidated MLAG platforms.
Working knowledge of enterprise backup platforms — specifically Cohesity DataProtect (Charter's consolidating standard); Veritas and Rubrik knowledge useful for current-state assessment.
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.