SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Trumid is a leading fintech platform revolutionizing fixed income trading. Founded in 2014, the company operates one of the top three corporate bond e-trading platforms in the U.S., serving 890+ buy-and sell-side institutions with over 1,300 monthly traders.
This Senior Network Engineer role owns end-to-end request delivery and connectivity reliability—a top technology priority at Trumid. The scope spans the entire path: colocation routers and switches, client circuits, VPNs and cross-connects, cross-cloud links, DNS, load balancers, and the Envoy service mesh. You'll join the networking side of the SRE team alongside experienced engineers.
Key initiatives include: a live migration of the trading edge onto HAProxy Kubernetes Ingress Controller (production cutover, one elastic IP at a time, each step validated with synthetic trading traffic); network device fleet migration to full config-as-code with version control, CI validation, centralized AAA, and proper IPAM; and engineering away client-connectivity request load through standardized intake, per-client dashboards, and eventual self-service workflows.
Responsibilities:
- Own reliability across the full request delivery path spanning data centers, AWS, and GCP
- Drive network automation using config-as-code (Ansible, Terraform, GitOps) with CI validation
- Identify and eliminate single points of failure on critical paths; design and run failover drills
- Engineer client connectivity (circuits, VPNs, cross-connects, FIX paths) and build workflows/dashboards
- Build network observability: streaming device telemetry, syslog integration, full-path alerting
- Harden the fleet: firmware currency, centralized AAA, control-plane protection, firewall policy as code
- Participate in a sane, deliberately interrupt-contained on-call rotation
Required qualifications:
- 7+ years running production networks with physical gear (routing, switching, BGP, firewalls, circuits, cross-connects)
- Real cloud networking depth in AWS or GCP (VPC design, transit gateways, peering, NLBs, DNS, hybrid connectivity)
- Strong automation habits; configs in Git with peer review
- Working fluency at L4–L7 load balancing (HAProxy, NGINX, Envoy), TLS termination, health checking, and Kubernetes ingress operation
- Reliability instincts and preference for rehearsed failovers over incident discovery
- Clear writing and ability to work directly with clients' network teams
Nice-to-have: Envoy/service mesh in production, Kubernetes ingress at scale, Cisco IOS-XE fleets, Palo Alto/Panorama, network source-of-truth tooling (Infrahub, NetBox, Nautobot), Prometheus/Grafana/ELK observability stacks.