Job Title: Senior DDI & Network Automation Engineer (DNS, DHCP,
IPAM)
Location: Noida
Role Overview:
Rebuild and run the DNS, DHCP and IPAM foundation that 40,000+ NXP employees
rely on across 30+ countries and make it the backbone for our Zero Trust,
hybrid cloud and operations roadmap.
This role owns the "trinity" of networking: DNS, DHCP, and IPAM, across
on-premises data centers and AWS / Azure / GCP. You will lead the
architecture and engineering of our global EfficientIP SOLIDserver estate,
automate everything that should be automated, and serve as the deepest
technical authority for anything DDI-related. The bar is 100% uptime for
services that, if they fail, take the rest of the network down with them.
What you'll own
-
Global DDI architecture. Design and evolve a resilient,
high-performance DDI estate that spans on-prem data centers and cloud (AWS
Route 53, Azure Private DNS, GCP Cloud DNS) under a single operating
model.
-
EfficientIP SOLIDserver lifecycle. Own deployment, patching, version
upgrades, and capacity planning for the global SOLIDserver fleet, virtual
and physical.
-
Automation first. Build and maintain the Python / Ansible / Terraform
pipelines that turn IPAM requests, DNS records, and onboarding into API
calls, not tickets. Drive the team toward true self-service
Network-as-a-Service.
-
Capacity and forecasting. Use historical monitoring data to predict
IP exhaustion and appliance resource pressure (CPU / memory / IOPS) before
it becomes an incident.
-
Observability and proactive alerting. Configure threshold-based
alerts and DDI health dashboards that catch degradation before users
notice. Integrate with our AIOps tooling.
-
DNS security. Implement and tune DNSSEC, RPZ, and protections against
DDoS, cache poisoning, and DNS tunneling. Partner with the security team
on Zero Trust DNS posture.
-
IPAM governance. Define and enforce IP address policies for a
complex, multi-site, multi-cloud topology, clean allocation, no surprises.
-
Tier 3 escalation. Last stop for the hard problems. Wireshark,
protocol traces, root cause analysis and a culture of writing the
postmortem that prevents the next one.
Technical requirements
-
Protocol depth. Expert-level DNS (authoritative and recursive), DHCP
(failover and relay), IPv4 / IPv6 address space management.
-
EfficientIP SOLIDserver (preferred). Hands-on with SmartArchitecture,
NetBox integration, and API-driven automation. Strong Infoblox or BlueCat
backgrounds also welcome.
-
Automation. Python and Ansible for interacting with DDI APIs (REST /
JSON). Terraform is a plus. You are comfortable in a Git-based workflow.
-
Linux. Confident on Linux-hardened appliances.
-
Enterprise networking. BGP, Anycast DNS, F5 load balancing, and how
they interact with DDI services.
Preferred qualifications
-
8+ years in network engineering, with 5+ years focused on DDI.
-
EfficientIP Certified Data Administrator (ECDA) or Certified Expert (ECE).
-
Hybrid DNS / IPAM experience across AWS Route 53, Azure Private DNS, or
GCP Cloud DNS.
-
Exposure to AI-assisted operations, modern observability stacks (Splunk,
ServiceNow ITOM, similar), or SD-WAN / SASE / Zero Trust environments.
How you operate
-
Precision. One wrong record can take down the enterprise. You know
this and act accordingly.
-
Five-year thinking. You plan capacity and architecture for where the
business will be, not where it is.
-
Cross-team posture. You partner well with DevOps, Security, Cloud,
and SRE. DDI lives at the intersection, not in a silo.
-
Automation bias. If you have done it twice manually, you are already
thinking about how to script it.