Staff Platform Network Engineer
FanDuel•3h ago
United StatesHybridFull-timeStaff Level7+ yrs exp
Top focus
Network EngineerPlatform EngineerStaff Engineer
- THE POSITION
- Our roster has an opening with your name on it
- As a Staff Platform Network Engineer, you'll design, build
- mature the service connectivity platform that underpins how FanDuel services communicate with each other and the outside world. Your focus will be delivering secure, scalable
- reliable connectivity across our hybrid cloud environment through service mesh, ingress, gateway APIs, TLS
- edge-routing capabilities that enable teams to move quickly and safely.
- This role lands at a pivotal moment in our platform evolution. We're rolling out Kong Gateway and Kong Mesh (with Impart) across our EKS estate and evolving toward a standardized, self-service connectivity platform. You'll help shape the long-term architecture, operating model
- migration strategy away from legacy ingress patterns
- ensuring the platform remains reliable, secure
- sustainable at scale.
- This is a hands-on builder-operator role. You'll partner closely with engineering and product teams to deliver scalable connectivity capabilities, serve as a subject matter expert in service mesh and traffic management
- help teams adopt reliable patterns for service-to-service communication. By connecting platform behavior to real user impact, you'll drive improvements in reliability, performance, security
- operational maturity across the organization.
- In addition to the specific responsibilities outlined above, employees may be required to perform other such duties as assigned by the Company. This ensures operational flexibility and allows the Company to meet evolving business needs.
- THE GAME PLAN
- Everyone on our team has a part to play
- Defining and driving the service connectivity strategy and roadmap across multiple teams, aligning with business priorities, regulatory requirements, and engineering goals.
- Maturing our Kong Gateway and Kong Mesh rollout into a production-grade platform across our EKS estate, including mTLS enforcement, traffic policy standardization, self-service onboarding
- migration from legacy ingress patterns.
- Designing and evolving scalable connectivity capabilities spanning service mesh, ingress, gateways, TLS and certificate automation, DNS, and L7 edge routing across hybrid AWS environments, including AWS Outposts.
- Establishing best practices for service-to-service communication, zero-trust networking, traffic management, and certificate lifecycle management across the organization.
- Building infrastructure-as-code, tooling, automation, and platform guardrails that improve reliability, reduce operational toil, and enable safe self-service adoption.
- Leading cross-team initiatives to improve connectivity reliability, reduce systemic operational risk, and drive platform-level resilience improvements.
- Leveraging automation and AI-assisted workflows to accelerate root cause analysis and improve operational efficiency at scale.
- Leading complex production incident response across Kubernetes networking, ingress, DNS, load balancing, service mesh, and cloud edge infrastructure.
- Stewarding connectivity platforms operating under strict regulatory and compliance requirements, ensuring secure operation, auditability, and disciplined change management.
- Partnering with engineering and product leadership to influence platform direction, roadmap priorities, and long-term connectivity strategy.
- Evaluating build-versus-buy decisions and vendor capabilities against platform requirements and operational sustainability goals.
- Mentoring engineers and raising the connectivity and platform networking maturity across the organization.
- A Sneak Peek Into Our Tech Stack
- AWS (VPC, Transit Gateway, Cloud WAN, ALB/NLB, Route 53, CloudFront, Outposts), Kubernetes (EKS, 100+ clusters) , Kong Gateway & Kong Mesh (with Impart), Terraform, Helm and Datadog
- THE STATS
- What we're looking for in our next teammate
- Significant hands-on experience in platform engineering, SRE, cloud infrastructure, or related fields, with a track record of driving impact across multiple teams or domains.
- Strong expertise in modern service mesh technologies (e.g. Istio, Kong Mesh, Linkerd, or Envoy-based platforms), including mTLS enforcement, traffic policy design, and service-to-service security patterns.
- Deep expertise in Kubernetes networking and service connectivity, including CNIs, ingress controllers, gateway APIs, and operating distributed systems at scale across hybrid AWS environments.
- Working knowledge of AWS networking primitives such as VPCs, Route 53, PrivateLink, ALB/NLB, and CloudFront, with the ability to reason end-to-end across L3 through L7 networking layers.
- Experience defining and driving platform, reliability, or connectivity strategy across teams, with the ability to influence technical direction and engineering standards.
- Strong understanding of distributed systems principles and the real-world trade-offs involved in highly available service-to-service communication.
- Experience defining and implementing SLOs, SLIs, and alerting strategies for connectivity infrastructure using user-centric and business-aligned metrics.
- Strong software engineering fundamentals, including proficiency in at least one modern programming language (e.g. Go, Java, Python
- experience building scalable tooling, automation
- platform capabilities.
- Experience implementing zero-trust networking principles, including workload identity and mutual TLS at scale.
- Experience driving large-scale operational improvements through automation, reducing organizational toil, and eliminating recurring classes of issues.
- Strong analytical and communication skills, with the ability to influence technical and non-technical stakeholders and translate technical constraints into business and customer impact.
- A mindset of ownership, continuous improvement, and long-term platform sustainability.
- Bonus
- Hands-on experience with Kong Gateway and/or Kong Mesh.
- Familiarity with eBPF-based networking technologies such as Cilium and their implications for performance and observability at scale.
- CNCF Kubernetes certifications (CKA, CKS, or CKAD).
- Experience operating in regulated industries where network segmentation, auditability, and security controls are critical.
- Don’t check all the boxes? That’s okay! We encourage you to still apply if you feel like you possess an adjacent skill set and are interested in learning more about this position.
- ABOUT FANDUEL
- FanDuel Group is the premier mobile gaming company in the United States and Canada. FanDuel Group consists of a portfolio of leading brands across mobile wagering including: America’s #1 Sportsbook, FanDuel Sportsbook
- its leading iGaming platform, FanDuel Casino
- the industry’s unquestioned leader in horse racing and advance-deposit wagering, FanDuel Racing
- and its daily fantasy sports product.
- In addition, FanDuel Group operates FanDuel TV, its broadly distributed linear cable television network and FanDuel TV+, its leading direct-to-consumer OTT platform. FanDuel Group has a presence across all 50 states, Canada, and Puerto Rico.
- The company is based in New York with US offices in Los Angeles, Atlanta
- Jersey City, as well as global offices in Canada and Scotland. The company’s affiliates have offices worldwide, including in Ireland, Portugal, Romania
- FanDuel Group is a subsidiary of Flutter Entertainment, the world's largest sports betting and gaming operator with a portfolio of globally recognized brands and traded on the New York Stock Exchange (NYSE: FLUT).
- PLAYER BENEFITS
- We treat our team right
- We offer amazing benefits above and beyond the basics. We have an array of health plans to choose from (some as low as $0 per paycheck) that include programs for fertility and family planning, mental health support
- fitness benefits. We offer generous paid time off (PTO & sick leave), annual bonus and long-term incentive opportunities (based on performance), 401k with up to a 5% match, commuter benefits, pet insurance
- more - check out all our benefits here: FanDuel Total Rewards . *Benefits differ across location, role
- FanDuel is an equal opportunities employer and we believe, as one of our principles states, “We are One Team!”. As such, we are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, creed, sex, national origin, sexual orientation, age, citizenship status, marital status, disability, gender identity, gender expression, veteran status
- any other characteristic protected by state, local or federal law. We believe FanDuel is strongest and best able to compete if all employees feel valued, respected
- FanDuel is committed to providing reasonable accommodations for qualified individuals with disabilities. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please email Benefits@fanduel.com .
- The applicable salary range for this position is $159,000 - $208,950 USD, which is dependent on a variety of factors including relevant experience, location, business needs and market demand. This role may offer the following benefits: medical, vision, and dental insurance
- life insurance
- disability insurance
- a 401(k) matching program
- among other employee benefits. This role may also be eligible for short-term or long-term incentive compensation, including, but not limited to, cash bonuses and stock program participation. This role includes paid personal time off and 14 paid company holidays. FanDuel offers paid sick time in accordance with all applicable state and federal laws.
- It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
- #LI-Hybrid
Required skills
AWSKubernetesKong GatewayKong MeshTerraformHelmDatadogservice meshmTLStraffic managementDNSedge routinginfrastructure as codeautomationzero-trust networking