Sr AWS Cloud Solutions Architects (
VPN â ETX â LSF)
- Remote
The key thing is here, LSF is also a skillset, not using it but setting it up.
I have needs for senior people with 10-15+ years experience
ETX (Enterprise Technology Exchange) — Dependency for LSF, VPN Required
ETX is a prerequisite for
LSF (Load Sharing Facility)
and requires a
site-to-site VPN
to be operational before it can function.
Dependency Chain:
VPN â ETX â LSF
Resource Requirements:
-
VPN gateway or AWS Site-to-Site VPN connections in each relevant region
-
Sufficient bandwidth on the VPN for ETX communication overhead
-
Network ACLs and security groups configured to permit ETX traffic flows
-
ETX services configured over the VPN tunnel
-
LSF then leverages ETX for job scheduling and resource management
Professional Services Core Skillsets:
-
Cloud Network Architecture
— Design and implementation of AWS Site-to-Site VPN, VPC peering, Transit Gateway, routing tables, and firewall/NACL rules
-
Enterprise Integration / Middleware
— ETX installation, configuration, and integration over VPN tunnels; ensuring reliable message exchange between on-premises and cloud environments
-
HPC / Batch Computing
— IBM Spectrum LSF deployment, cluster configuration, job scheduling policies, and integration with ETX for workload orchestration
-
Security & Compliance
— IAM policies, encryption in transit (IPSec), network segmentation, and audit logging across VPN and ETX layers
-
Infrastructure Automation (IaC)
— CloudFormation / Terraform for repeatable VPN and networking provisioning across multi-region deployments
EVS (Elastic VMware Service)
EVS provides VMware Cloud Foundation on AWS, enabling lift-and-shift of VMware-based workloads to AWS without re-platforming.
Resource Requirements:
-
EVS cluster provisioning in target AWS regions
-
vCenter, ESXi host, and vSAN configuration within the EVS environment
-
Network connectivity between EVS and native AWS services (VPC integration, ENI attachments)
-
VM migration tooling (HCX or equivalent) for workload mobility from on-premises VMware to EVS
-
Licensing alignment for VMware components
Professional Services Core Skillsets:
-
VMware Administration / vSphere Engineering
— vCenter management, ESXi host configuration, vSAN storage policies, VM lifecycle management, and DRS/HA cluster tuning
-
AWS EVS / VMware Cloud Specialization
— EVS cluster deployment, SDDC configuration, integration with AWS native services (S3, EBS, VPC), and hybrid connectivity design
-
Migration & Workload Mobility
— VMware HCX deployment and configuration, bulk VM migration planning, cutover orchestration, and rollback procedures
-
Cloud Network Architecture
— EVS networking (NSX or VPC-based), connectivity to native AWS VPCs, DNS integration, and cross-region traffic routing
-
Security & Identity
— vCenter RBAC, integration with AWS IAM, NSX micro-segmentation, and compliance controls for VMware workloads on AWS
-
Infrastructure Automation (IaC)
— Automated provisioning of EVS environments using Terraform, CloudFormation, or VMware Aria Automation
Professional Services Core Skillsets:
-
NetApp / ONTAP Storage Engineering
— FSx for ONTAP provisioning, volume and SVM management, snapshot policies, tiering policies, ONTAP CLI/REST API operations, and performance tuning
-
AWS Storage Architecture
— FSx for ONTAP sizing and deployment, throughput capacity planning, integration with VPCs, and cost optimization (capacity pool vs. SSD tier)
-
Data Migration & Replication
— SnapMirror configuration for cross-region replication, NetApp XCP or robocopy for bulk data migration, cutover planning, and data validation
-
Cloud Network Architecture
— VPC subnet design, security groups for NFS/SMB/iSCSI protocols, cross-region VPC peering for replication traffic, and DNS configuration for file system endpoints
-
Linux / Windows Systems Engineering
— NFS mount configuration on Linux, SMB share mapping on Windows, multi-protocol access testing, and client-side performance tuning
-
Backup, DR & Data Protection
— AWS Backup integration with FSx for ONTAP, snapshot scheduling, cross-region DR strategy, and RTO/RPO validation
-
Security & Compliance
— Encryption at rest (KMS), encryption in transit, IAM policies for FSx access, ONTAP export policies, and data governance controls