DNS Engineer - SRE
Optimum Communications Inc.
Job Description
Are you looking to Optimize your life? Start your exciting path to a rewarding career today! We are Optimum, a leader in the fast-paced world of connectivity, and weâre on the hunt for enthusiastic professionals to join our team!
We understand that connectivity isnât just a luxury anymore â itâs a necessity that empowers lives, fuels businesses, and drives innovation. A career at Optimum means youâll be enabling progress and enhancing lives by providing reliable, highâspeed connectivity solutions that keep the world connected. We owe our success to our amazing product, commitment to our people and the connections we make in every community.
If you are resourceful, collaborative, teamâoriented and passionate about delivering consistent excellence, Optimum is the Company for you! We are Optimum! Job Summary The Role DNS Engineer - SRE is a highâimpact role responsible for the architecture, scalability, and reliability of the missionâcritical DNS infrastructure powering our ISP and core network services.
This position is designed for an engineer who views infrastructure through the lens of Site Reliability Engineering (SRE) prioritizing automation, observability, and selfâhealing systems over manual intervention. You will combine deep IP networking and DNS expertise with modern security protocols to ensure our platforms remain resilient against evolving threats and perform at the highest level for millions of users. The Impact: This is a collaborative and influential role.
Beyond core engineering, you will serve as a technical authority, leading crossâfunctional initiatives with Product, Security, and Service Assurance teams. Your goal is to deliver a carrierâgrade DNS ecosystem that balances cuttingâedge privacy standards (DoH/DoT) with the uncompromising availability required by Tierâ1 network operations. Responsibilities Core Platform Strategy & Leadership Architectural Ownership: Lead the design and evolution of global DNS architectures, ensuring high availability through Anycast routing, multiâprovider redundancy, and automated failover mechanisms.
Strategic Vendor Relations: Act as the primary technical authority in engagements with DNS and infrastructure vendors, driving roadmaps that align with our longâterm reliability and security goals. Lifecycle & Capacity Management: Oversee the full lifecycle of DNS platformsâincluding automated software deployments, hardware refreshes, and proactive capacity planningâto stay ahead of traffic growth. Standardization & Policy: Optimize, define and enforce organizationâwide standards for DNS record management, security protocols (DNSSEC), and traffic steering policies to optimize user latency.
Reliability Engineering: Convert "Strategic Design" into "Operational Reality" by defining Service Level Objectives (SLOs) and Error Budgets for all core name services. CrossâDomain DNS Operations & SRE Protocol Management: Manage the nuances of UDP/TCP port 53, recursion vs. iteration, and complex record types (A, AAAA, CNAME, MX, TXT, SRV). Security & Mitigation: Implement and manage DNSSEC to prevent cache poisoning; act as a subject matter expert in mitigating DDoS and DNS amplification attacks.
Automation (Eliminating Toil): Replace manual updates and "pool" management with automated workflows using Python, Go, Ansible, or Terraform. Performance Tuning: Perform Linux kernel tuning for highâperformance network throughput and conduct deepâDive log analysis on systems like BIND, Unbound, or PowerDNS. Observability: Utilize Prometheus, Grafana, and dnstap to monitor query rates and latency, providing actionable insights into error codes (NXDOMAIN, SERVFAIL).
Qualifications Minimum Qualifications Education: Bachelorâs degree in Computer Science, Telecommunications, or a related field (or equivalent practical experience in networking and security). Experience: 5+ years in a networking or systems engineering role, with a focus on SRE principles (automation, reliability, and monitoring) in production environments. DNS Fundamentals: Handsâon experience configuring and maintaining at least two of the following: BIND, Unbound, PowerDNS, AWS Route 53, or Azure DNS.
Networking Protocols: Functional understanding of TCP/IP (IPv4/v6) and DNSâspecific protocols including DNSSEC and encrypted transport (DoH/DoT). Systems & Automation: Strong Linux/Unix administration skills and proficiency in at least one scripting language (Python, Bash, or Go) for task automation. Observability: Experience using Grafana and OpenTelemetry (or similar tools) to monitor service health and performance.
Familiarity with AI Tools and an AIâFirst mindset. Preferred Qualifications DNS Systems: Handsâon experience managing BIND, Unbound, or PowerDNS in highâtraffic environments, alongside cloudânative solutions (AWS Route 53, Azure DNS, Google Cloud DNS). Protocol Expertise: Mastery of DNSâspecific protocols including DNSSEC, DoT, and DoH, with a firm grasp of underlying transport layers (UDP/TCP) and dualâstack (IPv4/IPv6) networking.
Observability: Experience building dashboards and alerts using Prometheus, ELK, or OpenTelemetry to monitor DNS query latency and error rates. Automation: Proven ability to manage "DNS as Code" using Terraform or Ansible and writing scripts (Python/Go) to automate routine zone updates. Scale & Security: Background in Tierâ1/Tierâ2 service provider environments with a focus on service resilience, Anycast distribution, and DDoS protection.
Working Conditions Hybrid remote/onâsite, with participation in 24/7 onâcall rotations. Availability for afterâhours maintenance and urgent service restoration activities. Ability to work in highâpressure, highâreliability production environments.
The Ideal Candidate The ideal candidate is a proactive engineer who values precision and operational excellence. You don't just manage systems; you architect for reliability, anticipating bottlenecks before they impact the user. We are looking for someone who balances deep technical mastery with an organized approach to delivery, consistently driving improvements in performance, monitoring, and overall service resilience.
At Optimum, weâre fueled by our four core pillars: Taking Ownership, Upholding Transparency, Creating Community, and Demonstrating Expertise. Our commitment to empowering employees to take responsibility and embrace proactive problemâsolving underpins Taking Ownership. Upholding Transparency is at the core of our culture, with open and honest communication fostering trust among our dedicated team and loyal customers.
Creating Community is more than a goal; itâs our daily commitment to fostering an environment of collaboration, innovation, and positivity. Demonstrating expertise is a promise we uphold through continuous learning and engagement with our customers to consistently deliver topâquality products and services. These pillars not only shape our culture but define Optimum as a place of excellence, trustworthiness, and thriving community, and we invite you to be a part of our journey.
If you have the drive to succeed and are ready to embark on a thrilling career, seize this opportunity today, and join our winning team, so together, weâll shape the future of connectivity. All job descriptions and required skills, qualifications and responsibilities for a particular position are subject to modification by the Company from time to time, in the Companyâs discretion based on business necessity. We are an Equal Opportunity Employer committed to recruiting, hiring and promoting qualified people of all backgrounds regardless of gender, race, color, creed, national origin, religion, age, marital status, pregnancy, physical or mental disability, sexual orientation, gender identity, military or veteran status, or any other basis protected by federal, state, or local law.
The Company collects personal information about its applicants for employment that may include personal identifiers, professional or employment related information, photos, education information and/or protected classifications under federal and state law. This information is collected for employment purposes, including identification, work authorization, FCRAâcompliant background screening, human resource administration and compliance with federal, state and local law. Applicants for employment with The Company will never be asked to provide money (even if reimbursable) as part of the job application or hiring process.
Please review our Fraud FAQ for further details. Pay is competitive and based on a number of jobârelated factors, including skills and experience. The starting pay rate/range at time of hire for this position in New York is $83,538.00 - $137,241.00/year.
For other locations, please inquire with your recruiter. The rates/ranges provided herein are the anticipated pay at the time of hire, and do not reflect future job opportunity. #J-18808-Ljbffr