APCO Holdings partners with dealerships across North America to deliver innovative vehicle protection products and services that enhance the ownership experience for customers and drive growth for our partners. Through our family of brands, we bring together industry expertise, technology, and data-driven insights to help dealers strengthen their finance and insurance performance and build lasting relationships with their customers.
Our teams work collaboratively across operations, technology, risk, finance, marketing, and sales to deliver solutions that create measurable value and support the continued growth of APCO and the partners we serve.
The Sr. Network Engineer & Connectivity Architect serves as the principal architect of the organization’s enterprise connectivity platform (“The Backbone”), with a primary focus on Microsoft Azure networking, Cisco Meraki infrastructure, and identity-driven access (Active Directory & Entra ID).
This role is responsible for designing and operating a secure, highly resilient, and cloud-aligned network architecture, where access decisions are governed by user identity, device posture, and real-time risk signals, rather than traditional network boundaries.
Leveraging Infrastructure as Code (IaC), AIOps, and Zero Trust principles, this position ensures seamless, secure connectivity across Azure, on-prem environments, branch networks (Meraki), and SaaS platforms such as Microsoft 365, while enabling a scalable, automated, and self-healing infrastructure.
Identity-Driven Network Architecture (CORE)
Design and implement a network architecture where identity is the primary control plane. Integrate Active Directory (on-prem), Entra ID, and identity providers (Okta) with network enforcement points to enable real-time, identity-based access decisions.
Active Directory & Hybrid Identity Ownership
Entra ID & Conditional Access Engineering
Category
Requirements
Identity & Access (PRIMARY)
Deep expertise in Active Directory (architecture, GPOs, replication), Entra ID, Conditional Access, MFA, federation (SAML, OAuth, OIDC), hybrid identity
Zero Trust Architecture
Experience implementing identity-driven access integrating network, endpoint, and SaaS
Azure Networking (PRIMARY)
VNets, ExpressRoute, VPN Gateway, Azure Firewall, Private Link, DNS, Hub-Spoke design
Meraki (PRIMARY)
MX (SD-WAN), MS (switching), MR (wireless), Auto VPN, Meraki Dashboard
Automation & IaC
Terraform, Bicep, ARM templates, CI/CD pipelines
M365 Integration
Identity and network dependency across Exchange, Teams, SharePoint
Endpoint Integration
Intune/device compliance integration with access policies
Observability
Azure Monitor, Log Analytics, Meraki Dashboard, Dynatrace, Splunk
Scripting & DevOps
PowerShell, Python, or similar scripting experience
Required Experience
Preferred Experience
Job details are sourced from the employer's original posting.
Open job postingAbout the company
APCO Holdings is a leading provider of vehicle service contracts and related F&I products for the automotive industry. They offer a range of protection plans designed to cover unexpected repair costs for consumers.