Job Summary
We are seeking a skilled and experienced Level 4/SME Security Engineer to our Network Security team. The ideal candidate will have deep expertise in managing and troubleshooting security infrastructure, with a primary focus on Checkpoint firewalls, Cisco ASA firewalls, and Zscaler security solutions. Candidate will be responsible for the design, implementation, optimization, and escalation support for our global security platforms, ensuring the integrity and protection of our network and systems.
Key Responsibilities
- Serve as a L4/SME Engineer for Checkpoint Firewalls
- Advanced experience with MDS, SmartConsole, SmartDashboard, policy management, VPNs, threat prevention, and clustering (HA).
- ASA and Fortinet Firewall skills are good to have
- Manage firewall policies, VPN configurations, and security rules in Checkpoint and Cisco ASA environments.
- Provide SME Level support for security incidents, escalated tickets, and critical infrastructure issues.
- Perform root cause analysis of complex security incidents and recommend corrective actions.
- Participate in the design and implementation of new security architectures and network segmentation projects.
- Conduct regular health checks, system updates, firmware upgrades, and performance tuning of security devices.
- Collaborate with SOC, NOC, IT infrastructure, and application teams to enforce security policies.
- Create and maintain detailed documentation including network diagrams, SOPs, and technical runbooks.
- Participate in audit support, compliance assessments, and penetration testing remediation.
Requirements
Technical Skills:
- Checkpoint: Advanced experience with MDS, SmartConsole, SmartDashboard, policy management, VPNs, threat prevention, and clustering (HA).
- Cisco ASA: Expertise in firewall policies, NAT, ACLs, VPN tunnels (IPSec/SSL), and troubleshooting.
- Zscaler: Proficient in ZIA and ZPA setup, policy configuration, troubleshooting Zscaler Client Connector, and integration with IdPs
- Solid understanding of TCP/IP, routing protocols, and layer 2/3/7 firewall concepts.
- Experience with security monitoring, logging, and SIEM integration (e.g., Splunk, QRadar).
- Familiarity with scripting or automation tools (e.g., Python, Ansible) is a plus.
Certifications (Preferred)
- Check Point CCSE
- Cisco CCIE Security
- Zscaler Certified Professional (ZCP / ZIA / ZPA)
- Other relevant certifications (CISSP, CEH, GIAC) are a plus
Experience
- 10+ years in network and security engineering roles
- Provide support for other team members
- Minimum 5 years in a Level 3/SME support or senior engineering capacity
- Experience in large-scale enterprise environments with global operations
Soft Skills
- Strong analytical and problem-solving skills
- Excellent verbal and written communication
- Ability to handle high-pressure incident response scenarios
- Collaborative and team-oriented mindset
- Willing to work in flexible shifts
Work Location: Pune
Skills: checkpoint,security,troubleshooting,zia,firewall,mds,sme,infrastructure