Job
Description
We are seeking an experienced Cloud and Network Security Engineer to lead the design, implementation, and maintenance of our network security infrastructure. The ideal candidate will have a strong background in network security, including hands-on experience with firewalls, DMZs, intrusion prevention systems, and other key security technologies. You will play a vital role in ensuring the security and integrity of our network across traditional IT, cloud, and hybrid environments.
Network Security ManagementMaintain and optimize network security management solutions, including automation, configuration, and monitoring to ensure robust protection against threats.Infrastructure DesignDesign and implement secure network infrastructures, including DMZs, firewalls, proxy, WAF, IPS, DDoS and security zones, to stabilize and enhance network performance.Security OperationsManage and monitor firewalls, IPS, content filtering, antispam, and antivirus solutions across various environments, ensuring comprehensive security coverage.Cloud and Hybrid EnvironmentsOversee firewall management and security operations in traditional IT, cloud, and hybrid environments, ensuring seamless integration and protection across platforms.Manage day to day firewall operations, implementing firewall rule requests, configuration changes.Assist in troubleshooting and problem solving a wide variety of client IT security related issues (Cisco FTD/Palo Alto/Checkpoint/Fortinet/Azure firewalls, IDS/IPS, VPN, proxy, Bluecoat/Forcepoint/Zscalar Web filtering).Mentor Tier 1 staff on event handling & responseContinually improve upon skills and ability to learn new technologiesIncorporate and follow all change management processes and procedures as outlined by the customer.Participate in security and vulnerability risk assessments of the enterprise firewall environment.Contribute to L2/L3 SOPs/Runbook/KEDB in keeping process & documentation up to date.Contribute to request/incident/change management improvement processReady to learn new technologies through internal trainingsReady to work 24*7
Required education Bachelor's Degree Preferred education Master's Degree Required technical and professional expertise Hands-on Experience on minimum 3 Cloud and Infra Security Tools (Firewall / WAF / Proxy / IPS / IDS / DDOS)Experience on firewall rules and data flow traffic in firewalls.Experience on clustering and high availability.Should have good technical expertise in managing minimum 4 vendor device (PaloAlto FW, Fortinet FW, Cisco FW, Checkpoint FW, Juniper FW, Sonicwall FW, Bluecoat Proxy, McAfee Proxy, Forcepoint Proxy, F5 WAF, Forti WAF, Citrix Netscalar WAF)Should have good technical knowledge and hands on in cloud security solutions (AWS, Azure) like Microsoft cloud native security, PaloAlto, ZscalarExperience in configuration and implementation of VPN across various vendor perimeter devices.Experience in routing technologies.Skilled in analyzing and monitoring network security solutions.Should possess core understanding of web filtering gateways like BlueCoat, Zscaler or PaloAlto.Install firmware and patch updatesInstall policy for allowing/restricting access to web URL'sSetting up rules for category wise access requestsManaging whitelist and blacklist filesMonitoring web access for users/sourceConfiguring and managing reverse proxyExtracting and analyzing web access reports
Preferred technical and professional experience Linux Basic knowledge, Advanced preferable.Basic Scripting knowledge in Python or shell scriptingSASE, CASBCertificate Management