LAN Implementation Engineer

2 - 4 years

0 Lacs

Posted:1 month ago| Platform: Foundit logo

Apply

Work Mode

Remote

Job Type

Full Time

Job Description

Desired Competencies (Technical/Behavioral Competency) Must-Have Subject Matter Expert (SME)- Security engineer to perform obsolete hardware replacements, code upgrades, and configuration compatibility validation for both physical and virtual appliances. The role includes expertise in multi-context firewalls, IDS/IPS configurations, DDOS (Arbor) solutions, conducting pre- and post- validation testing, and ensuring operational stability in critical production environments. Engineer must have expertise in Cisco Firewalls/Palo Alto/FortiGate/ Check points and IDS/IPS & DDOS (Arbor). Good-to-Have Minimum 2 mandate details are mandate with two or 3 liners
  • Check Point certification (CCSA) / PaloAlto Certification (PCNSE)
  • Azure Cloud Certification
  • CCNP Network Certification SN Role descriptions / Expectations from the Role Expertise in upgrading and managing code, image, firmware, bootstrap programs, software and security patches for network security devices like Firewalls/IDS/IPS (Cisco/Palo Alto/Juniper/Forti Gate/Check points), DDOS (Arbor) deployed in on-premises, remote and third-party data centers. Demonstrated ability to replace obsolete hardware and virtual appliances through detailed planning, including pre-upgrade checks, backup strategies, testing procedures, and rollback plans for both physical and virtual components. Risk assessment and execution, ensuring compatibility and performance in production environments. Firewalls & IDS/IPS: Plan and implement the lifecycle replacement of end-of-support (EOS) and end-of-life (EOL) security appliance, optimizing infrastructure resilience. Analyze configuration compatibility between old and new firmware versions or hardware models, identifying and resolving conflicts to ensure seamless transition. Migrate and validate configurations, including NAT policies, VPN tunnels, IDS/IPS rules and muti-context setups, to new hardware or virtual appliances. Conduct rigorous pre-upgrade and post-upgrade testing, including failover scenarios and security rule verification, to ensure operational stability and policy consistency. DDOS Protection (Arbor Networks): Proficient in upgrading and replacing DDOS mitigation hardware and virtual appliances, such as Arbor Edge Defense (AED). Ability to analyze network flow, configure threshold policies, and test mitigation strategies to ensure uninterrupted services. Skilled in integrating DDOS Protection with upstream and downstream devices during replacement/ upgrades. Capability to implement and validate the configurations, Security policies and Application policies post-upgrade. Documentation and compliance - Define lifecycle management strategies for hardware and software. Maintain comprehensive documentation of upgrade activities, including change management logs and compliance reports. Ensure adherence to organizational security standards, change processes and industry best practices throughout the upgrade process. Good to Have: Knowledge on ansible/python (For automation and troubleshooting), cloud-native networking services and tools (AWS, AZURE).

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You