SME - Network Security Engineer
Unisys · Bengaluru
- Posted
- 15 days ago
- Experience
- 8–12 yrs
- Pay
- Not stated
About the job
What success looks like in this role:
Experience 8–12 Years Job Summary We are seeking an experienced L3 Network Security Engineer with strong expertise in Palo Alto , Fortinet Firewalls , Fortinet SD-WAN , Panorama , Cloud Network Security , and Data Center Migration . The ideal candidate will be responsible for designing, implementing, troubleshooting, and optimizing enterprise network security solutions while supporting business-critical infrastructure and transformation projects. Key Responsibilities Firewall Administration
- Design, implement, and manage Palo Alto and Fortinet firewall infrastructure.
- Configure and troubleshoot Security Policies, NAT, VPN, SSL Decryption, URL Filtering, IPS, Anti-Malware, and Application Control.
- Perform firewall rule reviews and policy optimization.
- Conduct firewall software upgrades and security patching. Fortinet SD-WAN
- Design, deploy, and support Fortinet SD-WAN solutions.
- Configure SLA policies, Performance SLAs, Overlay VPN, ADVPN, and Dynamic Routing.
- Troubleshoot SD-WAN routing and application performance issues.
- Support Hub-and-Spoke and Multi-Hub SD-WAN architectures. Palo Alto Panorama
- Administer Panorama for centralized policy management.
- Manage device groups, templates, template stacks, and software updates.
- Implement centralized logging and compliance reporting.
- Perform configuration backups and disaster recovery activities. Cloud Network Security
- Deploy and support Azure Network Virtual Appliances (NVA).
- Configure Azure Virtual WAN (vWAN), Virtual Networks (VNet), Route Tables, NSGs, UDRs, and VPN Gateways.
- Implement cloud firewall solutions and hybrid connectivity.
- Troubleshoot cloud networking and security issues. Data Center Migration
- Plan and execute data center migration activities.
- Perform firewall migration and rule migration.
- Coordinate application cutovers and migration testing.
- Validate connectivity during migration windows.
- Prepare rollback plans and post-implementation validation. Routing & Switching
- Configure and troubleshoot: - BGP
- OSPF
- Static Routing
- VRF
- ECMP
- Policy-Based Routing
- Analyze routing convergence and failover scenarios. Security Operations
- Investigate and resolve P1/P2 network security incidents.
- Perform Root Cause Analysis (RCA).
- Coordinate with vendors (Palo Alto, Fortinet, Microsoft TAC).
- Implement security hardening and best practices.
- Review security advisories and recommend remediation plans. Change & Project Management
- Prepare implementation plans, rollback plans, and test plans.
- Participate in CAB meetings.
- Execute changes during maintenance windows.
- Lead infrastructure upgrade and migration projects. Documentation
- Develop and maintain: - HLD/LLD
- SOPs
- Runbooks
- Knowledge Articles
- Network diagrams
- As-built documentation
Required Technical Skills Firewalls
- Palo Alto Networks (PAN-OS)
- FortiGate Firewalls
- FortiManager
- FortiAnalyzer
- Panorama Fortinet Technologies
- Fortinet SD-WAN
- ADVPN
- IPsec VPN
- SSL VPN
- High Availability (HA)
- Virtual Domains (VDOM) Cloud
- Microsoft Azure
- Azure Virtual WAN
- Azure NVA
- Azure Firewall
- ExpressRoute
- VPN Gateway
- Azure Load Balancer Routing
- BGP
- OSPF
- Static Routing
- ECMP
- Route Redistribution Security Technologies
- IPS
- IDS
- SSL Inspection
- URL Filtering
- Application Control
- Threat Prevention
- DNS Security Networking
- TCP/IP
- VLAN
- NAT
- QoS