JOB DESCRIPTION:
Must Have Technical/Functional Skills
Experienced Network Security Engineer with strong expertise in Palo Alto Networks firewall administration, security policy management, threat prevention, VPN technologies, and enterprise network security operations.
Strong understanding of network and security protocols including SSL/TLS, TCP/UDP, HTTP, FTP/SFTP, NTP, Telnet, NFS, SSH, LDAP and DNS etc.
Proficient in configuring and managing Next-Generation Firewalls (NGFWs), including App-ID, User-ID, Content-ID, NAT, routing, and access control.
Hands-on experience with IPSec VPNs, High Availability (HA) deployments, and Panorama for centralized firewall management.
Possesses a solid foundation in networking technologies, including TCP/IP, VLANs, subnetting, routing protocols (BGP, OSPF, RIP), Policy-Based Forwarding (PBF), and ECMP
Skilled in cloud security integrations involving Prisma Access, AWS, Azure, and Cloud NGFW deployments.
Experienced in security monitoring, log analysis, SIEM integrations (Splunk, Sentinel), and advanced troubleshooting using packet captures, traffic flow analysis, CLI diagnostics, and ACC.
Demonstrates strong analytical, problem-solving, and operational skills in securing enterprise environments, optimizing firewall policies, troubleshooting complex network issues, and ensuring high availability and business continuity.
Roles & Responsibilities
Serve as primary support lead for security environment by managing customer devices and end-to-end security services, identifying sources of problems, and resolving configuration issues.
Deep understanding of Firewall technologies.
Configuring and installing security infrastructure devices.
Reporting the security analysis and monitoring findings.
Using industry-standard analysis criteria to test the security level of the firm.
Responsible to identify threats, vulnerabilities etc & take appropriate actions
Consults about network performance, throughput, protocols, network security, and infrastructure technology changes.
Defining and maintaining security policies.
Occasionally replacing the security system protocol and architecture.