Job Summary
Owns remediation across SG's exposed Fortinet firewall fleet. Largest single line in the exposed-network scope and a critical-path platform for 24h SLA attainment.
Key Responsibilities
Triage and remediate FortiGate, FortiOS, and related Fortinet platform vulnerabilities within 24h.
• Plan and execute HA-aware patching to maintain service continuity.
• Apply emergency mitigations (IPS signatures, config tweaks) when patches are unavailable.
• Coordinate with network engineering for cross-zone impact.
• Maintain runbooks for major-CVE response on FortiOS.
• Contribute to Phase 2 automation candidates.
Skill Requirements
Deep FortiOS administration: clustering, VDOMs, IPSec, SSL VPN, IPS.
• Solid understanding of firewall HA patching patterns.
• Familiarity with FortiManager and FortiAnalyzer.
• Comfortable with vendor-advisory triage and rapid response.
Other Requirements
Fortinet NSE 5 / 6 / 7 certifications.
• Experience with FortiCloud, FortiSASE or similar.
• Scripting in Python or FortiOS automation stitches.