Description
Seeking a skilled professional for the role of Senior Executive - Network & Security Engineering, with 5-7 years of relevant experience across enterprise network and security infrastructure. The role requires strong hands-on expertise in networking, firewalls, Secure Service Edge (SSE), SD-WAN, and cloud-delivered security solutions, with the ability to design, implement, operate, and troubleshoot secure enterprise networks.
The ideal candidate should have strong experience with technologies such as Palo Alto Networks, SD-WAN, Netskope and/or Zscaler, along with a solid understanding of routing, switching, Internet connectivity, VPN, firewalls, SWG, Web DLP, CASB, Cloud Firewall, DNS Security, and network security architecture.
Responsibilities
- Manage and administer enterprise network and security infrastructure, including Palo Alto firewalls, SD-WAN, SSE platforms, Internet gateways, VPN, and related security technologies.
- Manage and troubleshoot Palo Alto firewall policies, NAT, security profiles, VPNs, routing, application controls, URL filtering, SSL inspection, and threat prevention.
- Support and administer SD-WAN environments, including overlay connectivity, routing, traffic steering, and Internet/MPLS integration.
- Configure and optimize SD-WAN application-aware routing, SLA-based path selection, load balancing, segmentation, QoS, and traffic steering based on business and application requirements.
- Own and resolve escalation-level incidents related to network connectivity, firewalls, SD-WAN, SSE, VPN, Internet access, and security policies.
- Integrate SD-WAN with next-generation firewalls, SSE/SASE platforms, cloud connectivity, and centralized network management/orchestration solutions.
- Design and implement routing and connectivity solutions using BGP, OSPF, static routing, IPSec, GRE, MPLS, Internet, and cloud connectivity.
- Configure and optimize security controls including URL filtering, application control, IPS/Threat Prevention, DNS security, SSL inspection, DLP, and access policies.
- Ensure effective integration between network security platforms, identity services, endpoint security, and SIEM platforms.
- Evaluate new network and security technologies, conduct POCs and technical assessments, and recommend solutions aligned with enterprise requirements.
- Partner with business and application teams to securely onboard new applications, services, and connectivity requirements.
- Collaborate with NITSO, Cyber Security, Cloud, Infrastructure, and other technology teams to assess risks and ensure alignment with enterprise security standards.
- Prepare periodic network and security posture reviews, covering incidents, capacity, vulnerabilities, policy optimization, technology adoption, and improvement opportunities.
- Maintain network diagrams, architecture documents, configurations, operational procedures, and troubleshooting runbooks.
- Collaborate with cross-functional teams during major incidents, change implementation, problem management, and service improvement initiatives.
- Ensure adherence to ITSM processes, including incident, problem, change, and service request management.
Qualifications
- Strong hands-on experience in enterprise networking and network security architecture.
- Strong understanding of routing, switching, TCP/IP, DNS, DHCP, NAT, VPN, BGP, OSPF, IPSec, GRE, MPLS,
and Internet connectivity.
- Hands-on experience with Palo Alto Networks firewalls, including security policies, NAT, application control, URL filtering, security profiles, VPN, SSL inspection, and troubleshooting.
- Experience with SD-WAN technologies, including architecture, deployment, routing, application-aware policies, traffic steering, and troubleshooting.
- Experience with Netskope and/or Zscaler, including SWG, Web DLP, CASB, Cloud Firewall, DNS Security, and traffic steering.
- Strong understanding of SSE/SASE architecture and how network and security controls integrate across enterprise and cloud environments.
- Strong knowledge of Web DLP, including data identifiers, exact data match, fingerprinting, content inspection, and policy tuning.
- Hands-on experience with firewall security policies and L3-L7 controls, application-based access, segmentation, and threat prevention.
- Experience with SSL/TLS inspection, certificate management, and encryption handling.
- Understanding of identity and access integration, including Microsoft Entra ID/Azure AD, Okta, SAML, OAuth, and SSO.
- Experience in network and security monitoring, log analysis, incident investigation, SIEM integration, and performance troubleshooting.
- Ability to analyze network traffic using tools such as packet captures and network monitoring platforms.
- Experience with enterprise monitoring and ITSM platforms such as PRTG, ServiceNow, or equivalent.
- Experience in large-scale enterprise network and security deployments.
- Relevant certifications such as SDWAN (Cisco/Fortinet), Palo Alto PCNSA/PCNSE, Netskope Certified Professional (NCP), Zscaler certification, or equivalent are strongly preferred.
- Robust analytical, troubleshooting, communication, and stakeholder-management skills.
📌 Senior - SSE, Blr One (replacement)(U)
🏢 BSR
📍 Bengaluru