02 Sep
|
Saint Fox Consultancy Private
|
Pune
02 Sep
Saint Fox Consultancy Private
Pune
Firewall Operations
- Design, deploy, and manage Cisco ASA and Firepower Threat Defense (FTD) firewalls in enterprise and multi-site environments.
- Operate and tune Palo Alto Networks next-generation firewalls including policy management, App-ID, User-ID, and threat prevention profiles.
- Manage Palo Alto Panorama for centralised policy and device management across multiple firewalls.
- Perform rule-base reviews, clean-up, and optimisation on a scheduled basis to reduce attack surface and policy drift.
- Respond to and resolve L3 firewall incidents and escalations within agreed SLA windows.
Network Infrastructure
- Configure and manage Cisco Catalyst and Nexus switching platforms including VLANs, STP, VPC, and QoS.
- Administer Cisco Wireless infrastructure including WLC (Wireless LAN Controllers) and Cisco Access Points across campus and branch environments.
- Troubleshoot complex Layer 2 and Layer 3 network issues from physical through to application layer.
- Maintain and enforce network segmentation policies aligned to Zero Trust principles.
Routing and Connectivity
- Configure and manage energetic routing protocols including OSPF, BGP, and EIGRP.
- Manage site-to-site and remote-access VPN including Cisco AnyConnect and Palo Alto Global Protect.
- Support SD-WAN and SASE integration efforts where applicable.
- Operations and Governance
- Own change management for network security changes including planning, testing, and rollback procedures.
- Maintain accurate and current network diagrams, run books, and configuration documentation.
- Participate in vulnerability and patch management cycles for network devices.
- Support internal and external audits by providing evidence and configuration reviews.
- Provide mentoring and technical guidance to L1 and L2 engineers.
Required Skills
- 8 to 15 years of hands-on experience in network security engineering.
- At least 4 years working at L3 or equivalent senior engineer level.
- Demonstrated production experience with Cisco ASA and/or FTD firewalls.
- Demonstrated production experience with Palo Alto Networks NGFW and Panorama.
- Solid experience with Cisco Catalyst and Nexus switching in enterprise environments.
- Working experience with Cisco WLC and enterprise access point management.
Technical Skills
- Cisco Firewall: ACLs, NAT, VPN, HA, and Firepower management centre.
- Cisco Switching: VLAN, STP, RSTP, VPC/vPC, port-channel, QoS, and SPAN.
- Cisco Wireless: WLC management, AP provisioning, SSID design, RF planning basics, and client troubleshooting.
- Palo Alto: Security policies, NAT, decryption, URL filtering, Wildfire, Panorama, and HA configuration.
- Routing: OSPF, BGP, EIGRP, PBR, and route redistribution.
- VPN: IPsec, SSL-VPN, GlobalProtect, and AnyConnect.
- Packet analysis using Wireshark or equivalent.
- Working knowledge of NAC, 802.1X, and RADIUS.
📌 Network Security Engineer (Managed Firewall and Network Infra) (Pune)
🏢 Saint Fox Consultancy Private
📍 Pune