Role Descriptions: Firewall Engineering (Fortigate Check Point & Palo Alto)Design| implement| and operate NGFW policies| NAT| security profiles| and segmentationManage App ID / User ID (Palo Alto) and Identity Awareness (Check Point)Configure Threat Prevention profiles: IPS| Anti Virus| Anti Spyware| URL filteringPlan and execute rulebase audits| clean ups| and optimization to reduce risk & latencyPerform upgrades| HA/cluster configuration| health checks| and performance tuningTroubleshoot L3L7 connectivity| asymmetric routing| path MTU| SSL/TLS inspection________________________________________WAF & Edge Security (Cloudflare)Configure Cloudflare WAF (Managed Rules| custom rules| bot mitigation| rate limiting)Manage CDN| DDoS protection| and Zero Trust policies (ZTNA) for applicationsImplement API protection| mTLS| and secure token based access for servicesOptimize performance & caching while maintaining application securityMonitor attack patterns| false positives| and tune rules based on application behaviorNAC Operations (Forescout Platform)Deploy and manage Forescout CounterACT for 802.1x / posture / device profilingEnforce zero trust access via VLAN assignments| quarantines| and policy actionsIntegrate NAC with AD/IDP| EDR| SIEM| vulnerability scanners for contextual controlsMaintain asset inventory| device classification (IT/IoT/OT)| and posture complianceBuild remediation workflows (e.g.| patch| isolate| notify) with stakeholders________________________________________Remote Access & VPNConfigure IPsec/SSL VPNs (GlobalProtect| Check Point Remote Access)Implement MFA / SSO / posture checks and split tunnel policiesTroubleshoot tunnel stability| DNS leaks| routes| client postureEnsure scalability and HA for remote access gateways during peak loads
Essential Skills:
Firewall Engineering (Fortigate Check Point & Palo Alto)Design| implement| and operate NGFW policies| NAT| security profiles| and segmentationManage App ID / User ID (Palo Alto) and Identity Awareness (Check Point)Configure Threat Prevention profiles: IPS| Anti Virus| Anti Spyware| URL filteringPlan and execute rulebase audits| clean ups| and optimization to reduce risk & latencyPerform upgrades| HA/cluster configuration| health checks| and performance tuningTroubleshoot L3L7 connectivity| asymmetric routing| path MTU| SSL/TLS inspection________________________________________WAF & Edge Security (Cloudflare)Configure Cloudflare WAF (Managed Rules| custom rules| bot mitigation| rate limiting)Manage CDN| DDoS protection| and Zero Trust policies (ZTNA) for applicationsImplement API protection| mTLS| and secure token based access for servicesOptimize performance & caching while maintaining application securityMonitor attack patterns| false positives| and tune rules based on application behaviorNAC Operations (Forescout Platform)Deploy and manage Forescout CounterACT for 802.1x / posture / device profilingEnforce zero trust access via VLAN assignments| quarantines| and policy actionsIntegrate NAC with AD/IDP| EDR| SIEM| vulnerability scanners for contextual controlsMaintain asset inventory| device classification (IT/IoT/OT)| and posture complianceBuild remediation workflows (e.g.| patch| isolate| notify) with stakeholders________________________________________Remote Access & VPNConfigure IPsec/SSL VPNs (GlobalProtect| Check Point Remote Access)Implement MFA / SSO / posture checks and split tunnel policiesTroubleshoot tunnel stability| DNS leaks| routes| client postureEnsure scalability and HA for remote access gateways during peak loads
📌 Network Security Engineer (India)
🏢 Clifyx
📍 India
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.