05 Oct
|
Cloudxtreme
|
Hyderabad
05 Oct
Cloudxtreme
Hyderabad
Role & responsibilities
Level 3 (SA/M)
(6 to 10 years of experience working on Network Security)
Responsibilities
- Act as the final escalation point for complex proxy and connectivity issues, including SSL/TLS inspection, authentication issues (SAML/OAuth/Kerberos), PAC file errors, and traffic disruption.
- Configure, maintain, and upgrade on-premise (e.g., Blue Coat, Netskope) and cloud-based proxy solutions (e.g., Zscaler ZIA, Netskope).
- Develop, deploy, and manage web filtering, URL categorization, Data Loss Prevention (DLP), and Advanced Threat Protection (ATP) policies.
- Expert-level creation, modification, and optimization of PAC files (JavaScript) to ensure correct traffic routing, failover, and performance for global environments.
- Create and maintain complex SSL inspection policies to intercept and inspect encrypted traffic while managing privacy bypass lists.
- Lead investigations into network security breaches, proxy-related incidents, or traffic anomalies, producing detailed Root Cause Analysis (RCA).
- Involve in change management processes for firewall rule changes, proxy software upgrades, and infrastructure migrations.
- Utilize scripting (Python, PowerShell) or API integrations to automate routine operational tasks.
- Provide technical training and guidance to L2 and L1 security analysts.
Level 4 (SM/AD)
(10 to 15 years of experience working on Network Security)
Responsibilities
- Architect, build, and maintain high-availability proxy-based security solutions (e.g., Bluecoat, Netskope) across hybrid, on-premises, and cloud environments.
- Act as a final point of escalation (L3/L4) for complex network security issues, including SSL interception failures, authentication issues, and performance bottlenecks.
- Designing, testing, deploying, and troubleshooting complex PAC files to manage traffic routing, bypass policies, and ensure seamless user experience.
- Define, tune, and manage complex URL filtering, DLP, and malware protection policies to ensure secure, productive web traffic.
- Configure and manage SSL visibility appliances and proxy decryption settings to inspect traffic while ensuring compliance and privacy.
- Integrate proxies with SIEM (e.g., Splunk) for logging, CASB, and endpoint protection solutions.
- Lead upgrades, firmware, and patches for security appliances and virtualized proxy instances (vZen).
- Identify automation opportunities for repetitive tasks, develop technical documentation (Run Books), and mentor junior staff.
Preferred candidate profile
📌 Network Security Engineer (Hyderabad)
🏢 Cloudxtreme
📍 Hyderabad