Senior Network Security & Network Access Control Engineer
- Network Security
- Fortinet
- Cisco
- Azure
- WAF
- F5
- Aruba
- Zscaler
- Zero Trust
- ISE
- CISSP
- CCNP
We are seeking an experiencedL3 Network Security Engineer to lead the design, architecture, optimization, and operational governance of enterprise network security platforms. The ideal candidate will provide technical leadership across firewall, web application firewall, network access control, and cloud security technologies while serving as the highest level of escalation for complex security incidents and projects.
The role requires strong expertise inFortinet Firewalls, Cisco Firewalls, Azure WAF, Azure Firewall, F5, NAC (Cisco & Aruba), and Zscaler (ZIA/ZPA), along with a deep understanding of security architecture, Zero Trust principles, and enterprise network security operations.
Key ResponsibilitiesSecurity Platform Design & Architecture
-
Lead the design, implementation, optimization, and lifecycle management of:
- Azure WAF & Azure Firewall
- Fortinet Firewalls
- Cisco Firewalls
- F5 Load Balancers
- NAC Solutions (Cisco ISE, Aruba ClearPass)
- Zscaler (ZIA & ZPA)
-
Define and implement secure network architectures aligned with business and security requirements.
-
Design advanced firewall security policies, network segmentation strategies, and Zero Trust architectures.
-
Conduct security architecture reviews and recommend improvements to strengthen the organization's security posture.
Operations & Technical Leadership
- Act as the highest technical escalation point for complex network security incidents and problem management.
- Review and approve complex firewall changes and network security designs.
- Lead firmware upgrades, platform modernization initiatives, and lifecycle management activities.
- Manage vendor escalations and participate in major incident investigations and Root Cause Analysis (RCA).
Security Governance & Optimization
- Drive firewall migration, consolidation, and transformation projects.
- Perform firewall rule recertification, policy cleanup, and compliance-driven security initiatives.
- Conduct capacity planning, performance tuning, and platform optimization exercises.
- Develop operational standards, technical documentation, runbooks, and best practices.
Collaboration & Mentoring
- Provide technical leadership, guidance, and mentoring to L1/L2 engineers.
- Collaborate with Cloud, Infrastructure, SOC, and Application teams to support security and business initiatives.
- Support regulatory audits, security assessments, and compliance requirements.
Core Network Security Technologies
- Fortinet Firewalls
- Cisco Firewalls
- Azure WAF
- Azure Firewall
- F5 Load Balancer
- Cisco ISE
- Aruba ClearPass
- NAC (Network Access Control)
- Zscaler (ZIA & ZPA)
Security & Architecture
- Firewall Policy Management
- Network Segmentation
- Zero Trust Architecture
- Security Architecture Design & Review
- Network Security Operations
- Incident & Problem Management
Cloud & Governance
- Azure Security
- Security Compliance & Audits
- Security Assessments
- Capacity Planning & Performance Optimization
- Vendor Management & Escalations
- CISSP
- CCNP Security
- Fortinet NSE Certifications
- Microsoft Azure Security Certifications (AZ-500)
- F5 Certifications
- Cisco ISE Certifications
- Aruba ClearPass Certifications
- 8+ years of experience in Network Security Engineering.
- Strong hands-on expertise with enterprise firewall and security platforms.
- Experience leading firewall migration, transformation, and modernization initiatives.
- Proven experience in designing and implementing Zero Trust and network segmentation strategies.
- Experience working in large-scale enterprise environments.
Senior Network Security & Network Access Control Engineer ยท UST