L2 / L3 Firewall & Network Security Engineer

Open 30d

The Firewall & Network Security Engineer is responsible for the operations, administration, support, optimization, and enhancement of enterprise Firewall and Network Security infrastructure. The role ensures secure, stable, and high-performing delivery of network security services across complex enterprise environments.

The engineer will work closely with Information Security, SOC, Network Operations, Infrastructure, Cloud, Audit, Application Teams, and OEM TAC teams to manage firewall and security services including policy administration, VPN, NAT, WAF, IDS/IPS, DDoS protection, NAC, and micro-segmentation technologies.

The role includes incident handling, troubleshooting, upgrades, security optimization, and participation in architecture and transformation initiatives depending on experience level (L2/L3).


Experience Required

  • L2 Level: 3–5 years of experience in Firewall / Network Security Operations & Support
  • L3 Level: 5–8+ years of experience in Firewall / Network Security Engineering & Advanced Support
  • Experience in enterprise production environments is required

Primary Skills Required

Firewall Technologies

Hands-on experience with:

  • Cisco Firepower / ASA
  • Palo Alto Networks Firewall
  • Check Point Firewall
  • Fortinet FortiGate

WAF / Web Security

  • F5 BIG-IP / ASM / Advanced WAF

DDoS Protection

  • ISP-based DDoS mitigation solutions
  • Radware DDoS Protection

IDS/IPS

  • Trend Micro IPS/IDS
  • Cisco Firepower IPS

NAC (Network Access Control)

  • Aruba Networks ClearPass (operational exposure preferred)
  • NAC policy management, authentication/authorization, and endpoint access control
  • AD/LDAP integration and access troubleshooting

Micro-Segmentation

  • Akamai Guardicore (knowledge or exposure preferred)

Core Network Security Skills

  • Firewall policy management and lifecycle operations
  • VPN administration (site-to-site & remote access)
  • NAT configuration and troubleshooting
  • ACL and access control management
  • Security rule optimization and cleanup
  • HA configuration and troubleshooting
  • Backup, restore, and recovery operations
  • Firmware upgrades and patch management
  • Incident handling and RCA
  • Network segmentation and Zero Trust principles

Good to Have Skills

  • Cloud security exposure (AWS / Azure)
  • SIEM integration and SOC operations awareness
  • Load balancer and proxy/SWG concepts
  • Security automation and monitoring tools
  • ServiceNow and ITIL processes (incident, change, problem management)
  • CAB and change management exposure
  • Agile / SAFe environment exposure
  • Basic scripting (PowerShell / Python / Bash)

Roles & Responsibilities

L2 Responsibilities (Operational & Support Focus)

  • Handle day-to-day firewall and network security operations
  • Perform troubleshooting for firewall, VPN, NAT, and policy issues
  • Manage incident tickets and provide L2 escalation support
  • Implement firewall rule changes under SOP guidance
  • Monitor security infrastructure health and compliance
  • Support upgrades, patching, and maintenance activities
  • Coordinate with OEM TAC for issue resolution
  • Maintain operational documentation and reports

L3 Responsibilities (Advanced / Engineering Focus)

  • Lead critical incident resolution, escalations, and RCA activities
  • Design, optimize, and govern firewall, VPN, NAC, WAF, and segmentation policies
  • Perform advanced troubleshooting across integrated security environments
  • Lead upgrades, migrations, onboarding, and transformation projects
  • Drive security optimization, rule cleanup, and performance improvements
  • Integrate security tools with SIEM, NAC, and ITSM platforms
  • Mentor L1/L2 engineers and provide technical guidance
  • Own SOPs, runbooks, architecture documents, and governance practices
  • Participate in security architecture reviews, audits, and compliance discussions
  • Enforce Zero Trust and least privilege security principles

Preferred Candidate Profile

  • Strong analytical and troubleshooting skills
  • Good communication and stakeholder management abilities
  • Experience in enterprise-scale production environments
  • Ability to handle critical incidents and operational escalations
  • Strong understanding of network security architecture and operations


Requirements

  • Role: L2 / L3 Firewall & Network Security Engineer
  • Experience: 3–8+ Years
  • Work Mode: Operations & Engineering (Enterprise Security Environment)
  • Shift: 24/7 Rotational / On-call Support
  • Location: Mumbai – Andheri / Vashi
  • Employment Type: Full-time

Mail your CVs along with a cover letter on hr@techsecdigital.com or apply directly on company website.

Note: Joining Immediate or within 1 month