L2 / L3 Firewall & Network Security Engineer
The Firewall & Network Security Engineer is responsible for the operations, administration, support, optimization, and enhancement of enterprise Firewall and Network Security infrastructure. The role ensures secure, stable, and high-performing delivery of network security services across complex enterprise environments.
The engineer will work closely with Information Security, SOC, Network Operations, Infrastructure, Cloud, Audit, Application Teams, and OEM TAC teams to manage firewall and security services including policy administration, VPN, NAT, WAF, IDS/IPS, DDoS protection, NAC, and micro-segmentation technologies.
The role includes incident handling, troubleshooting, upgrades, security optimization, and participation in architecture and transformation initiatives depending on experience level (L2/L3).
Experience Required
- L2 Level: 3–5 years of experience in Firewall / Network Security Operations & Support
- L3 Level: 5–8+ years of experience in Firewall / Network Security Engineering & Advanced Support
- Experience in enterprise production environments is required
Primary Skills Required
Firewall Technologies
Hands-on experience with:
- Cisco Firepower / ASA
- Palo Alto Networks Firewall
- Check Point Firewall
- Fortinet FortiGate
WAF / Web Security
- F5 BIG-IP / ASM / Advanced WAF
DDoS Protection
- ISP-based DDoS mitigation solutions
- Radware DDoS Protection
IDS/IPS
- Trend Micro IPS/IDS
- Cisco Firepower IPS
NAC (Network Access Control)
- Aruba Networks ClearPass (operational exposure preferred)
- NAC policy management, authentication/authorization, and endpoint access control
- AD/LDAP integration and access troubleshooting
Micro-Segmentation
- Akamai Guardicore (knowledge or exposure preferred)
Core Network Security Skills
- Firewall policy management and lifecycle operations
- VPN administration (site-to-site & remote access)
- NAT configuration and troubleshooting
- ACL and access control management
- Security rule optimization and cleanup
- HA configuration and troubleshooting
- Backup, restore, and recovery operations
- Firmware upgrades and patch management
- Incident handling and RCA
- Network segmentation and Zero Trust principles
Good to Have Skills
- Cloud security exposure (AWS / Azure)
- SIEM integration and SOC operations awareness
- Load balancer and proxy/SWG concepts
- Security automation and monitoring tools
- ServiceNow and ITIL processes (incident, change, problem management)
- CAB and change management exposure
- Agile / SAFe environment exposure
- Basic scripting (PowerShell / Python / Bash)
Roles & Responsibilities
L2 Responsibilities (Operational & Support Focus)
- Handle day-to-day firewall and network security operations
- Perform troubleshooting for firewall, VPN, NAT, and policy issues
- Manage incident tickets and provide L2 escalation support
- Implement firewall rule changes under SOP guidance
- Monitor security infrastructure health and compliance
- Support upgrades, patching, and maintenance activities
- Coordinate with OEM TAC for issue resolution
- Maintain operational documentation and reports
L3 Responsibilities (Advanced / Engineering Focus)
- Lead critical incident resolution, escalations, and RCA activities
- Design, optimize, and govern firewall, VPN, NAC, WAF, and segmentation policies
- Perform advanced troubleshooting across integrated security environments
- Lead upgrades, migrations, onboarding, and transformation projects
- Drive security optimization, rule cleanup, and performance improvements
- Integrate security tools with SIEM, NAC, and ITSM platforms
- Mentor L1/L2 engineers and provide technical guidance
- Own SOPs, runbooks, architecture documents, and governance practices
- Participate in security architecture reviews, audits, and compliance discussions
- Enforce Zero Trust and least privilege security principles
Preferred Candidate Profile
- Strong analytical and troubleshooting skills
- Good communication and stakeholder management abilities
- Experience in enterprise-scale production environments
- Ability to handle critical incidents and operational escalations
- Strong understanding of network security architecture and operations
Requirements
- Role: L2 / L3 Firewall & Network Security Engineer
- Experience: 3–8+ Years
- Work Mode: Operations & Engineering (Enterprise Security Environment)
- Shift: 24/7 Rotational / On-call Support
- Location: Mumbai – Andheri / Vashi
- Employment Type: Full-time
Mail your CVs along with a cover letter on hr@techsecdigital.com or apply directly on company website.
Note: Joining Immediate or within 1 month