Senior Engineer - Network Security
Summary
Senior network security engineer in Doha who maintains, operates and hardens enterprise network infrastructure — Cisco Nexus/Catalyst, Palo Alto and Fortinet firewalls, F5, wireless controllers and NAC — while implementing and supporting the ISO/IEC 27001 information security management system, including audits, patching and change management.
• Maintain, operate & Harden essential IT Network operations, including Network devices (Cisco Nexus & catalyst switches/routes), Wireless controllers, Cisco, PaloAlto, Fortinet firewalls and other security tools like Forescout NAC, Cisco ISE & F5 WAF etc.
• Implement, operate, support and maintenance of the Information Security Management System based on the ISO/IEC 27000 series standards, including obtaining our certification against ISO/IEC 27001
• Nurture dependable IT infrastructure and networking that's always up and running
• Partner with internal and external partners to communicate or follow up project status, activities, and achievements
• Monitor datacenter health using preexisting management tools and respond to hardware issues as they arise; help build, test, and maintain new network devices as needed.
• Maintain internal network requirements including, Cisco Switches/Routers, firewalls, web application firewalls, wireless Lan controllers, access points, security updates; support internet, intranet, LANs, WANs, and network segments
• Perform routine/scheduled audits of the systems, including backup/patching/Hardening etc.
• Implementation, operation, support and maintenance of the Information Security Management System based on the ISO/IEC 27000 series standards, including obtaining our certification against ISO/IEC 27001
• Perform network maintenance and system upgrades including service packs, patches, hot fixes and Best Practice security configurations.
• Work within established configuration and change management policies to ensure awareness, approval and success of changes made to the network infrastructure
• Select and implement security tools, policies, and procedures in conjunction with the company's security team
| Skills and Qualifications |
• At least 8-10 years of operational experience • Knowledge in VLAN, DHCP, SECURITY, ROUTING, IPSEC VPNs, NAT/PAT, Proxy, F5 WAF etc. • Must be well-versed in and experienced with IT policies and procedures, technology standards, and have knowledge of cyber security frameworks such as NIST, CIS Controls ®, MITRE ATT&CK ® • Documentation of CLIENTS Internal network and updating in knowledge database Tickets Handling etc. • Securing and hardening CLIENTS infrastructure, including (but not limited to) systems, networks, endpoints, SaaS integrations and cloud resources • Working knowledge of common information security management frameworks such as ISO27001 • Hands on Experience with Cisco Nexus, ASA, PaloAlto, Fortinet firewall & F5 (LTM & ASM) • Strong LAN/WAN experience with troubleshooting, design. • Knowledge and familiarity with reviewing and deploying vendor updates for security patches. • Knowledge and familiarity with Cisco wireless technologies (WLC/Access points) & ISE |
| Preferred Qualifications |
• Must be CCNP & ISO 27001:2013 Certified • Must be PCNSA/PCNSE & F5 301/303 Certified • Other Security and Network certification would be advantage |