Job Summary
Key Responsibilities
2. Conduct Thorough Root Cause Analysis For Escalated Incidents, Implementing Effective Solutions To Mitigate Technical And Security Issues, And Documenting Findings For Future Reference.
3. Engage In Knowledge Base Management By Updating And Refining Documentation, And Facilitating Training Sessions For New Team Members To Enhance Their Skills And Understanding Of Azure Security Protocols.
4. Resolve Complex Support Tickets Within The Agreed Service Level Agreements (Slas), Collaborating With Cross-Functional Teams To Ensure Seamless Operations And Maintain A Robust Security Posture.
5. Enhance Customer Experience By Achieving First Call Resolution, Minimizing Rejected Resolutions And Reopens, While Proactively Addressing Potential Security Threats To Ensure High Levels Of Customer Satisfaction (Csat).
Skill Requirements
2. Strong Troubleshooting And Analytical Skills For Incident Resolution.
3. Familiarity With Quality Standards And Regulatory Compliance In Support Operations.
4. Excellent Communication And Training Skills For Knowledge Transfer And Team Development.
5. Ability To Work Collaboratively Across Teams To Ensure Operational Efficiency.
Other Requirements
Job Description – L2+ Network Security Engineer (7+ Years Experience)
Skills: FGT Firewall, Cisco ISE, Security Services Edge (SSE), ZTNA, Cato
Position Overview
We are seeking an experienced L2+ Network Security Engineer with 7+ years of hands‑on experience in enterprise security technologies, including Fortinet Firewalls (FGT), Cisco ISE, SSE platforms, and ZTNA frameworks.
The ideal candidate should be strong in day‑to‑day operations, troubleshooting, implementation support, policy enforcement, and security posture improvement across hybrid enterprise environments.
Key Responsibilities
1. Firewall & Perimeter Security (FGT FW)
- Manage, configure, and troubleshoot FortiGate Firewalls (policy changes, NAT, VPN, IPS, web filtering, SSL inspection).
- Perform rule reviews, policy optimization, and configuration hardening aligned with best practices.
- Conduct L2/L3 operational support for firewall‑related incidents and change activities.
- Execute firmware upgrades, HA maintenance, and security posture checks.
2. Cisco ISE (Identity Services Engine)
- Manage and maintain Cisco ISE for 802.1X, NAC controls, posture assessment, profiling, guest access, and device authentication.
- Troubleshoot authentication, authorization, and endpoint visibility issues across wired/wireless networks.
- Create/modify ISE policies (Authorization Profiles, Conditions, Policy Sets).
- Work with network teams to ensure secure network access enforcement.
3. Security Services Edge (SSE)
- Support implementation and operations of SSE platforms such as Prisma Access, Cato SSE, etc.
- Handle SWG, cloud firewall, and traffic steering policies.
- Monitor SSE portals, user security logs, and help resolve access/security‑related issues.
- Assist in onboarding users, devices, and locations into SSE ecosystem.
4. Zero Trust Network Access (ZTNA)
- Support rollout and operations of ZTNA solutions (Cato ZTNA, Fortinet ZTNA, etc.).
- Troubleshoot user access issues, application onboarding, and connector/gateway health.
- Ensure identity‑based policies are properly enforced across user types and applications.
5. Cato SASE Platform (Hands‑On), if any
- Manage day‑to‑day administrative tasks in Cato Cloud (policies, tunnels, user access, traffic flows).
- Monitor WAN optimization, security layers, and user experience across Cato edges.
- Assist in site onboarding, tunneling configurations, and remediation of routing/security issues.
6. Security Operations & Troubleshooting
- Act as L2+ escalation engineer for network‑security incidents and service requests.
- Perform packet analysis, log review, and root‑cause investigation using vendor tools and SIEM dashboards.
- Support vulnerability remediation activities and coordinate with SOC/Infra teams.
- Maintain documentation for configurations, topology, SOPs, and change records.
Required Skills & Expertise
Technical Skills
- FortiGate FGT Firewalls – strong hands‑on (VPN, IPS, NAT, security profiles, HA).
- Cisco ISE – NAC, 802.1X, posture, identity management, guest/BYOD workflows.
- SSE Platforms – Prisma / Cato SSE (any combination).
- ZTNA frameworks – identity‑driven secure access and policy controls.
- Routing fundamentals (BGP/OSPF), VLANs, ACLs, DHCP, DNS basics.
- Understanding of certificates, PKI, SSL/TLS, MFA integrations.
- Experience with ticketing systems (ServiceNow, Remedy) and monitoring tools.
Professional Skills
- Strong troubleshooting and analytical thinking.
- Ability to work in 24×7 operations (if required).
- Clear communication and stakeholder coordination skills.
- Ability to follow change management and security governance processes.
Experience
- 7+ years in Network & Security operations/engineering roles.
- Proven hands‑on experience with FGT FW, Cisco ISE, SSE, ZTNA, and Cato.
- Experience supporting medium‑to‑large enterprise environments.
Preferred Certifications (Good to Have)
- Fortinet NSE4–NSE6
Cisco CCNA/CCNP Security