Job Summary
Job Summary : Detailed Job Description Network Security Engineer – Firewall, VPN Management & Monitoring (L2) 24x7 Security Operations • Firewall Policy Support • VPN Support • Monitoring • Incident Triage Role Level L2 / Network Security Operations Experience 4–8 years preferred Support Window 24x7 shift / rotational Function Network Security Primary Technologies Palo Alto, Fortinet/FortiGate, Check Point, Cisco ASA/FTD, VPN, NAT, ACLs Primary Processes Incident, Service Request, Change, Problem/RCA support Core Tools Panorama, FortiManager, FortiAnalyzer, SmartConsole, SolarWinds, SIEM, ServiceNow Delivery Context Burlington 24x7 managed network security operations Certifications CCNA Security, PCNSA, NSE4, CCSA/CCSE, ITIL preferred Document Type Reusable detailed L2 staffing profile 1. Role Summary The Network Security Engineer – Firewall, VPN Management & Monitoring (L2) is responsible for 24x7 operational support of enterprise firewall and VPN environments. The role focuses on real-time monitoring, incident triage, service restoration, SOP-based firewall and VPN changes, log review, policy/NAT/VPN validation, security alert handling, compliance support, documentation and escalation to L3/SOC/OEM teams. The engineer supports platforms such as Palo Alto, Fortinet/FortiGate, Check Point and Cisco ASA/FTD, while working within ITIL-aligned Incident, Problem, Change and Service Request processes. 2. Role Purpose & Business Outcomes • Provide reliable L2 security operations coverage for firewall, VPN, NAT, security policy and remote/site-to-site connectivity services. • Restore security and connectivity services within agreed SLA by performing structured triage, evidence capture and escalation. • Ensure firewall/VPN changes are executed through approved change controls with clear pre-checks, implementation notes, validation and rollback readiness. • Maintain effective monitoring of security appliance health, VPN tunnel health, logs, alerts and performance thresholds. • Support Burlington-style managed services expectations around security monitoring, log retention, remediation actions, documentation and audit readiness. 3. Key Roles & Responsibilities • 24x7 Security Monitoring: Monitor firewall, VPN, remote access, site-to-site tunnel, appliance health, HA state, interface, CPU/memory, license, log forwarding and security alert dashboards during assigned shifts. • Incident Triage & Restoration: Perform L2 troubleshooting for firewall/VPN incidents including tunnel down, remote access failures, rule/policy issues, NAT issues, blocked traffic, latency, packet drops and application connectivity failures. • Firewall Policy Support: Validate, implement and troubleshoot approved standard firewall policies, address/service objects, URL/app rules, security profiles and access control configuration under change process. • NAT & Routing Validation: Support validation and troubleshooting of source/destination NAT, policy NAT, static routes, default routes, VPN routes, security zones and asymmetric traffic symptoms. • VPN Operations: Monitor and troubleshoot IPSec, SSL VPN, GlobalProtect/remote access VPN and site-to-site VPN tunnels, including IKE/IPSec negotiation, encryption, NAT-T, certificates, pre-shared keys and tunnel health checks. • Security Log Analysis: Review firewall/VPN logs using Panorama, FortiAnalyzer, SmartConsole, SIEM and device logs to isolate traffic, threat, authentication, URL filtering, IPS/IDS or VPN-related symptoms. • Change Execution: Execute approved SOP-based changes such as rule updates, object changes, VPN parameter validation, firmware maintenance support, user/group updates, policy commits and post-change checks. • Service Requests: Fulfill L2 service requests for firewall rule validation, VPN access checks, log extraction, policy review inputs, object mapping and connectivity evidence.
Key Responsibilities
Detailed Job Description Network Security Engineer – Firewall, VPN Management & Monitoring (L2) 24x7 Security Operations • Firewall Policy Support • VPN Support • Monitoring • Incident Triage Role Level L2 / Network Security Operations Experience 4–8 years preferred Support Window 24x7 shift / rotational Function Network Security Primary Technologies Palo Alto, Fortinet/FortiGate, Check Point, Cisco ASA/FTD, VPN, NAT, ACLs Primary Processes Incident, Service Request, Change, Problem/RCA support Core Tools Panorama, FortiManager, FortiAnalyzer, SmartConsole, SolarWinds, SIEM, ServiceNow Delivery Context Burlington 24x7 managed network security operations Certifications CCNA Security, PCNSA, NSE4, CCSA/CCSE, ITIL preferred Document Type Reusable detailed L2 staffing profile 1. Role Summary The Network Security Engineer – Firewall, VPN Management & Monitoring (L2) is responsible for 24x7 operational support of enterprise firewall and VPN environments. The role focuses on real-time monitoring, incident triage, service restoration, SOP-based firewall and VPN changes, log review, policy/NAT/VPN validation, security alert handling, compliance support, documentation and escalation to L3/SOC/OEM teams. The engineer supports platforms such as Palo Alto, Fortinet/FortiGate, Check Point and Cisco ASA/FTD, while working within ITIL-aligned Incident, Problem, Change and Service Request processes. 2. Role Purpose & Business Outcomes • Provide reliable L2 security operations coverage for firewall, VPN, NAT, security policy and remote/site-to-site connectivity services. • Restore security and connectivity services within agreed SLA by performing structured triage, evidence capture and escalation. • Ensure firewall/VPN changes are executed through approved change controls with clear pre-checks, implementation notes, validation and rollback readiness. • Maintain effective monitoring of security appliance health, VPN tunnel health, logs, alerts and performance thresholds. • Support Burlington-style managed services expectations around security monitoring, log retention, remediation actions, documentation and audit readiness. 3. Key Roles & Responsibilities • 24x7 Security Monitoring: Monitor firewall, VPN, remote access, site-to-site tunnel, appliance health, HA state, interface, CPU/memory, license, log forwarding and security alert dashboards during assigned shifts. • Incident Triage & Restoration: Perform L2 troubleshooting for firewall/VPN incidents including tunnel down, remote access failures, rule/policy issues, NAT issues, blocked traffic, latency, packet drops and application connectivity failures. • Firewall Policy Support: Validate, implement and troubleshoot approved standard firewall policies, address/service objects, URL/app rules, security profiles and access control configuration under change process. • NAT & Routing Validation: Support validation and troubleshooting of source/destination NAT, policy NAT, static routes, default routes, VPN routes, security zones and asymmetric traffic symptoms. • VPN Operations: Monitor and troubleshoot IPSec, SSL VPN, GlobalProtect/remote access VPN and site-to-site VPN tunnels, including IKE/IPSec negotiation, encryption, NAT-T, certificates, pre-shared keys and tunnel health checks. • Security Log Analysis: Review firewall/VPN logs using Panorama, FortiAnalyzer, SmartConsole, SIEM and device logs to isolate traffic, threat, authentication, URL filtering, IPS/IDS or VPN-related symptoms. • Change Execution: Execute approved SOP-based changes such as rule updates, object changes, VPN parameter validation, firmware maintenance support, user/group updates, policy commits and post-change checks. • Service Requests: Fulfill L2 service requests for firewall rule validation, VPN access checks, log extraction, policy review inputs, object mapping and connectivity evidence.
Skill Requirements
Detailed Job Description Network Security Engineer – Firewall, VPN Management & Monitoring (L2) 24x7 Security Operations • Firewall Policy Support • VPN Support • Monitoring • Incident Triage Role Level L2 / Network Security Operations Experience 4–8 years preferred Support Window 24x7 shift / rotational Function Network Security Primary Technologies Palo Alto, Fortinet/FortiGate, Check Point, Cisco ASA/FTD, VPN, NAT, ACLs Primary Processes Incident, Service Request, Change, Problem/RCA support Core Tools Panorama, FortiManager, FortiAnalyzer, SmartConsole, SolarWinds, SIEM, ServiceNow Delivery Context Burlington 24x7 managed network security operations Certifications CCNA Security, PCNSA, NSE4, CCSA/CCSE, ITIL preferred Document Type Reusable detailed L2 staffing profile 1. Role Summary The Network Security Engineer – Firewall, VPN Management & Monitoring (L2) is responsible for 24x7 operational support of enterprise firewall and VPN environments. The role focuses on real-time monitoring, incident triage, service restoration, SOP-based firewall and VPN changes, log review, policy/NAT/VPN validation, security alert handling, compliance support, documentation and escalation to L3/SOC/OEM teams. The engineer supports platforms such as Palo Alto, Fortinet/FortiGate, Check Point and Cisco ASA/FTD, while working within ITIL-aligned Incident, Problem, Change and Service Request processes. 2. Role Purpose & Business Outcomes • Provide reliable L2 security operations coverage for firewall, VPN, NAT, security policy and remote/site-to-site connectivity services. • Restore security and connectivity services within agreed SLA by performing structured triage, evidence capture and escalation. • Ensure firewall/VPN changes are executed through approved change controls with clear pre-checks, implementation notes, validation and rollback readiness. • Maintain effective monitoring of security appliance health, VPN tunnel health, logs, alerts and performance thresholds. • Support Burlington-style managed services expectations around security monitoring, log retention, remediation actions, documentation and audit readiness. 3. Key Roles & Responsibilities • 24x7 Security Monitoring: Monitor firewall, VPN, remote access, site-to-site tunnel, appliance health, HA state, interface, CPU/memory, license, log forwarding and security alert dashboards during assigned shifts. • Incident Triage & Restoration: Perform L2 troubleshooting for firewall/VPN incidents including tunnel down, remote access failures, rule/policy issues, NAT issues, blocked traffic, latency, packet drops and application connectivity failures. • Firewall Policy Support: Validate, implement and troubleshoot approved standard firewall policies, address/service objects, URL/app rules, security profiles and access control configuration under change process. • NAT & Routing Validation: Support validation and troubleshooting of source/destination NAT, policy NAT, static routes, default routes, VPN routes, security zones and asymmetric traffic symptoms. • VPN Operations: Monitor and troubleshoot IPSec, SSL VPN, GlobalProtect/remote access VPN and site-to-site VPN tunnels, including IKE/IPSec negotiation, encryption, NAT-T, certificates, pre-shared keys and tunnel health checks. • Security Log Analysis: Review firewall/VPN logs using Panorama, FortiAnalyzer, SmartConsole, SIEM and device logs to isolate traffic, threat, authentication, URL filtering, IPS/IDS or VPN-related symptoms. • Change Execution: Execute approved SOP-based changes such as rule updates, object changes, VPN parameter validation, firmware maintenance support, user/group updates, policy commits and post-change checks. • Service Requests: Fulfill L2 service requests for firewall rule validation, VPN access checks, log extraction, policy review inputs, object mapping and connectivity evidence.
Other Requirements
Detailed Job Description Network Security Engineer – Firewall, VPN Management & Monitoring (L2) 24x7 Security Operations • Firewall Policy Support • VPN Support • Monitoring • Incident Triage Role Level L2 / Network Security Operations Experience 4–8 years preferred Support Window 24x7 shift / rotational Function Network Security Primary Technologies Palo Alto, Fortinet/FortiGate, Check Point, Cisco ASA/FTD, VPN, NAT, ACLs Primary Processes Incident, Service Request, Change, Problem/RCA support Core Tools Panorama, FortiManager, FortiAnalyzer, SmartConsole, SolarWinds, SIEM, ServiceNow Delivery Context Burlington 24x7 managed network security operations Certifications CCNA Security, PCNSA, NSE4, CCSA/CCSE, ITIL preferred Document Type Reusable detailed L2 staffing profile 1. Role Summary The Network Security Engineer – Firewall, VPN Management & Monitoring (L2) is responsible for 24x7 operational support of enterprise firewall and VPN environments. The role focuses on real-time monitoring, incident triage, service restoration, SOP-based firewall and VPN changes, log review, policy/NAT/VPN validation, security alert handling, compliance support, documentation and escalation to L3/SOC/OEM teams. The engineer supports platforms such as Palo Alto, Fortinet/FortiGate, Check Point and Cisco ASA/FTD, while working within ITIL-aligned Incident, Problem, Change and Service Request processes. 2. Role Purpose & Business Outcomes • Provide reliable L2 security operations coverage for firewall, VPN, NAT, security policy and remote/site-to-site connectivity services. • Restore security and connectivity services within agreed SLA by performing structured triage, evidence capture and escalation. • Ensure firewall/VPN changes are executed through approved change controls with clear pre-checks, implementation notes, validation and rollback readiness. • Maintain effective monitoring of security appliance health, VPN tunnel health, logs, alerts and performance thresholds. • Support Burlington-style managed services expectations around security monitoring, log retention, remediation actions, documentation and audit readiness. 3. Key Roles & Responsibilities • 24x7 Security Monitoring: Monitor firewall, VPN, remote access, site-to-site tunnel, appliance health, HA state, interface, CPU/memory, license, log forwarding and security alert dashboards during assigned shifts. • Incident Triage & Restoration: Perform L2 troubleshooting for firewall/VPN incidents including tunnel down, remote access failures, rule/policy issues, NAT issues, blocked traffic, latency, packet drops and application connectivity failures. • Firewall Policy Support: Validate, implement and troubleshoot approved standard firewall policies, address/service objects, URL/app rules, security profiles and access control configuration under change process. • NAT & Routing Validation: Support validation and troubleshooting of source/destination NAT, policy NAT, static routes, default routes, VPN routes, security zones and asymmetric traffic symptoms. • VPN Operations: Monitor and troubleshoot IPSec, SSL VPN, GlobalProtect/remote access VPN and site-to-site VPN tunnels, including IKE/IPSec negotiation, encryption, NAT-T, certificates, pre-shared keys and tunnel health checks. • Security Log Analysis: Review firewall/VPN logs using Panorama, FortiAnalyzer, SmartConsole, SIEM and device logs to isolate traffic, threat, authentication, URL filtering, IPS/IDS or VPN-related symptoms. • Change Execution: Execute approved SOP-based changes such as rule updates, object changes, VPN parameter validation, firmware maintenance support, user/group updates, policy commits and post-change checks. • Service Requests: Fulfill L2 service requests for firewall rule validation, VPN access checks, log extraction, policy review inputs, object mapping and connectivity evidence.