Job Summary
Palo Alto Firewalls & Fortinet VPN (ZINA) – Management & Monitoring (L3) Job Description Role Summary The L3 Network Security Engineer is responsible for leading the design, architecture, optimization, and advanced troubleshooting of Palo Alto Firewalls and Fortinet VPN (ZINA) environments. This role focuses on complex incident resolution, security architecture enhancement, automation, and governance of network security operations. Key Responsibilities Lead L3 troubleshooting for complex firewall and VPN incidents across enterprise environments Design and implement advanced security policies, NAT rules, segmentation, and access control strategies Architect and optimize Palo Alto (PAN-OS, Panorama) and Fortinet (FortiGate, ZINA) deployments Conduct deep log analysis using Panorama, FortiAnalyzer, and SIEM tools for threat detection and resolution Drive root cause analysis (RCA) for major security incidents and implement preventive measures Define and enforce firewall/VPN governance standards, audit compliance, and security policies Lead change management activities including high-risk security changes and validations Integrate security platforms with SIEM, SOAR, and automation tools for proactive monitoring and response Drive automation initiatives (policy validation, rule cleanup, self-healing responses) Mentor L1/L2 engineers and provide technical leadership and knowledge sharing Required Skills Expert-level knowledge of network security concepts (Firewall, VPN, NAT, IPSec, SSL VPN) Extensive experience with Palo Alto firewalls (PAN-OS, Panorama) Strong experience with Fortinet VPN solutions (FortiGate, ZINA) Advanced knowledge of routing, switching, and network architecture Experience with SIEM/SOAR platforms (Splunk, QRadar) Strong understanding of ITIL processes (Incident, Problem, Change, Risk Management) Scripting/automation skills (Python, APIs, Ansible – preferred) Strong analytical, design, and problem-solving capabilities Preferred Qualifications Bachelor’s or Master’s degree in IT, Cybersecurity, or related field Certifications: PCNSE, NSE4/NSE5/NSE7, CCNP/CCIE Security Experience with Zero Trust Network Access (ZTNA/ZINA) architectures Exposure to cloud security and hybrid network environments Experience in large-scale 24x7 SOC/NOC environments Key KPIs Mean Time to Detect (MTTD) Mean Time to Resolve (MTTR) Firewall/VPN availability and uptime Change success rate (%) Reduction in repeat incidents Security compliance adherence Audit findings closure rate Tools & Technologies Firewall: Palo Alto (PAN-OS, Panorama) VPN: Fortinet (FortiGate, ZINA) SIEM/SOAR: Splunk, QRadar Automation: Python, Ansible ITSM: ServiceNow, Remedy Networking: Cisco, WAN/LAN, SD-WAN
Key Responsibilities
Palo Alto Firewalls & Fortinet VPN (ZINA) – Management & Monitoring (L3) Job Description Role Summary The L3 Network Security Engineer is responsible for leading the design, architecture, optimization, and advanced troubleshooting of Palo Alto Firewalls and Fortinet VPN (ZINA) environments. This role focuses on complex incident resolution, security architecture enhancement, automation, and governance of network security operations. Key Responsibilities Lead L3 troubleshooting for complex firewall and VPN incidents across enterprise environments Design and implement advanced security policies, NAT rules, segmentation, and access control strategies Architect and optimize Palo Alto (PAN-OS, Panorama) and Fortinet (FortiGate, ZINA) deployments Conduct deep log analysis using Panorama, FortiAnalyzer, and SIEM tools for threat detection and resolution Drive root cause analysis (RCA) for major security incidents and implement preventive measures Define and enforce firewall/VPN governance standards, audit compliance, and security policies Lead change management activities including high-risk security changes and validations Integrate security platforms with SIEM, SOAR, and automation tools for proactive monitoring and response Drive automation initiatives (policy validation, rule cleanup, self-healing responses) Mentor L1/L2 engineers and provide technical leadership and knowledge sharing Required Skills Expert-level knowledge of network security concepts (Firewall, VPN, NAT, IPSec, SSL VPN) Extensive experience with Palo Alto firewalls (PAN-OS, Panorama) Strong experience with Fortinet VPN solutions (FortiGate, ZINA) Advanced knowledge of routing, switching, and network architecture Experience with SIEM/SOAR platforms (Splunk, QRadar) Strong understanding of ITIL processes (Incident, Problem, Change, Risk Management) Scripting/automation skills (Python, APIs, Ansible – preferred) Strong analytical, design, and problem-solving capabilities Preferred Qualifications Bachelor’s or Master’s degree in IT, Cybersecurity, or related field Certifications: PCNSE, NSE4/NSE5/NSE7, CCNP/CCIE Security Experience with Zero Trust Network Access (ZTNA/ZINA) architectures Exposure to cloud security and hybrid network environments Experience in large-scale 24x7 SOC/NOC environments Key KPIs Mean Time to Detect (MTTD) Mean Time to Resolve (MTTR) Firewall/VPN availability and uptime Change success rate (%) Reduction in repeat incidents Security compliance adherence Audit findings closure rate Tools & Technologies Firewall: Palo Alto (PAN-OS, Panorama) VPN: Fortinet (FortiGate, ZINA) SIEM/SOAR: Splunk, QRadar Automation: Python, Ansible ITSM: ServiceNow, Remedy Networking: Cisco, WAN/LAN, SD-WAN
Skill Requirements
Palo Alto Firewalls & Fortinet VPN (ZINA) – Management & Monitoring (L3) Job Description Role Summary The L3 Network Security Engineer is responsible for leading the design, architecture, optimization, and advanced troubleshooting of Palo Alto Firewalls and Fortinet VPN (ZINA) environments. This role focuses on complex incident resolution, security architecture enhancement, automation, and governance of network security operations. Key Responsibilities Lead L3 troubleshooting for complex firewall and VPN incidents across enterprise environments Design and implement advanced security policies, NAT rules, segmentation, and access control strategies Architect and optimize Palo Alto (PAN-OS, Panorama) and Fortinet (FortiGate, ZINA) deployments Conduct deep log analysis using Panorama, FortiAnalyzer, and SIEM tools for threat detection and resolution Drive root cause analysis (RCA) for major security incidents and implement preventive measures Define and enforce firewall/VPN governance standards, audit compliance, and security policies Lead change management activities including high-risk security changes and validations Integrate security platforms with SIEM, SOAR, and automation tools for proactive monitoring and response Drive automation initiatives (policy validation, rule cleanup, self-healing responses) Mentor L1/L2 engineers and provide technical leadership and knowledge sharing Required Skills Expert-level knowledge of network security concepts (Firewall, VPN, NAT, IPSec, SSL VPN) Extensive experience with Palo Alto firewalls (PAN-OS, Panorama) Strong experience with Fortinet VPN solutions (FortiGate, ZINA) Advanced knowledge of routing, switching, and network architecture Experience with SIEM/SOAR platforms (Splunk, QRadar) Strong understanding of ITIL processes (Incident, Problem, Change, Risk Management) Scripting/automation skills (Python, APIs, Ansible – preferred) Strong analytical, design, and problem-solving capabilities Preferred Qualifications Bachelor’s or Master’s degree in IT, Cybersecurity, or related field Certifications: PCNSE, NSE4/NSE5/NSE7, CCNP/CCIE Security Experience with Zero Trust Network Access (ZTNA/ZINA) architectures Exposure to cloud security and hybrid network environments Experience in large-scale 24x7 SOC/NOC environments Key KPIs Mean Time to Detect (MTTD) Mean Time to Resolve (MTTR) Firewall/VPN availability and uptime Change success rate (%) Reduction in repeat incidents Security compliance adherence Audit findings closure rate Tools & Technologies Firewall: Palo Alto (PAN-OS, Panorama) VPN: Fortinet (FortiGate, ZINA) SIEM/SOAR: Splunk, QRadar Automation: Python, Ansible ITSM: ServiceNow, Remedy Networking: Cisco, WAN/LAN, SD-WAN
Other Requirements
Palo Alto Firewalls & Fortinet VPN (ZINA) – Management & Monitoring (L3) Job Description Role Summary The L3 Network Security Engineer is responsible for leading the design, architecture, optimization, and advanced troubleshooting of Palo Alto Firewalls and Fortinet VPN (ZINA) environments. This role focuses on complex incident resolution, security architecture enhancement, automation, and governance of network security operations. Key Responsibilities Lead L3 troubleshooting for complex firewall and VPN incidents across enterprise environments Design and implement advanced security policies, NAT rules, segmentation, and access control strategies Architect and optimize Palo Alto (PAN-OS, Panorama) and Fortinet (FortiGate, ZINA) deployments Conduct deep log analysis using Panorama, FortiAnalyzer, and SIEM tools for threat detection and resolution Drive root cause analysis (RCA) for major security incidents and implement preventive measures Define and enforce firewall/VPN governance standards, audit compliance, and security policies Lead change management activities including high-risk security changes and validations Integrate security platforms with SIEM, SOAR, and automation tools for proactive monitoring and response Drive automation initiatives (policy validation, rule cleanup, self-healing responses) Mentor L1/L2 engineers and provide technical leadership and knowledge sharing Required Skills Expert-level knowledge of network security concepts (Firewall, VPN, NAT, IPSec, SSL VPN) Extensive experience with Palo Alto firewalls (PAN-OS, Panorama) Strong experience with Fortinet VPN solutions (FortiGate, ZINA) Advanced knowledge of routing, switching, and network architecture Experience with SIEM/SOAR platforms (Splunk, QRadar) Strong understanding of ITIL processes (Incident, Problem, Change, Risk Management) Scripting/automation skills (Python, APIs, Ansible – preferred) Strong analytical, design, and problem-solving capabilities Preferred Qualifications Bachelor’s or Master’s degree in IT, Cybersecurity, or related field Certifications: PCNSE, NSE4/NSE5/NSE7, CCNP/CCIE Security Experience with Zero Trust Network Access (ZTNA/ZINA) architectures Exposure to cloud security and hybrid network environments Experience in large-scale 24x7 SOC/NOC environments Key KPIs Mean Time to Detect (MTTD) Mean Time to Resolve (MTTR) Firewall/VPN availability and uptime Change success rate (%) Reduction in repeat incidents Security compliance adherence Audit findings closure rate Tools & Technologies Firewall: Palo Alto (PAN-OS, Panorama) VPN: Fortinet (FortiGate, ZINA) SIEM/SOAR: Splunk, QRadar Automation: Python, Ansible ITSM: ServiceNow, Remedy Networking: Cisco, WAN/LAN, SD-WAN