Description and Requirements
Key Responsibilities:
- Network Design: Plan & design LAN and Server Farm architecture solutions aligned to business and security requirementsDevelop and document network topologies, capacity plans, and migration strategies, including technology refresh and green-field deployments.
- Network Analysis and Implementation: Understanding the network scope and design as per the requirement and provide a solution to execute the projects. Act as a Senior resource to plot the configuration changes during Network migrations. Troubleshoot and resolve network issues, ensuring minimal downtime during critical network outages.
- Network and Security Deployment: Deployment of LAN and Perimeter Security solutions including Design, build, configure, test and provide required documentation and maintenance support for Deployment scope of Work.
- Firewall Management: Deploy, Configure, manage, and maintain Palo Alto, Checkpoint and FortiGate firewalls to ensure network and perimeter security with proper route split up for traffic enhancement. Onboarding of this firewalls to respective central management console. Analyze, Implement and maintain firewall policies to control traffic and protect against threats.
- SecuredCommunication Management: IPSEC configuration and understanding on IKE and Crypto map features.
- Switch Management: Configure, Deploy and manage Cisco switches, ensuring optimal performance and network segmentation. Has experience in analyzing and proving plan for New Implementation and Tech-refresh configuration of Switches. Troubleshoot and resolve LAN connectivity issues in the critical environment.
- Router Management: Configure, Deploy and manage Cisco Routers, ensuring optimal performance and network routing standards followed as per the design. Perform analysis and formulate plan for New Implementation and Tech-refresh configuration of Routers. Troubleshoot and resolve WAN Connectivity issues in the critical environment. Should have strong knowledge in OSPF and BGP routing protocols.
- AccessControl and Authentication: Administer Aruba Clear Pass Policy Manager (CPPM) for user authentication and access control. Radius configuration, Certificate upgrade/revocation configuration. Ensure compliance with security policies and standards.
- Load Balancer Management: Able to deploy a new F5 LTM and setup a SSL Reverse-Proxy configuration, VIP configuration and iRule configuration.
- Documentation: Build accurate network documentation, including diagrams, configurations, asset inventory and SOPs.
- Collaboration: Collaborate with other teams, including system administrators and security experts, to achieve common network goals.
- Security Compliance: Ensure that network configurations and policies comply with industry best practices and security standards.
- Automation: Any Automation skillset on Network and Security Deployment to support Project tasks enhancement is considered as added advantage
Qualifications:
- Bachelor's degree in information technology, Computer Science, or a related field.
- Cisco Certified Network Professional (CCNP) and PCNSE/ Forti-NSE or equivalent certification is required.
- Proven experience in managing Palo Alto, Check Point and Fortigate firewalls.
- Proficiency in configuring and troubleshooting Cisco or equivalent switches and Routers.
- Hands-on experience with Aruba Clear Pass Policy Manager (CPPM) or similar access control systems.
- Proficient in OSPF and BGP configuration.
- Strong knowledge of network protocols, routing, and switching.
- Strong knowledge in Load balance and Reverse-Proxy solutions.
- Strong knowledge in handling the IPSEC setup
- Excellent problem-solving and analytical skills.
- Excellent skillset on Network Analysis and Migration planning to handle Network projects
- Effective communication and teamwork abilities.
Preferred Skills:
- Industry certifications such Palo Alto Networks Next Generation Firewall Engineer (PCNSE) or Check Point Certified Security Engineer (CCSE) or Forti Network Security Engineer (Forti-NSE) would be a plus.
- Familiarity with network monitoring and management tools.
- Experience in Advanced Network on Network Automation and ACI Infrastructure deployment.
- Experience in Hybrid Network transition from on-premises networks to cloud.
- Experience in deployment, configuration, or support of secured data diode solutions in high-security or classified environments will be an added advantage

