Job Responsibilities:
1. Network Design
- Plan & design LAN and Server Farm architecture solutions aligned to business and security requirements
- Develop and document network topologies, capacity plans, and migration strategies, including technology refresh and green-field deployments.
2. Network Analysis and Implementation:
- Understanding the network scope and design as per the requirement and provide a solution to execute the projects.
- Act as a Senior resource to plot the configuration changes during Network migrations. Troubleshoot and resolve network issues, ensuring minimal downtime during critical network outages.
3. Network and Security Deployment:
- Deployment of LAN and Perimeter Security solutions including design, build, configure, test and provide required documentation and maintenance support for Deployment scope of Work.
4. Firewall Management:
- Deploy, Configure, manage, and maintain Palo Alto, Checkpoint and FortiGate firewalls to ensure network and perimeter security with proper route split up for traffic enhancement.
- Onboarding of this firewalls to respective central management console.
- Analyze, Implement and maintain firewall policies to control traffic and protect against threats.
5. Secured Communication Management:
- IPSEC configuration and understanding on IKE and Crypto map features.
6. Switch Management:
- Configure, Deploy and manage Cisco switches, ensuring optimal performance and network segmentation.
- Has experience in analyzing and proving plan for New Implementation and Tech-refresh configuration of Switches.
- Troubleshoot and resolve LAN connectivity issues in the critical environment.
7. Router Management:
- Configure, Deploy and manage Cisco Routers, ensuring optimal performance and network routing standards followed as per the design.
- Perform analysis and formulate plan for New Implementation and Tech-refresh configuration of Routers.
- Troubleshoot and resolve WAN Connectivity issues in the critical environment.
- Should have strong knowledge in OSPF and BGP routing protocols.
8. Access Control and Authentication:
- Administer Aruba Clear Pass Policy Manager (CPPM) for user authentication and access control.
- Radius configuration, Certificate upgrade/revocation configuration.
- Ensure compliance with security policies and standards.
9. Load Balancer Management:
- Able to deploy a new F5 LTM and setup a SSL Reverse-Proxy configuration, VIP configuration and iRule configuration.
10. Documentation:
- Build accurate network documentation, including diagrams, configurations, asset inventory and SOPs.
11. Collaboration:
- Collaborate with other teams, including system administrators and security experts, to achieve common network goals.
12. Security Compliance:
- Ensure that network configurations and policies comply with industry best practices and security standards.
13. Automation:
- Any Automation skillset on Network and Security Deployment to support Project tasks enhancement is considered as added advantage
Job Requirements:
- Bachelor's degree in information technology, Computer Science, or a related field.
- Cisco Certified Network Professional (CCNP) and PCNSE/ Forti-NSE or equivalent certification is required.
- Proven experience in managing Palo Alto, Check Point and Fortigate firewalls.
- Proficiency in configuring and troubleshooting Cisco or equivalent switches and Routers.
- Hands-on experience with Aruba Clear Pass Policy Manager (CPPM) or similar access control systems.
- Proficient in OSPF and BGP configuration.
- Strong knowledge of network protocols, routing, and switching.
- Strong knowledge in Load balance and Reverse-Proxy solutions.
- Strong knowledge in handling the IPSEC setup
- Excellent problem-solving and analytical skills.
- Excellent skillset on Network Analysis and Migration planning to handle Network projects
- Effective communication and teamwork abilities.
Preferred Skills:
- Industry certifications such Palo Alto Networks Next Generation Firewall Engineer (PCNSE) or Check Point Certified Security Engineer (CCSE) or Forti Network Security Engineer (Forti-NSE) would be a plus.
- Familiarity with network monitoring and management tools.
- Experience in Advanced Network on Network Automation and ACI Infrastructure deployment.
- Experience in Hybrid Network transition from on-premises networks to cloud.
- Experience in deployment, configuration, or support of secured data diode solutions in high-security or classified environments will be an added advantage