Senior - SSE, Blr One (replacement)(U)
BSR & CoBangalore, Karnataka
it-jobs
Job Description
Description Seeking a skilled professional for the role of Senior Executive - Network & Security Engineering, with 5-7 years of relevant experience across enterprise network and security infrastructure. The role requires strong hands-on expertise in networking, firewalls, Secure Service Edge (SSE), SD-WAN, and cloud-delivered security solutions, with the ability to design, implement, operate, and troubleshoot secure enterprise networks. The ideal candidate should have strong experience with technologies such as Palo Alto Networks, SD-WAN, Netskope and/or Zscaler, along with a solid understanding of routing, switching, Internet connectivity, VPN, firewalls, SWG, Web DLP, CASB, Cloud Firewall, DNS Security, and network security architecture. Responsibilities - Manage and administer enterprise network and security infrastructure, including Palo Alto firewalls, SD-WAN, SSE platforms, Internet gateways, VPN, and related security technologies. - Manage and troubleshoot Palo Alto firewall policies, NAT, security profiles, VPNs, routing, application controls, URL filtering, SSL inspection, and threat prevention. - Support and administer SD-WAN environments, including overlay connectivity, routing, traffic steering, and Internet/MPLS integration. - Configure and optimize SD-WAN application-aware routing, SLA-based path selection, load balancing, segmentation, QoS, and traffic steering based on business and application requirements. - Own and resolve escalation-level incidents related to network connectivity, firewalls, SD-WAN, SSE, VPN, Internet access, and security policies. - Integrate SD-WAN with next-generation firewalls, SSE/SASE platforms, cloud connectivity, and centralized network management/orchestration solutions. - Design and implement routing and connectivity solutions using BGP, OSPF, static routing, IPSec, GRE, MPLS, Internet, and cloud connectivity. - Configure and optimize security controls including URL filtering, application control, IPS/Threat Prevention, DNS security, SSL inspection, DLP, and access policies. - Ensure effective integration between network security platforms, identity services, endpoint security, and SIEM platforms. - Evaluate new network and security technologies, conduct POCs and technical assessments, and recommend solutions aligned with enterprise requirements. - Partner with business and application teams to securely onboard new applications, services, and connectivity requirements. - Collaborate with NITSO, Cyber Security, Cloud, Infrastructure, and other technology teams to assess risks and ensure alignment with enterprise security standards. - Prepare periodic network and security posture reviews, covering incidents, capacity, vulnerabilities, policy optimization, technology adoption, and improvement opportunities. - Maintain network diagrams, architecture documents, configurations, operational procedures, and troubleshooting runbooks. - Collaborate with cross-functional teams during major incidents, change implementation, problem management, and service improvement initiatives. - Ensure adherence to ITSM processes, including incident, problem, change, and service request management. Qualifications - Strong hands-on experience in enterprise networking and network security architecture. - Strong understanding of routing, switching, TCP/IP, DNS, DHCP, NAT, VPN, BGP, OSPF, IPSec, GRE, MPLS, and Internet connectivity. - Hands-on experience with Palo Alto Networks firewalls, including security policies, NAT, application control, URL filtering, security profiles, VPN, SSL inspection, and troubleshooting. - Experience with SD-WAN technologies, including architecture, deployment, routing, application-aware policies, traffic steering, and troubleshooting. - Experience with Netskope and/or Zscaler, including SWG, Web DLP, CASB, Cloud Firewall, DNS Security, and traffic steering. - Strong understanding of SSE/SASE architecture and how network and security controls integrate across enterprise and cloud environments. - Strong knowledge of Web DLP, including data identifiers, exact data match, fingerprinting, content inspection, and policy tuning. - Hands-on experience with firewall security policies and L3-L7 controls, application-based access, segmentation, and threat prevention. - Experience with SSL/TLS inspection, certificate management, and encryption handling. - Understanding of identity and access integration, including Microsoft Entra ID/Azure AD, Okta, SAML, OAuth, and SSO. - Experience in network and security monitoring, log analysis, incident investigation, SIEM integration, and performance troubleshooting. - Ability to analyze network traffic using tools such as packet captures and network monitoring platforms. - Experience with enterprise monitoring and ITSM platforms such as PRTG, ServiceNow, or equivalent. - Experience in large-scale enterprise network and security deployments. - Relevant certifications such as SDWAN (Cisco/Fortinet), Palo Alto PCNSA/PCNSE, Netskope Certified Professional (NCP), Zscaler certification, or equivalent are strongly preferred. - Strong analytical, troubleshooting, communication, and stakeholder-management skills.
Get AI-Matched to This Job
Upload your resume and our AI will score how well you match this and thousands of similar roles.