Network Security Engineer managing operations, implementing security architecture, and providing L3 support. Expertise in Checkpoint, Zscaler, Cloudflare, Aruba Clearpass, and email security required.
Responsibilities
Manage day-to-day Operations according to customer environment. Develop and implement network security architecture, policies, and procedures to protect against threats. Provide L3 level support on critical/Outage situations and drive end to end until the resolution. Create and maintain comprehensive documentation related to network security infrastructure and procedures following the NIST and CIS standards. Identify inefficiencies in the operations and identify potential solutions to improve efficiency. Own and drive improvements in the areas of Operations, technology, Advisory and customer satisfaction. Stay up to date on emerging security threats, technologies, and industry trends. Manage and mentor a team of network security engineers and analysts. Identify possible automation capabilities and deliver across multiple customer environments. Should be cross-skilled across multiple technologies covering products like Firewalls, Web-Proxies, as well as cloud security products (AWS, Azure, GCP etc.). Prepare weekly and monthly performance reports across multiple customer environments. Conduct internal training to address skill gaps and motivate the team to do technical certifications.
Requirements
Minimum overall experience of 8-12 years. Minimum of 8 years’ experience in Information Security. Minimum of 6 years’ experience in running a Security Operations Center for a large organization. Strong expertise in: Implementing and maintaining Checkpoint firewall and associated software module (VPN, URL Filtering, IPS etc.) infrastructure. Good working experience on checkpoint VPN (S2S & Remote access). Deep understanding of Cloudflare content delivery network (CDN) and security solutions, including web application firewalls (WAF), bot management, and DDoS protection. Deep understanding of RADIUS, TACACS+, 802.1X, EAP methods, and networking protocols. Installation and configuration of ClearPass Policy Manager (CPPM), including profiling, onboarding, and guest services. Resolve complex authentication failures, latency issues, and TACACS+ service issues. Proficiency with Zscaler tools (ZIA, ZPA, ZDX), packet capture analysis, and scripting languages (Python, PowerShell) for automation. Design, implement, and tune ZIA/ZPA policies for roaming, branch, and third-party users, utilizing Zscaler’s cloud security concepts. Resolve complex L2/L3 issues related to user connectivity, authentication (SAML, SCIM, Azure AD), and access flows. Deep understanding of Zero Trust Network Access (ZTNA), Firewalls, and IPSec/SSL VPNs. Experience on maintaining any email security gateway platforms to optimize filtering. Experience on Investigation, quarantine, and remediation of malicious, suspicious, or spoofed emails. Design, build, and maintain scalable infrastructure to analyze email patterns and detect anomalies in real-time with the help of Abnormal AI tool. Good understanding of network protocols (HTTP, HTTPS, DNS, TCP/IP). Good command of the English language, with excellent written and verbal skills. Proactive in communication and appropriate selection of audience according to topic. Highly organized and capable of tracking a variety of tasks to closure. Good time management principles and effective in prioritizing workloads. Works collaboratively with other teams and builds positive working relationships. Able to learn quickly and apply common sense to new situations. Open and transparent style and approach when working with others. Places a significant level of importance on personal & team development. Accepting feedback from managers, peers, and clients regarding work performance. Utilizes a goal-oriented approach. Takes the initiative to work on tasks outside of his or her immediate scope of responsibility and encourages others to do so.
Security Principal at Optiv designing AI security solutions for clients, leveraging advanced security services and technologies. Driving pipeline generation and maintaining strong client relationships as a trusted advisor.
Technical Leader overseeing security for Product and Cloud at Tempo. Leading team, engaging with partners, ensuring compliance, fostering innovations in security practices.
Senior Cybersecurity Advisor providing support to threat and vulnerability analysts at Exposant 3 in a hybrid work model. Collaborating on incident responses and vulnerability management in a dynamic team.
Senior Manager overseeing IAM initiatives and strategic roadmap execution at RBC. Partnering with stakeholders to enhance organizational capabilities in Identity and Access Management.
Senior IAM Systems Support Analyst responsible for deploying and improving IAM services at RBC. Supporting MFA systems and ensuring platform reliability while collaborating with various teams.
Financial Security Advisor at RBC Insurance connecting clients with comprehensive insurance solutions. Building client relationships and leveraging RBC’s brand to grow the market.
Senior Internal Controller in information security defining security strategies and conducting risk analysis. Participating in audits and controls for a multidisciplinary firm in Canada.
Product Manager responsible for managing Microsoft Security Services portfolio at Softchoice. Engaging with customers, Microsoft and stakeholders to drive market success and growth.
Program Manager leading AI and data security initiatives at Canadian Tire Corporation. Maintaining compliance and aligning security strategies with business objectives.