Network Security Engineer - F5

TekWissen LLC

Dubai

On-site

AED 420,000 - 720,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

On-site deployment
Career mentoring

Job summary

TekWissen LLC is seeking a Senior Network Security Engineer with 8+ years of experience in F5, IPS/IDS, and NGFW. You will provide L3 support for F5 BIG-IP LTM/ASM, manage PKI and SSL/TLS, tune IPS/IDS policies, and lead complex incident responses.

You will work onsite with banking and large regulated enterprises, mentor junior engineers, and coordinate with vendors to ensure compliant, secure operations.

Qualifications

  • Bachelor's degree in Computer Science, Engineering, IT, or related field.
  • 8+ years of network security engineering with 3+ years at L3 level.
  • Experience in bank or large regulated enterprise environment strongly preferred.
  • Hands-on experience with F5, IPS/IDS, and NGFW deployments and management.

Responsibilities

  • Provide L3 support for F5 BIG-IP LTM/ASM and iRules.
  • Manage SSL/TLS certificates, PKI integration, and cipher hardening.
  • Tune and manage IPS/IDS policies; threat analysis and SIEM correlation.
  • Support NGFW policies on Palo Alto and Check Point; VPN and NAT tasks.
  • Lead P1/P2 incidents; drive root-cause analysis and change management.
  • Create LLDs, SOPs, and runbooks; mentor L1/L2 engineers.

Skills

F5 BIG-IP LTM
ASM Advanced WAF
iRules
IPS/IDS
NGFW
Palo Alto PAN-OS
Check Point Gaia
SSL/TLS
Python
Bash

Education

Bachelor's degree in Computer Science/Engineering/IT

Tools

Wireshark
tcpdump
SolarWinds

Job description

Key Responsibilities
F5 Load Balancing amp Web Application Firewall WAF

Provide L3 support for F5 BIG-IP LTM virtual servers pools health monitors SSL offload persistence and iRules for business-critical and customer-facing applications Administer and tune F5 ASM Advanced WAF create tune and enforce WAF policies aligned to OWASP Top 10 manage attack signatures bot defence and false-positive reduction and transition policies from monitoring to blocking mode safely Manage SSL TLS certificates cipher hardening standards and PKI integration on the F5 estate Troubleshoot latency performance and availability issues monitor interface throughput utilisation and provide capacity upgrade and HA-design input

IPS IDS Intrusion Prevention amp Detection

Provide L3 support for the IPS IDS platform Cisco Firepower FTD via FMC policy and signature management tuning and threat analysis Optimise IPS IDS policies reduce false positives and manage inline vs detection modes validate coverage of critical assets and segments Perform packet-level analysis and threat investigation correlate IPS IDS events with the SIEM for detection and response Maintain signature rule currency and coordinate tuning with the SOC and threat-intelligence functions

Next-Generation Firewall NGFW

Provide L3 support for Palo Alto PAN-OS Panorama and Check Point Gaia SmartConsole MDS firewalls across production and DR Manage security policies rule bases NAT App-ID URL filtering threat-prevention profiles and site-to-site remote-access VPNs IPsec SSL Perform firewall hardening HA configuration version patch management N-2 compliance and periodic rule recertification clean-up of no-hit rules Lead complex firewall change implementation and troubleshooting with minimal business impact

General L3 Operational

Act as the senior escalation point for P1 P2 incidents lead root-cause analysis and problem management to prevent recurrence Own change management raise review and implement CRs in line with the bank s governance and contribute to design

Low-Level Design

LLD for new solutions Support audit and regulatory compliance e g SAMA CBUAE PCI-DSS remediate findings and maintain configuration backups SolarWinds NCM and evidence Maintain SOPs runbooks and topology documentation mentor L1 L2 engineers and coordinate with OEM vendor TAC for escalations

Required Skills amp Experience
  • Deep hands-on expertise with F5 BIG-IP LTM and ASM Advanced WAF iRules SSL TLS
  • Strong expertise in IPS IDS Cisco Firepower FTD FMC signature tuning policy analysis
  • Strong expertise in NGFW Palo Alto PAN-OS Panorama and Check Point R8x Gaia
  • Solid networking foundation TCP IP routing switching NAT VPN IPsec SSL DNS and load-balancing concepts SSL TLS PKI certificate management and security hardening standards
  • SIEM integration and log analysis packet capture and analysis Wireshark tcpdump
  • Scripting automation Python Bash API desirable for operational efficiency
Certifications (Preferred)
  • F5 Certified 201 301 LTM and ASM Advanced WAF
  • Cisco CCNP Security Firepower SNCF
  • Palo Alto PCNSE
  • Check Point CCSA
  • CCSE CISSP CISM desirable Experience
Qualifications

Bachelor s degree in Computer Science Engineering Information Technology or related field 8 years experience in network security engineering with 3 years at L3 level supporting F5 IPS IDS and NGFW Prior experience in a bank or large regulated enterprise supporting business-critical and customer-facing services strongly preferred

Behavioral Soft Skills

Strong incident-leadership and problem-solving under pressure P1 handling Clear written and verbal communication including stakeholder and leadership updates Disciplined approach to change management documentation and audit Collaborative team player able to mentor junior engineers and coordinate with vendors

Preferred Industry Experience
  • Banking
  • Financial Services
  • Insurance
  • BFSI
  • Large EnterpriseSecurity Operations Environment
Work Model

Full-time onsite deployment at customer locationWillingness to support after-hours activities during critical incidents or planned maintenanceParticipation in on-call support rotation if required

TekWissen Group is an equal opportunity employer supporting workforce diversity Bachelor's degree in Computer Science, Engineering, Information Technology or related field.8+ years' experience in network/security engineering, with 3+ years at L3 level supporting F5, IPS/IDS and NGFW.Prior experience in a bank or large regulated enterprise, supporting business-critical and customer-facing services, strongly preferred.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Network Security Engineer - F5
Network Security Engineer - F5

TekWissen India • Abu Dhabi

On-site
AED 180,000 - 300,000
Network Security Engineer - F5
Network Security Engineer - F5

TekWissen India • Dubai

On-site
AED 331,000 - 477,000
Network Security Engineer - F5
Network Security Engineer - F5

RNS Technology Services • Dubai

On-site
AED 300,000 - 540,000
Network Security Engineer-Banking
Network Security Engineer-Banking

Dicetek LLC • Abu Dhabi

On-site
AED 260,000 - 460,000
F5 BIG-IP Engineer (L3 Support) – Banking Domain
F5 BIG-IP Engineer (L3 Support) – Banking Domain

Impronics Technologies • Dubai

On-site
AED 257,000 - 368,000
Senior F5 & NGFW Network Security Engineer
Senior F5 & NGFW Network Security Engineer

TekWissen LLC • Dubai

On-site
AED 420,000 - 720,000
On-site deployment
Career mentoring
Network Engineer
Network Engineer

Ceenex Global Technology • Abu Dhabi

On-site
AED 250,000 - 450,000
Network Security Engineer (L2/L3)
Network Security Engineer (L2/L3)

Tanqeeb • Abu Dhabi

On-site
AED 360,000 - 600,000
Senior Network Security Engineer: F5, IPS/NGFW Expert
Senior Network Security Engineer: F5, IPS/NGFW Expert

RNS Technology Services • Dubai

On-site
AED 300,000 - 540,000
Network & Security Engineer - Infrastructure
Network & Security Engineer - Infrastructure

CADD EMIRATES COMPUTER TRADING L.L.C • Dubai

On-site
AED 120,000 - 180,000