Level 3 Network & Security Engineer | Managed Services
Overview
FinXL has partnered with a leading Australian based IT engineering company that specialises in digital infrastructure, including network, security, and cloud solutions designed for mid to large scale organisations. We are seeking a Level 3 Network & Security Engineer on a permanent basis to join their Network, Security & Cyber Managed Services team.
About the Role
In this role, you will act as the senior technical escalation authority within the team. You will lead the resolution of complex multi-vendor architecture faults, manage P1 and P2 major incidents, and resolve chronic operational issues while mentoring Level 2 engineers. This position is Melbourne based and offers a hybrid working arrangement.
Key Responsibilities
- Serve as the senior technical escalation point for L2 engineers across incidents, service requests, and complex change activities.
- Lead technical response on P1 and P2 major incidents, own root cause analysis (RCA), and produce written documentation for customers.
- Resolve complex cross-domain faults end to end across multi-vendor network and security environments.
- Configure, optimise, and troubleshoot Palo Alto Networks and Fortinet estates, including Forti SD-WAN, Panorama, FortiManager, and FortiAnalyser.
- Plan and execute scheduled technical changes, upgrades, and migrations during maintenance windows with comprehensive rollback strategies.
- Partner with the Client Technical Lead to transition recurring faults into formal problem management workflows.
- Mentor L2 engineers and contribute to operational efficiency by creating runbooks, knowledge base articles, and automation routines.
Skills & Experience Required
- 8+ years of experience in network and security engineering, with at least 2 years operating at an L3 or senior escalation level within an MSP or MSSP environment.
- Deep hands‑on experience with the Fortinet ecosystem: FortiGate, FortiSwitch, FortiAP wireless, Fortinet Secure SD‑WAN, managed via FortiManager and FortiAnalyser (NSE 4 minimum; NSE 5/6/7 well regarded).
- Proven expertise in Palo Alto Networks firewalls and Panorama, including security policy, App-ID, User-ID, NAT, VPN, and Threat Prevention (PCNSA/PCNSE well regarded).
- Strong technical mastery of enterprise routing and switching protocols: BGP, OSPF, VLANs, STP, HA/clustering, QoS, IPSec, and remote‑access VPN.
- Proven track record of independently resolving complex multi‑vendor faults and delivering written RCAs that withstand customer scrutiny.
- Solid ITIL alignment with strong discipline across ticket, change, and problem management within strict SLA targets.
- Full Australian work rights, availability for rostered on‑call and after‑hours change work, and comfort with a hybrid working arrangement in Melbourne (Rowville, Southbank, and WFH).