Job Title: Network Engineer
Location: Montreal, QC
Responsibilities
- Design, build, and maintain Checkpoint and Fortinet firewall infrastructure.
- Provide Architecture, Design, and Implementation for all Internet and Extranet Firewall connectivity to meet the business and InfoSec requirements.
- Manage projects related to implementing Cyber Security tools and products.
- Support F5 LTM/GTM load balancers and reverse proxy with WAF configuration
- Manage McAfee Web Gateway proxy configuration, policy, and ruleset configurations.
- Build, configure and support Pulse Secure SSL VPN
- Strong knowledge of Citrix NetScaler ADC configuration
- Conduct vulnerability scans and assessments of all network and security devices.
- Manage and perform vulnerability remediation of all network and security device, both software and hardware
- Create network topologies diagrams and record details for troubleshooting purposes.
- Perform other Network Security tasks as assigned.
- Track and manage licenses status for renewal, upgrade, and compliance of all Network Security devices.
- Working knowledge of Infoblox tool (IPAM)
- Resolve operational incident tickets (P1/P2/P3) or service request as per the agreed SLA.
- Work with the Genpact, CACIB or 3rd party teams for the implementation of changes
- Follow the required policies and procedures for the incident, problem, and change management.
Minimum Qualifications
- Graduate or postgraduate in Technology with Computers or Information Technology (IT) stream.
Required Skills
- Experience in enterprise security experience.
- Experience of Checkpoint, Fortinet Firewalls, F5, etc.
- Working experience with different Cisco platforms: ASRs, Nexus, Catalyst
- Knowledge of routing protocols: OSPF, EIGRP, BGP
- Troubleshooting Layer 2 issues. Full understanding of STP
- Troubleshooting dot1x/EAP. Handle NAC related issues
- Understanding of TCP/IP, UDP, troubleshooting various application issues using Wireshark, tcpdump
- Knowledge of McAfee Web Gateways.
- Add/modify/delete entries in Infoblox DNS
Preferred/Desired Skills
- Experience with Banking E-comm network security infrastructure
- Knowledge of ITIL, integration across IPC (incident, Problem & Change Management)
- Knowledge of NIST standards
- Strong analytics skills
- Prior financial services or other highly regulated industry experience
- Strong working knowledge of security infrastructure and how they are used to maintain a strong security posture.
- Capital Markets Domain knowledge is preferred.
- Knowledge of Information Technology Infrastructure Library (ITIL), integration across Incident, Problem & Change (IPC) Management.
- Knowledge about other products like BMC Control-M(CM), Cross File Transfer (CFT), Connect Direct and NetBackup is preferred.
- Basic understanding of IT infrastructure and troubleshooting.
- Technical and system expertise in relevant IT workstreams.
- Strong analytical and problem-solving skills.
- Advanced troubleshooting, including the ability to delve in more complex issues, which require a deeper understanding of systems and applications.
- Specialized knowledge in specific areas allowing them to tackle intricate problems.
- Collaboration with L1 Support to provide guidance and share insights for ongoing issue resolution.
- Strong problem-resolving abilities, communication skills (written and verbal), time administration and management, and the team partnership and collaboration.
- Escalation to L3 Support in timely manner when challenges require an even higher level of expertise and/or experience.
- Ability to effectively interact with stakeholders in implementation of new functionality and solving problems.
- Strong communication skills (written and verbal).
- Capability to coordinate and execute projects assigned. Basic understanding of IT infrastructure and troubleshooting.