L3 Network Security Engineer

NTT DATA

Mumbai

On-site

INR 1,500,000 - 2,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NTT DATA in Mumbai (Hybrid) seeks an experienced Network & Security Specialist to oversee and enhance security for a BFSI network, spanning multiple data centres. You will manage firewalls, VPNs, load balancers, and IDS/IPS with emphasis on availability, compliance, and threat mitigation.

The role requires hands-on expertise across Palo Alto, FortiGate, and F5 BIG-IP solutions, with strong focus on RBI/ISO 27001 and PCI-DSS compliance.

Qualifications

  • 7–9+ years in network and security operations.
  • Experience managing Palo Alto and Fortinet firewalls in enterprise/BFSI environments.
  • Strong knowledge of VPN, BGP, load balancers, and IPS/IDS functionalities.

Responsibilities

  • Configure, manage, and troubleshoot enterprise firewalls across data centres, DR sites, and branches.
  • Administer perimeter defenses, VPN gateways, and internal segmentation firewalls for secure access.
  • Deploy and maintain IPS/IDS, URL filtering, vulnerability protection, and DLP features.
  • Manage L3 configuration and support for F5 BIG-IP load balancers for HA and SSL offloading.
  • Design and maintain redundant, fault-tolerant infrastructure across multi-DCs.
  • Lead incident response and resolve network/security events.
  • Conduct periodic security assessments and remediation for identified vulnerabilities.
  • Drive upgrades to network and security architecture to meet regulatory standards (RBI, ISO 27001, PCI-DSS).
  • Mentor junior engineers and provide escalation support to L2/L3 teams.

Skills

Palo Alto
Fortinet FortiGate
VPN protocols
BGP
VXLAN

Tools

F5 BIG-IP

Job description

Role & responsibilities
Job Description L3 Engineer(Network & Security)

Experience Required: 7–9+ Years

Location: Mumbai (Hybrid) – 24X7 support.

Role Summary

We’re looking a skilled Network & Security Specialist to oversee and enhance the security posture of a large-scale BFSI network infrastructure spanning multiple data centres. This role demands hands‑on expertise in managing firewalls, VPNs, load balancers, switches, routers and IDS/IPS systems, with a strong focus on availability, compliance, and proactive threat mitigation.

Responsibilities
  • Configure, manage, and troubleshoot enterprise firewalls (Palo Alto, FortiGate, Checkpoint) across data canters, disaster recovery sites, and branch locations.
  • Administer perimeter defences, VPN gateways, and internal segmentation firewalls to ensure secure access and traffic isolation.
  • Deploy and maintain advanced security features including IPS/IDS, URL filtering, vulnerability protection, Wildfire, and DLP.
  • Handle L3-level configuration and support for F5 BIG-IP load balancers, enabling high availability, traffic steering, WAF, and SSL offloading.
  • Design and maintain redundant, fault-tolerant infrastructure across multi-DC environments.
  • Lead incident response and problem resolution for network and security events.
  • Conduct periodic security assessments and implement remediation plans for identified vulnerabilities.
  • Drive upgrades and improvements to network and security architecture.
  • Ensure adherence to regulatory standards such as RBI, ISO 27001, and PCI-DSS.
  • Mentor junior engineers and provide escalation support to L2/L3 teams.
Required Skills & Expertise
  • Proficiency in:
    • Palo Alto (Panorama, Wildfire, Threat Prevention)
    • Fortinet FortiGate (VPN, HA, policy management)
    • VXLAN spine‑leaf architecture
    • VPN protocols (IPSec, SSL VPN, Remote Access)
    • Routing & Switching fundamentals (especially BGP)
Strong understanding of:
  • Firewall and load balancer technologies
  • TCP packet capture and analysis
  • Cloud and hybrid network security (AWS, Azure, GCP)
  • Ability to troubleshoot complex Layer 1–7 network and security issues
  • Excellent communication skills for client interactions and OEM TAC coordination
Certifications (Good to have)
  • PCNSE (Palo Alto Networks Certified Security Engineer)
  • Fortinet NSE4 or NSE7
  • CCNP (Routing/Security)
  • ITIL Foundation
  • Cloud security certifications (AWS/Azure)
Experience
  • 7–9+ years in network and security operations
  • Minimum 5 years managing Palo Alto and Fortinet firewalls, along with core routing/switching in enterprise or BFSI environments
  • Experience in regulated financial sectors is highly desirable
  • Proven success in managing high‑availability, multi‑DC infrastructures
Preferred candidate profile
Perks and benefits
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

L2 Engineer(Network & Security Firewall)
L2 Engineer(Network & Security Firewall)

nttlimited • India

Hybrid
INR 1,200,000 - 1,800,000
Hybrid working
Network Security Lead (Check Point & Palo Alto)
Network Security Lead (Check Point & Palo Alto)

Syndrome NewEdge • Mumbai

On-site
INR 4,000,000 - 6,500,000
Network Security Engineering
Network Security Engineering

Purview Services • Dadri

Hybrid
INR 4,000,000 - 7,000,000
Network Security Engineering
Network Security Engineering

Purview Services • Khordha

Hybrid
INR 2,500,000 - 4,000,000
Network Security Engineering
Network Security Engineering

Purview Services • Mumbai

Hybrid
INR 4,000,000 - 6,500,000
Mentorship
Network Security Engineering
Network Security Engineering

Purview Services • New Delhi

Hybrid
INR 1,500,000 - 2,200,000
Network Security Engineering
Network Security Engineering

Purview Services • Lucknow

Hybrid
INR 2,000,000 - 4,000,000
Network Security Engineer
Network Security Engineer

Cortex Consultants LLC • Mumbai

Hybrid
INR 1,500,000 - 2,500,000
Network Security Engineering
Network Security Engineering

Purview Services • Faridabad District

Hybrid
INR 4,500,000 - 6,000,000
Network Security Engineering
Network Security Engineering

Purview Services • Jaipur

Hybrid
INR 1,800,000 - 3,200,000