L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox

Bengaluru

On-site

INR 1,800,000 - 3,800,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary and benefits
Growth opportunities
Exposure to cutting-edge technologies
Collaborative work environment

Job summary

Saint Fox in Bengaluru is seeking an experienced L3 Network Security Engineer to own the design, deployment, and day-to-day management of enterprise security infrastructure for clients, with hands-on responsibility across Cisco ASA/FTD and Palo Alto environments.

You will mentor junior engineers, drive incident escalations to closure, and contribute to architecture decisions within the Managed Firewall and Secure Access practice, ensuring audit-ready environments.

Qualifications

  • 8 to 15 years of hands-on experience in network security engineering.
  • At least 4 years working at L3 or equivalent senior engineer level.
  • Demonstrated production experience with Cisco ASA and/or FTD firewalls.
  • Demonstrated production experience with Palo Alto Networks NGFW and Panorama.
  • Solid experience with Cisco Catalyst and Nexus switching in enterprise environments.
  • Working experience with Cisco WLC and enterprise access point management.

Responsibilities

  • Design, deploy, and manage Cisco ASA and Firepower Threat Defense (FTD) firewalls in enterprise and multi-site environments.
  • Operate and tune Palo Alto Networks next-generation firewalls including policy management, App-ID, User-ID, and threat prevention profiles.
  • Manage Palo Alto Panorama for centralised policy and device management across multiple firewalls.
  • Perform rule-base reviews, clean-up, and optimisation on a scheduled basis to reduce attack surface and policy drift.
  • Respond to and resolve L3 firewall incidents and escalations within agreed SLA windows.
  • Configure and manage Cisco Catalyst and Nexus switching platforms including VLANs, STP, VPC, and QoS.
  • Administer Cisco Wireless infrastructure including WLC and Cisco Access Points across campus and branch environments.
  • Troubleshoot complex Layer 2 and Layer 3 network issues from physical through to application layer.
  • Maintain and enforce network segmentation policies aligned to Zero Trust principles.
  • Configure and manage dynamic routing protocols including OSPF, BGP, and EIGRP.
  • Manage site-to-site and remote-access VPN including Cisco AnyConnect and Palo Alto Global Protect.
  • Support SD-WAN and SASE integration efforts where applicable.
  • Own change management for network security changes including planning, testing, and rollback procedures.
  • Maintain accurate and current network diagrams, run books, and configuration documentation.
  • Participate in vulnerability and patch management cycles for network devices.
  • Support internal and external audits by providing evidence and configuration reviews.
  • Provide mentoring and technical guidance to L1 and L2 engineers.

Job description

St. Fox, a leading consultancy in the realm of Cybersecurity and advanced tech solutions, is recognized for its pioneering approach to digital security and innovation. Driven by the ethos "Innovate Fearlessly, Protect Relentlessly," we empower businesses globally to secure their operations and maximize efficiency through cutting-edge technology strategies.

About the Role: Saint Fox is looking for an experienced L3 Network Security Engineer to own the design, deployment, and day‑to‑day management of enterprise network security infrastructure for our clients. This is a senior hands‑on role. You will work across Cisco and Palo Alto environments, drive incident escalations to closure, mentor junior engineers, and contribute to architecture decisions.

You will sit within the Managed Firewall and Secure Access practice, working closely with Security Analysts and Principal Engineers to keep client environments stable, documented, and audit‑ready.

Key Responsibilities:
Firewall Operations
  • Design, deploy, and manage Cisco ASA and Firepower Threat Defense (FTD) firewalls in enterprise and multi‑site environments.
  • Operate and tune Palo Alto Networks next‑generation firewalls including policy management, App‑ID, User‑ID, and threat prevention profiles.
  • Manage Palo Alto Panorama for centralised policy and device management across multiple firewalls.
  • Perform rule‑base reviews, clean‑up, and optimisation on a scheduled basis to reduce attack surface and policy drift.
  • Respond to and resolve L3 firewall incidents and escalations within agreed SLA windows.
Network Infrastructure
  • Configure and manage Cisco Catalyst and Nexus switching platforms including VLANs, STP, VPC, and QoS.
  • Administer Cisco Wireless infrastructure including WLC (Wireless LAN Controllers) and Cisco Access Points across campus and branch environments.
  • Troubleshoot complex Layer 2 and Layer 3 network issues from physical through to application layer.
  • Maintain and enforce network segmentation policies aligned to Zero Trust principles.
Routing and Connectivity
  • Configure and manage dynamic routing protocols including OSPF, BGP, and EIGRP.
  • Manage site‑to‑site and remote‑access VPN including Cisco AnyConnect and Palo Alto Global Protect.
  • Support SD‑WAN and SASE integration efforts where applicable.
Operations and Governance
  • Own change management for network security changes including planning, testing, and rollback procedures.
  • Maintain accurate and current network diagrams, run books, and configuration documentation.
  • Participate in vulnerability and patch management cycles for network devices.
  • Support internal and external audits by providing evidence and configuration reviews.
  • Provide mentoring and technical guidance to L1 and L2 engineers.
Required Skills & Experience:
  • 8 to 15 years of hands‑on experience in network security engineering.
  • At least 4 years working at L3 or equivalent senior engineer level.
  • Demonstrated production experience with Cisco ASA and/or FTD firewalls.
  • Demonstrated production experience with Palo Alto Networks NGFW and Panorama.
  • Solid experience with Cisco Catalyst and Nexus switching in enterprise environments.
  • Working experience with Cisco WLC and enterprise access point management.
What We Offer:
  • Competitive salary and benefits package.
  • Opportunities for professional growth and advancement.
  • Exposure to cutting‑edge technologies and projects.
  • A collaborative and supportive work environment.

St. Fox is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

L3 Network Security Engineer (Managed Firewall | Network Infrastructure)
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox Consultancy Private Limited • Pune District

On-site
INR 900,000 - 1,500,000
Onsite client location
Competitive compensation
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox Consultancy (P) Ltd. • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Onsite at client location
Professional growth
Training opportunities
+1
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox Consultancy Private Limited • Bengaluru

On-site
INR 7,143,000 - 9,048,000
Network Security Engineer L3
Network Security Engineer L3

Saint Fox Consultancy Private Limited • Bengaluru, Pune District

On-site
INR 1,800,000 - 2,600,000
Bonus structures
Onsite work
Network Security Engineer L1
Network Security Engineer L1

St. Fox • Dadri

On-site
INR 480,000 - 720,000
Competitive salary and benefits package
Opportunities for professional growth
Exposure to cutting-edge technologies
+1
Network Security Engineer L2
Network Security Engineer L2

Saint Fox Consultancy Private Limited • Dadri

On-site
INR 1,200,000 - 2,200,000
Network Security L3
Network Security L3

NTT DATA • Mumbai

On-site
INR 1,500,000 - 2,100,000
Network Security Engineer II
Network Security Engineer II

Rackspace Technology • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Network Security Engineer L3
Network Security Engineer L3

Next Digital Recruitment • Bengaluru

On-site
INR 1,200,000 - 1,500,000
VS01559 - Network & Security Team Lead
VS01559 - Network & Security Team Lead

E4 Software Services Pvt Ltd. • Mumbai

On-site
INR 1,500,000 - 2,500,000