Job Summary
We are seeking a Network Engineer to join our IT team to design, implement, manage, and maintain our network security infrastructure, including FortiGate, Cisco & Paloalto Solutions. The ideal candidate will have strong hands-on experience with FortiGate firewalls, VPNs, FortiManager, FortiAnalyzer, and FortiSASE, along with a solid understanding of network protocols, DC/Campus relocation tasks and security best practices.
Key Responsibilities
- Configure, manage, and troubleshoot FortiGate and Palo Alto Firewalls.
- Configure and maintain firewall policies, NAT, security profiles, and firewall hardening.
- Configure and troubleshoot IPSec Site-to-Site and Remote Access VPN tunnels.
- Manage Cisco Catalyst and Meraki switches.
- Strong hands-on experience with VLAN, Access Port, Trunk, STP, VPC and Port-Channel.
- Configure and troubleshoot Cisco Meraki Access Points, SSIDs and wireless connectivity.
- Configure and troubleshoot BGP, OSPF, static routing and route redistribution.
- Manage and troubleshoot SD-WAN, WAN links, ISP/MPLS connectivity and link failover/load balancing.
- Monitor network and security infrastructure and resolve L2/L3 connectivity issues.
- Perform network migrations, configuration changes, firmware upgrades, and security hardening.
- Analyze logs and troubleshoot issues using packet capture and network diagnostic tools.
- Prepare RCA, change plans, network documentation, and network diagrams.
- Coordinate with ISP, OEM, application, and internal IT teams for issue resolution.
- Provide on-call support for critical network and security incidents.
Required Skills & Qualifications
- 4+ years of experience in Network & Security Engineering.
- Strong hands-on experience with FortiGate Firewall.
- Working experience with Palo Alto Firewall.
- Good knowledge of Cisco Catalyst and Meraki Switches.
- Good knowledge of Cisco Meraki Access Points.
- Strong knowledge of IPSec VPN
- Hands-on experience with BGP and OSPF.
- Good understanding of SD-WAN and WAN link load balancing/failover.
- Strong understanding of TCP/IP, VLAN, Trunk, Access, STP and Port-Channel.
- Excellent troubleshooting, analytical, and communication skills.
Preferred Qualifications
- Fortinet certification NSE or equivalent.
- CCNA/CCNP certification is an advantage
- Exposure to Azure/AWS networking is an advantage.
Work Environment
- Occasional travel to data centres or branch offices may be required.
- Collaborative, fast-paced IT and network security environment.