Network Security Compliance Check & Remediation Engineer

Applied Cloud Computing

Pune District

On-site

INR 89,000 - 279,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Applied Cloud Computing seeks a Network Security Compliance Check & Remediation Engineer to ensure our network security aligns with internal standards and regulatory requirements. You will conduct compliance assessments, identify gaps, and drive remediation with network, cloud, and operations teams to maintain a secure environment.

The role requires expertise in firewalls, hardening, vulnerability management, and governance across on-prem and cloud networks, with a focus on RBI ISO 27001 PCI-DSS

Qualifications

  • Experience with firewall management and governance.
  • Ability to perform security assessments and remediation.
  • Strong documentation and stakeholder management.
  • Familiarity with RBI, ISO27001, PCI-DSS, NIST, CIS Benchmarks, SOC2.

Responsibilities

  • Firewall policy audits and remediation of rules.
  • Perform security compliance assessments against baselines.
  • Maintain network diagrams and security architecture docs.
  • Coordinate access reviews and least-privilege enforcement.
  • Conduct hardening audits for devices and cloud components.
  • Lead change, incident, and risk management activities.
  • Manage vulnerability and patch rollout, track remediation.
  • Coordinate VAPT activities and report findings.
  • Review DNS security and asset lifecycle management.
  • Support audits with evidence and remediation plans.

Skills

TCP/IP
Routing & Switching
BGP/OSPF
VLANs
DNS/DHCP
VPN Technologies
NGFW
IDS/IPS
WAF
DDoS Protection
Network Segmentation
AWS Networking
Azure Networking
OCI Networking
Risk Assessment
Security Audits
Compliance Reviews
Vulnerability Management
Change Management
Access Governance
Python
PowerShell
REST APIs
Ansible
Terraform

Tools

Palo Alto Networks
Fortinet FortiGate
Cisco Firepower/ASA
Check Point
AWS Networking
Azure Networking
OCI Networking

Job description

Network Security Compliance Check & Remediation Engineer
  • Full-time
  • Compensation: INR 8 - INR 25 monthly
  • Experience: 3–8 Years (L2/L3 depending on experience)
  • Location: India (Hybrid/Onsite)
  • Department: Network Security & Compliance
Job Summary

We are seeking a highly skilled Network Security Compliance Check & Remediation Engineer responsible for ensuring that network and security infrastructure complies with internal security standards, regulatory requirements, and industry best practices. The candidate will perform security compliance assessments, identify gaps, drive remediation activities, and work closely with network, cloud, security, and operations teams to maintain a secure and compliant environment. The role requires strong expertise in network security technologies, firewall management, security hardening, vulnerability management, access governance, change management, and compliance auditing.

Key Responsibilities
  • Firewall & Security Policy Compliance
    • Conduct periodic firewall rule reviews and security policy audits.
    • Identify and remediate zero-hit firewall rules, redundant or duplicate rules, expired temporary access rules, and overly permissive access policies.
    • Review and optimize Disaster Recovery (DR) firewall configurations.
    • Ensure firewall policies align with security and regulatory standards.
  • Network Security Compliance Reviews
    • Perform compliance assessments against security baselines and organizational standards.
    • Validate network segmentation and access controls.
    • Review and maintain network security architecture documentation.
  • Network Documentation & Inventory Management
    • Create and maintain network diagrams and security architecture documentation.
    • Maintain accurate inventory of firewalls, routers, switches, load balancers, security appliances, and cloud network components.
  • Access Management & Governance
    • Perform periodic user access reviews.
    • Validate privileged account access and ensure least‑privilege access principles are followed.
    • Coordinate access certification and recertification activities.
  • Security Hardening
    • Review and implement network device hardening standards.
    • Conduct periodic hardening audits for firewalls, routers, switches, VPN devices, and cloud network security components.
    • Track and manage recurring hardening activities.
  • Change & Incident Management
    • Review and implement network security change requests.
    • Participate in CAB (Change Advisory Board) activities.
    • Handle emergency changes and ensure proper documentation.
    • Perform post‑change validation and risk assessment.
  • Risk Assessment & Remediation
    • Conduct risk assessments for insecure services and ports.
    • Identify security gaps and recommend remediation measures.
    • Track remediation activities until closure.
    • Prepare risk treatment plans and compliance reports.
  • Patch & Vulnerability Management
    • Ensure network and security devices are maintained at N‑1 software versions.
    • Coordinate firmware and software upgrades.
    • Track and remediate vulnerabilities identified through vulnerability assessments, security scans, and penetration testing.
  • VAPT Management
    • Coordinate Vulnerability Assessment and Penetration Testing (VAPT).
    • Analyze findings and prioritize remediation.
    • Validate closure of vulnerabilities.
    • Prepare management reports and compliance evidence.
  • DNS Security Review
    • Review DNS architecture and configurations.
    • Validate DNS security controls.
    • Identify unauthorized or risky DNS configurations.
    • Ensure DNS compliance with security standards.
  • Asset Lifecycle Management
    • Track AMC contracts and warranty status.
    • Monitor hardware/software end of life and end of support.
    • Drive technology refresh and remediation planning.
  • Audit & Compliance Support
    • Support internal and external audits.
    • Provide compliance evidence and documentation.
    • Assist with remediation of audit observations.
    • Ensure adherence to standards such as RBI Guidelines, ISO 27001, PCI‑DSS, NIST, CIS Benchmarks and SOC 2.
Required Technical Skills
  • Networking: TCP/IP, Routing & Switching, BGP, OSPF, VLANs, NAT, DNS, DHCP, VPN Technologies
  • Security Technologies: Next‑Generation Firewalls, IDS/IPS, WAF, DDoS Protection, Proxy Security, Network Segmentation
  • Firewall Platforms: Palo Alto Networks, Fortinet FortiGate, Cisco Firepower/ASA, Check Point
  • Cloud Security (Preferred): AWS, Azure, OCI – Networking, Security Groups, NSGs, Route Tables, Cloud Firewalls
  • Compliance & Governance: Risk Assessment, Security Audits, Compliance Reviews, Vulnerability Management, Change Management, Access Governance
  • Automation (Preferred): Python, PowerShell, REST APIs, Ansible, Terraform
Preferred Certifications
  • CCNA / CCNP Security
  • PCNSA / PCNSE
  • NSE 4 / NSE 5
  • CISSP, CISM, CEH
  • ISO 27001 Lead Implementer/Auditor
  • OCI / AWS / Azure Networking Certifications
Key Performance Indicators (KPIs)
  1. Zero‑hit rule reduction percentage
  2. Firewall compliance score
  3. Vulnerability remediation SLA compliance
  4. Patch compliance percentage
  5. Access review completion rate
  6. Audit observations closure rate
  7. EOL/EOS remediation compliance
  8. Security hardening compliance score
  9. Change success rate
  10. Risk remediation closure percentage
Ideal Candidate Profile
  • Strong understanding of network security architecture and compliance requirements.
  • Experience managing enterprise firewalls and cloud network security controls.
  • Ability to perform security assessments and drive remediation activities independently.
  • Excellent troubleshooting, documentation, and stakeholder management skills.
  • Experience supporting regulatory audits and security governance programs.
  • Strong analytical mindset with a focus on risk reduction and continuous improvement.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Security Engineer
Network Security Engineer

Cortex Consultants LLC • Mumbai

Hybrid
INR 1,500,000 - 2,500,000
Network Security Engineer
Network Security Engineer

Uvation • India

Hybrid
INR 800,000 - 1,500,000
Health insurance
Flexible working hours
Professional development opportunities
Analyst - Network
Analyst - Network

Dalmia Cement • Dadri

On-site
INR 3,000,000 - 6,000,000
Fortnightly knowledge sharing
SME-NETWORKING
SME-NETWORKING

SHI Solutions India Pvt. Ltd. • Hyderabad

On-site
INR 1,800,000 - 2,600,000
Network Engineer
Network Engineer

Powerbridge • Bengaluru

On-site
INR 800,000 - 1,200,000
Health insurance coverage for employee, spouse, and kids
Retirement savings plan with employer matching contributions
Opportunities for professional development and advancement
Network Engineer
Network Engineer

Power Bridge • Bengaluru

On-site
INR 800,000 - 1,200,000
Network Security Engineer
Network Security Engineer

Tata Consultancy Services • Hyderabad

On-site
INR 1,500,000 - 2,800,000
Network and Security Engineer
Network and Security Engineer

Cigres Technologies Private Limited • Bengaluru

On-site
INR 800,000 - 1,200,000
Network and Security Specialist
Network and Security Specialist

Max • Bengaluru

On-site
INR 350,000 - 700,000
Network & Security Admin
Network & Security Admin

Cambridge Technology Solutions Ltd • Bengaluru

On-site
INR 2,800,000 - 4,000,000