Network Security Engineer L3

Kreate Energy

Mumbai, Navi Mumbai

On-site

INR 1,800,000 - 3,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Kreate Energy is seeking a senior L3 Security Engineer to lead the design, implementation, and maintenance of complex security infrastructures, with a focus on Palo Alto and Check Point NGFWs and Anti-DDoS solutions. The role involves acting as the final escalation point for critical issues and leading incident response.

You will mentor L1/L2 analysts, participate in on-call rotations, and contribute to the security roadmap by evaluating new tools and capabilities to strengthen the

Qualifications

  • Design, implement, and maintain complex security infrastructures.
  • Experience with Palo Alto and Check Point NGFWs and Anti-DDoS solutions.
  • Lead incident response and provide expert technical guidance.

Responsibilities

  • Serve as SME for Next-Generation Firewall platforms (hardware, virtual, cloud).
  • Design, implement, and maintain the Anti-DDoS solution (on-prem and cloud scrubbing).
  • Configure and maintain anti-DDoS tools (e.g., Arbor) to mitigate DDoS attacks.
  • Monitor DDoS threats and adjust protections to ensure availability.
  • Design and implement security policies, NAT, and VPN tunnels.
  • Mentor L1/L2 analysts; act as final escalation point for complex incidents.
  • Participate in 24x7 on-call rotation for incident management.
  • Contribute to technology roadmap by evaluating new security tools.

Skills

Palo Alto NGFW
Check Point NGFW
Anti-DDoS expertise
Incident response leadership
L3 escalation point

Tools

Arbor Anti-DDoS
NGFW appliances

Job description

Technology (OEM)*

Network/Cyber Security, Malware Sandboxing-Palo Alto, Perimeter DDOS-NetScout

Skills

NGFW platforms such as Palo Alto, IPS (Checkpoint)/IDS platforms, DDOS and other security devices.

Job summary

The L3 Security Engineer for IPS, Proxy, and Malware Sandboxing will be a senior member of the security team with a focus on Palo Alto and Check Point Next-Generation Firewalls (NGFW) and Anti-DdoS solutions. This is a senior role responsible for the design, implementation, and maintenance of complex security infrastructures. This position involves acting as a final escalation point for critical issues, leading incident response, and providing expert technical guidance.

Key Responsibilities
  • Serve as the subject matter expert for all Next-Generation Firewall platforms, including hardware, virtual, and cloud-native firewalls (e.g. Palo Alto).
  • Design, implement, and maintain the bank's Anti-DDoS solution, including both on-premises appliances and cloud-based scrubbing services.
  • Configure and maintain anti-DDoS solutions (such as Arbor) to mitigate volumetric and application-layer DdoS attacks.
  • Monitor DdoS threats and fine-tune protection mechanisms to ensure network availability.
  • Design, configure, implement complex security policies, network address translation (NAT), and VPN tunnels.
  • Provide technical guidance and mentorship to L1 and L2 analysts. Act as the final escalation point (L3) for complex security incidents and problems, providing expert resolution and support.
  • Participate in a 24x7 on-call rotation to provide incident management for mission-critical services.
  • Contribute to the technology roadmap by researching, evaluating & recommending new security tools & capabilities.
  • Responsible for timely patch deployment, migration of firmware/software and deployment of configuration as part of migrated functionality, timely update of necessary signatures, and its functionality after taking complete precaution to avoid outage and downtime.
  • Maintain network and security architecture diagram and review and update the based-on changes. Further, proper maintenance for LLD and HLD for each solution and regular update of the same.
  • Provide the suggestions for any enhancements/changes that can enhance the security posture and/or add business value to the delivery framework.
  • Develop and document standard operating procedures and runbooks for incident response related to IPS, proxy, and sandboxing events.
  • Shall analyze incidents independently & identify root cause and act for containment and remediation.
  • Provides engineering analysis and architectural design of technical solutions.
  • Sound analytical and troubleshooting skills and good Team Management & co-ordination skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Services Engineer (L2)
Security Services Engineer (L2)

NTT DATA BUSINESS SOLUTIONS • Mumbai

On-site
INR 900,000 - 1,300,000
Security Services Engineer (L2)
Security Services Engineer (L2)

NTT DATA, Inc. • Mumbai

On-site
INR 800,000 - 1,200,000
Network Security L3
Network Security L3

NTT DATA • Mumbai

On-site
INR 1,500,000 - 2,100,000
Security Engineer (L1)
Security Engineer (L1)

NTT DATA BUSINESS SOLUTIONS • Kolkata District

On-site
INR 600,000 - 1,000,000
Firewall & Network EngineerL3
Firewall & Network EngineerL3

CBY Services • Mumbai

On-site
INR 1,000,000 - 1,500,000
Perimeter Security Engineer L2
Perimeter Security Engineer L2

Visara Human Capital Services • Gurugram District, Bengaluru

On-site
INR 900,000 - 1,400,000
Network Engineer
Network Engineer

CODERS BRAIN • Hyderabad, Bengaluru

Hybrid
INR 1,800,000 - 3,200,000
Network Security (4+ Yrs,)
Network Security (4+ Yrs,)

Innova ESI • Nagpur District

On-site
INR 700,000 - 1,200,000
Security Architect
Security Architect

Accenture in India • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Network Security Engineer II
Network Security Engineer II

Rackspace Technology • Gurugram District

On-site
INR 1,200,000 - 1,800,000