Sr. Engineer- Perimeter Security - On-Site, Bangalore

optiv

India

On-site

INR 1,200,000 - 2,400,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

On-site in Bengaluru
Shift flexibility

Job summary

Optiv is seeking a Perimeter Security Engineer to design, implement and support enterprise perimeter controls across on-prem, cloud, and remote environments. The role emphasizes hands-on work with NGFWs, secure web proxies, and continuous improvement of security posture.

You will collaborate with network, cloud, SOC, and application teams, providing incident guidance and escalation during events. On-site in Bengaluru with shift flexibility and 24/5 coverage expectations.

Qualifications

  • Minimum 5 years of hands-on perimeter security experience in enterprise environments.
  • Proven experience with Palo Alto Networks firewalls and Panorama.
  • Hands-on exposure to secure web proxy platforms (Zscaler/Netskope/Symantec ProxySG).

Responsibilities

  • Administer enterprise firewalls including policies, NAT, VPN, and high availability.
  • Operate and troubleshoot secure web proxy services and cloud-delivered security.
  • Plan and implement improvements, migrations, and standardization of perimeter security components.
  • Troubleshoot using logs, captures, flow analysis to identify root cause and restore services.
  • Investigate security events across internet ingress/egress and remote access.
  • Assess firewall/proxy requests with business justification and risk review.
  • Monitor platform availability, licensing, and HA status; support uptime commitments.
  • Maintain runbooks, diagrams, and change-management documentation.
  • Collaborate with network, cloud, SOC, IAM, and vendor teams; mentor junior engineers during incidents.

Skills

Perimeter security
Firewall administration
Incident response
Network security

Education

Bachelor's degree in CS/IT/Cybersecurity

Tools

Palo Alto Networks
Panorama
Zscaler
Netskope
ProxySG
Symantec ProxySG

Job description

This position will be on-site reporting to our Bangalore office, M-F

This team provides 24/7 support. This role requires shift flexibility, including the ability to rotate between days, mids, and nights.

The Perimeter Security Engineer is responsible for designing, implementing, administering, monitoring, and supporting enterprise perimeter security controls across on-premises, cloud, and remote-access environments. The role provides deep operational expertise in next-generation firewalls and secure web proxy technologies, partners with infrastructure and application teams to resolve connectivity and policy issues, and strengthens security through disciplined change, compliance, lifecycle, and incident-management practices.

How you'll make an impact
  • Administer enterprise firewalls, including security policies, NAT, routing, VPN, application control, URL filtering, threat prevention, software upgrades, high availability, monitoring, auditing, and rule-base hygiene.
  • Configure, operate, and troubleshoot secure web proxy and cloud-delivered security services, including explicit and transparent proxy, PAC files, authentication, SSL/TLS inspection, URL categorization, malware controls, and policy enforcement.
  • Plan, design, implement, and validate improvements, migrations, replacements, and standardization of perimeter security components.
  • Perform in-depth troubleshooting using firewall and proxy logs, packet captures, flow analysis, threat logs, and monitoring tools to determine root cause and restore services.
  • Investigate security events and indicators involving internet ingress and egress, remote access, web traffic, command-and-control activity, malicious downloads, and policy violations.
  • Assess and implement firewall and proxy requests with appropriate business justification, least-privilege access, application awareness, risk review, testing, and rollback planning.
  • Monitor platform availability, capacity, performance, license health, certificate validity, and high-availability status; support uptime and service-level commitments.
  • Maintain technical standards, ruleset documentation, object inventories, network diagrams, runbooks, software-release plans, hardware lifecycle records, and operational procedures.
  • Support security compliance and audit activities by producing evidence, reviewing access, remediating findings, and reporting adherence to approved policies and standards.
  • Collaborate with network, cloud, endpoint, SOC, IAM, application, and vendor teams; provide technical guidance and mentor junior engineers during incidents and changes.
Technical Expertise
  • Next-Generation Firewalls: (Fortinet or Palo Alto Networks) NGFW and Panorama; Prisma Access; App-ID, User-ID, Content-ID; GlobalProtect; security profiles; NAT; IPsec and SSL VPN; routing; HA; decryption; log analysis.
  • Secure Web Proxy / SSE: Zscaler Internet Access, Broadcom Symantec ProxySG, Netskope, Forcepoint, or equivalent; proxy policy, PAC files, authentication, SSL inspection, URL filtering, sandboxing, DLP integration, and troubleshooting
  • Cloud Security: AWS and Microsoft Azure networking and security controls; cloud firewalls, security groups, route tables, load balancers, private connectivity, and hybrid traffic flows. GCP exposure is advantageous.
  • Network & Security Foundations: TCP/IP, DNS, DHCP, HTTP/S, TLS, BGP, OSPF, VLANs, routing and switching, load balancers, certificates/PKI, packet capture, and network traffic analysis.
  • Operations & Tooling: ITSM and change management; SIEM and monitoring tools; configuration backup; vulnerability and compliance review; scripting or automation with Python, PowerShell, APIs, or infrastructure-as-code is desirable.
What we're looking for
  • Minimum 5 years of relevant hands-on experience in perimeter security, with strong operational expertise in enterprise firewall and secure web proxy technologies.
  • Proven experience implementing and supporting Palo Alto Networks firewalls and Panorama in enterprise environments; Prisma Access experience is strongly preferred.
  • Hands-on experience with at least one enterprise secure web proxy or Security Service Edge platform such as Zscaler, Symantec ProxySG, Netskope, or Forcepoint.
  • Professional experience in information security, network security, consulting, managed services, or an enterprise security operations role.
  • Demonstrated ability to handle complex incidents, analyze traffic, communicate root cause, and define corrective and preventive actions.
  • Experience working within formal incident, problems, change, vulnerability, and configuration-management processes.
  • Strong written and verbal communication skills, including the ability to explain technical risks and solutions to technical and non-technical stakeholders.
  • Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related discipline, or equivalent practical experience.
  • This role demands the availability of 24/5.
  • This role is Work from Office.
Certifications

Palo Alto Netwo

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Support Engineer
Application Support Engineer

Accenture in India • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Network Security
Network Security

Alike Thoughts • Pune District, Mumbai

On-site
INR 1,200,000 - 1,800,000
Network Security Engineer
Network Security Engineer

Cloudxtreme • Hyderabad

Hybrid
INR 1,000,000 - 1,800,000
Network Security Engineer / Firewall Security Engineer
Network Security Engineer / Firewall Security Engineer

Simpsoft Solutions • Dadri, Bengaluru

On-site
INR 2,500,000 - 4,200,000
Firewall, Prisma - Networking Senior Specialist Advisor
Firewall, Prisma - Networking Senior Specialist Advisor

NTT DATA BUSINESS SOLUTIONS • Dadri

On-site
INR 4,000,000 - 7,000,000
Network Security Engineer
Network Security Engineer

Alike Thoughts • Bengaluru, Mumbai

On-site
INR 1,200,000 - 1,800,000
Operations Engineer
Operations Engineer

Accenture in India • Bengaluru

On-site
INR 1,800,000 - 2,800,000
Sr. Engineer - Security Engineering
Sr. Engineer - Security Engineering

CBTS • Chennai

On-site
INR 1,000,000 - 1,500,000
Network Security Engineer | Firewall | Palo Alto | Fortinet | Cisco
Network Security Engineer | Firewall | Palo Alto | Fortinet | Cisco

Netm Corporate Solutions • Hyderabad, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Senior Information Security Engineer Consultant
Senior Information Security Engineer Consultant

Optum • Bengaluru

On-site
INR 3,500,000 - 5,500,000