Job Description:
Area(s) of responsibility
Skills: Network & Security Engineer- Microsegmentation
Experience: 8-11 years
Location: Bangalore Only
Key Responsibilities
- Translate high-level business strategic objectives and goals into Enterprise IT requirements and conceptual designs.
- Develop and support comprehensive solutions that meet requirements and align with globalnetwork security and microsegmentation strategy.
- Develop and maintain a multi-year strategic network and security architecture roadmap, incorporatingZero Trust and segmentation-driven security models.
- Lead end-to-end network and security architecture across global platforms ensuring secure, high-performing, fault-tolerant, and resilient environments.
Microsegmentation & Zero Trust Responsibilities
- Architect and implementmicrosegmentation strategiesacross data center, campus, and cloud environments tolimit lateral movement and enforce least-privilege access.
- Design and operationalizeZero Trust Architecture (ZTA)principles, integrating identity, application, and network-based policy enforcement.
- Integrate microsegmentation withfirewalls, SIEM, IAM, EDR/XDR, and cloud-native controlsfor unified policy enforcement.
- Developsegmentation governance models, policy lifecycle management, and compliance alignment (CIS/NIST/Zero Trust frameworks).
Microsegmentation & Advanced Security
- Strong hands-on experience in designing and implementingmicrosegmentation solutionsin complex enterprise environments.
- Proven capability to buildapplication-aware segmentation policiesbased on traffic flow analysis.
- Experience withpolicy simulation, enforcement, monitoring, and optimizationin segmentation platforms.
- Understanding ofeast-west traffic inspection, workload protection, and software-defined segmentation.
- Familiarity withZero Trust Network Access (ZTNA)and identity-driven access models.
Network Security & Infrastructure
- Strong experience managing LAN/WAN security technologies, includingfirewalls, IDS/IPS, SIEM, VPN, and NAC.
- Expertise infirewall architecture and designwith hands-on experience in:
- Fortinet (Fortigate), Palo Alto, Juniper
- Policy design, NAT, routing, application control, and threat prevention profiles
- Experience securingpublic and private cloud (AWS, Azure, GCP)environments.
- Design and implementation ofWeb Application and API Protection (WAAP)solutions.
- Strong experience inproxy (forward/reverse), load balancing, and application security integration.
- Experience withSDN and SD-WAN architectures, including segmentation use cases.
Networking & Protocol Expertise
- Strong knowledge of:
- Routing protocols: BGP, OSPF, RIP, MPLS
- Network services: DNS, DHCP, NTP
- IPv4/IPv6 architecture and traffic management
- Experience inQoS, NetFlow, ACLs, NAT, multicast, and wireless technologies (802.11 variants).
- Experience withF5 GTM/LTM, VPN technologies, and Internet proxy solutions.
Requirements: