Location:Bonifacio Global City, Taguig, Metro Manila 1634, Philippines
Work Arrangement:Hybrid — 3 days onsite, 2 days work-from-home
Working Schedule: 8:00 AM to 5:00 PM, from Monday to Friday
About the role
The Network Security Engineer is responsible for the day-to-day operation, monitoring, and troubleshooting of the organization's network and security infrastructure, with a strong focus on firewall management across on-premises and multi-cloud environments (GCP, AWS, Azure). This role ensures network availability, security policy compliance, and rapid resolution of connectivity and access issues.
Key responsibilities
- Manage and monitor day-to-day network operations, ensuring uptime, performance, and reliability of network infrastructure.
- Create, modify, and maintain Access Control Lists (ACLs) across firewalls and network devices to enforce security policies.
- Troubleshoot network and firewall-related incidents (connectivity, latency, routing, access issues) and drive them to resolution within SLA.
- Configure, maintain, and optimize Palo Alto Networks firewalls (policies, NAT rules, security profiles, App-ID/User-ID as applicable).
- Manage firewall and security group configurations within GCP (VPC firewall rules, Cloud Armor as applicable).
- Manage AWS network security (Security Groups, NACLs, AWS Network Firewall/WAF as applicable).
- Manage Azure network security (NSGs, Azure Firewall, firewall policies).
- Perform change management, documentation, and audit support for firewall rule sets across all platforms.
- Respond to and resolve escalated tickets related to network/firewall access, performance, and outages.
- Collaborate with security, cloud, and application teams to align firewall rules with business and compliance requirements.
- Participate in on-call rotation for critical network/firewall incidents (if applicable).
Required Skills & Experience
- Hands-on experience with day-to-day network operations and troubleshooting.
- Strong knowledge of ACL configuration and management.
- Working knowledge of Palo Alto Networks firewalls.
- Working knowledge of firewall/security controls in GCP, AWS, and Azure.
- Understanding of TCP/IP, routing, VPNs, NAT, and general network security principles.
- Strong analytical and problem-solving skills for incident troubleshooting.
- Relevant certifications (PCNSA/PCNSE, AWS/Azure/GCP networking or security certs, CCNA/CCNP).
- Experience working in a multi-cloud, hybrid environment.
- Familiarity with ticketing/ITSM tools (e.g., ServiceNow) for incident and change management
Preferred Qualifications (Nice to Have)
- Experience administering and maintaining Illumio for micro-segmentation and workload-level security policy enforcement, including:
- Building and visualizing application dependency maps for segmentation planning.
- Designing and enforcing workload-level (host-based) security policies across hybrid/cloud environments.
- Supporting zero-trust segmentation initiatives to limit lateral movement risk.