Position: SecOps Security Engineer (L3) – Security Operations - Check Point, Palo Alto, and Fortinet firewalls
Work Model: Hybrid (can be any of the LHR, ISB or KHI offices)
We are looking for an experienced SecOps Security Engineer (L3) to join a large-scale 24x7 Security Operations environment. This role is suited for a security professional with strong enterprise infrastructure experience who can independently troubleshoot complex security issues, manage critical security platforms, and support incident response and operational security activities.
The position requires hands-on expertise across enterprise firewall technologies, security controls, endpoint protection, VPNs, web security, and vulnerability remediation.
What You’ll Be Responsible For
As an L3 Security Engineer, you will be responsible for maintaining and securing enterprise security infrastructure while providing advanced-level technical support.
Your responsibilities will include:
- Administer and troubleshoot Check Point, Palo Alto, and Fortinet firewalls in enterprise environments.
- Design, implement, review, and optimize firewall policies, ACLs, NAT configurations, and security rules.
- Manage and troubleshoot WAF, IPS, VPN, MFA, and proxy security technologies.
- Investigate security alerts and incidents, perform technical analysis, and identify root causes and remediation actions.
- Analyze firewall, endpoint, and security infrastructure logs to identify operational and security-related issues.
- Support enterprise EDR, DLP, and antivirus platforms, including troubleshooting and security policy administration.
- Conduct firewall rule reviews, security assessments, and configuration audits.
- Perform security hardening and assist with vulnerability remediation across security infrastructure.
- Participate in incident, change, and problem management processes within an ITSM environment.
- Support security compliance, audit, governance, and control requirements.
- Develop and maintain SOPs, technical documentation, configuration records, and operational reports.
- Participate in Disaster Recovery (DR), business continuity, and security readiness exercises.
- Provide L3 technical support for complex security infrastructure issues and work with relevant teams to resolve escalated incidents.
Experience & Technical Background
The ideal candidate should have:
- 7–10 years of professional experience in Security Operations, Network Security, or a closely related cybersecurity function.
- Proven experience supporting large-scale enterprise security environments.
- Strong hands-on expertise with one or more major firewall platforms, particularly Check Point, Palo Alto, or Fortinet.
- Practical experience with WAF, IPS, VPN, MFA, proxy, and endpoint security technologies.
- Experience handling security incidents, troubleshooting complex issues, and performing root-cause analysis.
- Strong understanding of firewall security concepts including ACLs, NAT, rule bases, access controls, and security policies.
- Exposure to vulnerability management, security hardening, audits, and compliance activities.
- Familiarity with enterprise ITSM processes, including Incident, Change, and Problem Management.
- Ability to work effectively in a 24x7 Security Operations environment.
Security Technologies
Experience with the following technologies will be highly relevant:
Network & Perimeter Security
- Check Point
- Palo Alto Networks
- Fortinet
- Firewall Policy & Rule Management
- NAT & ACL
- IPS / IDS
- WAF
- Proxy Security
Access & Endpoint Security
- VPN
- MFA
- EDR
- DLP
- Enterprise Antivirus
Security Operations
- Security Incident Investigation
- Log & Alert Analysis
- Vulnerability Management
- Security Audits
- Configuration Hardening
- Root Cause Analysis
- DR & Security Readiness
Certifications
Relevant industry certifications are advantageous, including:
- Check Point CCSA / CCSE
- Palo Alto Networks PCNSA / PCNSE
- Fortinet certifications
- CompTIA Security+
- Other recognized cybersecurity or network security certifications
Profile We’re Looking For
This role is best suited to a security professional who is comfortable operating at L3/advanced support level, can independently troubleshoot enterprise security infrastructure, and understands both the technical and operational aspects of running a 24x7 security environment.