Senior Network Security Engineer / Cyber Security Engineer
The role focuses on planning, designing, implementing, and securing enterprise network infrastructures for Arwen’s clients, deploying and managing advanced network security solutions including Fortinet, Juniper, and Cisco Firepower (FTD) platforms to ensure secure, resilient, and scalable environments aligned with current and future business needs.
Responsibilities
- Actively participate in security deployments and projects across Pakistan.
- Design and implement secure network architectures integrating Fortinet, Juniper, and Cisco FTD solutions.
- Develop HLD (High-Level Design) and LLD (Low-Level Design) with strong security architecture components.
- Configure, deploy, and manage Fortinet Firewalls (FortiGate, FortiManager, FortiAnalyzer), Juniper SRX Security Devices, and Cisco Firepower Threat Defense (FTD).
- Manage and troubleshoot security incidents including firewall policy issues, VPN failures, IPS/IDS alerts, and performance degradations.
- Open and handle JTAC, Cisco TAC, and Fortinet TAC cases.
- Design and implement Site-to-Site and Remote Access VPNs, IPSec & SSL VPN, Intrusion Prevention Systems (IPS), Web filtering and application control, Network segmentation and Zero Trust principles.
- Implement and manage security monitoring and threat detection solutions including SIEM, EDR, IDS/IPS, and related security platforms.
- Perform firewall policy reviews, rule optimization, and security hardening.
- Conduct vulnerability assessments and support remediation efforts.
- Ensure compliance with organizational security policies and industry best practices.
- Provide L2/L3 engineering support for complex security-related troubleshooting.
- Assist in BOQ preparation for Fortinet, Juniper, and Cisco security solutions.
- Work closely with enterprise architecture and SOC teams for secure integration.
- Coordinate with penetration testing and IT teams during security assessments and incident response activities.
- Support incident response and security investigations.
- Perform any other task assigned by Management.
Requirements
- Strong hands‑on experience with Fortinet Security Solutions, Juniper SRX, and Cisco Firepower (FTD & FMC).
- Strong knowledge of routing & switching (OSPF, BGP, VLANs, STP).
- Experience with security best practices and network hardening.
- Experience with SIEM, EDR, SOAR, IDS/IPS, and security monitoring tools.
- Experience with vulnerability management.
- Ability to analyze logs and security alerts and network events for troubleshooting and threat detection.
- Strong troubleshooting and analytical skills.
- Ability to communicate clearly with clients and internal teams.
- Ability to work under pressure and meet deadlines.
Deep Understanding of Key Technologies
- Firewall technologies
- IDS/IPS concepts
- VPN technologies
Education, Experience, Licensure, and Certification
- 4–10 years of progressive experience in Network Security Engineering.
- Bachelor’s degree in Engineering, Computer Science, Information Security, Cyber Security, or a related field.
- Preferred Certifications: NSE 4 / NSE 5 / NSE 7 (Fortinet), JNCIA-SEC / JNCIS-SEC / JNCIP-SEC, CCNA Security / CCNP Security, Cisco Firepower Specialist Certification.
Competencies
- Firewall & Network Security Architecture
- VPN, IPS/IDS, Web Filtering, NAC
- Security Policy Implementation & Optimization
- Routing & Switching Knowledge
- SIEM/EDR/SOC Operations Understanding
- Highly organized and self‑motivated
- Strong problem‑solving and analytical mindset
- Excellent team collaboration skills
- Strong customer orientation
- Effective communication and presentation skills
- Strong attention to detail and security awareness