CCDS is looking for a Senior Network Security Engineer with a focus on Web Application Firewalls (WAF) and Network Infrastructure. In this crucial role, you will be responsible for designing, implementing, and managing secure frameworks that safeguard our web applications and network infrastructure against threats. You will play a significant role in traffic monitoring, threat detection, and response initiatives while collaborating with cross-functional teams to ensure the highest levels of security compliance and performance optimization.
Role Summary
We are looking for a Senior Network Security Engineer with strong hands‑on experience in Web Application Firewalls (F5 & Fortinet) and broad exposure to enterprise network and security technologies. The ideal candidate will be responsible for designing, implementing, and supporting secure, highly available environments for our customers, with a focus on application security, network security, and load balancing solutions.
Key Responsibilities
- Design, implement, and support WAF solutions using F5 and Fortinet platforms for internet‑facing and internal applications.
- Perform end‑to‑end deployment, including requirements gathering, HLD/LLD preparation, configuration, testing, go‑live, and handover.
- Implement and support network routing & switching, firewalls, load balancers, GSLB, and email security solutions (as per selected technologies).
- Troubleshoot complex L3–L7 issues, including application availability, performance, and security incidents.
- Participate in configuration reviews and architecture reviews, providing recommendations aligned with best practices and security frameworks.
- Develop and maintain technical documentation, including runbooks, design documents, configuration templates, and change plans.
- Collaborate with cross‑functional teams (security, infrastructure, application teams, vendors) to ensure secure and stable service delivery.
- Support incident response, root cause analysis, and problem management for network and security‑related issues.
- Contribute to continuous improvement of security controls, configurations, and monitoring capabilities.
- Mentor junior engineers and provide technical guidance to internal teams and customers.
Required Experience & Qualifications
- Minimum 7 years hands‑on experience in implementation and support of network and security solutions in medium to large enterprise environments.
- Strong experience in WAF technologies (Mandatory): F5 WAF (ASM/Advanced WAF), Fortinet WAF / FortiWeb.
- At least 4 of the following technologies (Mandatory): Routing & Switching (Cisco / similar enterprise vendors), Firewalls (e.g., Fortinet, Palo Alto, Cisco, etc.), Load Balancer (F5 LTM / equivalent), GSLB (F5 DNS / equivalent), Email Security (cloud or on‑prem secure email gateways).
Preferred Technical Skills
- Wireless (Enterprise Wi‑Fi solutions)
- ZTNA (Zero Trust Network Access) solutions
- NAC (Network Access Control) – Cisco ISE, Aruba ClearPass, or similar
- Configuration Review – baseline checks, hardening, best‑practice assessments
- Architecture Review – reviewing and enhancing existing network/security designs
Certifications
Must: CCNP (Enterprise/Security or equivalent), Fortinet certification (e.g., NSE4 or above), F5 certification (e.g., 101/201 or higher), Palo Alto Networks certification (e.g., PCNSE / PCNSA)
Preferred: CCIE (Routing & Switching / Enterprise / Security or equivalent expert‑level certification)
Soft Skills
- Strong analytical and troubleshooting skills for complex network and application issues.
- Excellent customer communication and stakeholder management skills.
- Ability to document clearly and present technical concepts to both technical and non‑technical audiences.
- Self‑driven, with the ability to work independently and as part of a team.
- Strong ownership mindset with a focus on quality, security, and stability.
Benefits
- Paid Time Off
- Performance Bonus
- Private Family Medical Insurance
- Training & Development plan
- Performance Bonus 30 calendar day annual vacation