Job Search and Career Advice Platform

Enable job alerts via email!

Engineer-SD WAN/SASE

MTS GLOBAL PTE. LTD.

Singapore

On-site

SGD 70,000 - 100,000

Full time

3 days ago
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading technology solutions provider in Singapore is looking for an expert to design and implement SD-WAN and SASE solutions. You will oversee the entire process from POC design, configuration, to testing. Your expertise in Cisco, Fortinet, and Zscaler is crucial for ensuring network security and optimal traffic routing. Responsibilities include configuring security policies and managing user access controls. Join a team dedicated to delivering high-quality technology solutions.

Qualifications

  • Experience in designing SD-WAN solutions based on client needs.
  • Knowledge of cloud and networking technologies.
  • Ability to implement security policies.

Responsibilities

  • Design POC SDWAN and SASE architecture based on requirements.
  • Configure and deploy SD-WAN components and Zscaler services.
  • Perform testing and validation of SD-WAN and SASE setups.

Skills

SD-WAN design
SASE architecture
Network security
Traffic routing
Zscaler integration

Tools

Cisco
Fortinet
Zscaler
Job description
Solution Design
  • Design POC SDWAN, security, and internet architecture base on customer requirement
  • Physical setup POC test lab Data Center (Singapore)
  • Design a SD-WAN solution (Cisco & Fortinet & Zscaler) including:
  • WAN transport (MPLS, Internet)
  • Traffic steering and application-aware routing
  • High availability and redundancy
  • Design SASE architecture (Zscaler) including:
  • Secure Internet Access (ZIA)
  • Private Access / Zero Trust Network Access (ZPA)/PSE
  • Cloud-based security enforcement points
  • Fill up compliance table
1.0 SD-WAN Implementation
  • Deploy and configure SD-WAN components:
  • Edge devices / virtual appliances at branches, DC, or cloud
  • Centralized management and control components
  • Configure:
  • WAN interfaces and tunnels
  • Application-aware routing and SLA policies
  • Traffic segmentation (e.g. corp, guest, voice)
  • Dynamic path selection and failover
  • Configure QoS
  • Demonstrate Forward Error Correction (FEC)
  • Demonstrate configuration/firmware rollback
  • Demonstrate connection having high jitter, latency, packet loss
  • Enable IPS and IPS load test
  • Configure local internet breakout
  • Integrate with Zscaler
  • Enable sdwan ZTP and manual registration
1.1 SASE(Zscaler) Implementation
  • Configure Zscaler cloud services:
  • ZIA policies (web, firewall, SSL inspection, URL filtering)
  • ZPA application segmentation and access policies
  • PSE configuration
  • Configure Multi Factory authentication (MFA)
  • Simulate Local breakout via SDWAN + ZIA
  • Integrate SD-WAN with Zscaler:
  • Traffic forwarding to nearest Zscaler service edge
  • GRE/IPsec tunnel setup or service chaining (where applicable)
  • Implement Zero Trust access model for private applications
  • Configure user, device, and application-based access controls
1.2 Security & Policy Configuration
  • Define and implement:
  • Security policies aligned with customer requirements.
  • Internet breakout and cloud access policies.
  • East–west and north–south traffic controls.
  • Posture test
  • Integrate with SIEM
  • Simulate connector failure
  • Apply consistent security policies across:
  • Branch users
  • Remote users
  • Data center and cloud workloads
1.3 Testing& Validation
  • Perform functional testing:
  • SD-WAN tunnel establishment and failover
  • Application-based routing behavior
  • SASE policy enforcement
  • Perform integration testing:
  • SD-WAN ↔ SASE connectivity
  • User access to private and internet applications
  • Present compliance test case
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.