We are seeking a highly experienced L2 Network & Security Engineer with deep expertise in SD-WAN and SASE technologies, specifically Palo Alto Prisma Access and Palo Alto firewalls. The role is responsible for advanced troubleshooting, operational support, and optimization of enterprise network and security environments, ensuring high availability, performance, and security across global infrastructures.
Key Responsibilities
Network & Security Operations
- Provide L2 support for enterprise network and security infrastructure
- Troubleshoot complex issues related to routing, switching, WAN, and security
- Monitor and maintain network performance, availability, and reliability
- Support, operate, and optimize Palo Alto SD-WAN and Prisma SASE (Prisma Access)
- Troubleshoot SD-WAN overlay/underlay issues, tunnel failures, and performance degradation
- Support secure remote access, ZTNA, and cloud security policies
- Assist with onboarding sites and users into the SASE framework
Firewall & Security Technologies
- Manage and troubleshoot Palo Alto Next-Generation Firewalls (PAN-OS)
- Handle security policy updates, NAT rules, VPNs (IPsec/SSL), and threat prevention
- Investigate and respond to security incidents in coordination with SOC teams
Incident, Problem & Change Management
- Act as an L2 escalation point for network/security incidents
- Perform root cause analysis (RCA) and implement preventive actions
- Participate in change management, maintenance windows, and CAB meetings
- Work closely with L3/Architecture teams, ISPs, and security vendors
- Mentor L1 engineers and provide technical guidance
- Participate in design reviews and provide operational feedback
Documentation & Compliance
- Maintain accurate network diagrams, SOPs, and operational documentation
- Ensure compliance with organizational security policies and standards
- Support audits and vulnerability remediation activities
Required Skills & Experience
- 15–20 years of experience in enterprise networking and security
- Strong hands-on experience with Palo Alto Networks:
- Prisma Access (SASE)
- Deep understanding of:
- TCP/IP, BGP, OSPF, IPSec, SSL VPN
- Network segmentation and Zero Trust principles
- Experience supporting large, global, hybrid environments
- Strong troubleshooting and analytical skills
Preferred Qualifications
- Palo Alto certifications (PCNSE / PCNSA – preferred)
- Experience with cloud platforms (AWS, Azure, GCP) networking integration
- Exposure to ZTNA, CASB, SWG concepts
- ITIL knowledge and operational best practices