The Firewall & Network Security Engineer is responsible for the operations, administration, support, optimization, and enhancement of enterprise Firewall and Network Security infrastructure. The role ensures secure, stable, and high-performing delivery of network security services across complex enterprise environments.
The engineer will work closely with Information Security, SOC, Network Operations, Infrastructure, Cloud, Audit, Application Teams, and OEM TAC teams to manage firewall and security services including policy administration, VPN, NAT, WAF, IDS/IPS, DDoS protection, NAC, and micro-segmentation technologies.
The role includes incident handling, troubleshooting, upgrades, security optimization, and participation in architecture and transformation initiatives depending on experience level (L2/L3).
- L2 Level: 3–5 years of experience in Firewall / Network Security Operations & Support
- L3 Level: 5–8+ years of experience in Firewall / Network Security Engineering & Advanced Support
- Experience in enterprise production environments is required
Firewall Technologies
Hands-on experience with:
- Cisco Firepower / ASA
- Palo Alto Networks Firewall
- Check Point Firewall
- Fortinet FortiGate
- F5 BIG-IP / ASM / Advanced WAF
- ISP-based DDoS mitigation solutions
- Radware DDoS Protection
- Trend Micro IPS/IDS
- Cisco Firepower IPS
- Aruba Networks ClearPass (operational exposure preferred)
- NAC policy management, authentication/authorization, and endpoint access control
- AD/LDAP integration and access troubleshooting
- Akamai Guardicore (knowledge or exposure preferred)
- Firewall policy management and lifecycle operations
- VPN administration (site-to-site & remote access)
- NAT configuration and troubleshooting
- ACL and access control management
- Security rule optimization and cleanup
- HA configuration and troubleshooting
- Backup, restore, and recovery operations
- Firmware upgrades and patch management
- Incident handling and RCA
- Network segmentation and Zero Trust principles
- Cloud security exposure (AWS / Azure)
- SIEM integration and SOC operations awareness
- Load balancer and proxy/SWG concepts
- Security automation and monitoring tools
- ServiceNow and ITIL processes (incident, change, problem management)
- CAB and change management exposure
- Agile / SAFe environment exposure
- Basic scripting (PowerShell / Python / Bash)
L2 Responsibilities (Operational & Support Focus)
- Handle day-to-day firewall and network security operations
- Perform troubleshooting for firewall, VPN, NAT, and policy issues
- Manage incident tickets and provide L2 escalation support
- Implement firewall rule changes under SOP guidance
- Monitor security infrastructure health and compliance
- Support upgrades, patching, and maintenance activities
- Coordinate with OEM TAC for issue resolution
- Maintain operational documentation and reports
- Lead critical incident resolution, escalations, and RCA activities
- Design, optimize, and govern firewall, VPN, NAC, WAF, and segmentation policies
- Perform advanced troubleshooting across integrated security environments
- Lead upgrades, migrations, onboarding, and transformation projects
- Drive security optimization, rule cleanup, and performance improvements
- Integrate security tools with SIEM, NAC, and ITSM platforms
- Mentor L1/L2 engineers and provide technical guidance
- Own SOPs, runbooks, architecture documents, and governance practices
- Participate in security architecture reviews, audits, and compliance discussions
- Enforce Zero Trust and least privilege security principles
- Strong analytical and troubleshooting skills
- Good communication and stakeholder management abilities
- Experience in enterprise-scale production environments
- Ability to handle critical incidents and operational escalations
- Strong understanding of network security architecture and operations
Requirements
- Role: L2 / L3 Firewall & Network Security Engineer
- Experience: 3–8+ Years
- Work Mode: Operations & Engineering (Enterprise Security Environment)
- Shift: 24/7 Rotational / On-call Support
- Location: Mumbai – Andheri / Vashi
- Employment Type: Full-time
Mail your CVs along with a cover letter on [email protected] or apply directly on company website.
Note: Joining Immediate or within 1 month
Skills Required
- 3–5 years of experience in firewall and network security operations and support for L2 roles
- 5–8+ years of experience in firewall and network security engineering and advanced support for L3 roles
- Experience working in enterprise-scale production environments
- Hands-on experience with Cisco Firepower or ASA
- Hands-on experience with Palo Alto Networks firewalls
- Hands-on experience with Check Point firewalls
- Hands-on experience with Fortinet FortiGate
- Experience with F5 BIG-IP, ASM, or Advanced WAF
- Experience with ISP-based DDoS mitigation or Radware DDoS Protection
- Experience with IDS/IPS technologies, including Trend Micro IPS/IDS or Cisco Firepower IPS
- Knowledge of firewall policy management, VPN, NAT, ACLs, high availability, backups, upgrades, incident handling, and root-cause analysis
- Knowledge of network segmentation, Zero Trust, and least-privilege security principles
- Ability to handle critical incidents, operational escalations, and advanced troubleshooting
- Strong analytical and troubleshooting skills
- Good communication and stakeholder management abilities
- Ability to provide 24/7 rotational or on-call support
- Operational exposure to Aruba ClearPass
- Knowledge or exposure to Akamai Guardicore micro-segmentation
- Cloud security exposure with AWS or Azure
- SIEM integration and SOC operations awareness
- Load balancer and proxy or secure web gateway concepts
- Security automation and monitoring tools experience
- ServiceNow and ITIL incident, change, and problem management experience
- CAB and change management exposure
- Agile or SAFe environment exposure
- Basic scripting with PowerShell, Python, or Bash
What We Do
Techsec Digital Global Pvt. Ltd. provides technology, cybersecurity, cloud, networking, infrastructure, and digital transformation solutions. The company helps organizations safeguard critical information, maintain regulatory compliance, and ensure uninterrupted business operations through customized security tools, secure infrastructure design and management, professional services, automation, and expert consulting. It is ISO/IEC 27001:2022 certified and serves businesses navigating complex digital security and transformation needs.








