Lead Network Security Engineer

Posted 3 Days Ago
Be an Early Applicant
Bangalore, Bengaluru Urban, Karnataka, IND
In-Office
Senior level
Information Technology
The Role
Lead L3 Network Security Engineer responsible for designing, implementing, and managing Palo Alto and Fortinet firewall environments, Fortinet SD-WAN, Panorama, and Azure network security. Lead data center migrations, routing and switching (BGP/OSPF/VRF/ECMP), incident response, and security operations. Create HLD/LLD, runbooks, and mentor L1/L2 engineers while driving upgrades, policy migrations, and compliance.
Summary Generated by Built In

What success looks like in this role:

Job Summary

We are seeking a highly skilled L3 Network Security Engineer with extensive experience in Palo Alto and Fortinet security technologies, Fortinet SD-WAN, Panorama, Azure Cloud Network Security, and Data Center Migration initiatives. The role is responsible for designing, implementing, managing, and optimizing enterprise network security solutions while ensuring the availability, performance, and security of critical business infrastructure. The ideal candidate will play a key role in complex transformation projects, security operations, cloud networking, and large-scale migration activities.

Roles & Responsibilities

Network Security & Firewall Management

  • Design, deploy, administer, and optimize Palo Alto and Fortinet firewall environments.
  • Configure and manage security policies, NAT, VPNs, SSL Decryption, URL Filtering, IPS, Anti-Malware, and Application Control.
  • Perform firewall rule reviews, policy optimization, software upgrades, and security patch management.
  • Ensure firewall high availability, resilience, and compliance with security standards.

Fortinet SD-WAN Administration

  • Design, implement, and maintain Fortinet SD-WAN solutions across enterprise environments.
  • Configure Overlay VPN, ADVPN, SLA-based routing, Performance SLAs, and dynamic routing protocols.
  • Troubleshoot complex SD-WAN connectivity, routing, and application performance issues.
  • Support Hub-and-Spoke and Multi-Hub SD-WAN architectures.

Palo Alto Panorama Management

  • Administer Panorama for centralized firewall policy management and governance.
  • Manage device groups, templates, template stacks, and software lifecycle activities.
  • Implement centralized logging, monitoring, reporting, and compliance controls.
  • Maintain backup, recovery, and disaster recovery processes.

Cloud Network Security

  • Design and support Microsoft Azure network security solutions.
  • Configure and manage Azure Virtual WAN, VNets, NSGs, UDRs, VPN Gateways, NVAs, and Azure Firewall.
  • Support hybrid cloud connectivity and cloud security architecture implementations.
  • Troubleshoot cloud networking and security-related issues.

Data Center Migration & Transformation

  • Lead network and security activities during data center migration projects.
  • Execute firewall and policy migrations while minimizing operational risks.
  • Coordinate application cutovers, validation testing, rollback planning, and post-migration support.
  • Ensure seamless connectivity and service continuity throughout migration activities.

Routing & Network Infrastructure

  • Configure and troubleshoot routing protocols including BGP, OSPF, Static Routing, VRF, ECMP, and Policy-Based Routing.
  • Analyze routing behavior, failover mechanisms, and network convergence scenarios.
  • Support enterprise routing and switching environments.

Security Operations & Incident Management

  • Provide L3 support for critical network security incidents and outages.
  • Perform Root Cause Analysis (RCA) and implement preventive measures.
  • Collaborate with vendors including Palo Alto, Fortinet, and Microsoft for issue resolution.
  • Drive security hardening initiatives and implement industry best practices.

Change & Project Management

  • Develop implementation, test, validation, and rollback plans for network security changes.
  • Participate in CAB meetings and lead infrastructure upgrades, migration, and transformation projects.
  • Execute planned changes during maintenance windows with minimal business impact.

Documentation & Knowledge Management

  • Develop and maintain technical documentation, including:
    • High-Level and Low-Level Designs (HLD/LLD)
    • Standard Operating Procedures (SOPs)
    • Runbooks
    • Knowledge Base Articles
    • Network Diagrams
    • As-Built Documentation
  • Provide technical mentoring and guidance to L1/L2 engineers.
Required Technical Skills
  • Firewall Technologies: Palo Alto, Panorama, FortiGate, FortiManager, FortiAnalyzer
  • Fortinet Security: SD-WAN, ADVPN, IPsec VPN, SSL VPN, HA, VDOM
  • Cloud Security: Microsoft Azure, Azure Firewall, Azure Virtual WAN, NVA, ExpressRoute, VPN Gateway
  • Routing & Networking: BGP, OSPF, Static Routing, ECMP, Route Redistribution, TCP/IP, VLAN, NAT, QoS, DNS, DHCP
  • Security Technologies: IPS, IDS, SSL Inspection, URL Filtering, Threat Prevention, DNS Security
  • Monitoring & Management: Panorama, FortiManager, FortiAnalyzer, Azure Monitor, Syslog, SIEM Integration
Preferred Skills
  • Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA)
  • Cisco Networking
  • F5 Load Balancers
  • Infrastructure as Code (Terraform, Ansible)
  • Python or PowerShell Scripting
  • ITIL Change Management
Preferred Certifications
  • PCNSE – Palo Alto Networks Certified Network Security Engineer
  • Fortinet FCP / FCSS Network Security
  • Microsoft Azure Administrator (AZ-104)
  • Azure Network Engineer Associate (AZ-700)
  • CCNP Security
  • ITIL Foundation
Key Deliverables
  • Manage and enhance Palo Alto and Fortinet security environments.
  • Administer Panorama, FortiManager, and FortiAnalyzer platforms.
  • Design and support enterprise SD-WAN and cloud security solutions.
  • Lead security infrastructure upgrades, migrations, and transformation initiatives.
  • Provide advanced troubleshooting and incident response support.
  • Drive compliance, governance, and continuous improvement across network security operations.

#LI-SK2

You will be successful in this role if you have:

BA/BS degree and 6-8 years’ relevant experience OR equivalent combination of education and experience

Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law.

Local employment practices and rights may vary by jurisdiction and are subject to applicable local laws. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers.

 

If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at [email protected]. US job seekers can find more information about Unisys’ EEO commitment here.

Skills Required

  • BA/BS degree or equivalent combination of education and experience
  • 6-8 years relevant network/security engineering experience
  • Design, deploy, and manage Palo Alto firewall environments
  • Design, deploy, and manage Fortinet (FortiGate) firewall environments and Fortinet SD-WAN
  • Panorama administration for centralized firewall policy management
  • Microsoft Azure network security (Azure Firewall, Virtual WAN, NVAs, ExpressRoute, VPN Gateway)
  • Experience leading network/security activities for data center migration projects
  • Routing and switching experience: BGP, OSPF, Static Routing, VRF, ECMP, route redistribution
  • Firewall policy and security feature configuration: NAT, VPNs, SSL Decryption/Inspection, URL Filtering, IPS/IDS, Threat Prevention
  • Monitoring and management tools: FortiManager, FortiAnalyzer, Azure Monitor, Syslog, SIEM integration
  • Provide L3 support, incident management, RCA, and vendor collaboration
  • Zscaler (ZIA/ZPA)
  • Cisco networking and F5 load balancer experience
  • Infrastructure as Code: Terraform, Ansible
  • Scripting: Python or PowerShell
  • ITIL change management knowledge
  • Preferred certifications: PCNSE, Fortinet FCP/FCSS, AZ-104, AZ-700, CCNP Security, ITIL Foundation

Unisys Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Unisys and has not been reviewed or approved by Unisys.

  • Fair & Transparent Compensation Fair & Transparent Compensation: Compensation terms at hire are often presented clearly and upfront, creating a straightforward “take it or leave it” expectation. Pay outcomes are also described as variable by role and geography, with some pockets viewed as satisfactory or above average.
  • Retirement Support Retirement Support: A 401(k) plan with an employer match is commonly described as part of the core package. The match is often characterized as a meaningful component of total rewards relative to other benefits.
  • Healthcare Strength Healthcare Strength: Core medical, dental, and vision coverage is described as available and broadly in line with a large IT-services employer. The underlying carrier network is sometimes viewed as solid even when cost concerns exist.

Unisys Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Blue Bell, PA
22,588 Employees
Year Founded: 1986

What We Do

Unisys is a global information technology company that builds high-performance, security-centric solutions for the most demanding businesses and governments on Earth. Unisys offerings include security software and services; digital transformation and workplace services; industry applications and services; and innovative software operating environments for high-intensity enterprise computing. We build better outcomes securely for our clients across the Government, Financial Services and Commercial

Similar Jobs

eClinical Solutions Logo eClinical Solutions

Clinical Database Programmer

Cloud • Healthtech • Professional Services • Software • Pharmaceutical
Easy Apply
Hybrid
Bangalore, Bengaluru Urban, Karnataka, IND
400 Employees

eClinical Solutions Logo eClinical Solutions

Development Engineer

Cloud • Healthtech • Professional Services • Software • Pharmaceutical
Easy Apply
Hybrid
Bangalore, Bengaluru Urban, Karnataka, IND
400 Employees

Zeta Global Logo Zeta Global

Product Designer

AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Easy Apply
Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
2429 Employees

Wipfli Logo Wipfli

Senior - Compliance

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
2900 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account