What success looks like in this role:
We are seeking a highly skilled L3 Network Security Engineer with extensive experience in Palo Alto and Fortinet security technologies, Fortinet SD-WAN, Panorama, Azure Cloud Network Security, and Data Center Migration initiatives. The role is responsible for designing, implementing, managing, and optimizing enterprise network security solutions while ensuring the availability, performance, and security of critical business infrastructure. The ideal candidate will play a key role in complex transformation projects, security operations, cloud networking, and large-scale migration activities.
Roles & ResponsibilitiesNetwork Security & Firewall Management
- Design, deploy, administer, and optimize Palo Alto and Fortinet firewall environments.
- Configure and manage security policies, NAT, VPNs, SSL Decryption, URL Filtering, IPS, Anti-Malware, and Application Control.
- Perform firewall rule reviews, policy optimization, software upgrades, and security patch management.
- Ensure firewall high availability, resilience, and compliance with security standards.
Fortinet SD-WAN Administration
- Design, implement, and maintain Fortinet SD-WAN solutions across enterprise environments.
- Configure Overlay VPN, ADVPN, SLA-based routing, Performance SLAs, and dynamic routing protocols.
- Troubleshoot complex SD-WAN connectivity, routing, and application performance issues.
- Support Hub-and-Spoke and Multi-Hub SD-WAN architectures.
Palo Alto Panorama Management
- Administer Panorama for centralized firewall policy management and governance.
- Manage device groups, templates, template stacks, and software lifecycle activities.
- Implement centralized logging, monitoring, reporting, and compliance controls.
- Maintain backup, recovery, and disaster recovery processes.
Cloud Network Security
- Design and support Microsoft Azure network security solutions.
- Configure and manage Azure Virtual WAN, VNets, NSGs, UDRs, VPN Gateways, NVAs, and Azure Firewall.
- Support hybrid cloud connectivity and cloud security architecture implementations.
- Troubleshoot cloud networking and security-related issues.
Data Center Migration & Transformation
- Lead network and security activities during data center migration projects.
- Execute firewall and policy migrations while minimizing operational risks.
- Coordinate application cutovers, validation testing, rollback planning, and post-migration support.
- Ensure seamless connectivity and service continuity throughout migration activities.
Routing & Network Infrastructure
- Configure and troubleshoot routing protocols including BGP, OSPF, Static Routing, VRF, ECMP, and Policy-Based Routing.
- Analyze routing behavior, failover mechanisms, and network convergence scenarios.
- Support enterprise routing and switching environments.
Security Operations & Incident Management
- Provide L3 support for critical network security incidents and outages.
- Perform Root Cause Analysis (RCA) and implement preventive measures.
- Collaborate with vendors including Palo Alto, Fortinet, and Microsoft for issue resolution.
- Drive security hardening initiatives and implement industry best practices.
Change & Project Management
- Develop implementation, test, validation, and rollback plans for network security changes.
- Participate in CAB meetings and lead infrastructure upgrades, migration, and transformation projects.
- Execute planned changes during maintenance windows with minimal business impact.
Documentation & Knowledge Management
- Develop and maintain technical documentation, including:
- High-Level and Low-Level Designs (HLD/LLD)
- Standard Operating Procedures (SOPs)
- Runbooks
- Knowledge Base Articles
- Network Diagrams
- As-Built Documentation
- Provide technical mentoring and guidance to L1/L2 engineers.
- Firewall Technologies: Palo Alto, Panorama, FortiGate, FortiManager, FortiAnalyzer
- Fortinet Security: SD-WAN, ADVPN, IPsec VPN, SSL VPN, HA, VDOM
- Cloud Security: Microsoft Azure, Azure Firewall, Azure Virtual WAN, NVA, ExpressRoute, VPN Gateway
- Routing & Networking: BGP, OSPF, Static Routing, ECMP, Route Redistribution, TCP/IP, VLAN, NAT, QoS, DNS, DHCP
- Security Technologies: IPS, IDS, SSL Inspection, URL Filtering, Threat Prevention, DNS Security
- Monitoring & Management: Panorama, FortiManager, FortiAnalyzer, Azure Monitor, Syslog, SIEM Integration
- Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA)
- Cisco Networking
- F5 Load Balancers
- Infrastructure as Code (Terraform, Ansible)
- Python or PowerShell Scripting
- ITIL Change Management
- PCNSE – Palo Alto Networks Certified Network Security Engineer
- Fortinet FCP / FCSS Network Security
- Microsoft Azure Administrator (AZ-104)
- Azure Network Engineer Associate (AZ-700)
- CCNP Security
- ITIL Foundation
- Manage and enhance Palo Alto and Fortinet security environments.
- Administer Panorama, FortiManager, and FortiAnalyzer platforms.
- Design and support enterprise SD-WAN and cloud security solutions.
- Lead security infrastructure upgrades, migrations, and transformation initiatives.
- Provide advanced troubleshooting and incident response support.
- Drive compliance, governance, and continuous improvement across network security operations.
#LI-SK2
You will be successful in this role if you have:
BA/BS degree and 6-8 years’ relevant experience OR equivalent combination of education and experienceUnisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law.
Local employment practices and rights may vary by jurisdiction and are subject to applicable local laws. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers.
If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at [email protected]. US job seekers can find more information about Unisys’ EEO commitment here.
Skills Required
- BA/BS degree or equivalent combination of education and experience
- 6-8 years relevant network/security engineering experience
- Design, deploy, and manage Palo Alto firewall environments
- Design, deploy, and manage Fortinet (FortiGate) firewall environments and Fortinet SD-WAN
- Panorama administration for centralized firewall policy management
- Microsoft Azure network security (Azure Firewall, Virtual WAN, NVAs, ExpressRoute, VPN Gateway)
- Experience leading network/security activities for data center migration projects
- Routing and switching experience: BGP, OSPF, Static Routing, VRF, ECMP, route redistribution
- Firewall policy and security feature configuration: NAT, VPNs, SSL Decryption/Inspection, URL Filtering, IPS/IDS, Threat Prevention
- Monitoring and management tools: FortiManager, FortiAnalyzer, Azure Monitor, Syslog, SIEM integration
- Provide L3 support, incident management, RCA, and vendor collaboration
- Zscaler (ZIA/ZPA)
- Cisco networking and F5 load balancer experience
- Infrastructure as Code: Terraform, Ansible
- Scripting: Python or PowerShell
- ITIL change management knowledge
- Preferred certifications: PCNSE, Fortinet FCP/FCSS, AZ-104, AZ-700, CCNP Security, ITIL Foundation
Unisys Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Unisys and has not been reviewed or approved by Unisys.
-
Fair & Transparent Compensation — Fair & Transparent Compensation: Compensation terms at hire are often presented clearly and upfront, creating a straightforward “take it or leave it” expectation. Pay outcomes are also described as variable by role and geography, with some pockets viewed as satisfactory or above average.
-
Retirement Support — Retirement Support: A 401(k) plan with an employer match is commonly described as part of the core package. The match is often characterized as a meaningful component of total rewards relative to other benefits.
-
Healthcare Strength — Healthcare Strength: Core medical, dental, and vision coverage is described as available and broadly in line with a large IT-services employer. The underlying carrier network is sometimes viewed as solid even when cost concerns exist.
Unisys Insights
What We Do
Unisys is a global information technology company that builds high-performance, security-centric solutions for the most demanding businesses and governments on Earth. Unisys offerings include security software and services; digital transformation and workplace services; industry applications and services; and innovative software operating environments for high-intensity enterprise computing. We build better outcomes securely for our clients across the Government, Financial Services and Commercial








