Key Responsibilities
- Design, implement, and optimize FortiGate‑based SD‑WAN (business intent overlays, SLA policies, application steering, local breakout).
- Engineer and maintain Firewall security: zones, objects, policies, NAT (central NAT), UTM profiles, SSL inspection, IPS/DoS policies, logging.
- Plan and deploy site‑to‑site VPNs (route/policy‑based), IPsec HA, and hub‑and‑spoke topologies alongside Internet/MPLS underlays.
- Lead campus switching design: STP/RSTP/MST, VLANs, link aggregation (LACP/EtherChannel), access control, QoS marking, storm control.
- Build L3 segmentation (VRFs), inter‑VLAN routing, and east‑west policies across access/distribution with clear zone models.
- Implement high availability: FortiGate A‑P/A‑A clusters, dual‑homed uplinks, first‑hop redundancy (VRRP/HSRP/GLBP as applicable).
- Create and maintain network documentation: HLD/LLD, diagrams, IP addressing, security baselines, SOPs, and migration runbooks.
- Establish monitoring & telemetry: SNMP, NetFlow/IPFIX, Syslog, SOC/SIEM integration; define alerting thresholds & runbooks.
- Drive capacity planning, performance tuning, and proactive lifecycle management (firmware, images, templates).
- Collaborate with security, apps, and infra teams for change planning, DR/BCP, and audit/compliance requirements.
- Contribute to automation (nice‑to‑have): Ansible/Terraform/Git pipelines for config templates, compliance checks, and push operations.
- Provide Tier‑3/4 escalation support and participate in on‑call as needed.
Key Responsibilities
- Design, implement, and optimize FortiGate‑based SD‑WAN (business intent overlays, SLA policies, application steering, local breakout).
- Engineer and maintain Firewall security: zones, objects, policies, NAT (central NAT), UTM profiles, SSL inspection, IPS/DoS policies, logging.
- Plan and deploy site‑to‑site VPNs (route/policy‑based), IPsec HA, and hub‑and‑spoke topologies alongside Internet/MPLS underlays.
- Lead campus switching design: STP/RSTP/MST, VLANs, link aggregation (LACP/EtherChannel), access control, QoS marking, storm control.
- Build L3 segmentation (VRFs), inter‑VLAN routing, and east‑west policies across access/distribution with clear zone models.
- Implement high availability: FortiGate A‑P/A‑A clusters, dual‑homed uplinks, first‑hop redundancy (VRRP/HSRP/GLBP as applicable).
- Create and maintain network documentation: HLD/LLD, diagrams, IP addressing, security baselines, SOPs, and migration runbooks.
- Establish monitoring & telemetry: SNMP, NetFlow/IPFIX, Syslog, SOC/SIEM integration; define alerting thresholds & runbooks.
- Drive capacity planning, performance tuning, and proactive lifecycle management (firmware, images, templates).
- Collaborate with security, apps, and infra teams for change planning, DR/BCP, and audit/compliance requirements.
- Contribute to automation (nice‑to‑have): Ansible/Terraform/Git pipelines for config templates, compliance checks, and push operations.
- Provide Tier‑3/4 escalation support and participate in on‑call as needed.
Key Responsibilities
- Design, implement, and optimize FortiGate‑based SD‑WAN (business intent overlays, SLA policies, application steering, local breakout).
- Engineer and maintain Firewall security: zones, objects, policies, NAT (central NAT), UTM profiles, SSL inspection, IPS/DoS policies, logging.
- Plan and deploy site‑to‑site VPNs (route/policy‑based), IPsec HA, and hub‑and‑spoke topologies alongside Internet/MPLS underlays.
- Lead campus switching design: STP/RSTP/MST, VLANs, link aggregation (LACP/EtherChannel), access control, QoS marking, storm control.
- Build L3 segmentation (VRFs), inter‑VLAN routing, and east‑west policies across access/distribution with clear zone models.
- Implement high availability: FortiGate A‑P/A‑A clusters, dual‑homed uplinks, first‑hop redundancy (VRRP/HSRP/GLBP as applicable).
- Create and maintain network documentation: HLD/LLD, diagrams, IP addressing, security baselines, SOPs, and migration runbooks.
- Establish monitoring & telemetry: SNMP, NetFlow/IPFIX, Syslog, SOC/SIEM integration; define alerting thresholds & runbooks.
- Drive capacity planning, performance tuning, and proactive lifecycle management (firmware, images, templates).
- Collaborate with security, apps, and infra teams for change planning, DR/BCP, and audit/compliance requirements.
- Contribute to automation (nice‑to‑have): Ansible/Terraform/Git pipelines for config templates, compliance checks, and push operations.
- Provide Tier‑3/4 escalation support and participate in on‑call as needed.
Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. Explore Life at Zensar and join us to Grow. Own. Achieve. Learn. to be the best version of yourself.
We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.
Top Skills
What We Do
Zensar is a leading experience, engineering, and technology solutions company. We conceptualize, build, and manage digital products for Forbes Global 2000 clients across the hi-tech engineering, banking and financial services, insurance, manufacturing and consumer services verticals. With proven excellence across five core areas, including experience services, advanced engineering services, data engineering and analytics, foundation services, and application services, our solutions leverage industry-leading platforms to help our clients be competitive, agile, and disruptive while moving with velocity through change and opportunity. Zensar’s expansive ecosystem of 60+ technology partners, including Oracle, Salesforce, SAP, Guidewire, Automation Anywhere, Adobe, and UiPath, enables us to deliver comprehensive solutions to clients, facilitating seamless integration and allowing them to leverage cutting-edge technologies and tools for enhanced business outcomes. Zensar is part of the USD 4.4 billion RPG Group. With headquarters in Pune, India, our 10,500+ employees, representing over 50 nationalities, work from 30+ locations across North America, UK/Europe, and South Africa. Visit us at www.zensar.com









