What success looks like in this role:
Experience
8–12 Years
Job Summary
We are seeking an experienced L3 Network Security Engineer with strong expertise in Palo Alto, Fortinet Firewalls, Fortinet SD-WAN, Panorama, Cloud Network Security, and Data Center Migration. The ideal candidate will be responsible for designing, implementing, troubleshooting, and optimizing enterprise network security solutions while supporting business-critical infrastructure and transformation projects.
Key Responsibilities
Firewall Administration
- Design, implement, and manage Palo Alto and Fortinet firewall infrastructure.
- Configure and troubleshoot Security Policies, NAT, VPN, SSL Decryption, URL Filtering, IPS, Anti-Malware, and Application Control.
- Perform firewall rule reviews and policy optimization.
- Conduct firewall software upgrades and security patching.
Fortinet SD-WAN
- Design, deploy, and support Fortinet SD-WAN solutions.
- Configure SLA policies, Performance SLAs, Overlay VPN, ADVPN, and Dynamic Routing.
- Troubleshoot SD-WAN routing and application performance issues.
- Support Hub-and-Spoke and Multi-Hub SD-WAN architectures.
Palo Alto Panorama
- Administer Panorama for centralized policy management.
- Manage device groups, templates, template stacks, and software updates.
- Implement centralized logging and compliance reporting.
- Perform configuration backups and disaster recovery activities.
Cloud Network Security
- Deploy and support Azure Network Virtual Appliances (NVA).
- Configure Azure Virtual WAN (vWAN), Virtual Networks (VNet), Route Tables, NSGs, UDRs, and VPN Gateways.
- Implement cloud firewall solutions and hybrid connectivity.
- Troubleshoot cloud networking and security issues.
Data Center Migration
- Plan and execute data center migration activities.
- Perform firewall migration and rule migration.
- Coordinate application cutovers and migration testing.
- Validate connectivity during migration windows.
- Prepare rollback plans and post-implementation validation.
Routing & Switching
- Configure and troubleshoot:
- BGP
- OSPF
- Static Routing
- VRF
- ECMP
- Policy-Based Routing
- Analyze routing convergence and failover scenarios.
Security Operations
- Investigate and resolve P1/P2 network security incidents.
- Perform Root Cause Analysis (RCA).
- Coordinate with vendors (Palo Alto, Fortinet, Microsoft TAC).
- Implement security hardening and best practices.
- Review security advisories and recommend remediation plans.
Change & Project Management
- Prepare implementation plans, rollback plans, and test plans.
- Participate in CAB meetings.
- Execute changes during maintenance windows.
- Lead infrastructure upgrade and migration projects.
Documentation
- Develop and maintain:
- HLD/LLD
- SOPs
- Runbooks
- Knowledge Articles
- Network diagrams
- As-built documentation
Required Technical Skills
Firewalls
- Palo Alto Networks (PAN-OS)
- FortiGate Firewalls
- FortiManager
- FortiAnalyzer
- Panorama
Fortinet Technologies
- Fortinet SD-WAN
- ADVPN
- IPsec VPN
- SSL VPN
- High Availability (HA)
- Virtual Domains (VDOM)
Cloud
- Microsoft Azure
- Azure Virtual WAN
- Azure NVA
- Azure Firewall
- ExpressRoute
- VPN Gateway
- Azure Load Balancer
Routing
- BGP
- OSPF
- Static Routing
- ECMP
- Route Redistribution
Security Technologies
- IPS
- IDS
- SSL Inspection
- URL Filtering
- Application Control
- Threat Prevention
- DNS Security
Networking
- TCP/IP
- VLAN
- NAT
- QoS
- DNS
- DHCP
- Proxy
- Load Balancing
Monitoring & Management
- Panorama
- FortiManager
- FortiAnalyzer
- Azure Monitor
- Syslog
- SIEM Integration
Preferred Skills
- Zscaler Internet Access (ZIA)
- Zscaler Private Access (ZPA)
- Cisco Networking
- F5 Load Balancers
- Azure Cloud Networking
- Infrastructure as Code (Terraform/Ansible)
- Python or PowerShell scripting
- ITIL Change Management
Certifications (Preferred)
- Palo Alto Networks Certified Network Security Engineer (PCNSE)
- Fortinet NSE 4 / FCP Network Security
- Fortinet NSE 7 / FCSS Network Security
- Microsoft Azure Administrator (AZ-104)
- Azure Network Engineer (AZ-700)
- CCNP Security
- ITIL Foundation
Soft Skills
- Strong troubleshooting and analytical skills.
- Excellent verbal and written communication.
- Experience leading technical bridge calls during critical incidents.
- Ability to manage multiple priorities in a fast-paced environment.
- Strong stakeholder and vendor management skills.
- Mentoring and technical leadership for L1/L2 engineers.
Key Responsibilities Summary
- Manage Palo Alto and Fortinet firewall infrastructure.
- Administer Panorama, FortiManager, and FortiAnalyzer.
- Design and support Fortinet SD-WAN and ADVPN.
- Lead firewall upgrades, migrations, and cloud security projects.
- Support Azure networking and NVA deployments.
- Execute data center migration activities.
- Perform L3 troubleshooting for complex network security incidents.
- Drive security compliance, governance, and continuous improvement initiatives.
You will be successful in this role if you have:
BA/BS degree and 6-8 years’ relevant experience OR equivalent combination of education and experience
Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law.
Local employment practices and rights may vary by jurisdiction and are subject to applicable local laws. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers.
If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at [email protected]. US job seekers can find more information about Unisys’ EEO commitment here.
Skills Required
- Bachelor’s degree in a relevant field or equivalent combination of education and experience
- 6–8 years of relevant experience, or equivalent combination of education and experience
Unisys Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Unisys and has not been reviewed or approved by Unisys.
-
Fair & Transparent Compensation — Fair & Transparent Compensation: Compensation terms at hire are often presented clearly and upfront, creating a straightforward “take it or leave it” expectation. Pay outcomes are also described as variable by role and geography, with some pockets viewed as satisfactory or above average.
-
Retirement Support — Retirement Support: A 401(k) plan with an employer match is commonly described as part of the core package. The match is often characterized as a meaningful component of total rewards relative to other benefits.
-
Healthcare Strength — Healthcare Strength: Core medical, dental, and vision coverage is described as available and broadly in line with a large IT-services employer. The underlying carrier network is sometimes viewed as solid even when cost concerns exist.
Unisys Insights
What We Do
Unisys is a global information technology company that builds high-performance, security-centric solutions for the most demanding businesses and governments on Earth. Unisys offerings include security software and services; digital transformation and workplace services; industry applications and services; and innovative software operating environments for high-intensity enterprise computing. We build better outcomes securely for our clients across the Government, Financial Services and Commercial







