K

Senior IT Network & Security Engineer

Knowledge Artisans Private Limited

· Onsite Full-time 8-16 years Posted 4 months ago💰 Not disclosed
Apply now

Must Have Skills

FortiOSFirewall policiesNATRoutingVLANsHigh Availability (HA)Fortinet FortiManagerFortinet FortiAnalyzerFortinet FortiSASESecure Web Gateway (SWG)ZTNAcloud-delivered security servicesArista EOSTCP/IPBGPOSPFDNSDHCPVPN technologies (IPSec, SSL)SD-WANendpoint protectionScripting and automation (Python, Bash)Communication SkillsProblem-solvingLeadership

Preferred Skills

FortiOSFirewall policiesNATRoutingVLANsHigh Availability (HA)Fortinet FortiManagerFortinet FortiAnalyzerFortinet FortiSASESecure Web Gateway (SWG)ZTNAcloud-delivered security servicesArista EOSTCP/IPBGPOSPFDNSDHCPVPN technologies (IPSec, SSL)SD-WANendpoint protectionScripting and automation (Python, Bash)Communication SkillsProblem-solvingLeadership
✔Joyalukkas
World's favourite jeweller

**Job Title:** Senior IT Network & Security Engineer
**Department:** IT Infrastructure
**Experience:** 8-16 Years
**Employment Type:** Full-time

### Job Summary
We are seeking a Senior Network Engineer to join our IT team to design, implement, manage, and maintain our network security infrastructure, including FortiGate, Cisco & Arista Solutions. The ideal candidate will have strong hands-on experience with FortiGate firewalls, VPNs, FortiManager, FortiAnalyzer, and FortiSASE, along with a solid understanding of network protocols, DC/Campus relocation tasks and security best practices.

### Key Responsibilities
* Configure, deploy, manage, and maintain Fortinet solutions including FortiGate, Forti Manager, Forti Analyzer, Forti Switch, FortiAP, FortiClient, and Forti SASE.
* Lead and mentor a team of network and security engineers, including task allocation, performance monitoring, skill development to ensure high-quality service & team growth.
* Design and implement secure network and SASE architectures, firewall rules, and security policies.
* Monitor network and security performance and proactively troubleshoot firewall, VPN, and connectivity issues.
* Ensure timely closure of Network and IT security-related tickets and implement changes efficiently with minimal risk and no service disruption.
* Configure and manage VPNs (IPSec/SSL), SD-WAN, and cloud-delivered security profiles.
* Perform regular firmware upgrades, patch management, and configuration backups.
* Review and analyse logs and security events using FortiAnalyzer and FortiSASE platforms to detect threats and prevent intrusions.
* Collaborate with security and IT teams during incident response, investigation, and mitigation activities.
* Provide Tier 2 / Tier 3 network and security support and resolve escalated issues & update.
* Maintain accurate documentation including network configurations, security policies, and network diagrams.
* Ensure compliance with organizational and regulatory security standards such as ISO 27001, NIST, and PCI-DSS.

### Required Skills & Qualifications
* Minimum 8+ years of experience in network and security engineering, with a strong focus on Fortinet technologies.
* Strong hands-on expertise in FortiOS, firewall policies, NAT, routing, VLANs, and High Availability (HA).
* Hands-on experience with Fortinet FortiManager, Fortinet FortiAnalyzer, and Fortinet FortiSASE.
* Experience with FortiSASE components, including Secure Web Gateway (SWG), ZTNA, and cloud-delivered security services.
* Strong hands-on experience with Arista EOS, including configuration and troubleshooting of Arista switches, VLANs, MLAG, and data center networking features.
* Strong understanding of VPN technologies (IPSec, SSL), SD-WAN, and endpoint protection.
* Proficiency in core networking protocols: TCP/IP, BGP, OSPF, DNS, and DHCP.
* Experience in firewall rule configuration, optimization, and security hardening.
* Excellent troubleshooting, analytical, and communication skills.

### Preferred Qualifications
* **Fortinet NSE certification (NSE 4 or higher)** highly desirable.
* Experience with **scripting and automation (Python, Bash)**.
* Exposure to other firewall and security platforms such as **Palo Alto, Cisco ASA, Check Point**, etc.
* Experience working with **AWS, Azure**, and hybrid network environments.

### Work Environment
* Occasional travel to **data centres or branch offices** may be required.
* Collaborative, fast-paced IT and network security environment.

Apply to this job

Required — upload a file or paste the text