Techsec Digital Global Private Limited
L2 / L3 Firewall & Network Security Engineer
The Firewall & Network Security Engineer is responsible for the operations, administration, support, optimization, and enhancement of enterprise Firewall and Network Security infrastructure. The role ensures secure, stable, and high-performing delivery of network security services across complex enterprise environments.
The engineer will work closely with Information Security, SOC, Network Operations, Infrastructure, Cloud, Audit, Application Teams, and OEM TAC teams to manage firewall and security services including policy administration, VPN, NAT, WAF, IDS/IPS, DDoS protection, NAC, and micro-segmentation technologies.
The role includes incident handling, troubleshooting, upgrades, security optimization, and participation in architecture and transformation initiatives depending on experience level (L2/L3).
- L2 Level: 3–5 years of experience in Firewall / Network Security Operations & Support
- L3 Level: 5–8+ years of experience in Firewall / Network Security Engineering & Advanced Support
- Experience in enterprise production environments is required
Firewall Technologies
Hands-on experience with:
- Cisco Firepower / ASA
- Palo Alto Networks Firewall
- Check Point Firewall
- Fortinet FortiGate
- F5 BIG-IP / ASM / Advanced WAF
- ISP-based DDoS mitigation solutions
- Radware DDoS Protection
- Trend Micro IPS/IDS
- Cisco Firepower IPS
- Aruba Networks ClearPass (operational exposure preferred)
- NAC policy management, authentication/authorization, and endpoint access control
- AD/LDAP integration and access troubleshooting
- Akamai Guardicore (knowledge or exposure preferred)
- Firewall policy management and lifecycle operations
- VPN administration (site-to-site & remote access)
- NAT configuration and troubleshooting
- ACL and access control management
- Security rule optimization and cleanup
- HA configuration and troubleshooting
- Backup, restore, and recovery operations
- Firmware upgrades and patch management
- Incident handling and RCA
- Network segmentation and Zero Trust principles
- Cloud security exposure (AWS / Azure)
- SIEM integration and SOC operations awareness
- Load balancer and proxy/SWG concepts
- Security automation and monitoring tools
- ServiceNow and ITIL processes (incident, change, problem management)
- CAB and change management exposure
- Agile / SAFe environment exposure
- Basic scripting (PowerShell / Python / Bash)
L2 Responsibilities (Operational & Support Focus)
- Handle day-to-day firewall and network security operations
- Perform troubleshooting for firewall, VPN, NAT, and policy issues
- Manage incident tickets and provide L2 escalation support
- Implement firewall rule changes under SOP guidance
- Monitor security infrastructure health and compliance
- Support upgrades, patching, and maintenance activities
- Coordinate with OEM TAC for issue resolution
- Maintain operational documentation and reports
- Lead critical incident resolution, escalations, and RCA activities
- Design, optimize, and govern firewall, VPN, NAC, WAF, and segmentation policies
- Perform advanced troubleshooting across integrated security environments
- Lead upgrades, migrations, onboarding, and transformation projects
- Drive security optimization, rule cleanup, and performance improvements
- Integrate security tools with SIEM, NAC, and ITSM platforms
- Mentor L1/L2 engineers and provide technical guidance
- Own SOPs, runbooks, architecture documents, and governance practices
- Participate in security architecture reviews, audits, and compliance discussions
- Enforce Zero Trust and least privilege security principles
- Strong analytical and troubleshooting skills
- Good communication and stakeholder management abilities
- Experience in enterprise-scale production environments
- Ability to handle critical incidents and operational escalations
- Strong understanding of network security architecture and operations
Requirements
- Role: L2 / L3 Firewall & Network Security Engineer
- Experience: 3–8+ Years
- Work Mode: Operations & Engineering (Enterprise Security Environment)
- Shift: 24/7 Rotational / On-call Support
- Location: Mumbai – Andheri / Vashi
- Employment Type: Full-time
Mail your CVs along with a cover letter on [email protected] or apply directly on company website.
Note: Joining Immediate or within 1 month



