Key Responsibilities
1. Network Security Architecture & Strategy
- Design and maintain secure network architectures across LAN, WAN, VPN, SD-WAN, and cloud environments.
- Define and enforce network segmentation, firewall policies , and secure remote access strategies.
- Evaluate and recommend new security tools, solutions, or upgrades to mitigate emerging threats.
2. Firewall & Perimeter Security Management
Manage and configure enterprise firewalls (e.g., Palo Alto, Fortinet, Cisco ASA, Check Point).Oversee intrusion detection / prevention systems (IDS / IPS) and DDoS protection systems .Maintain Web Application Firewalls (WAFs), load balancers, and proxy servers.3. Monitoring, Incident Response & Threat Management
Lead real-time monitoring of network traffic using SIEM tools (e.g., Splunk, QRadar, Sentinel).Manage incident response for network-based threats including malware outbreaks, data breaches, and DoS attacks.Coordinate root cause analysis and remediation efforts for security incidents.4. Compliance & Policy Enforcement
Ensure compliance with relevant standards : ISO 27001, NIST, PCI-DSS, HIPAA, GDPR , etc.Conduct periodic network security assessments, audits, and penetration tests.Develop, update, and enforce security policies, procedures, and best practices.5. Team Management & Stakeholder Communication
Lead and mentor a team of network and security engineers.Liaise with IT, DevOps, compliance, and business units to align security controls with business needs.Create reports and dashboards for senior leadership, highlighting risks, incidents, and mitigation actions.6. Cloud & Hybrid Environment Security
Secure hybrid cloud environments (AWS, Azure, GCP) including VPCs, security groups, transit gateways , etc.Monitor interconnectivity between on-premise and cloud infrastructure using encrypted channels and access controls.Implement zero-trust models and SASE frameworks where applicable.Qualifications
Essential :
Bachelor's Degree in Computer Science, IT, Cybersecurity, or related field8–12+ years of experience in IT / network security with at least 3–5 years in a leadership roleDesirable :
Certifications : CISSP, CISM, CCNP Security, Palo Alto PCNSE, Fortinet NSE, AWS / Azure SecurityExperience in SOC / NOC environmentsProject management exposure (Agile, ITIL)Technical Skills Required
Advanced knowledge of firewalls, routers, switches, and intrusion detection systemsHands-on with SIEM, NAC, VPN, endpoint security, and MFA solutionsFamiliarity with scripting or automation (Python, PowerShell, Ansible) is a plusDeep understanding of TCP / IP, DNS, SSL, TLS, BGP, SNMP, etc.Exposure to Zero Trust, SASE, and cloud-native security toolsSkills Required
Compliance, Stakeholder Management, Team Management, Cissp, Cism, Ccnp Security, Aws