Network Security Engineer
منذ 4 أيام
Sharjah city, Sharjah, الإمارات العربية المتحدة
TekWissen LLC
دوام كامل
مجانًا عبر البريد الإلكتروني أو Google
احفظ هذه الوظيفة وحافظ على تنظيم بحثك
قم بإنشاء حساب مجاني لحفظ الوظائف وإنشاء التنبيهات والعودة إلى هذه القائمة من لوحة التحكم الخاصة بك.
مجانًا عبر البريد الإلكتروني أو Google
بالمتابعة، فإنك توافق على الشروط & سياسة الخصوصية.
Key Responsibilities
F5 Load Balancing amp Web Application Firewall WAFProvide L3 support for F5 BIG-IP LTM virtual servers pools health monitors SSL offload persistence and iRules for business-critical and customer-facing applications Administer and tune F5 ASM Advanced WAF create tune and enforce WAF policies aligned to OWASP Top 10 manage attack signatures bot defence and false-positive reduction and transition policies from monitoring to blocking mode safely Manage SSL TLS certificates cipher hardening standards and PKI integration on the F5 estate Troubleshoot latency performance and availability issues monitor interface throughput utilisation and provide capacity upgrade and HA-design inputIPS IDS Intrusion Prevention amp DetectionProvide L3 support for the IPS IDS platform Cisco Firepower FTD via FMC policy and signature management tuning and threat analysis Optimise IPS IDS policies reduce false positives and manage inline vs detection modes validate coverage of critical assets and segments Perform packet-level analysis and threat investigation correlate IPS IDS events with the SIEM for detection and response Maintain signature rule currency and coordinate tuning with the SOC and threat-intelligence functionsNext-Generation Firewall NGFWProvide L3 support for Palo Alto PAN-OS Panorama and Check Point Gaia SmartConsole MDS firewalls across production and DR Manage security policies rule bases NAT App-ID URL filtering threat-prevention profiles and site-to-site remote-access VPNs IPsec SSL Perform firewall hardening HA configuration version patch management N-2 compliance and periodic rule recertification clean-up of no-hit rules Lead complex firewall change implementation and troubleshooting with minimal business impactGeneral L3 OperationalAct as the senior escalation point for P1 P2 incidents lead root-cause analysis and problem management to prevent recurrence Own change management raise review and implement CRs in line with the bank s governance and contribute to designLow-Level DesignLLD for new solutions Support audit and regulatory compliance e g SAMA CBUAE PCI-DSS remediate findings and maintain configuration backups SolarWinds NCM and evidence Maintain SOPs runbooks and topology documentation mentor L1 L2 engineers and coordinate with OEM vendor TAC for escalationsRequired Skills amp ExperienceDeep hands-on expertise with F5 BIG-IP LTM and ASM Advanced WAF iRules SSL TLSStrong expertise in IPS IDS Cisco Firepower FTD FMC signature tuning policy analysisStrong expertise in NGFW Palo Alto PAN-OS Panorama and Check Point R8x GaiaSolid networking foundation TCP IP routing switching NAT VPN IPsec SSL DNS and load-balancing concepts SSL TLS PKI certificate management and security hardening standardsSIEM integration and log analysis packet capture and analysis Wireshark tcpdumpScripting automation Python Bash API desirable for operational efficiencyCertifications (Preferred)F5 Certified 201 301 LTM and ASM Advanced WAFCisco CCNP Security Firepower SNCFPalo Alto PCNSECheck Point CCSACCSE CISSP CISM desirable ExperienceQualificationsBachelor s degree in Computer Science Engineering Information Technology or related field 8 years experience in network security engineering with 3 years at L3 level supporting F5 IPS IDS and NGFW Prior experience in a bank or large regulated enterprise supporting business-critical and customer-facing services strongly preferredBehavioral Soft SkillsStrong incident-leadership and problem-solving under pressure P1 handling Clear written and verbal communication including stakeholder and leadership updates Disciplined approach to change management documentation and audit Collaborative team player able to mentor junior engineers and coordinate with vendorsPreferred Industry ExperienceBankingFinancial ServicesInsuranceBFSILarge EnterpriseSecurity Operations EnvironmentWork ModelFull-time onsite deployment at customer locationWillingness to support after-hours activities during critical incidents or planned maintenanceParticipation in on-call support rotation if requiredTekWissen Group is an equal opportunity employer supporting workforce diversity Bachelor's degree in Computer Science, Engineering, Information Technology or related field.8+ years' experience in network/security engineering, with 3+ years at L3 level supporting F5, IPS/IDS and NGFW.
Prior experience in a bank or large regulated enterprise, supporting business-critical and customer-facing services, strongly preferred.