• Experience in firewall design and in network security including Device Hardening, IDS/IPS, SIEM, Firewalls, and IPSec, vulnerability assessment and intrusion detection.
• Good understanding on TCP/IP communication flow and packet capture analysis and troubleshooting the network connectivity issues.
• Good understanding on routing and switching Technologies such as STP, VTP, Mac learning, ARP, reverse ARP, OSPF, BGP, Port-channel, LACP etc.
• Experience with NAT, ACL controls, Web Security/URL Filtering, IPSec, Intrusion Prevention System (IPS), Malware Prevention.
• Strong experience in devices like, Cisco FTD, ASA, FortiGate, Palo Alto Firewalls and Checkpoint.
• Good Knowledge and Working Experience in managing firewalls management tools like Forti Manager, Panorama, Firemon .
• Expertise in configurations of rules, routing, Natting, policies and profiles in Firewalls.
• Plan, implement and document the change of services including hardware replacement and enhancements, Migration.
• Establish and maintain IPSec-based connectivity with customers, Vendors.
• Good experience in migrating the VPNs from legacy to new NGFW firewalls.
• Produce and maintain timely, accurate engineering documentation to support implementation, operations support and quality/compliance requirements
• Determines security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates.
• Implements security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation.
• Good understanding about RADIUS and TACACS protocols and authentication methods.
CCIE Security or Equivalent certifications.