Diverse Lynx is seeking an experienced Network Security Engineer to support and manage enterprise security infrastructure within a shared services environment. The role involves handling Level 2 operational activities across various network security technologies and ensuring adherence to ITIL processes and service-level agreements.
Responsibilities:
- Manage, monitor, and troubleshoot network security technologies including Firewalls, Proxy Solutions, IDS/IPS, VPN, WAF, DDoS Protection, and NAC platforms
- Perform L2 operational support, incident resolution, and root cause analysis for infrastructure security issues
- Act as the primary escalation point for Firewall, Proxy, VPN, WAF, and DDoS-related incidents raised by internal teams and customers
- Provide technical guidance and support to team members on network and security-related issues
- Review, prioritize, assign, and track tickets to ensure timely resolution within defined SLAs
- Prepare and analyze weekly and monthly security operational metrics and reports
- Participate in incident, problem, and change management activities in accordance with ITIL best practices
- Support secure network design and implementation initiatives, including network segmentation and Zero Trust architectures
- Collaborate with cross-functional teams to ensure the availability, performance, and security of enterprise network infrastructure
- Maintain operational documentation, standard operating procedures (SOPs), and knowledge base articles
- Participate in 24x7 shift operations and on-call support when required
Requirements:
- Strong hands-on experience managing and troubleshooting: Firewalls: Palo Alto, Cisco, Fortinet, Check Point
- Strong hands-on experience managing and troubleshooting: IDS/IPS Solutions
- Strong hands-on experience managing and troubleshooting: VPN Technologies (IPSec, SSL VPN)
- Strong hands-on experience managing and troubleshooting: Web Application Firewalls (WAF)
- Strong hands-on experience managing and troubleshooting: DDoS Protection Solutions
- Strong hands-on experience managing and troubleshooting: Network Access Control (NAC)
- Deep understanding of networking protocols and technologies: TCP/IP
- Deep understanding of networking protocols and technologies: DNS
- Deep understanding of networking protocols and technologies: BGP
- Deep understanding of networking protocols and technologies: OSPF
- Deep understanding of networking protocols and technologies: VLANs
- Deep understanding of networking protocols and technologies: Switching Concepts
- Deep understanding of networking protocols and technologies: Routing Fundamentals
- Strong knowledge of secure network architecture principles including: Network Segmentation
- Strong knowledge of secure network architecture principles including: Zero Trust Security Models
- Excellent understanding of ACLs, security policies, and firewall rule management
- Strong knowledge of IPSec tunneling, GRE, HTTP/HTTPS, and DNS protocols
- Good understanding of: Zscaler Internet Access (ZIA)
- Good understanding of: Zscaler Private Access (ZPA)
- Good understanding of: Microsoft Entra ID Access Management
- Good understanding of: Cisco Client and RADIUS Authentication Services
- Good understanding of: WAF deployment and administration
- Familiarity with security controls and configurations in: AWS
- Familiarity with security controls and configurations in: Microsoft Azure
- Familiarity with security controls and configurations in: Google Cloud Platform (GCP)
- Hands-on experience with network troubleshooting and packet analysis tools: Wireshark
- Hands-on experience with network troubleshooting and packet analysis tools: tcpdump
- Hands-on experience with network troubleshooting and packet analysis tools: Traceroute
- Hands-on experience with network troubleshooting and packet analysis tools: MTR
- Ability to diagnose complex network and security incidents effectively
- Excellent verbal and written communication skills
- Strong analytical and problem-solving capabilities
- Ability to work independently and collaboratively in a fast-paced environment
- Strong stakeholder management and customer-facing communication skills
- Flexibility to adapt to changing priorities and operational requirements
- Ability to mentor junior team members and provide technical leadership during shifts
- Bachelor's degree in Computer Science, Information Technology, Cyber Security, or a related field
- Experience supporting enterprise security environments with technologies such as Firewall, Proxy, VPN, WAF, DDoS Protection, and Cloud Security
- Hands-on administration, monitoring, and L2 troubleshooting experience with: Cisco Security Solutions, Palo Alto Networks, Fortinet Products
- ITIL v4 Foundation
- CompTIA Security+
- Network Fundamentals Certification
- Palo Alto, Fortinet, Cisco Security Certifications (preferred)