Network Security Engineer

  • Hauppauge
  • Rktek
JOB DESCRIPTION
  • Provide support for all corporate and enclave firewalls, application delivery controllers, RADIUS, RSA.
  • Develop and implement firewall changes for supported networks
  • Evaluate requested changes for possible Cyber-Security Threats
  • Provide 3rd level support to troubleshoot networking issues.
  • Interact with support-customers to resolve issues and provide solutions as required.
  • Provide off-hour support as operational needs dictate. The candidate must be available for rotating weekly on-call shifts (24 hour on-call support) with other members in the group.
  • Lead and / or manage projects of various priorities in a fast-paced environment.
  • Provide Design Consultation for projects for firewall necessity and configuration.
  • Develop and execute disaster recovery and test plans for all supported devices.
  • Prepare support documentation for the for 1st and 2nd level support groups.
  • Document and/or revise administration procedures for security, configuration, operation, and administration of devices.
TECHNICAL SKILLS
  • A Bachelor's Degree in Computer Science or related field with at least 3-5 years' work experience in an enterprise IT environment.
  • Authentication services ( policies / Radius and RSA authentication connections)
  • Firewall image upgrade planning and implementation
  • IDS/IPS profiles
  • Imaging and restoration of firewalls from root layer
  • IPSEC VPNs with between local Cisco and FortiGate firewalls as well as external dissimilar vendor model firewalls/routers.
  • Logical and virtual interfaces for networks sharing security levels.
  • SNMP monitoring and alert profiles
  • Strong organizational skills and attention to detail are required.
  • The candidate must be knowledgeable of Information Security networking best practices and be able to evaluate design requests for Cyber Security threats.
  • The candidate must have extensive experience with firewall administration, upgrades, backups, configuration, and diagnostics.
  • The candidate must possess excellent project management, technical writing and oral communication skills.
  • The candidate must possess excellent technical skills, particularly regarding Network Diagnostics, Firewall operations and deployments (Cisco and/or Fortinet mandatory).
  • This individual must demonstrate the ability to exercise independent judgment, manage complex projects, represent the organization in dealings with customers and vendors, and render sound business decisions.
  • VIPs and NAT for external interfaces
  • Vulnerability review of hardware
NICE TO HAVE
  • systems (RSA, Radius)
  • Centralized Management tools (Cisco Systems Manager, FortiManager)
  • Cloud systems integration (ex. Azure)
  • NGFW Threat Management Tools (ex. web-filtering, application filtering)
  • Scripting / Automation