Primary Skills
- Manage and maintain enterprise firewalls, ensuring secure and optimal configurations.
- Perform full lifecycle rule management including creation, modification, review, and decommissioning of firewall rules.
- Continuously monitor firewall logs and events to detect anomalous traffic patterns or potential threats.
- Optimize firewall performance and ensure alignment with network architecture standards.
- Implement firewall policy cleanup and rationalization to reduce risk and improve operational efficiency.
- Configure, maintain, and troubleshoot site‑to‑site and remote access VPN solutions.
- Ensure secure tunneling mechanisms and encryption standards are enforced according to the bank's requirements.
- Monitor VPN performance, availability, and capacity to ensure seamless connectivity for internal and external users.
- Implement access control policies for VPN authentication and authorization.
Incident Response & Troubleshooting
- Collaborate with SOC and IT Security teams to provide technical support during incidents.
- Respond to network security alerts triggered by firewall or VPN events.
- Conduct root cause analysis (RCA) for security or connectivity-related incidents involving firewall or VPN
Compliance & Documentation
- Ensure configurations adhere to regulatory and audit requirements, including BSP, ISO 27001, and internal security policies.
- Maintain accurate documentation of network topology, firewall rules, VPN configurations, and change records.
- Support internal and external security audits with required evidence and reports.
Security Monitoring & Enhancements
- Perform continuous monitoring of firewall and VPN infrastructure to identify and mitigate potential security gaps.
- Implement proactive security enhancements and hardening measures.
- Support integration of firewall and VPN logs with SIEM platforms for correlation and threat detection.
Technical Skills
- Strong hands-on experience with enterprise firewalls (e.g., Cisco, Huawei, Palo Alto, Fortinet).
- Expertise in VPN technologies including IPSec, SSL VPN, and cloud VPN gateways.
- Knowledge of network security best practices, segmentation, Zero Trust concepts, and encryption standards.
- Familiarity with SIEM tools and log analysis.
Professional Experience
- 3–7 years in Firewall, Network Security, or related domains.
- Prior experience supporting regulated environments, preferably in banking or financial services.
Certifications (Preferred)
- CCNA/CCNP Security
- Fortinet NSE 4+
- Palo Alto PCNSA/PCNSE
- CompTIA Security+
- CISSP/CEH (advantageous)
Secondary Skills
- Good communication skills
- ITSM service management tools