Job Purpose
The Network Security Engineering Manager is responsible for leading a team of network security engineers who design, implement, and operate enterprise-scale Zscaler (SSE / ZIA / ZPA) and Fortinet (Next-Generation Firewalls, IPS, VPN) platforms. The role ensures secure, resilient, and high-performance network connectivity across on-premises, cloud, and hybrid environments while enabling Zero Trust and SASE strategies.
Role & Responsibilities
Technical & Platform Leadership
- Own the architecture, engineering, and lifecycle management of Zscaler and Fortinet firewall platforms.
- Lead design and enforcement of firewall, proxy, IPS, VPN, and segmentation policies.
- Drive Zero Trust and SASE adoption using Zscaler ZIA, ZPA, and Branch Connector.
- Standardize and optimize firewall rules and reduce technical debt.
Engineering Operations
- Oversee upgrades, patching, configuration management, and incident response.
- Partner with SOC, Cloud Security, IAM, and Infrastructure teams during incidents.
- Ensure compliance with network security standards and regulatory requirements.
- Drive automation for policy deployment and validation.
People & Delivery Management
- Lead, mentor, and develop network security engineering teams.
- Establish on-call, escalation, and operational readiness models.
- Manage capacity planning, delivery commitments, and prioritization.
Strategy & Stakeholder Engagement
- Translate cybersecurity strategy into engineering roadmaps.
- Act as the primary interface with Zscaler and Fortinet vendors.
- Support audits, risk reviews, and executive reporting.
Required Qualifications
- 10+ years of network security engineering experience with 3–5 years in leadership.
- Deep hands-on experience with Zscaler and Fortinet platforms.
- Strong knowledge of firewall technologies, Zero Trust, and SASE.
- Experience operating security platforms in hybrid and cloud environments.
Preferred Qualifications
- Experience driving enterprise Zero Trust transformations.
- Automation experience using APIs, Terraform, Ansible, or scripting.
- Certifications such as PCNSE, NSE 7/8, CCNP Security, or CISSP.