Source description
About the role
Work Mode - Office , Rotational Shift Shift - 24x7x365 (Rotational, On-Call Support Required) Interview Process - Virtual Role Objective The L2 Security Engineer is responsible for incident response, containment, and recovery for confirmed perimeter security incidents. This role acts as the primary owner of security incidents, ensuring timely mitigation while coordinating with internal teams, ISPs, and OEMs. Key Responsibilities Incident Response & Containment Take ownership of validated incidents escalated from L1Execute containment actions in line with approved SOPs: o Malicious IP blocking o Policy enforcement o Traffic mitigation Coordinate real-time response during active attacksEnsure service restoration and post-incident stability Perimeter Security Operations Firewalls (Cisco / Palo Alto / Check Point / Fortinet) o Implement temporary security rules (approved scope) o Support emergency access control changes IDS / IPS (Trend Micro / Cisco) o Validate exploit attempts o Apply temporary signature tuning during incidents DDoS (ISP / Radware) o Activate mitigation techniques o Liaise with ISP / SOC partners during attacks Web Application Firewall (F5) o Enforce blocking actions o Apply temporary mitigation rules Proxy & Internet Security o Contain infected endpoints / suspicious trafficMicro Segmentation (Guard iCore) o Apply containment policies for lateral movement threats RCA, Reporting & Coordination Perform root cause analysis (RCA)Prepare incident reports (technical + executive summary)Support audit and compliance evidenceEngage OEM TAC and internal SMEs as required Skills & Qualifications Technical Skills Strong hands-on experience in perimeter security platformsIncident response and traffic analysis expertiseGood understanding of network protocols and attack patterns Soft Skills Incident ownership mindsetStrong coordination and communication skillsAbility to perform under pressure Preferred Certifications CCNP SecurityCheck Point CCSA / CCSEFortinet NSE 4/5CEH / GCIA (preferred) Deliverables & KPIs Incident response SLA adherenceMean Time to Contain (MTTC)Incident accuracy and recovery effectiveness If Interested, Please share below details with updated CV, on jayshree@alliancerecruitmentagency.com Total Experience - Relevant experience L2 - Relevant experience Perimeter Security - Relevant experience SOC / Network Security / MSSP Environment - Relevant experience Incident Response - Current Company - Current Designation - Current CTC - Expected CTC - Notice Period - Current Location - Education - Reason for job change - Work Mode - Office , Rotational Shift Shift - 24x7x365 (Rotational, On-Call Support Required) Interview Process - Virtual Role Objective The L2 Security Engineer is responsible for incident response, containment, and recovery for confirmed perimeter security incidents. This role acts as the primary owner of security incidents, ensuring timely mitigation while coordinating with internal teams, ISPs, and OEMs. Key Responsibilities Incident Response & Containment Take ownership of validated incidents escalated from L1Execute containment actions in line with approved SOPs: o Malicious IP blocking o Policy enforcement o Traffic mitigation Coordinate real-time response during active attacksEnsure service restoration and post-incident stability Perimeter Security Operations Firewalls (Cisco / Palo Alto / Check Point / Fortinet) o Implement temporary security rules (approved scope) o Support emergency access control changes IDS / IPS (Trend Micro / Cisco) o Validate exploit attempts o Apply temporary signature tuning during incidents DDoS (ISP / Radware) o Activate mitigation techniques o Liaise with ISP / SOC partners during attacks Web Application Firewall (F5) o Enforce blocking actions o Apply temporary mitigation rules Proxy & Internet Security o Contain infected endpoints / suspicious trafficMicro Segmentation (Guard iCore) o Apply containment policies for lateral movement threats RCA, Reporting & Coordination Perform root cause analysis (RCA)Prepare incident reports (technical + executive summary)Support audit and compliance evidenceEngage OEM TAC and internal SMEs as required Skills & Qualifications Technical Skills Strong hands-on experience in perimeter security platformsIncident response and traffic analysis expertiseGood understanding of network protocols and attack patterns Soft Skills Incident ownership mindsetStrong coordination and communication skillsAbility to perform under pressure Preferred Certifications CCNP SecurityCheck Point CCSA / CCSEFortinet NSE 4/5CEH / GCIA (preferred) Deliverables & KPIs Incident response SLA adherenceMean Time to Contain (MTTC)Incident accuracy and recovery effectiveness If Interested, Please share below details with updated CV, on jayshree@alliancerecruitmentagency.com Total Experience - Relevant experience L2 - Relevant experience Perimeter Security - Relevant experience SOC / Network Security / MSSP Enviro
More at AIS Technolabs