Padmi

Network Subject Matter Expert

IndiaPosted 2 months ago
CybersecuritySenior
Apply at Waisl

Opens the source posting on naukri.com

Source description

About the role

View original
  1. Role Purpose The L2 Network Security Engineer is responsible for ensuring secure, reliable, and high- availability network infrastructure across airport operations. The role focuses on advanced troubleshooting, incident management, and implementation of network security controls using Fortinet firewalls, Juniper Mist wireless, and Juniper switching technologies. The position plays a critical role in defending mission-critical airport systems , including passenger, surveillance, and operational technologies, aligned to enterprise escalation models (L1 L2 L3). [CodeInterpreter | Undefined] 2. Key Responsibilities A. Incident & Problem Management •Handle L2 escalations related to network and security incidents •Diagnose and restore services within defined SLA timelines •Participate in major incident management (MIM) calls •Conduct root cause analysis (RCA) and implement preventive actions •Reduce repeat incidents through systemic fixes [CodeInterpreter | Undefined] B. Fortinet Firewall Operations •Configure and manage: oFirewall policies (NAT, VPN, IPS, Application Control) oHigh Availability (HA) clusters •Perform: oRule lifecycle management (creation, review, cleanup) oSecurity policy optimization and performance tuning •Troubleshoot: oVPN failures, traffic drops, IPS triggers •Support vulnerability closure and audit findings [JD_Sr.Netw...ity_L2 (1) | Word] C. Juniper Mist Wireless (Wi-Fi) •Operate and monitor Juniper Mist cloud-managed WLAN •Analyze user experience (SLE metrics) and performance trends •Troubleshoot: oRoaming issues oAuthentication failures oRF coverage gaps •Ensure segmentation of: oPassenger Wi-Fi oEnterprise users oIoT/Operational devices D. Juniper Switching (LAN) •Configure and manage Juniper EX/QFX switches •Implement: oVLANs, trunking, port security oNetwork segmentation (airside/landside/public zones) •Troubleshoot: oLayer 2 loops, broadcast storms oConnectivity and latency issues E. Security Monitoring & Compliance •Analyze logs from: oFirewalls, switches, wireless controllers •Support SOC in: oThreat detection and analysis oIncident containment •Ensure adherence to: oISO 27001 / organizational security policies •Maintain audit-ready documentation and logs [Engineer -...T Security | PDF] F. Change & Release Management •Execute approved changes: oFirewall rules oNetwork configurations •Perform pre/post validation checks •Ensure minimal business impact during implementation G. Stakeholder & Team Collaboration •Coordinate with: oL1 engineers (guidance and mentoring) oL3 architects / OEM vendors •Provide regular updates and reports on incidents and changes •Contribute to continuous service improvement 3. Technical Competencies (Mandatory) Network Security •Firewall management (Fortinet FortiGate, FortiManager, FortiAnalyzer) •VPN technologies (IPSec, SSL VPN) •IDS/IPS, Network segmentation Networking •TCP/IP, VLANs, STP, routing basics •Enterprise LAN/WAN concepts Wireless •Juniper Mist Wi-Fi Assurance •RF optimization and troubleshooting Switching •Juniper EX/QFX series •Layer 2/Layer 3 switching Tools •SIEM tools (basic usage) •Network monitoring tools ITSM platforms (ServiceNow/Remedy) 4. Behavioral Competencies (HR Focus) Core Behavioral Skills • Analytical Thinking: Ability to troubleshoot complex network/security issues • Attention to Detail: Precision in firewall rule management and configurations • Ownership & Accountability: Drives incidents to closure within SLA • Communication Skills: Clear stakeholder communication during incidents • Team Collaboration: Strong coordination with L1, L3, and cross-functional teams Cognitive & Situational Skills • Decision-Making Under Pressure: Ability to act during outages or breaches • Problem-Solving Mindset: Proactive identification of risks and improvements • Adaptability: Handles dynamic, real-time airport operations environments 5. Experience & Qualifications • Experience: 4–7 years in Network Security / Enterprise Networking • Industry Exposure: Airport / critical infrastructure (preferred) Education: •Bachelor’s in Engineering / IT / Computer Science Certifications (Preferred): •Fortinet NSE4 / NSE5 •Juniper JNCIA / JNCIS •CCNA / CCNP •ITIL Foundation 6. Key Performance Indicators (KPIs) •Incident resolution within SLA (MTTR) •Network uptime (>99.9%) •Reduction in recurring incidents •Firewall rule compliance and optimization •Audit compliance and closure adherence. 7. Work Conditions •24x7 rotational shifts (NOC/SOC) •On-call support during critical incidents •High availability and high-pressure operational environment 8. Airport-Specific Requirements •Support critical systems: oPassenger processing (CUPPS, BRS) oSurveillance (CCTV, ACS) oOperational systems (FIDS, BHS) •Maintain strict segregation: oAirside / Landside / Public / IoT networks •Ensure compliance with aviation security and regulatory norms

One address, no account. We’ll tell you when matching roles go live.

More at Waisl

Related open roles

View all roles