Network Security Engineer SME
Zensar Technologies
Salary not disclosed
Need a reasonable accommodation to apply or interview? Contact us.
JobMinglr uses automated technology to recommend jobs based on profile information and job preferences. Match Score does not determine eligibility for a position, prevent a user from viewing or applying to a job, or make hiring decisions on behalf of an employer.
Description
Firewall Administration & Architecture
- Deployment & Config: Install, configure, and maintain Palo Alto (PA-Series) and Fortinet (FortiGate) firewalls.
- Policy Management: Design and audit firewall rule bases, security profiles, and NAT policies.
- Centralised Management: Manage large-scale environments using Palo Alto Panorama and Fortinet FortiManager / FortiAnalyzer.
- VPN Management: Establish and secure Site-to-Site IPsec VPNs and Remote Access VPNs (GlobalProtect, FortiClient).
2. Network Security Operations
- Threat Mitigation: Configure advanced security features including IPS/IDS, URL filtering, Anti-
- Upgrade & Patching: Perform routine firmware upgrades, hotfixes, and vulnerability patching.
- Monitoring: Analyze security logs to detect anomalies, unauthorized access, or potential network breaches.
- High Availability: Maintain redundant firewall clusters (HA Active/Passive and Active/Active topologies).
Traffic Management & Core Network Services (DDI)
- Application Delivery: Configure F5 BIG-IP LTM (Local Traffic Manager), including VIPs, Pools, Monitors, SSL offloading, and advanced iRules.
- IPAM & DDI: Manage Infoblox Grid Manager to run high-availability DNS, DHCP, and IP Address Management (IPAM).
- Network Automation: Maintain network health by automating IP allocations and DNS entries.
Edge Architecture & WAN Edge
- SD-WAN Fabric: Design, deploy, and optimize SD-WAN solutions (Fortinet Secure SD-WAN or Palo Alto Prisma SD-WAN) to replace traditional MPLS.
- Traffic Steering: Define application-aware routing paths to guarantee performance for critical SaaS and cloud workloads.
- Hybrid Connectivity: Maintain secure Site-to-Site IPsec VPN overlays across the SD-WAN fabric.
Troubleshooting & Support
- Incident Response: Act as a Tier 2/3 escalation point for complex network security issues and outages.
- Packet Analysis: Use tools like Wireshark and built-in CLI packet captures to diagnose complex routing or traffic drops.
- Performance Tuning: Monitor firewall CPU, memory, and session counts to optimize throughput
Troubleshooting & Architecture
- Tier 3 Escalation: Diagnose complex outages involving multi-vendor paths (e.g., F5 VIP to Firewall to SD-WAN edge).
- Packet Diagnostics: Master packet capture tools (Wireshark, tcpdump) to resolve deep-layer routing, translation, or load-balancing issues.
Qualifications
Firewall Administration & Architecture
- Deployment & Config: Install, configure, and maintain Palo Alto (PA-Series) and Fortinet (FortiGate) firewalls.
- Policy Management: Design and audit firewall rule bases, security profiles, and NAT policies.
- Centralised Management: Manage large-scale environments using Palo Alto Panorama and Fortinet FortiManager / FortiAnalyzer.
- VPN Management: Establish and secure Site-to-Site IPsec VPNs and Remote Access VPNs (GlobalProtect, FortiClient).
2. Network Security Operations
- Threat Mitigation: Configure advanced security features including IPS/IDS, URL filtering, Anti-
- Upgrade & Patching: Perform routine firmware upgrades, hotfixes, and vulnerability patching.
- Monitoring: Analyze security logs to detect anomalies, unauthorized access, or potential network breaches.
- High Availability: Maintain redundant firewall clusters (HA Active/Passive and Active/Active topologies).
Traffic Management & Core Network Services (DDI)
- Application Delivery: Configure F5 BIG-IP LTM (Local Traffic Manager), including VIPs, Pools, Monitors, SSL offloading, and advanced iRules.
- IPAM & DDI: Manage Infoblox Grid Manager to run high-availability DNS, DHCP, and IP Address Management (IPAM).
- Network Automation: Maintain network health by automating IP allocations and DNS entries.
Edge Architecture & WAN Edge
- SD-WAN Fabric: Design, deploy, and optimize SD-WAN solutions (Fortinet Secure SD-WAN or Palo Alto Prisma SD-WAN) to replace traditional MPLS.
- Traffic Steering: Define application-aware routing paths to guarantee performance for critical SaaS and cloud workloads.
- Hybrid Connectivity: Maintain secure Site-to-Site IPsec VPN overlays across the SD-WAN fabric.
Troubleshooting & Support
- Incident Response: Act as a Tier 2/3 escalation point for complex network security issues and outages.
- Packet Analysis: Use tools like Wireshark and built-in CLI packet captures to diagnose complex routing or traffic drops.
- Performance Tuning: Monitor firewall CPU, memory, and session counts to optimize throughput
Troubleshooting & Architecture
- Tier 3 Escalation: Diagnose complex outages involving multi-vendor paths (e.g., F5 VIP to Firewall to SD-WAN edge).
- Packet Diagnostics: Master packet capture tools (Wireshark, tcpdump) to resolve deep-layer routing, translation, or load-balancing issues.
Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. Explore Life at Zensar and join us to Grow. Own. Achieve. Learn. to be the best version of yourself.
We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.
About this role
Zensar is seeking a Network Security Engineer SME to serve as a deep technical resource across firewall, VPN, load balancing, and SD-WAN infrastructure. You'll own deployment and policy design for Palo Alto and Fortinet environments at scale, manage centralized platforms like Panorama and FortiManager, and architect modern edge solutions including SD-WAN fabrics. The role spans both proactive security operations—threat mitigation, log analysis, firmware patching, and high-availability cluster management—and reactive troubleshooting as a Tier 2/3 escalation point for complex multi-vendor incidents.
Beyond firewalls, the position requires hands-on expertise with F5 BIG-IP load balancers, Infoblox DNS/DHCP/IPAM infrastructure, and packet-level diagnostics using Wireshark and CLI tools. You'll balance strategic work like designing application-aware routing for cloud workloads with operational depth: tuning firewall performance, diagnosing routing anomalies, and maintaining redundant systems. This is a hybrid role based in Pune, suited for someone with solid vendor-specific credentials and comfort working across a heterogeneous stack to solve infrastructure problems end-to-end.
How this employer is doing
average
- Active Visa Sponsor
This role's local market on JobMinglr
Pay for this role
The employer didn't post a pay range for this role. That usually means pay is set in negotiation, which favors whoever arrives with numbers. Check ranges on comparable Network Security Engineer SME postings in Pune Maharashtra, and analyze any offer before you accept it.
Before you apply, worth reading
How JobMinglr reads this job
Every listing here is scored against your profile before you apply: skills overlap, experience level, location and work arrangement, each weighted and explained. You see the score and the reasons, not just a list. How the matching works.