About the job
Job Description
Position: L2 Network Security Engineer
We are seeking a skilled L2 Network Security Engineer to join our dynamic team at Talworx. In this role, you will oversee the daily administration of network firewalls, routers, switches, load balancers (LLB+SLB), and proxy systems aimed at safeguarding our networks and systems from unauthorized access or malicious activities.
Your responsibilities will include monitoring all Business-Critical Systems, identifying potential escalations, and collaborating with the track lead for assistance. You will adhere to established processes and procedures to maintain a secure environment.
The ideal candidate will have strong technical expertise in at least five or more of the following security areas:
Firewalls: Proficiency in Palo Alto, Fortinet, Checkpoint, Juniper, Cisco.
VPN: Experience with IPSEC, SSL VPN: Fortinet, Cisco, Palo Alto, Checkpoint, Juniper.
IPS: Knowledge of Cisco, Palo Alto, Fortigate, Juniper.
Unified Threat Management (UTM).
AAA Services: ACS, Radius, RSA.
Load Balancers: Radware, F5.
Switches: Cisco, Juniper, HPE, Mellanox.
Routers: Cisco, Juniper, HPE.
Wireless: Cisco, HPE.
Key Responsibilities:
- Demonstrate a solid understanding of enterprise-level security infrastructure, operations, and management across multiple global sites.
- Manage escalation calls and resolve issues based on priority.
- Expert knowledge of firewall management (at least three technologies such as ASA/Checkpoint/Palo Alto/FortiGate/Juniper) and handling security concepts (Rule ADD/Modify/Delete, NAT, Faulty Firewall replacement, High Availability setup, packet capture, log analysis) using command line and GUI tools.
- Monitor and troubleshoot load balancers, including firmware upgrades, SSL offloading, and service monitoring.
- Resolve high-priority issues related to firewalls, load balancers, IPS/IDS, proxy, switching, and routing. Familiarity with EDR features is a plus.
- Collaborate with hardware vendors/TAC to address software/hardware issues and implement necessary fixes.
- Troubleshoot Site-to-Site VPN configurations and proxy-related issues for both in-house and cloud-hosting environments.
- Participate in change management processes for hardware replacements, IOS upgrades, configuration changes, bandwidth upgrades, and URL whitelisting/blacklisting.
- Knowledge and experience with ITIL processes related to Incident, Change, Problem, Service request, and Configuration Management are advantageous.
- Monitor ticket queues and provide regular updates.

