About the job
Key Technology Focus:
Your expertise will align with SAMA standards, working with tools such as:
- SSL Inspection: Gigamon
- VPN: Palo Alto GlobalProtect, F5 APM VPN
- Web Proxy: Forcepoint Web Security
- Firewalls: Palo Alto, Cisco ASA or FTD, Fortinet FortiGate
- DDoS Protection: Arbor
- IPS or Network Advanced Threat Protection: Cisco IPS, Trellix, or FireEye NX
- Integration with SIEM and monitoring platforms
The role requires close collaboration with the F5 or Edge Security tower, L3 Email Security Engineer, SOC, and infrastructure teams.
Core Responsibilities
- Advanced Support and Escalation Management: Serve as the primary escalation point for complex incidents involving firewalls, VPNs, proxies, IPS, SSL inspection, DDoS, and network ATP. Engage in deep troubleshooting, packet analysis, and conduct thorough investigations for critical issues.
- Configuration, Optimization, and Maintenance: Design, implement, and fine-tune policies on firewalls including Palo Alto, Cisco ASA, and Fortinet devices. Manage VPN services ensuring authentication, MFA integration, and high availability. Oversee SSL decryption policies and operate Gigamon SSL inspection, Arbor DDoS, and network IPS/ATP solutions.
- Architecture and Design: Contribute to low-level designs, network security architectures, and change plans for new projects while recommending enhancements in zoning and traffic flows to meet SAMA CSF and NCA ECC guidelines.
- Incident Response and Reporting: Lead the incident response process during significant events, coordinating with SOC, infrastructure, and application owners to generate detailed root cause analyses.

