Tata Communications Redefines Connectivity with Innovation and IntelligenceDriving the next level of intelligence powered by Cloud, Mobility, Internet of Things, Collaboration, Security, Media services and Network services, we at Tata Communications are envisaging a New World of Communications
Job Description – L2 Network Security Engineer (Firewall, WAF & DDoS)
Experience – 4-6 years
Location – Powai (WFO)
Shift : 24x7
Role Summary
We are seeking an experienced L3 Network Security Engineer to provide expert administration, troubleshooting, optimization, and lifecycle management of enterprise network security solutions, including firewalls, WAF, DDoS protection, SSL Visibility, API Security, and Enterprise Threat Management (ETM). The role involves serving as the technical SME, driving security architecture improvements, resolving complex issues, and ensuring high availability and compliance.
Key Responsibilities
- Administer, configure, and troubleshoot Check Point, Palo Alto, and Fortinet FortiGate firewalls in enterprise environments.
- Manage Web Application Firewall (Imperva/F5), DDoS protection (Radware/Arbor), SSL Orchestrator (SSLO), API Security, and Enterprise Threat Management (ETM) solutions.
- Design, review, and optimize firewall policies; identify and remove unused, redundant, shadowed, and risky rules using AlgoSec Firewall Analyzer.
- Perform firmware/OS upgrades, patch management, high availability (HA) implementation, disaster recovery (DR), and lifecycle management of security platforms.
- Lead complex troubleshooting, root cause analysis (RCA), performance tuning, and critical incident resolution.
- Implement security hardening, best practices, and compliance recommendations across network security infrastructure.
- Support change management, migration activities, and deployment of new security technologies.
- Collaborate with SOC, Network, Cloud, Application, and OEM teams to ensure secure service delivery.
- Develop SOPs, technical documentation, knowledge articles, and mentor L1/L2 engineers.
- Ensure compliance with organizational security policies, regulatory requirements, and SLA/KPI commitments.
Required Technical Skills
- Firewalls: Check Point, Palo Alto, Fortinet FortiGate
- WAF: Imperva, F5 Advanced WAF
- DDoS: Radware DefensePro, Arbor
- Firewall Policy Management: AlgoSec Firewall Analyzer/Firewall Manager
- SSL Visibility: F5 SSL Orchestrator (SSLO)
- API Security: Imperva API Security, F5 Distributed Cloud/API Security, or equivalent
- Networking: TCP/IP, Routing, Switching, NAT, VPN, IPSec, BGP, OSPF, VLANs, High Availability
- Operating Systems: Linux and Windows
Qualification and Certification :
1. Should be BE/B.Tech/BCA/MCA/BSC (IT/Computer related technologies)
2. Should have CCNA/CEH/CCSP/ Any SIEM Technical certification/Any Firewall Technical Certification.