JOB DESCRIPTION
Provide support for all corporate and enclave firewalls, application delivery controllers, RADIUS, RSA.
Develop and implement firewall changes for supported networks
Evaluate requested changes for possible Cyber-Security Threats
Provide 3rd level support to troubleshoot networking issues.
Interact with support-customers to resolve issues and provide solutions as required.
Provide off-hour support as operational needs dictate. The candidate must be available for rotating weekly on-call shifts (24 hour on-call support) with other members in the group.
Lead and / or manage projects of various priorities in a fast-paced environment.
Provide Design Consultation for projects for firewall necessity and configuration.
Develop and execute disaster recovery and test plans for all supported devices.
Prepare support documentation for the for 1st and 2nd level support groups.
Document and / or revise administration procedures for security, configuration, operation, and administration of devices.
TECHNICAL SKILLS
A Bachelor's Degree in Computer Science or related field with at least 3-5 years' work experience in an enterprise IT environment.
Authentication services (AAA policies / Radius and RSA authentication connections)
Firewall image upgrade planning and implementation
IDS / IPS profiles
Imaging and restoration of firewalls from root layer
IPSEC VPNs with between local Cisco and FortiGate firewalls as well as external dissimilar vendor model firewalls / routers.
Logical and virtual interfaces for networks sharing security levels.
SNMP monitoring and alert profiles
Strong organizational skills and attention to detail are required.
The candidate must be knowledgeable of Information Security networking best practices and be able to evaluate design requests for Cyber Security threats.
The candidate must have extensive experience with firewall administration, upgrades, backups, configuration, and diagnostics.
The candidate must possess excellent project management, technical writing and oral communication skills.
The candidate must possess excellent technical skills, particularly regarding Network Diagnostics, Firewall operations and deployments (Cisco and / or Fortinet mandatory).
This individual must demonstrate the ability to exercise independent judgment, manage complex projects, represent the organization in dealings with customers and vendors, and render sound business decisions.
VIPs and NAT for external interfaces
Vulnerability review of hardware
NICE TO HAVE
AAA systems (RSA, Radius)
Centralized Management tools (Cisco Systems Manager, FortiManager)
Cloud systems integration (ex. Azure)
NGFW Threat Management Tools (ex. web-filtering, application filtering)
Scripting / Automation