Skip to main content
Posted 17 August, 2026

Infrastructure Security Engineer - WAF,F5 & Palo Alto Firewall

Gruve
Mumbai, Maharashtra, India Full Time
Reference: 102_699385_5352989008

Position Summary

We are looking for a motivated and talented individual interested in working on F5 technologies (Load Balancer, WAF, DDoS), Palo Alto Firewalls, FortiGate Firewalls, and Infoblox DNS. The role involves hands-on security and network operations, monitoring, troubleshooting, incident response, and continuous optimization of enterprise security infrastructure.

Key Responsibilities

    • Work in security and network operations environments.

    • Hands-on experience with F5 WAF, Load Balancer, and DDoS, including policies, maintenance, upgrades, certificate renewal, virtual server creation on F5 LTM, F5 LTM/ASM troubleshooting, WAF security policy management, DDoS mitigation, VIP configuration, backend and frontend IP mapping, session distribution logic, and session persistency logic.

    • Monitor web traffic, analyze security logs, investigate alerts, and take action against unusual activities.

    • Respond quickly to security breaches by collaborating with incident response teams.

    • Integrate threat intelligence feeds to enhance protection against emerging risks.

    • Continuously optimize WAF performance to minimize latency and ensure seamless user experience.

    • Conduct regular security assessments and audits to identify vulnerabilities.

    • Manage ServiceNow workflows to update and patch security services.

    • Maintain organized documentation of WAF configurations, rules, and procedures.

    • Diagnose and resolve complex network and security issues.

    • Hands-on experience with FortiGate Firewall and FortiManager, including firewall configuration, management, monitoring, and troubleshooting.

    • Strong understanding of FortiGate firewall features such as firewall policies, IPSec VPNs, IDS/IPS, web filtering, and other security capabilities.

    • Troubleshoot IPSec VPNs, GlobalProtect VPN, high CPU utilization issues, application issues at Layer 4 and Layer 7, and NAT issues (source, destination, static, translation, hit-related).

    • Create and manage security rules, NAT rules, security profiles, log forwarding profiles, zone security profiles, and application overrides on Palo Alto and FortiGate firewalls.

    • Perform firewall backups, firmware upgrades, device monitoring, health monitoring, and alert investigations.

    • Follow ITIL-based change management and incident management procedures.

    • Manage inventory of all in-scope devices.

    • Raise, track, and close TAC cases end-to-end.

    • Provide monthly security augmentation recommendations.

    • Create, maintain, and follow SOPs for configuration and process changes.

Basic Qualifications -

    • Education: BE (Computer Science / IT) or MCA or equivalent university degree.

    • Experience: 5 to 7 years of experience in the security domain.

    • Minimum 5+ years of experience working as an L1/L2 Engineer in operations.

    • Hands-on experience with (Palo Alto or FortiGate Firewall) and F5 Load Balancer (LB, WAF, DDoS).

    • Solid understanding of networking concepts and protocols including TCP/IP, routing, and switching.

Preferred Qualifications

    • Experience with Infoblox DNS.

    • Certifications such as PCNSA, PCNSE, NSE4, or F5 Load Balancer certifications.

Sign up for Job Alerts