Posted 30 August, 2026
L3 Network Security Engineer
TECEZE
600001, TN, IN
Full Time
Reference: 00642b47507e35d9
Job Description
One Month Contract position
\nContract will be extended based on requirement.
\nExperience : 8+ years
\nKey Responsibilities:
\n- \n
- Review and validate HLD, LLD, network architecture and security designs. \n
- Provide technical leadership for enterprise LAN, WAN, WLAN, SD-WAN and network securityimplementations. \n
- Design and validate FortiGate firewall, HA, SD-WAN, VPN, NAT and security policies. \n
- Provide architecture and implementation guidance for enterprise switching and wireless infrastructure. \n
- Design and validate VLAN, IP addressing, routing, segmentation and access-control architecture. \n
- Guide implementation of static routing, BGP, OSPF and other routing protocols as applicable. \n
- Design and validate WAN redundancy, ISP failover and SD-WAN path selection. \n
- Provide guidance for IPsec VPN and inter-site connectivity. \n
- Ensure appropriate network segmentation and security controls between users, servers, guest, IoT, management and other network segments. \n
- Review and guide AAA, RADIUS/TACACS+, DNS, DHCP, NTP, SNMP and Syslog integration. \n
- Ensure integration with NMS, monitoring, logging and configuration-backup platforms. \n
- Provide technical guidance for high availability, redundancy and disaster-recovery connectivity. \n
- Review configuration templates and provide implementation guidance to network engineers. \n
- Lead troubleshooting of complex network, firewall, routing, SD-WAN and connectivity issues. \n
- Conduct technical reviews during Day-0, Day-1 and Day-2 implementation activities. \n
- Define and review implementation plans, MOPs, test plans and rollback procedures. \n
- Lead technical validation and UAT/acceptance testing. \n
- Validate failover, redundancy, connectivity, segmentation and security-policy functionality. \n
- Review post-implementation configurations against approved design. \n
- Ensure as-built documentation and configuration records are complete and accurate. \n
- Conduct knowledge transfer to NOC/operations and implementation teams. \n
- Provide technical recommendations, risk identification and remediation plans throughout the project lifecycle. \n
Technical Skills
\n- \n
- FortiGate / FortiOS \n
- FortiGate HA and SD-WAN \n
- IPsec VPN \n
- Firewall policies and NAT \n
- Enterprise LAN/WAN architecture \n
- Aruba/Cisco switching \n
- Enterprise WLAN \n
- VLAN and network segmentation \n
- BGP / OSPF / Static Routing \n
- ISP/WAN technologies \n
- Network monitoring and management \n
- SNMP / Syslog \n
- RADIUS / TACACS+ \n
- DNS / DHCP / NTP \n
- High Availability and DR \n
- Network security architecture \n
- Network troubleshooting \n
- Network documentation and technical governance \n
Experience & Qualifications
\n- \n
- 8+ years of experience in enterprise networking and network security. \n
- Strong experience in Network Security Architecture and implementation. \n
- Hands-on experience with FortiGate and enterprise networking technologies. \n
- Experience working on large-scale, multi-site or greenfield infrastructure projects. \n
- Strong understanding of network security, routing, switching, SD-WAN and WLAN. \n
- Experience leading or guiding implementation engineers. \n
- Strong troubleshooting and analytical skills. \n
- Ability to review technical designs and make independent architecture decisions. \n
- Good understanding of change management, implementation methodology and operational handover. \n
- Strong communication, documentation and stakeholder-management skills. \n
Key Deliverables
\n- \n
- Architecture and design review \n
- Network/security implementation guidance \n
- Configuration templates and technical standards \n
- Firewall and SD-WAN design validation \n
- Implementation/MOP review \n
- Test plan and acceptance validation \n
- HA/failover validation \n
- Troubleshooting and technical issue resolution \n
- As-built documentation \n
- Operational runbooks \n
- Knowledge-transfer sessions \n
- Final technical handover \n