Firewall Engineer
Core
Leading the end-to-end technical design and delivery of a large-scale network security migration from Juniper SRX to Fortinet FortiGate across core, edge, and branch sites.
Role type
Senior IC network security engineer (firewall migration specialist)
Builds
Production firewall infrastructure and centralized management systems for a complex enterprise environment
Domain
Network Security / Firewall Engineering
Required skills
Juniper SRX, Fortinet FortiGate, firewall policy design, NAT, routing (BGP/OSPF), VPN technologies (IPsec/SSL), network segmentation, FortiManager, FortiAnalyzer, ITIL change management, L2-L7 troubleshooting
Preferred skills
Fortinet NSE 4-7, Juniper JNCIA/JNCIS SEC, CCNP Security, CISSP, ITIL Foundation, cloud adjacent firewalling (Azure/AWS), zero downtime migration experience
Technologies
Juniper SRX, Fortinet FortiGate, FortiManager, FortiAnalyzer, Junos, FortiOS, IPsec, SSL, BGP, OSPF, RADIUS, LDAP, SAML
Responsibilities
Design and execute SRX to FortiGate migration, convert and optimize existing policies/NAT/VPNs, clean up rule bases, redesign site-to-site and remote access VPNs, write cutover runbooks and rollback plans, coordinate cutovers with business teams, deploy FortiManager/Analyzer, integrate with routing/SD-WAN/identity systems, maintain documentation, provide hypercare and knowledge transfer
Seniority
Senior, hands-on IC