This page was automatically translated and may contain errors. View in English.
malomatia

Perimeter Edge Security Engineer

malomatia

Qatar · 정규직

가장 먼저 지원하세요

경험
5년 이상
샐러리
채용 공고
1
게시됨
7일 전
작업 모드
사무실에서
교육
학사 학위
재개하다
신청 시 필수 사항

당신이 일하게 될 곳

직무 설명

Job Overview

This role involves taking full ownership of the design, management, and lifecycle of the organization's network perimeter and cloud edge security infrastructure. The environment includes Palo Alto VM-Series firewalls, FortiGate HA clusters distributed across on-premises and multi-cloud setups, alongside Cloudflare services such as CDN, DDoS protection, edge WAF, and DNS.

Key Responsibilities

  • Architect and maintain zone-based security designs, establish inter-zone policies, and implement DMZ segmentation utilizing Palo Alto and FortiGate platforms.
  • Configure and oversee policies related to App-ID, User-ID, Content-ID, SSL/TLS decryption, NAT actions (including DNAT, SNAT, U-turn), and unified threat management functions such as IPS, antivirus, web filtering, and application control.
  • Construct and manage Site-to-Site IPSec VPNs using IKEv2 with dynamic BGP routing, route- or policy-based VPNs, and apply SD-WAN for traffic steering where necessary.
  • Operate centralized policy management tools like Panorama and Strata Cloud Manager for Palo Alto, and FortiManager with FortiAnalyzer for Fortinet, to enforce policies, aggregate logs, and generate reports.
  • Design and deploy high-availability clusters configured as Active-Passive or Active-Active; conduct quarterly failover tests and create root cause analysis documentation.
  • Lead the deployment and migration of network virtual appliances (NVAs), including migrations between cloud providers such as Azure to OCI, manage firmware and patch lifecycle, execute hotfixes, and implement HA-aware patching with rollback plans.
  • Integrate firewalls and NVAs with load balancers at Layer 4 and Layer 7 to ensure comprehensive traffic inspection.
  • Administer Cloudflare services including CDN with cache rules and Workers/Pages, manage network and application layer DDoS protection, edge WAF with managed and custom rule sets, rate limiting, and bot management.
  • Handle Cloudflare load balancing, public DNS, URL management, and continuously analyze and optimize traffic at the network edge.
  • Own full vulnerability remediation cycles including patching schedules and upgrade planning for all firewall, NVA, and edge security assets.
  • Monitor Next-Generation Firewall (NGFW) and Unified Threat Management (UTM) threat logs alongside Cloudflare traffic and attack analytics; manage signature updates and lead incident triage and response activities related to perimeter and edge security events.

Required Qualifications

  • Bachelor's degree in Computer Science, Information Security, or a related discipline.
  • More than 5 years of hands-on experience managing enterprise-grade NGFW platforms like Palo Alto and/or Fortinet within production environments.
  • Proven expertise in multi-cloud network virtual appliance deployments, including platforms such as Azure, Google Cloud Platform, or Oracle Cloud Infrastructure, plus experience with cloud edge and CDN security solutions like Cloudflare or equivalents.
  • Professional certifications such as PCNSE (Palo Alto), NSE 4/NSE 7 (Fortinet), or Cloudflare Certified Administrator are highly desirable.
  • Strong knowledge of advanced routing protocols like BGP, VPN technologies, DNS architecture, DDoS mitigation tactics, and network segmentation principles.
  • Excellent skills in incident response, thorough documentation, and coordination across multiple teams.

Work styles they’re looking for

문제 해결 세부 사항에 대한 주의 회복력 Cross-team collaboration

답변을 원하시면 남겨주세요. 다른 용도로는 사용하지 않습니다.

클릭하여 살펴보세요드래그 앤 드롭 또는 반죽 스크린샷

PNG, JPG, GIF, MP4, WebM, MOV · 파일당 최대 20MB · 최대 5개 파일

🤖
온라인 · 즉각적인 AI 도움말