M

Lead Network Engineer

Moneyview · Bengaluru, Karnataka, India

6–12 yrs experiencefull_timePosted 3w ago
Apply now →

Job description

Job Description **Lead Network Administrator** **Location: Bangalore** **Experience: 6 – 11years** **Role Summary** We are hiring a Lead Network Administrator responsible for end-to-end implementation, hardening, and management of our enterprise network and security infrastructure. The candidate must have strong hands-on experience in Palo Alto Firewalls, Netskope Secure Web Gateway, Aruba NAC (ClearPass), Aruba Central, Cisco/Aruba Switching, and must ensure the environment remains secure, hardened, and vulnerability-free. Core Responsibilities 1. **Palo Alto Firewall – End-to-End Ownership** - Full implementation and management of Palo Alto Next-Generation Firewalls across all locations. - Configure and optimize: - Security policies - NAT policies - App-ID, User-ID - SSL decryption - Threat profiles - Manage GlobalProtect VPN, HIP-based authentication, and regular user access - reviews. - Perform device hardening, config audits, best-practice alignment, and vulnerability remediation. - Plan and execute firmware upgrades and ensure stability, performance, and - compliance. - Monitor traffic patterns, threats, content updates, and ensure continuous protection. 2. **Secure Web Gateway – Netskope** - Manage Netskope Secure Web Gateway for secure internet access, DLP, and advanced threat protection. - Implement policies for URL filtering, SSL inspection, CASB access, and user protection. - Troubleshoot Netskope agent issues, policy mismatches, and connectivity problems. - (Optional/Future) Support Netskope ZTNA implementation if procured. 3. **Network Access Control – Aruba ClearPass** - Configure and manage ClearPass NAC for 802.1X, MAC authentication, profiling, and onboarding. - Enforce identity-based access and continuous security checks. - Troubleshoot NAC authentication and endpoint posture issues. 4. **Wireless and Switching – Aruba & Cisco** - Manage Aruba APs via Aruba Central—SSID setup, wireless security, RF optimization. - Configure and maintain Cisco and Aruba switches (VLANs, routing, trunking,STP, ACLs). - Enforce full device hardening, secure configs, and patch management for switching/WLAN. 5. **WAN, Routing & Cloud Connectivity** - Manage AWS Direct Connect, VPN tunnels, and office–cloud connectivity. - Troubleshoot MPLS, BGP routing, latency, and inter-site network flows. - Work with ISPs for bandwidth, routing optimization, and uptime SLAs. 6. **Network Hardening & Security Posture** Ensure zero vulnerabilities across all network devices through continuous hardening. - Perform configuration reviews, compliance checks, and timely patching. - Conduct RCA for network/security incidents and drive long-term corrective actions. - Maintain endpoint network security integration with firewall/NAC/SWG. **7. Automation & Lifecycle Management** - Automate network tasks using scripting/tools (where applicable). - Perform periodic firmware and OS upgrades for all network/security devices. - Maintain version standards aligned with industry recommendations. **Key Skills & Experience** 6–9 years in enterprise networking with strong hands-on exposure. Expertise in: o **Palo Alto Firewalls (mandatory)** **o Netskope SWG (mandatory)** **o Aruba ClearPass NAC (mandatory)** o Aruba Central & APs o Cisco / Aruba switching o VPNs, BGP, MPLS - Strong troubleshooting across OSI layers 1–7. - Proven experience with network hardening and vulnerability remediation. - Ability to independently manage and secure medium/large-scale network environments.