Network and Security consultant

1 day ago


Gurgaon, Haryana, India myGwork - LGBTQ+ Business Community Full time
Job Description

This job is with Kyndryl, an inclusive employer and a member of myGwork the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.

Who We Are

At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.

The Role

Your Future at Kyndryl

At Kyndryl, we understand the importance of investing in our employees&apos professional growth and development. In Network Services, you can expect to receive a lot of support for training programs to keep your skills and knowledge up to date with the latest industry trends and technologies. By joining our team, you will have the opportunity to work on cutting-edge projects and contribute to the development of innovative solutions for our customers - including new wireless and 5G technologies - not yet adopted by most companies.

In this role, you will have the opportunity to review project requirements, communicate them accurately to the team, and ensure they are appropriately fulfilled. You will use your expertise to design and implement local and wide-area network solutions, including IP and VOIP, that address customer requirements. You will also provide high-quality technical solutions to our customers to prepare them for implementation, go-live, and maintenance.

If you are excited about using your technical expertise to create innovative network solutions and provide outstanding customer service, then this is the role for you

Primary Domain Skills Area 1 any 2 firewalls as L3/ SME level ( Check Point, Palo Alto, FortiGate, Cisco) : Checkpoint Skills and Palo Alto Skills are preferred . Checkpoint Skills are Mandatory .

+

Secondary Domain Skills Area 2: WAF/NAC ( F5 ASM , Radware WAF , Imperva WAF and or Akami WAF ) and ( Cisco ISE , Forescout NAC , Aruba Clear Pass

F5 ASM and Imperva WAF skills are Preferred with F5 ASM /WAF skills being mandatory .

Key Responsibilities

Firewall Configuration/ Management:

- Design, configure, and maintain firewall policies and rules, Natting.
- Configuring and Managing User defined categories, Whitelisted / Blacklisted URLs.
- Configure the Firewall policy for UTA feature to scan AV, IPS, Sandboxing encryption / decryption and know to allow exception from UTM scanning.
- Configure the Application policy bases on default available list or know to create custom application.
- Hands-on expert experience on NGFW firewall Checkpoint Cisco, Fortinet and Palto Alto to do failover, HA config, upgrade and L3 level of troubleshooting to packet capture.
- Monitor firewall performance and security, ensuring optimal operation.
- Performs security hardware and software maintenance to upgrade / downgrade devices.
- In depth knowledge and skills of working independently on Firewall management tools like FMC, Panorama, Forti Manager, Analyzer, Algosec.
- Configure the Context /Vdom/VSX base firewall and work with virtual firewalls.

WAF Configuration & Management

- Design, configure, and maintain WAF Traffic inspection and Filtering rules and policies
- Configuring and Managing Whitelisted / Blacklisted URLs.
- Configuration of Traffic Protection against various attacks ( SQL injection , XSS , Zero day attacks
- Deep knowledge on Rate limiting and Bot Management policies .
- Deep Knowledge of HTTS Protocol & SSL/TLS
- Monitor WAF security logs and alerts to detect and respond to threats.
- Perform regular security assessments and vulnerability testing on web applications.
- Conduct incident response and forensic analysis in the event of a security breach.
- Knowledge of OWASP Top Ten
- Hands-on experience with one or more WAF platforms (e.g., Imperva, AWS WAF, F5, Azure WAF).
- Hands-on experience of upgrading WAF ( hardware based WAF)

NAC Configuration & Management

- Design, configure, and maintain NAC of various OEM ( Cisco or Forescout or Aruba . )
- Create authentication ,authorization and posture policy for user
- Create device authentication, authorization policy and shell profiles
- Good knowledge of TACACS/Radius protocols
- Expert knowledge of Design and architecture .
- Deep Knowledge of integration of NAC with other network and other infrastructure components ( ie Switches , wireless controller , firewalls, AD , LDAP )
- Familarity with direcetory services like AD and LADAP
- Troubleshooting knowledge of NAC ( Cisco ISE, Forsecout etc)

Firewall And WAF Or NAC Migration And Implementation

- Plan and execute firewall and WAF migrations from different OEM or Same OEM to different hardware, ensuring minimal disruption to network services.
- Implement new firewall solutions, including Planning to execution with next-generation features.
- Test and validate firewall configurations with industry best practise before deployment.
- Hands on experience of execution of firewall & WAF Migration projects/assignment in BFSI and other industry verticals

Design And Consulting

- Provide expert consulting services on network security design and architecture.
- Develop secure network designs tailored to client needs, ensuring compliance with regulatory requirements.
- Collaborate with clients to understand their security requirements and provide customized solutions.
- Create and maintain detailed network documentation, Network Diagrams and procedures.
- Conduct regular security assessments and audits to identify and mitigate vulnerabilities.
- Provide the training session to colleague and customer team members.

Incident Handling

- Lead the response to major security incidents, including detection, analysis, containment, eradication, and recovery.
- Develop and implement incident response plans and procedures.
- Conduct post-incident reviews and provide RCA.
- Good understanding on peer device technology like router switch&aposs and how these technology work e,g ARP, MAC , DNS , SNMP, VRRP, Routing.
- Excellent troubleshooting skills on wireshark captures / PCAP etc

Additional Domain Skills

- Configure and manage TrendMicro IPS appliances to protect against known and unknown threats, regularly update IPS signatures and policies to ensure up-to-date protection.
- Lead the response to IPS-related security incidents, including detection, analysis, and mitigation of threat.
- Plan and execute the deployment of TrendMicro IPS appliances, ensuring minimal disruption.
- Design and implement access policies using F5 APM to secure applications and data.
- Design and implement ZPA solutions to provide secure, seamless access to private applications.
- Lead the response to ZPA-related security incidents, including unauthorized access and lateral movement attempts.
- Plan and execute migrations from legacy VPN solutions to ZPA, F5 APM, ensuring minimal disruption.
- Implement ZPA / F5 APM for remote users, branch offices, and third parties , with multiple compliance policy to check product OS, AV installation and others.

Additional Responsibilities

- Documentation: Maintain detailed documentation of firewall configurations, incident response procedures, and security policies.
- Training: Provide training and guidance to junior network security engineers and other IT staff.
- The ideal candidate will have a strong technical background, excellent leadership skills, and the ability to work effectively in high-pressure situations.
- Strong verbal and written English communication.
- Strong interpersonal and presentation skills
- Ability to work with minimal levels of supervision.
- Willingness to work in a job that involves 24/7 operations.
- Work closely with colleagues to meet team goals and improve processes and practices.
- Experience on the Process like Change Management, Asset Management, Configuration Management, Security Health Checks, Basic Hygiene, Audit Compliances etc
- Relevant certifications such as CCIE Security or CCSE or PCNSE equivalent.

Who You Are

Qualifications:

Education

- Graduate in Computer Science/IT/Electronics Engineering or equivalent University degree.

Experience

- Candidates should have at least -12+ years of experience working in Security Domain ( SOC, Implementation and or Consultancy of Security Solutions .

Certifications

- Relevant certifications such as CCIE Security or CCSE or PCNSE equivalent.

Being You

Diversity is a whole lot more than what we look like or where we come from, it&aposs how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we&aposre not doing it single-handily: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you - and everyone next to you - the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That&aposs the Kyndryl Way.

What You Can Expect

With state-of-the-art resources and Fortune 100 clients, every day is an opportunity to innovate, build new capabilities, new relationships, new processes, and new value. Kyndryl cares about your well-being and prides itself on offering benefits that give you choice, reflect the diversity of our employees and support you and your family through the moments that matter - wherever you are in your life journey. Our employee learning programs give you access to the best learning in the industry to receive certifications, including Microsoft, Google, Amazon, Skillsoft, and many more. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations. At Kyndryl, we invest heavily in you, we want you to succeed so that together, we will all succeed.

Get Referred

If you know someone that works at Kyndryl, when asked &aposHow Did You Hear About Us&apos during the application process, select &aposEmployee Referral&apos and enter your contact&aposs Kyndryl email address.

  • Gurgaon, Haryana, India beBeeNetworkSecurity Full time

    About UsWe are a leading organization in the field of network and security consulting. Our team of experts provides innovative solutions to meet the needs of our clients.


  • Gurgaon, Haryana, India Kyndryl Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    Who We AreAt Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.The RoleYour...


  • Gurgaon, Haryana, India beBeeSecurity Full time ₹ 18,00,000 - ₹ 25,00,000

    Network Security EngineerWe are seeking an experienced Network Security Engineer to join our team. As a key member of our operations team, you will be responsible for providing level 2 support on network SDWAN Proxy related services.About the Role:This is a full-time position that requires at least 3-6 years of industry experience, preferably as a network...


  • Gurgaon, Haryana, India Talent Worx Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    Talworx is hiring for one of our client for L3 Network Security Operations Engineer is a critical role within the Cybersecurity team, with the dual responsibilities of operational excellence and driving forward-looking engineering improvements. This role is designed for individuals who have strong network security operational experience, and a proven track...


  • Gurgaon, Haryana, India beBeeNetworkSecurity Full time ₹ 15,00,000 - ₹ 20,10,000

    Job Description:As a senior network security engineer, you will be responsible for designing, implementing, and maintaining network security controls to protect enterprise infrastructure, applications, and data from advanced cyber threats. Your expertise in enterprise-grade security technologies, including Palo Alto firewalls, IDS/IPS systems, VPN, WAF...


  • Gurgaon, Haryana, India Kyndryl Full time

    Who We Are At Kyndryl we design build manage and modernize the mission-critical technology systems that the world depends on every day So why work at Kyndryl We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable inclusive world for our employees our customers and our communities The Role Are...


  • Gurgaon, Haryana, India beBeeSecurity Full time ₹ 1,50,00,000 - ₹ 2,50,00,000

    Job Title: Network Security EngineerWe are seeking a seasoned IT professional to lead our network and security initiatives.Main Responsibilities:Develop and implement comprehensive work plans, collaborating with relevant stakeholders.Design and review procedures, investigate issues, and execute change implementations effectively.Hands-on experience with...


  • Gurgaon, Haryana, India beBeeNetworkSecurityEngineer Full time ₹ 19,99,999 - ₹ 29,99,999

    Job Title: Sr Network Security Reliability Engineer">We are seeking an experienced Sr Network Security Reliability Engineer to design, build, and operate highly reliable, secure, and scalable infrastructure.This role requires deep expertise in network engineering, security operations, and automation, coupled with SRE practices such as observability,...


  • Gurgaon, Haryana, India beBeeSecurity Full time ₹ 1,20,00,000 - ₹ 2,00,00,000

    Job Title:Senior Firewall and Network Security SpecialistDescription:We are seeking a highly skilled Senior Firewall and Network Security Specialist to join our team. In this role, you will be responsible for designing, implementing, and managing firewalls and network security solutions for our clients.Key Responsibilities:Design and implement firewall and...


  • Gurgaon, Haryana, India beBeeSecurity Full time ₹ 20,00,000 - ₹ 35,00,000

    Job RoleWe are seeking a seasoned Network Security Specialist to join our team. This role will be responsible for crafting robust network security solutions with a strong emphasis on firewalls and proxy technologies.The selected candidate will work closely with cross-functional teams to assess security requirements, implement and fine-tune firewall and proxy...