The Network Administrator is responsible for managing, maintaining, and supporting the organization's network infrastructure. This includes configuring, monitoring, and troubleshooting network devices, ensuring network security, and optimizing network performance to ensure seamless connectivity across the organization.
- Manage, configure, and maintain enterprise firewalls /NGF (e.g., Palo Alto, Fortinet, Cisco ASA/Firepower, Huawei.
- Configure and manage Web Application Firewalls (WAF) to inspect Layer 7 HTTP/HTTPS traffic, detecting and blocking threats.
- Proactively monitor and block threats such as SQL injection, Cross-Site Scripting (XSS), Cross-Site Request Forgery (CSRF), and other OWASP Top 10 vulnerabilities.
- Customize and optimize WAF rules to detect and block malicious traffic patterns and ensure the protection of web applications from exploits, bot attacks, and DDoS attempts.
- Investigate and resolve WAF alerts and incidents related to web application vulnerabilities and potential threats, collaborating with security and development teams for remediation.
- Regularly review and fine-tune WAF configurations to reduce false positives/negatives and ensure minimal impact on application performance.
- Maintain detailed logs, reports, and documentation of WAF configurations, incidents, and response actions. Generate reports for security audits and compliance reviews.
- Work with application development teams to integrate WAF security measures into the software development lifecycle, ensuring secure coding practices and vulnerability remediation.
- Implement monitoring tools to continuously assess WAF performance, traffic patterns, and potential threats in real-time, ensuring up-to-date protection.
- Proficiency in configuring security zones, policies, NAT, and VPN, IPSEC tunnels.
- Design, implement, and troubleshoot Layer 3 network routing protocols, especially BGP, OSPF, and Static Routing.
- In-depth knowledge of Routing protocols OSPF, BGP, EIGRP, including area design, neighbor relationships, and LSAs.
- Solid understanding of networking concepts: TCP/IP, subnets, VLANs, routing protocols, and VPNs (IPSec/SSL).
- Implement L2/L3 segmentation using VXLAN to extend VLANs across distributed environments securely and efficiently.
- Implement VLANs, QoS, and advanced switching techniques for efficient traffic flow.
- Configure IP addresses, Subnet masks, Summarization and Gateway addresses on routers and hosts.
- Analyze routing behavior, perform route redistribution, and optimize routing policies.
- Monitor network performance and ensure system availability and reliability.
- Solid understanding of static and default routing in production environments.
- Manage inter-VLAN routing, static and dynamic routes, and ensure proper redistribution between routing protocols and static routes.
- Designed, configured, and managed VLANs to segment Layer 2 networks, improve performance, and enforce security policies by implementing trunking.
- Experience with IDS/IPS, SIEM systems, and log analysis.
- Familiarity with troubleshooting tools (Wireshark, traceroute, NetFlow, etc.).
- 2–3 years of hands-on experience in firewall management and network security.
Preferred Certifications: CCNA, CCNP, Fortinet NSE4 or higher equivalent certifications demonstrating expertise in network infrastructure and security management.
Skills:
Computer Network Operations, Application Networking, Wireless Networking, Networking Protocol,