Core roles and responsibilities
1️⃣ Network Security Design & Implementation
- Design, deploy, and maintain secure network infrastructure (firewalls, routers, switches, VPNs, IDS/IPS)
- Implement security architectures such as Zero Trust, NAC, DMZ segmentation
- Configure and manage network access controls and authentication mechanisms
2️⃣ Threat Monitoring & Incident Response
- Monitor network traffic for suspicious behavior using SIEM and security tools
- Detect, investigate, and remediate network security incidents
- Conduct root cause analysis and implement corrective measures
3️⃣ Security Policy & Compliance
- Develop, enforce, and update network security policies, standards, and guidelines
- Ensure compliance with organizational and regulatory requirements (ISO 27001, GDPR, HIPAA, PCI-DSS)
- Conduct security audits, vulnerability assessments, and penetration tests
4️⃣ Firewall & VPN Management
- Manage firewall rulesets, policy changes, and high-availability configurations
- Configure and support secure remote connectivity using VPNs and SSL/TLS
5️⃣ Security Tools & Technology Management
- Deploy and optimize tools like SIEM, DLP, Endpoint Protection, Anti-Malware, and Web Filtering
- Manage PKI, Certificates, and Encryption technologies
- Oversee network access control systems (802.1x, RADIUS, TACACS+)
6️⃣ Risk Management & Hardening
- Identify vulnerabilities and apply security patches, updates, & hardening techniques
- Reduce attack surface through continuous improvement programs
- Conduct routine risk assessments and recommend mitigation strategies
7️⃣ Collaboration & Documentation
- Work with IT, DevOps, and Infrastructure teams to secure technology operations
- Maintain detailed network diagrams, incident logs, and configuration documents
- Provide technical guidance and training to staff on secure network practices
8️⃣ Business Continuity & Disaster Recovery
- Support backup & disaster recovery strategies related to security systems
- Ensure high availability and resilience of critical security services
Preferred Skills
- Strong knowledge of TCP/IP, firewall technologies, routing & switching
- Familiarity with cybersecurity frameworks and best practices
- Certifications like CCNA/CCNP Security, CEH, CyberOps, CISSP, Fortinet NSE (advantage)