Core roles and responsibilities

1️⃣ Network Security Design & Implementation

  • Design, deploy, and maintain secure network infrastructure (firewalls, routers, switches, VPNs, IDS/IPS)
  • Implement security architectures such as Zero Trust, NAC, DMZ segmentation
  • Configure and manage network access controls and authentication mechanisms

2️⃣ Threat Monitoring & Incident Response

  • Monitor network traffic for suspicious behavior using SIEM and security tools
  • Detect, investigate, and remediate network security incidents
  • Conduct root cause analysis and implement corrective measures

3️⃣ Security Policy & Compliance

  • Develop, enforce, and update network security policies, standards, and guidelines
  • Ensure compliance with organizational and regulatory requirements (ISO 27001, GDPR, HIPAA, PCI-DSS)
  • Conduct security audits, vulnerability assessments, and penetration tests

4️⃣ Firewall & VPN Management

  • Manage firewall rulesets, policy changes, and high-availability configurations
  • Configure and support secure remote connectivity using VPNs and SSL/TLS

5️⃣ Security Tools & Technology Management

  • Deploy and optimize tools like SIEM, DLP, Endpoint Protection, Anti-Malware, and Web Filtering
  • Manage PKI, Certificates, and Encryption technologies
  • Oversee network access control systems (802.1x, RADIUS, TACACS+)

6️⃣ Risk Management & Hardening

  • Identify vulnerabilities and apply security patches, updates, & hardening techniques
  • Reduce attack surface through continuous improvement programs
  • Conduct routine risk assessments and recommend mitigation strategies

7️⃣ Collaboration & Documentation

  • Work with IT, DevOps, and Infrastructure teams to secure technology operations
  • Maintain detailed network diagrams, incident logs, and configuration documents
  • Provide technical guidance and training to staff on secure network practices

8️⃣ Business Continuity & Disaster Recovery

  • Support backup & disaster recovery strategies related to security systems
  • Ensure high availability and resilience of critical security services

 

Preferred Skills

  • Strong knowledge of TCP/IP, firewall technologies, routing & switching
  • Familiarity with cybersecurity frameworks and best practices
  • Certifications like CCNA/CCNP Security, CEH, CyberOps, CISSP, Fortinet NSE (advantage)