We are seeking a skilled L3 Network Security Engineer to join a UAE-based client’s team, supporting enterprise network security environments from locations in Lahore, Karachi, or Islamabad with a hybrid work model. The ideal candidate will have over five years of hands-on experience in managing, troubleshooting, and optimizing advanced network security technologies. This role involves handling complex security incidents, designing secure network architectures, and implementing security solutions to ensure robust protection across enterprise environments. The position requires collaboration with internal teams and vendors, adherence to ITIL and compliance processes, and the ability to work aligned with UAE business hours when necessary.
Key Responsibilities
- Provide L3 technical support for complex network security incidents, escalations, and service requests.
- Administer, configure, troubleshoot, and optimize enterprise firewall and network security platforms.
- Work extensively with Palo Alto, FortiGate, Check Point, and other enterprise firewall technologies.
- Manage and troubleshoot F5 security and application delivery environments, including Web Application Firewall (WAF) technologies.
- Support IPS/IDS and DDoS protection and mitigation activities.
- Manage enterprise proxy and secure internet access solutions such as Zscaler, Forcepoint, or equivalent.
- Support MFA, VPN token solutions, Cisco ISE/NAC, and remote access security environments.
- Design and review secure network architectures, including High-Level Design (HLD), Low-Level Design (LLD), high availability, redundancy, segmentation, and security controls.
- Perform firewall policy reviews, rule implementation, configuration changes, migrations, and security hardening.
- Troubleshoot complex VPN, firewall, authentication, network security, and connectivity issues.
- Support WAF and application security requirements.
- Work with endpoint security technologies including EDR, DLP, Trellix, McAfee, or equivalent solutions.
- Assist in vulnerability assessments, security posture improvements, and remediation activities.
- Follow ITSM processes for incident, problem, change, and service request management.
- Maintain technical documentation, configuration records, troubleshooting procedures, and knowledge base articles.
- Coordinate with internal teams, vendors, and client stakeholders for incident resolution and security infrastructure changes.
- Participate in security projects, technology upgrades, migrations, and implementation activities.
- Ensure all security operations and changes comply with ITIL, security, compliance, and change-management processes.
- Provide technical guidance to L1/L2 teams and support knowledge transfer as needed.
Required Qualifications
- Minimum 5 years of professional experience in Network Security, Cybersecurity, or Security Operations.
- Proven hands-on expertise in L3-level network security support and troubleshooting.
- Strong experience with enterprise firewall technologies such as Palo Alto, FortiGate, and Check Point.
- Solid background in security architecture, network design, HLD/LLD, and high-availability environments.
- Deep understanding of TCP/IP, routing, switching, VPN, DNS, network segmentation, and core security principles.
- Experience managing complex security incidents and escalations.
- Prior work experience in enterprise, banking, telecom, government, ISP, or managed security environments is preferred.
- Excellent communication and stakeholder management skills.
- Ability to collaborate effectively with UAE-based client teams and support business hours aligned with UAE time zones.
Preferred Qualifications and Certifications
- Palo Alto PCNSE
- Fortinet NSE / FCP
- Check Point certifications
- Cisco CCNP Security
- ITIL Foundation
- Other relevant cybersecurity or network security certifications
This role demands advanced troubleshooting skills, strong ownership of critical security incidents, and the ability to work independently at an L3 level. Candidates will be expected to contribute to security operations, infrastructure management, change and configuration management, and technical documentation while maintaining effective communication with clients and stakeholders.