L2 Network and Security Engineer
Full-time
Associate
Job Overview
Job Summary
We are seeking a highly skilled and motivated L2 Network & Security Engineer with 2-3 years of experience in enterprise networking and security environments. The ideal candidate will have strong hands-on expertise with Cisco switching and routing, Fortinet, and Palo Alto firewalls.
Main Duties and Responsibilities:
- Configure, troubleshoot, and maintain Cisco-based enterprise LAN/WAN infrastructure
- Manage and optimize security configurations across Fortinet (FortiGate) and Palo Alto Networks firewalls
- Support network segmentation, NAT, VPNs, and access control policies (ACLs)
- Monitor network and firewall health and performance using NMS tools (e.g., SolarWinds, PRTG, FortiManager)
- Work with change management processes and document network changes and diagrams
- Participate in incident response and root cause analysis for network and firewall-related issues
- Collaborate with DevOps, Systems, and Security teams to implement secure and automated infrastructure
- Contribute to the development of infrastructure-as-code practices for network operations
- Willingness to participate in on call duty and shift rotations to ensure 24x7 service availability, including evenings, weekends, and public holidays as required.
Requirements
- 2-3 years of hands-on experience in network engineering (L2)
- Good understanding of Cisco routers, switches (IOS/XE/NX-OS), VLANs, STP, OSPF, BGP
- Experience with Fortinet FortiGate
- Experience with Palo Alto firewalls
- Knowledge of Ansible (playbook creation, dynamic inventory, Jinja2 templating)
- Knowledge of security best practices (segmentation, zero trust, threat prevention)
- Experience with enterprise change and incident management processes
- Strong troubleshooting and analytical skills
- Excellent communication and documentation skills
Desirable Certifications (not mandatory but preferred):
- CCNA or CCNP Enterprise or Security
- NSE4 (Fortinet Network Security Expert)
- PCNSE (Palo Alto Certified Network Security Engineer)
- Ansible or DevNet Associate/Professional
- ITIL Foundation