ERF5039 Senior Network Security Engineer
ERF5039 Senior Network Security Engineer
ORGANIZATIONAL CONTEXT
Job Title Senior Network Security Engineer
Years of Experience 9– 12 years
Grade G2
Service Line Network Security Service (426)
Business Division Cybersecurity Services
Location Qatar
Page 1 of 4
JD – Template
SCOPE
Summary
The Network and Security Operations team is accountable for maintaining a resilient and secure IT infrastructure that
is always accessible for the organization. Their responsibilities encompass providing expert guidance and top-level
support for the network and security infrastructure. The role is responsible to Lead for ensuring the stability, security,
and performance of an organization's network Security infrastructure. This role requires a combination of technical
expertise, leadership skills, and a proactive approach to network operation management. effectively oversee the
network and security infrastructure for various clients, whether remotely or on-site, ensuring it meets the
organization's requirements in terms of availability, security, and suitability.
Job Responsibility
Responsible for handling security incidents, changes, and problems delegated to the Network Security
Operational Team mainly for cisco SD-ACCESS & ACI, Wireless & ISE Technologies
Lead the design and implementation of the organization's network infrastructure, ensuring scalability,
reliability, and adherence to industry best practices.
Provide expertise in the support, administration, and implementation of network and security
hardware/software.
Engage with external suppliers, logging support calls, conducting follow-ups, and driving issue resolutions to
closure.
Oversee the configuration of network devices, including routers, switches, firewalls, and other networking
equipment
Incident Management: Lead the response to network-related incidents, ensuring timely resolution and
minimizing downtime.
Problem Management: Identify and address recurring network issues through root cause analysis and the
implementation of preventive measures.
Troubleshooting: Provide technical expertise for complex network problems, collaborating with technical
teams to resolve issues efficiently.
Lead efforts to optimize network configurations for efficiency, performance, and cost-effectiveness.
Manage and lead incident, change, and problem management for network and security infrastructure.
Coordinate and provide support for site visit activities at various locations, ensuring network security
compliance.
Network Documentation: Maintain comprehensive and up-to-date documentation related to network
configurations, diagrams, inventory and standard operating procedures.
Change Management: Implement and oversee change management processes for network configurations
and updates
Team Management: Lead and manage a team of network operations professionals, providing guidance,
mentorship, and performance feedback.
Collaborate with vendors for tasks such as device upgrades, Data Center migration, new device
implementation, technology adoption, hardware replacement, and migrations.
Resolve network security-related tickets promptly and in adherence to Service Level Agreements (SLAs).
Adhere to ITIL standards, following incident, change, and problem management policies and procedures.
Demonstrate knowledge of information security best practices
Interpersonal skill
Explanation and Documentation: Clearly articulate complex security concepts, both verbally and
in writing, to technical and non-technical stakeholders. Create incident reports
Leadership and Teamwork
Team Collaboration: Collaborate with team members, providing guidance and assistance where
needed.
Page 2 of 4
JD – Template
Leadership: Take a leadership role in security initiatives and projects, guiding team members
toward common goals.
Client Engagement: Interact with clients to understand their security requirements, explain
technical concepts in a comprehensible manner, and ensure client satisfaction.
Problem Solving:
Analytical Thinking: Apply analytical thinking to solve complex network security issues
efficiently.
Decision-Making: Make informed decisions, considering the potential impact on the network
security infrastructure.
Adaptability:
Flexibility: Adapt to changing security threats, technologies, and business requirements, remaining
flexible and proactive in implementing necessary changes.
Time Management:
Prioritization: Effectively prioritize tasks, managing time and resources efficiently to meet project
deadlines and respond to incidents promptly.
Presentation Skills:
Technical Presentation: Present technical information in a clear and understandable manner during
meetings, training sessions, or when interacting with clients.
Crisis Management:
Calm Under Pressure: Maintain composure and effectiveness in high-pressure situations, especially
during security incidents or disasters.
Qualification
(Special behavioral skills, knowledge, experience and Education needed for the satisfactory performance of the job)
KNOWLEDGE AND EXPERIENCE:
Bachelor’s degree (Must Have)
Proven experience as a Network Security Engineer, with a minimum of [7 years] in a senior or lead role.
Experience is similar Security Operation Center and Implementation experience
Certifications
Knowledge level Target date
Certificate Certification
Joining Time “If not available”
CCNP/ CCIE Must Have Must Have N/A
Wireless & ISE Technologies Must have Must Have
Firewall Certification (Fortinet/Palo Alto/FTD) Must have Must Have
Technical Competency
Data Centre and Campus Networking Design & Implementation (FabricPath/vPC/VxLAN/NX- Must Have
QoS/OTV
Experience designing and building complex data center networks with Software Defined Must Have
Networking (SDN) solutions such as Cisco ACI, VMware NSX or any OpenFlow protocol
Understanding of ACI Multi-Pod, Multisite deployments. Must Have
Operate and maintain existing multi-pod ACI implementation. Must Have
Securely attach different workloads to the ACI with required EPG, contracts, L2/L3 outs etc. Must Have
Integrate ACI with NSX environment in HCI/VVD of Dell/EMC. Must Have
End to end knowledge of ACI firmware upgrade Must Have
EPGs, BDs, L3 outs, Multiple VRFs, Multi-Tenancy, ACI in band and OOB management, Must Have
Integration with VMM Domains, Access policy Definition for any type of interfaces single or
PC or VPC, L4-L7 Service graph, PBR, ACI High-availability Solutions like Multi-Pods.
Experience designing and building complex campus network with Software Defined Access Must Have
(SDA) solutions from Cisco or any other SDA vendors
Page 3 of 4
JD – Template
NAC rollout and tuning in SDA campus, based on ISE Must Have
Complete knowledge of VX-LAN, Any cast routing Must Have
Experience in Managing DNAC, SDA fabric, CAMPUS Fabric in integration with Cisco ISE Must Have
and Wireless.
The Job holder may be required to undertake additional duties, which may be reasonably expected and forms part of the
function of the job.
Page 4 of 4
JD – Template