Adroit People Limited (UK)Greetings Adroit People is currently hiring
– Senior Network Security Engineer
We are seeking a highly skilled L4 Network Security Engineer with deep expertise in Cisco security technologies, Check Point firewalls, and F5 APM.
The ideal candidate will be responsible for designing, implementing, optimizing, and troubleshooting enterprise security solutions across multi-site and data center environments.
This role requires hands-on experience in platform installations, upgrades, migrations, and decommissioning activities, along with strong troubleshooting and cross-team collaboration skills.
Administer and support Cisco ASA/FTD firewalls including ACLs, NAT, VPN, failover, clustering, and upgrades.
Manage Check Point firewalls (R80.x) — policy management, clustering, VPN, logging, and health checks.
Handle F5 APM for remote access VPN, SSO, authentication policies, and application access.
Support data center network security architecture (firewalls, segmentation, VRF, routing, switching security).
Lead hardware refresh, firewall replacement, and migration projects.
Execute device decommissioning, ensuring proper cleanup of configs, rule removal, rack removal, and documentation.
Conduct cutover activities, change execution, and post-implementation validation.
Work with cross-functional teams to review network and security requirements.
Create and maintain HLDs/LLDs, network diagrams, migration plans, and SOPs.
Troubleshoot identity/authentication failures, VPN issues, firewall packet drops, routing conflicts.
Perform root-cause analysis (RCA), remediation plans, and long-term fixes.
Monitor system health, logs, and alerts across multiple platforms.
Conduct periodic rule/policy optimization, cleanup, and audits.
Maintain device firmware/software to secure and supported versions.
Document operational procedures and provide knowledge transfer to L1/L2 teams.
Required Skills & Experience
Cisco ISE (expert level) – Authentication policies, authorization profiles, profiling, certificates, device onboarding.
Cisco ASA/FTD – VPN, NAT, ACL, clustering, routing, packet tracer, Firepower Management Center (FMC).
Check Point R80.x – SmartConsole, VPN, IPS, rule optimization, HA/cluster.
F5 APM – Access policy creation, VPN configuration, SAML/OAuth integration.
Cisco Switching/Routing in DC environment – Nexus (5k/7k/9k), VLANs, VPC, OSPF/BGP basics.
Wireshark, tcpdump.
cloud networking (AWS/Azure) is a plus.
Automation/Scripting knowledge (Python, Ansible) preferred but not mandatory.
¿Te interesa este puesto?