Act as a senior member of the 24x7 network and security operations team, providing advanced support, mentoring, and leadership.
Architect, implement, and support advanced routing and switching infrastructures:Interior and exterior routing: BGP (with route reflectors, communities, policies), OSPF, and EIGRP.Advanced MPLS-based VPNs, VRFs, QoS, and policy-based routing for high-availability and secure segmentation.Spine-leaf IP fabric topologies in data center environments to enable scalable, automated east-west traffic flows.
Segment routing and traffic engineering for optimized service delivery.
Design, deploy, and maintain cloud networking components in public, private, and hybrid clouds:VPC/VNet architecture, subnets, routing tables, NAT gateways, and peering.Cloud-native firewalls, security groups, NACLs, WAFs, and DDoS mitigation services.VPN and Direct Connect/ExpressRoute links for secure hybrid connectivity.Service mesh (e.g., Istio) and container networking (CNI plugins) in Kubernetes environments.SD-WAN and SDN controllers for dynamic WAN optimization and branch-cloud integration.
Implement, configure, and operate modern security platforms:Next-generation firewalls (Palo Alto, Fortinet, Check Point) with application-layer controls and threat intelligence.WAFs and Load Balancers (F5 LTM, AVI Networks) for application delivery and protection.Intrusion detection/prevention (IDS/IPS), URL filtering, sandboxing, and advanced malware prevention.Secure DNS/DHCP architectures with DDI solutions (e.g., Infoblox).Zero Trust Network Access (ZTNA) and micro segmentation techniques.
Lead continuous monitoring and proactive optimization of both on-premises and cloud network/security performance using advanced tools and automation frameworks.
Plan, execute, and validate firmware and software upgrades for all networking and security appliances, ensuring zero/minimal downtime.
Perform incident response and forensics for complex security events, including threat analysis and mitigation.
Conduct capacity planning, traffic analysis, and service assurance for growing business demands.
Document detailed technical designs, configurations, standard operating procedures, and knowledge base articles.
Evaluate emerging technologies, lead PoCs, engage with vendors and cloud service providers for solution validation, and contribute to strategy and roadmap development.
Mentor and upskill junior engineers and IT staff through formal training and on-the-job coaching.