- Lead and manage the organizations network and information security infrastructure, ensuring availability, confidentiality, and integrity of critical systems.
- Design, implement, and manage firewalls, VPNs, IDS/IPS, WAF, NAC, secure web gateways, and other network security technologies.
- Develop and maintain network security architecture, standards, policies, procedures, and security controls.
- Monitor security events and coordinate with SOC/incident response teams to investigate and resolve security incidents.
- Conduct regular vulnerability assessments, security reviews, and risk assessments and drive remediation activities.
- Manage security technologies from vendors such as Palo Alto, Fortinet, Cisco, Check Point, F5, Zscaler, or equivalent platforms.
- Ensure secure connectivity across data centers, branch offices, cloud environments, remote users, and hybrid networks.
- Implement and maintain Zero Trust, network segmentation, secure remote access, and least-privilege security controls.
- Work closely with infrastructure, cloud, application, DevOps, and IT teams to ensure security is incorporated into technology initiatives.
- Lead security incident response, root-cause analysis, and corrective/preventive actions.
- Manage security-related projects, budgets, vendors, service providers, and technology evaluations.
- Establish and track security KPIs/KRIs, operational metrics, and compliance requirements.
- Support audits and ensure compliance with applicable frameworks and standards such as ISO 27001, SOC 2, PCI DSS, NIST, and relevant Indian regulatory requirements.
- Lead, mentor, and develop network/security engineers and analysts.
- Stay current with emerging cybersecurity threats, vulnerabilities, technologies, and industry best practices.
Preferred Candidate Profile :
- 8 - 10 years of overall experience in network security, information security, cybersecurity, or related infrastructure-security roles.
- 2+ years of experience in a technical leadership/management role preferred.
- Strong hands-on experience with next-generation firewalls, VPN, IDS/IPS, WAF, NAC, network segmentation, and secure remote access.
- Strong knowledge of TCP/IP, routing, switching, DNS, DHCP, HTTP/HTTPS, SSL/TLS, IPsec, and network troubleshooting.
- Experience with one or more major security platforms such as Palo Alto, Fortinet, Check Point, Cisco, F5, Zscaler, or equivalent.
- Working knowledge of SIEM, SOC operations, vulnerability management, threat detection, and incident response.
- Good understanding of cloud security, particularly AWS/Azure, hybrid connectivity, and cloud network controls.
- Knowledge of Zero Trust, SASE, SD-WAN security, IAM, and security architecture is an advantage.
- Experience with ISO 27001, NIST, SOC 2, PCI DSS, or other relevant security/compliance frameworks.
- Strong understanding of risk management, security governance, policies, and controls.
- Relevant certifications such as CISSP, CISM, CCNP Security, PCNSE, Fortinet NSE/FCP, Check Point, or cloud-security certifications would be advantageous.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related discipline preferred.