Hiring for Infrasec Network Security role on checkpoint and Cisco ASA. JD: Need SME/L3 candidate only. (Candidate would worked on Design, Implement, Upgrade and Troubleshooting strictly) Need architect kind on profiles only. Location:Bangalore,Pune,coimbatore. Interested candidates post their cv's to roja@gig-consultants.in Checkpoint and Cisco ASA: ========================= Add/modify/delete firewall rules and push Mitigate the vulnerabilities by periodic firmware upgrades and hotfix patches also device upgrades Coordinate with vendor for part replacement and high priority issues Analyze and perform bug scrub validation for the newly recommended codes Triage, identify and fix the incidents related to Checkpoint and Cisco ASA Deep dive analysis of recurring incidents and provide root cause analysis coordinate with OEM for hardware and software related issues. In-depth knowledge of NAT, routing and IPSEC. F5: === Configure, Manage and administer the F5 Load balancer LTM & GTM Provision virtual IP configuration and load balancing method based on application team requirement Add/Modify/delete pool members, health monitoring string, NAT and iRule configuration GTM wide IP configuration between the data center Provision and validate the DNS entries for VIP and WIP Periodic renewal of SSL certificates in F5 Load balancer Mitigate the vulnerabilities by periodic firmware upgrades and hotfix patches also device upgrades Coordinate with vendor for part replacement and high priority issues Analyze and perform bug scrub validation for the newly recommended codes Triage, identify and fix the incidents related to F5 load balancer and its server hosted environments Deep dive analysis of recurring incidents and provide root cause analysis coordinate with OEM for hardware and software related issues. Zcaler: ======= Configuring access control settings. Blocking/Opening destination ports. Creating/Deleting/Modifying user on Proxy server application and in Proxy server AD group for authentication. Creating/Modifying/Deleting Custom URL’s list. Management and configuration of filters. Managing SAAS proxy services settings.
Roja K’s Post
More Relevant Posts
-
Good opportunity
Job Title: Network and Information Security Manager Are you passionate about network and information security? Join team as a Network and Information Security Manager. You will be responsible for designing, installing, maintaining, and managing our network infrastructure and security systems. If you have a strong background in networking operations, information security, and a minimum of 7 years of experience, we’d love to hear from you! Key Responsibilities • Manage and monitor LAN, WLAN, WAN networks. • Manage and monitor cisco ISE. • Manage and monitor Firewalls. • Implement and maintain security policies and procedures. • Conduct risk assessments, penetration testing, and system upgrades. Qualifications • Bachelor’s degree in computer science, Information Technology, or a related field. • Minimum of 7 years of relevant experience. Skills • Networking operations, ITIL processes, and cyber security. • Strong problem-solving, teamwork, and communication skills. • Proven operational experience in firewall management using Palo Alto and Fortinet technologies. • Proven operational experience in Cisco ISE. • Proven operational experience in firewall Cisco FTD, Palo Alto and FortiGate. • Proven operational experience in Cisco DUO and Umbrella. • Hands-on experience in load balancer & WAF operations and particularly with F5 and FortiWAF technologies. • Should have expert and in-depth knowledge of Complex IP Networks Cisco Switches & Routers. • Familiarity with operational aspects of cybersecurity best practices and industry standards. • Relevant certifications CCNA, CCSA, CCNP Certifications are a must. • Relevant certifications such as PCNSE, NSE4, F5 Certifications are a plus. • Proficient in day-to-day operational tasks related to network security and infrastructure. • Excellent problem-solving skills with a focus on operational efficiency. • Strong communication and collaboration skills to work seamlessly with operational teams. • Ability to prioritize operational tasks in a fast-paced environment. • Proven operational experience in Voice solution is a plus. Ready to take on this challenge? Apply now at mm3632817@gmail.com.
To view or add a comment, sign in
-
System Administrator at Twenty Two by 7 Solutions Pvt. Ltd. Windows,Mac & Linux | CCIE Security 🛡️ | Network Defender(Fortinet & Aruba) | VDI Deployment l Endpoint Security(McAfee & Cortex) l Python 🐍
Network Engineer VS security engineer 🔥❤️ Network Engineer - Role: A Network Engineer designs, implements, manages, and supports the networking infrastructure of an organization. This includes routers, switches, firewalls, load balancers, and other networking devices. - Primary Focus: Ensuring efficient data flow across networks, maintaining reliable connections, and optimizing network performance. - Key Responsibilities: - Designing and implementing local area networks (LANs), wide area networks (WANs), and other networks. - Monitoring and managing network traffic to avoid bottlenecks. - Troubleshooting connectivity issues. - Installing, configuring, and maintaining network hardware. - Collaborating on network expansions and upgrades. - Skills Needed: In-depth knowledge of networking protocols (like TCP/IP, BGP, OSPF), hands-on experience with routing and switching, network management tools, and vendor certifications like Cisco (CCNA, CCNP) or Juniper (JNCIA, JNCIP). Security Engineer: - Role: A Security Engineer focuses on protecting an organization’s networks, systems, and data from cyber threats. They work to design and implement robust security measures. - Primary Focus: Identifying and mitigating security risks, preventing unauthorized access, and ensuring compliance with security policies and regulations. - Key Responsibilities: - Implementing firewalls, intrusion detection/prevention systems (IDS/IPS), and other security solutions. - Conducting vulnerability assessments and penetration testing. - Monitoring and analyzing security alerts and incidents. - Responding to and mitigating security breaches. - Developing security policies, procedures, and best practices. - Skills Needed: Proficiency in cybersecurity principles, knowledge of encryption, risk management, incident response, familiarity with security tools (like SIEM), and certifications like CISSP, CEH, or CISM. Differences in Focus: - Network Engineer: Focuses on ensuring that the network is functional, efficient, and scalable. - Security Engineer: Concentrates on safeguarding the network and systems against cyber threats and ensuring data integrity. Collaboration: These roles often overlap, as securing a network involves understanding its design and implementation. Network Engineers often have to consider security in their configurations, while Security Engineers need a strong understanding of networking concepts to effectively protect the infrastructure.
To view or add a comment, sign in
-
-
Hi Everyone, Hope you all doing good. I am looking for a Network Engineer/Administrator for my team. If any of your friends are in networking and are looking for a change of job please do refer. Any kind of leads is much appreciated. Work location: Hyderabad Below are various responsibilities/activities: 1) Network setup and configuration: Network admin designs, set up and configure network infrastructure including switches, firewalls, WLC and access points. 2) Network monitoring: Monitors all backbone links and network devices. Proactive health checks, bandwidth utilization, capacity, failover planning, lifecycle management, testing, and obsolescence management in the core network. 3) Security management: Network admin implements and maintains security measures to protect the network from threats, block malicious IP’s in firewalls and does regular updates. 4) Vendor relations: a) Closely working with the ISP to analyze the BW utilization and ensure threshold is not crossed. b) Co-ordination with Service provider and giving L1 Support by checking the physical status of the Links, for down Cases, & Link Performance issues. c) Co-ordination with vendor for any Network Hardware and Malfunctioning, TAC, Troubleshooting, Capturing the Logs etc. d) Coordination with the ISP for SOC solution over cloud. 5) Network documentation and compliance: a) Configuration management report. b) Hardening network devices as per latest checklist released by TCS Hardening team. c) Perform VA/PT scan based on criticality and close the findings for network devices (Firewall, routers, switches, Access Points, WLC). d) Device configuration backups. e) Maintaining the Network Port MAP details. f) Network architecture diagram preparation and updating on a periodic basis. 6) Network SIEM solution: a) SIEM Related configuration in network devices as per the SOC Solution. b) Checking the Log inventory and ensuring all logs are captured and monitored on a timely basis. 7) Wireless management: a) Co-ordination with Wireless Management Team for any issues with Access Points and WLC where physical support required. b) New MAC ID registrations in WLC. 8) Network Troubleshooting / other activities: a) Network LAN Port issue Identification by checking end to end (Desk side, Jack Panel side and Switch side). b) Diagnose and resolve network issues. Change management, Problem/Issue Management during Project phase.
To view or add a comment, sign in
-
I specialize in reducing a company's cyber risk ✦ In Pursuit of Excellence ✦ Mastering GRC ✦ Qualys Certified Specialist ✦ PCI DSS Compliance Specialist ✦ Desktop Advanced Support Expert ✦ USAF Veteran
Cisco on Wednesday disclosed a maximum-security vulnerability that allows remote threat actors with no authentication to change the password of any user, including those of administrators with accounts, on Cisco Smart Software Manager On-Prem devices. The Cisco Smart Software Manager On-Prem resides inside the customer premises and provides a dashboard for managing licenses for all Cisco gear in use. It’s used by customers who can’t or don’t want to manage licenses in the cloud, as is more common. In a bulletin, Cisco warns that the product contains a vulnerability that allows hackers to change any account's password. The severity of the vulnerability, tracked as CVE-2024-20419, is rated 10, the maximum score. “This vulnerability is due to improper implementation of the password-change process,” the Cisco bulletin stated. “An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow an attacker to access the web UI or API with the privileges of the compromised user.” There are no workarounds available to mitigate the threat. It’s unclear precisely what an attacker can do after gaining administrative control over the device. One possibility is that the web user interface and application programming interface the attacker gains administrative control over make it possible to pivot to other Cisco devices connected to the same network and, from there, steal data, encrypt files, or perform similar actions. Cisco representatives didn’t immediately respond to an email. This post will be updated if a response comes later. A security update linked to the bulletin fixes the vulnerability. Cisco said it isn’t aware of any evidence that the vulnerability is being actively exploited. #cisco #vulnerability #software #threatactors #security
To view or add a comment, sign in
-
EMEA Strategic Management | policy and procedures |Performance Management system | Organization Development| succession Planning &Management| Talent acquisition& Onboarding programs | Retention programs|HRIS-workday
Opportunity
Shabana Group is hiring Senior Network and System Administrator: Responsible for managing and supporting our network infrastructure and system environments to ensure optimal performance, security, and reliability. Job Duties: · Design, implement, and maintain network infrastructure, including routers, switches, firewalls, and VPNs. · Configure and manage network security protocols and policies. · Install, configure, and maintain network services, equipment, and devices. · Monitoring and Troubleshooting WAN connectivity to service providers, customers, and NTG cloud. · Troubleshooting and solving complex technical issues in hardware, servers, software and network equipment related to network Routing, Switching, Security, VPN tunnels, Wireless, and Voice. · Perform system upgrades, patches, and backups to ensure system integrity and availability. · Regularly review the health of the network and ensure it is operating optimally. · Ensure no single point of failure; all failover plans be fully tested on regular schedule job requirements. · Network protocols and network administration knowledge, network security. · Administrate all Microsoft servers (AD, DC, ADC, DHCP ..) · Mange nas storage (create luns, iscsi and monitor performance and space) · Manage and administrate VMware environment · Manage Veeam (create backup jobs, ensure backup, troubleshoot) · Administrate Sophos (create rules, troubleshoot, monitor and review) · Install and configure software and hardware · Managed and maintain Fortinet Firewall and Sophos Firewall · Implement and manage security measures to protect sensitive data and systems. · Maintain comprehensive documentation of network and system configurations, processes, and procedures. · Prepare reports on system performance, security incidents, and improvement recommendations. Job Requirements: · Good knowledge in ERP system (Microsoft Dynamics AX) · Strong knowledge of systems and networking software, hardware, and networking protocols · A proven track record of developing and implementing IT strategy and plans · Strong knowledge of implementing and effectively developing helpdesk and IT operations best practices, including expert knowledge of security, storage, data protection, and disaster recovery protocols · 3-5 years of database, network administration, or system administration experience · Ability to work independently with no supervision and to work under pressure and meet deadlines · Can work as a member of a diverse team and learn complex systems quickly and effectively. · CCNA and CCNP and MCSE is a must. If you are interested send me your CV on the below: Email: careers@shabanagroup.com (mention the title on subject)
To view or add a comment, sign in
-
EMEA Strategic Management | policy and procedures |Performance Management system | Organization Development| succession Planning &Management| Talent acquisition& Onboarding programs | Retention programs|HRIS-workday
Opportunity
Shabana Group is hiring Senior Network and System Administrator: Responsible for managing and supporting our network infrastructure and system environments to ensure optimal performance, security, and reliability. Job Duties: · Design, implement, and maintain network infrastructure, including routers, switches, firewalls, and VPNs. · Configure and manage network security protocols and policies. · Install, configure, and maintain network services, equipment, and devices. · Monitoring and Troubleshooting WAN connectivity to service providers, customers, and NTG cloud. · Troubleshooting and solving complex technical issues in hardware, servers, software and network equipment related to network Routing, Switching, Security, VPN tunnels, Wireless, and Voice. · Perform system upgrades, patches, and backups to ensure system integrity and availability. · Regularly review the health of the network and ensure it is operating optimally. · Ensure no single point of failure; all failover plans be fully tested on regular schedule job requirements. · Network protocols and network administration knowledge, network security. · Administrate all Microsoft servers (AD, DC, ADC, DHCP ..) · Mange nas storage (create luns, iscsi and monitor performance and space) · Manage and administrate VMware environment · Manage Veeam (create backup jobs, ensure backup, troubleshoot) · Administrate Sophos (create rules, troubleshoot, monitor and review) · Install and configure software and hardware · Managed and maintain Fortinet Firewall and Sophos Firewall · Implement and manage security measures to protect sensitive data and systems. · Maintain comprehensive documentation of network and system configurations, processes, and procedures. · Prepare reports on system performance, security incidents, and improvement recommendations. Job Requirements: · Good knowledge in ERP system (Microsoft Dynamics AX) · Strong knowledge of systems and networking software, hardware, and networking protocols · A proven track record of developing and implementing IT strategy and plans · Strong knowledge of implementing and effectively developing helpdesk and IT operations best practices, including expert knowledge of security, storage, data protection, and disaster recovery protocols · 3-5 years of database, network administration, or system administration experience · Ability to work independently with no supervision and to work under pressure and meet deadlines · Can work as a member of a diverse team and learn complex systems quickly and effectively. · CCNA and CCNP and MCSE is a must. If you are interested send me your CV on the below: Email: careers@shabanagroup.com (mention the title on subject)
To view or add a comment, sign in
-
|C.E.H|SR.Cybersecurity analyst |Pentester|Sr. Threat Intelligence Analyst|Risk Engineer| IMPERVA Engineer | Network security &Automation| SR.Cyber Engineer |WAPT| DLP|Linux| cloud security|IT Security specialist|
Successfully designed and implemented network addressing schemes for diverse environments, ensuring efficient IP allocation and subnetting. Proficient in configuring routers, switches, and firewalls to optimize network performance and security. Skilled in troubleshooting network issues using tools like ping, traceroute, and Wireshark to diagnose connectivity problems. Implemented VLANs and VLAN trunking protocols to segregate network traffic and enhance security. Configured DHCP servers to automate IP address assignment and streamline network management. Implemented access control lists (ACLs) to enforce security policies and restrict unauthorized access. Conducted network performance analysis and optimization to improve bandwidth utilization and reduce latency. Successfully resolved DNS resolution issues by configuring DNS servers and resolving domain name discrepancies. Configured NAT (Network Address Translation) to enable private IP addresses to access the internet. Implemented redundant network paths and protocols like HSRP and VRRP to ensure high availability and fault tolerance. Proficient in configuring VPN tunnels to establish secure connections between remote sites and headquarters. Conducted network audits to identify vulnerabilities and implement security measures to mitigate risks. Provided training and documentation to educate users on network best practices and troubleshooting techniques. Collaborated with cross-functional teams to resolve complex network issues and optimize network architecture. Maintained detailed documentation of network configurations, changes, and troubleshooting procedures for future reference.
To view or add a comment, sign in
-
-
HI, Hope you are doing fine today! I would like to thank you for taking time out of your busy schedule to read my email. This is Samira and I am actively seeking opportunities as a Network Engineer. I am eager to work with you diligently in pursuing project opportunities. Please have a look at the details below and let me know your thoughts. Professional Summary: · 9+ Years of experience working as a Network Engineer in Planning, Implementation, configuration, Network design, troubleshooting, maintenance and management involving LAN and WAN wireless Technologies. · Experience in working with Cisco ACI (Application Centric Infrastructure) and SDN architecture to reduce operating costs, automate IT tasks, for greater scalability and visibility in a data center environment. · Experience with designing, deploying and troubleshooting LAN, WAN networks. · Experience in Cisco Routers 1700, 1900, 2600, 7200, Cisco switches 1900, 2900, 3500, 3750,3850, 4500,6500 Catalyst switches and Nexus 2k,5k,7k,9k. (Configuration, troubleshooting, monitoring) · Hands-on experience on Cisco PIX, ASA Firewalls, Juniper SRX series, Palo Alto, VPN, Troubleshooting Skills, Log Analysis and Review, Compliance Audit. · Hands-on experience on Juniper EX switches which includes EX2200, EX2500, EX3200 and EX4200 and QFX5100. · Experienced in handling and installing Palo Alto Firewalls. · Configuration, Troubleshooting and Maintenance of Palo Alto Firewalls (160+ firewalls) - PA200, PA2000 series, PA3000 series, PA4000 series and PA5000 series. · Experience in TCP/IP layered network protocols and technologies: HSRP, STP, RSTP, MSTP, VLAN, 802.1q, Ethernet IEEE 802.3, MPLS, IPv4, IPv6, RIP, RIPv2, OSPF, EIGRP and BGP. · Experience in Configuring & implementing VLAN, VTP, LAN switching, STP and 802.x authentication in access layer switches. · Experience in Network Security Technologies: VPN, PVLANs, Port Security, Intrusion Prevention and Intrusion Detection Systems, AAA Servers, RADIUS, TACACS+, Syslog. NAT, PAT, NTP, 802.1x, EAP, PEAP, WPA2. · Experience on network topology/configuration of TCP/IP, ATM, Frame Relay, MPLS VPN in IPv4 & IPv6 · Experience in migration of Frame-relay based branches to MPLS based technology using multi-layer stackable switches like 6500 series and 2800 series routers. · Optimized performance of the WAN Network consisting of Cisco 3550/4500/6500 switches by configuring VLANs. · Worked on Open software platform switches like Cumulus on Mellanox and Dell hardware in a POC. Basic Knowledge in Python and Ansible scripting for automation in configuration templates, back-ups etc. · Experience with F5 Big-IP, Cisco ACE, Citrix NetScaler load balancing platforms to implement policies.
To view or add a comment, sign in
-
Senior Network Engineer @ Wipro | CCNA | CCNP ENARSI | SD-WAN Viptela | WLC 9800 | Palo Alto | F5 LTM | DevNet
In the context of SSH (Secure Shell), configuring a secret console line, VTY (Virtual Teletype) password, and setting privilege levels typically refers to configuring access control and security settings on network devices such as routers, switches, or firewalls. Below, I'll outline the general steps to accomplish these tasks on a Cisco device, as it's a common vendor for such equipment. However, the exact commands and procedures may vary depending on the device and its operating system (e.g., Cisco IOS, IOS XE, IOS XR). enable configure terminal line console 0 password your_password login exit ``` Replace `your password` with the desired password. 2. **VTY Line Configuration**: Virtual Terminal (VTY) lines are used for remote SSH or Telnet access to the device. Similarly, you would enter global configuration mode and configure a secret password for VTY lines: ``` enable configure terminal line vty 0 15 // This command configures all VTY lines (0 to 15) password your_password login exit ``` Replace `your_password` with the desired password. 3. **Privilege Level Configuration**: In Cisco devices, there are privilege levels ranging from 0 to 15. By default, users logging in through the console or VTY lines are at privilege level 1. You can adjust privilege levels as needed. For example, to allow a user to log in directly to privilege level 15 (the highest privilege level), you can use the following commands: ``` enable configure terminal username your username privilege 15 secret your password exit ``` Replace `your username` with the username you want to create and `your password` with the desired password. 4. **SSH Configuration**: Ensure that SSH is enabled on the device and configure additional parameters such as encryption algorithms, SSH versions, and access control lists as needed. ``` enable configure terminal ip ssh version 2 ip ssh encryption aes256 ip ssh time-out 60 ip ssh authentication-retries 3 line vty 0 15 transport input ssh exit ```
To view or add a comment, sign in
-
-
🚀 Citrix ADC Configuration! 🌐✨ Explore the versatility of Citrix ADC with our comprehensive configuration expertise. Elevate your digital experience with a range of configurations tailored for peak performance and security: 🔒 Security Configuration: Implement robust security policies. Fine-tune SSL settings for enhanced encryption. Configure application firewall rules for threat prevention. 🌐 Traffic Management Configuration: Optimize load balancing for seamless traffic distribution. Fine-tune content switching rules for efficient content delivery. Configure global server load balancing (GSLB) for optimal user experience. 📡 Networking Configuration: Set up VLANs and interfaces for efficient network segmentation. Configure virtual IP addresses for streamlined communication. Implement VPN configurations for secure remote access. 💻 Application Configuration: Fine-tune application settings for optimal performance. Configure persistence for seamless user sessions. Set up content caching for faster content delivery. 🔄 Global Configuration: Implement high availability configurations for uninterrupted services. Fine-tune global settings for a cohesive network infrastructure. Configure Citrix ADC as a global load balancer. 🚀✨ #CitrixADC #ConfigurationMastery #DigitalTransformation #Citrix NetScaler #NetScaler #GSLB Contact us : sales@viarjo.in
To view or add a comment, sign in
-