Network And Security Consultant

Year    HR, IN, India

Job Description

Who We Are



At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.





The Role



Your Future at Kyndryl


At Kyndryl, we understand the importance of investing in our employees' professional growth and development. In Network Services, you can expect to receive a lot of support for training programs to keep your skills and knowledge up to date with the latest industry trends and technologies. By joining our team, you will have the opportunity to work on cutting-edge projects and contribute to the development of innovative solutions for our customers - including new wireless and 5G technologies - not yet adopted by most companies.


In this role, you will have the opportunity to review project requirements, communicate them accurately to the team, and ensure they are appropriately fulfilled. You will use your expertise to design and implement local and wide-area network solutions, including IP and VOIP, that address customer requirements. You will also provide high-quality technical solutions to our customers to prepare them for implementation, go-live, and maintenance.




If you are excited about using your technical expertise to create innovative network solutions and provide outstanding customer service, then this is the role for you!


Primary Domain Skills Area 1

any 2 firewalls as L3/ SME level ( Check Point, Palo Alto, FortiGate, Cisco) : Checkpoint Skills and Palo Alto Skills are preferred . Checkpoint Skills are Mandatory .


+


Secondary Domain Skills Area 2

WAF/NAC ( F5 ASM , Radware WAF , Imperva WAF and or Akami WAF ) and ( Cisco ISE , Forescout NAC , Aruba Clear Pass


F5 ASM and Imperva WAF skills are Preferred with F5 ASM /WAF skills being mandatory .


Key Responsibilities:



Firewall Configuration/ Management:


Design, configure, and maintain firewall policies and rules, Natting. Configuring and Managing User defined categories, Whitelisted / Blacklisted URLs. Configure the Firewall policy for UTA feature to scan AV, IPS, Sandboxing encryption / decryption and know to allow exception from UTM scanning. Configure the Application policy bases on default available list or know to create custom application. Hands-on expert experience on NGFW firewall Checkpoint Cisco, Fortinet and Palto Alto to do failover, HA config, upgrade and L3 level of troubleshooting to packet capture. Monitor firewall performance and security, ensuring optimal operation. Performs security hardware and software maintenance to upgrade / downgrade devices. In depth knowledge and skills of working independently on Firewall management tools like FMC, Panorama, Forti Manager, Analyzer, Algosec. Configure the Context /Vdom/VSX base firewall and work with virtual firewalls.
WAF Configuration & Management


Design, configure, and maintain WAF Traffic inspection and Filtering rules and policies Configuring and Managing Whitelisted / Blacklisted URLs. Configuration of Traffic Protection against various attacks ( SQL injection , XSS , Zero day attacks Deep knowledge on Rate limiting and Bot Management policies . Deep Knowledge of HTTS Protocol & SSL/TLS Monitor WAF security logs and alerts to detect and respond to threats. Perform regular security assessments and vulnerability testing on web applications. Conduct incident response and forensic analysis in the event of a security breach. Knowledge of OWASP Top Ten Hands-on experience with one or more WAF platforms (e.g., Imperva, AWS WAF, F5, Azure WAF). Hands-on experience of upgrading WAF ( hardware based WAF)
NAC Configuration & Management


Design, configure, and maintain NAC of various OEM ( Cisco or Forescout or Aruba . ) Create authentication ,authorization and posture policy for user Create device authentication, authorization policy and shell profiles Good knowledge of TACACS/Radius protocols Expert knowledge of Design and architecture . Deep Knowledge of integration of NAC with other network and other infrastructure components ( ie Switches , wireless controller , firewalls, AD , LDAP ) Familarity with direcetory services like AD and LADAP Troubleshooting knowledge of NAC ( Cisco ISE, Forsecout etc)

Firewall and WAF or NAC Migration and Implementation:


Plan and execute firewall and WAF migrations from different OEM or Same OEM to different hardware, ensuring minimal disruption to network services. Implement new firewall solutions, including Planning to execution with next-generation features. Test and validate firewall configurations with industry best practise before deployment. Hands on experience of execution of firewall & WAF Migration projects/assignment in BFSI and other industry verticals
Design and Consulting:


Provide expert consulting services on network security design and architecture. Develop secure network designs tailored to client needs, ensuring compliance with regulatory requirements. Collaborate with clients to understand their security requirements and provide customized solutions. Create and maintain detailed network documentation, Network Diagrams and procedures. Conduct regular security assessments and audits to identify and mitigate vulnerabilities. Provide the training session to colleague and customer team members.
Incident Handling:


Lead the response to major security incidents, including detection, analysis, containment, eradication, and recovery. Develop and implement incident response plans and procedures. Conduct post-incident reviews and provide RCA. Good understanding on peer device technology like router switch's and how these technology work e,g ARP, MAC , DNS , SNMP, VRRP, Routing. Excellent troubleshooting skills on wireshark captures / PCAP etc
Additional Domain Skills:


Configure and manage TrendMicro IPS appliances to protect against known and unknown threats, regularly update IPS signatures and policies to ensure up-to-date protection. Lead the response to IPS-related security incidents, including detection, analysis, and mitigation of threat. Plan and execute the deployment of TrendMicro IPS appliances, ensuring minimal disruption. Design and implement access policies using F5 APM to secure applications and data. Design and implement ZPA solutions to provide secure, seamless access to private applications. Lead the response to ZPA-related security incidents, including unauthorized access and lateral movement attempts. Plan and execute migrations from legacy VPN solutions to ZPA, F5 APM, ensuring minimal disruption. Implement ZPA / F5 APM for remote users, branch offices, and third parties , with multiple compliance policy to check product OS, AV installation and others.
Additional Responsibilities:


Documentation: Maintain detailed documentation of firewall configurations, incident response procedures, and security policies. Training: Provide training and guidance to junior network security engineers and other IT staff. The ideal candidate will have a strong technical background, excellent leadership skills, and the ability to work effectively in high-pressure situations. Strong verbal and written English communication. Strong interpersonal and presentation skills Ability to work with minimal levels of supervision. Willingness to work in a job that involves 24/7 operations. Work closely with colleagues to meet team goals and improve processes and practices. Experience on the Process like Change Management, Asset Management, Configuration Management, Security Health Checks, Basic Hygiene, Audit Compliances etc Relevant certifications such as CCIE Security or CCSE or PCNSE equivalent.







Who You Are



Qualifications:



Education:


Graduate in Computer Science/IT/Electronics Engineering or equivalent University degree.
Experience:


Candidates should have at least -12+ years of experience working in Security Domain ( SOC, Implementation and or Consultancy of Security Solutions .
Certifications:


Relevant certifications such as CCIE Security or CCSE or PCNSE equivalent.








Being You



Diversity is a whole lot more than what we look like or where we come from, it's how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we're not doing it single-handily: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you - and everyone next to you - the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That's the Kyndryl Way.





What You Can Expect



With state-of-the-art resources and Fortune 100 clients, every day is an opportunity to innovate, build new capabilities, new relationships, new processes, and new value. Kyndryl cares about your well-being and prides itself on offering benefits that give you choice, reflect the diversity of our employees and support you and your family through the moments that matter - wherever you are in your life journey. Our employee learning programs give you access to the best learning in the industry to receive certifications, including Microsoft, Google, Amazon, Skillsoft, and many more. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations. At Kyndryl, we invest heavily in you, we want you to succeed so that together, we will all succeed.


Get Referred!



If you know someone that works at Kyndryl, when asked 'How Did You Hear About Us' during the application process, select 'Employee Referral' and enter your contact's Kyndryl email address.

Beware of fraud agents! do not pay money to get a job

MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD4066296
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    HR, IN, India
  • Education
    Not mentioned
  • Experience
    Year