Job Detail
-
Job-ID 328001
Job-Beschreibung
As a firewall engineer, your primary role involves the design, implementation, management, and maintenance of firewall systems to protect an organization’s IT infrastructure from unauthorized access, cyberattacks, and data breaches.Tasks and Responsibilities:Firewall Deployment and Configuration:
- Design and implement firewall solutions based on organizational needs.
- Configure firewall rules, VPNs, and NAT policies.
Access Control Management:
- Regularly update and optimize access control rules.
- Perform risk analysis of current policies.
Security Monitoring and Incident Response:
- Monitor network traffic for suspicious activities.
- Respond to and investigate security incidents.
Maintenance and Upgrades:
- Regular firmware and patch updates for firewall devices.
- Migrate configurations during hardware/software upgrades.
Troubleshooting:
- Diagnose connectivity or performance issues related to firewalls.
- Resolve misconfigurations and rule conflicts.
Collaboration:
- Work with IT teams to align firewall policies with network architecture.
- Assist SOC teams during cybersecurity incidents.
Your Profile:Firewall Technologies:Understanding of different types of firewalls (hardware, software, cloud-based). Lonza Use today Checkpoint OnPrem and Cloud GuardNetworking Concepts:
- TCP/IP, UDP, and OSI model.
- IP addressing and subnetting.
- VLANs, VPNs, NAT (Network Address Translation), and PAT.
- Routing protocols (BGP, OSPF, EIGRP).
Security Protocols and Standards:
- SSL/TLS, IPSec, HTTPS, SSH.
- Authentication mechanisms: RADIUS, TACACS+, LDAP, etc.
- Security frameworks: NIST, ISO 27001, PCI DSS.
Threat Analysis:
- Knowledge of cyber threats like malware, DDoS attacks, phishing, and ransomware.
- Intrusion prevention and detection systems (IPS/IDS).
- Threat intelligence platforms and zero-day vulnerabilities.
Firewall Rules and Policies:
- Creating, auditing, and optimizing access control lists (ACLs).
- Managing zones and security policies.
- Application-layer filtering and deep packet inspection.
Monitoring and Logging:
- Familiarity with SIEM tools (Splunk, QRadar, etc.).
- Analyzing logs and reports to identify security incidents.
- Log correlation for incident response.