Coforge

Coforge

Coforge is a global digital services provider specializing in transforming businesses through technology and industry expertise, powering growth with innovative solutions and platforms.

IT Services
10K-50K
Founded 1992

Description

  • Own the day-to-day operation of Palo Alto, Fortinet, and Cisco firewalls, proxies, and VPN appliances.
  • Monitor and maintain high-availability clusters, dynamic routing, NAT, and policy objects to meet availability and performance SLAs.
  • Execute network security change management, including rule updates, NAT adjustments, SSL decryption policies, URL categories, and app-ID signatures.
  • Troubleshoot break/fix issues using packet-level analysis such as pcaps, flow records, session tables, and global counters.
  • Manage network segmentation and zero-trust policy baselines across zones, VRFs, tags, and east-west/north-south traffic controls.
  • Develop and maintain standardized security templates, objects, groups, and security profiles.
  • Tune security controls such as IPS/IDS, anti-malware, URL filtering, WildFire/ATP, DNS Security, and sandboxing to reduce false positives.
  • Integrate firewalls with identity systems, SIEM/SOAR, PKI, and EDR/XDR telemetry to improve detections and automate response.
  • Maintain remote-access VPN architectures, including posture checks, MFA, and split-tunnel versus full-tunnel policies.
  • Support incident response, root-cause analysis, corrective actions, dashboards, metrics, documentation, and automation efforts.

Requirements

  • Experience operating enterprise firewall, proxy, and VPN platforms, especially Palo Alto, Fortinet, and Cisco.
  • Strong knowledge of L2–L7 security controls and troubleshooting in high-availability, low-latency environments.
  • Experience with IPSec and SSL VPN technologies, including secure remote-access configurations.
  • Working knowledge of dynamic routing protocols such as BGP and OSPF in firewall environments.
  • Experience with identity integrations such as AD/LDAP, IdP, SSO, SIEM/SOAR, PKI, and EDR/XDR is required or preferred.
  • Experience supporting MAS TRM or BNM RMiT audits is highly preferred.
  • Familiarity with security and compliance frameworks such as ISO 27001, NIST 800-53/CSF, SOC 2, and PCI DSS.
  • Experience with Zero Trust Network Access (ZTNA) is an advantage.
  • Automation experience with tools such as Ansible, Terraform, Panorama, FortiManager, or Cisco FMC APIs is preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Junior IT Engineer

Arionkoder 51-250 Internet Software & Services

Arionkoder is hiring a Junior IT Engineer to support internal IT operations for access, equipment, cloud platforms, and compliance-related administration.

AWS Confluence GCP JIRA
7 hours, 17 minutes ago

Lead Incident Security Responder

Black Duck Inn 1K-5K Internet Software & Services

Black Duck Software is hiring a Lead Incident Security Responder to drive product security, vulnerability response, and customer security support across its software portfolio.

AWS Azure DevSecOps GCP JIRA LLM
7 hours, 32 minutes ago

Security / DevSecOps Engineer (Blockchain-Fintech)

Alloy Internet Software & Services

Index Industries is seeking a DevSecOps engineer to secure its stealth-stage blockchain and cloud infrastructure as it prepares to launch its first technology in 2026.

AWS Blockchain CI/CD DevSecOps Docker GCP Go Kubernetes Python Secrets Management
1 day, 6 hours ago

Senior Software Engineer - Security Libraries

Datadog 5K-10K IT Services

Datadog is hiring a senior polyglot engineer to build and operate security library integrations for its run-time security products, with a primary focus on .NET or Java.

C# C++ Envoy Go HAProxy Java Maven .NET Nginx Node.js PHP Python Ruby WAF
1 day, 6 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers